EngineerJobs.io
← Back to all jobs

Job Description

Houston, TX (On-site)

Secure and resilient banking operations start with strong technical controls. Gulf Capital Bank is seeking a Security Engineer to administer, monitor, maintain, and continuously improve the Bank’s security technologies, with primary responsibility for Palo Alto Networks firewall infrastructure and related network security.

This role supports security monitoring, incident response, and compliance and audit activities, along with secondary support for Microsoft security solutions. The position works closely with Information Technology, Information Security, and business teams and reports to the Security Operations Manager.

Responsibilities

  • Administer, maintain, and support Palo Alto Networks firewalls across all Bank environments.
  • Manage firewall policies, security rule requests, NAT configurations, and object administration.
  • Configure, maintain, and troubleshoot site-to-site VPN and remote-access VPN connectivity.
  • Monitor firewall health, performance, capacity, and availability.
  • Perform log analysis and traffic review to identify malicious activity, policy violations, and operational concerns.
  • Implement security policy changes in accordance with change management procedures.
  • Maintain network segmentation controls supporting secure banking operations.
  • Configure and support Palo Alto security services including Threat Prevention and GlobalProtect.
  • Perform software upgrades, content updates, and security patching activities.
  • Assist with network architecture reviews and security design recommendations.
  • Maintain firewall documentation, network diagrams, and configuration standards.
  • Participate in disaster recovery and business continuity testing related to network security infrastructure.
  • Assist with administration of Microsoft Defender solutions and monitor/investigate alerts generated through Microsoft Defender and Microsoft Sentinel.
  • Support Microsoft Entra ID security controls and identity protection initiatives, including Conditional Access policy administration and review.
  • Support implementation and maintenance of Microsoft Secure Score recommendations.
  • Assist with email security and anti-phishing technologies within Microsoft 365.
  • Participate in vulnerability management and remediation activities, and assist with security enhancements across Microsoft cloud services.
  • Support threat hunting and security monitoring, escalate significant events in accordance with established procedures, and participate in incident response activities.
  • Collect and preserve evidence, document incidents and findings, and support regulatory examinations and internal/external audits.
  • Support vendor security reviews and third-party risk assessments, and help remediate audit findings and security recommendations.

Required Qualifications

  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or related field; or equivalent combination of education and experience.
  • Three to five years of information technology or cybersecurity experience.
  • Two or more years of hands-on firewall administration experience.
  • Experience troubleshooting enterprise networking and security technologies.
  • Working knowledge of Windows Server and Active Directory environments.
  • Strong understanding of TCP/IP networking concepts.
  • Knowledge of Palo Alto Networks firewall administration and VPN technologies, including troubleshooting.
  • Network routing and switching fundamentals, security logging and event analysis, network segmentation and security policy management.
  • Vulnerability management concepts, Windows administration fundamentals, Microsoft 365 administration fundamentals.
  • Security incident investigation and response experience.

Preferred Qualifications

  • Palo Alto PCNSA certification.
  • Palo Alto PCNSE certification.
  • CompTIA Security+ certification.
  • Experience with Microsoft Defender and Microsoft Sentinel.
  • Experience with Microsoft Entra ID and Microsoft Azure.
  • Experience within a financial services or regulated environment.
  • PowerShell scripting experience.

Technologies

  • Palo Alto Networks firewalls, Palo Alto Threat Prevention, GlobalProtect
  • Site-to-site VPN, remote-access VPN
  • Microsoft Defender, Microsoft Sentinel
  • Microsoft Entra ID, Conditional Access, Microsoft Secure Score
  • Microsoft 365, Microsoft 365 email security, anti-phishing technologies
  • Windows Server, Active Directory, TCP/IP, PowerShell

Benefits

  • Health insurance
  • Paid time off
  • Vision insurance
  • 401(k)
  • 401(k) matching
  • Dental insurance

Physical Requirements

  • Ability to sit for extended periods while working on computer systems.
  • Ability to occasionally lift and move equipment weighing up to 25 pounds.
  • Ability to travel occasionally between Bank locations and vendor sites as needed.

Similar Jobs