Talent.com
AVP, Information Security Engineer
AVP, Information Security EngineerCathay Bank - Headquarters • Rancho Cucamonga, CA, United States
AVP, Information Security Engineer

AVP, Information Security Engineer

Cathay Bank - Headquarters • Rancho Cucamonga, CA, United States
30+ days ago
Job type
  • Full-time
Job description

People Drive Our Success

Are you enthusiastic, highly motivated, and have a strong work ethic? If yes, come join our team! At Cathay Bank - we strive to provide a caring culture that supports your aspirations and success. We believe people are our most valuable asset and we proudly foster growth and development empowering you to achieve your professional goals. We have thrived for 60 years and persevered through many economic cycles due to our team members' drive and optimism. Together we can make a difference in the financial future of our communities.

Apply today!

What our team members are saying :

Video Clip 1

Video Clip 2

Video Clip 3

Learn more about us at cathaybank.com

GENERAL SUMMARY

This position is responsible for designing, implementing, and supporting the Bank's Information Security infrastructure and protecting its data and assets in accordance with established Information Security and Bank policies, published regulations and industry best practices.

Responsibilities include performing risk assessments of the Bank's network, applications, and endpoint activity, and manage security projects to implement security controls or tools to mitigate cyber risk, ensuring that the Bank's network and data are secure in accordance with Bank, IT, and IS policies.

ESSENTIAL FUNCTIONS

  • Participate in Business and Information Technology projects to recommend security controls and solutions applicable. Provide recommendations for security infrastructure, developing security plans and standards.
  • Manage trade-offs and determine cost-benefits between new tools to be implemented to the current security stack, and improve existing tools by reconfiguring, repurposing, or training. Identify and evaluate opportunities for process improvement.
  • Maintain strong technical security skills that follow the current market trends to work on both cloud and on-prem based solutions.
  • Serve as Subject Matter Expert (SME) across technical information security domains.
  • Identify and assess vulnerabilities and risks to enterprise applications infrastructure and data. Develop and implement technical solutions to counter vulnerabilities and risks.
  • Track current and emerging security threats, design and implement security solutions to mitigate them.
  • Propose scope, design, and supervise the execution of the penetration test program to reach defined objectives.
  • Review and propose improvements to email, endpoint and network security.
  • Implement the enterprise data loss prevention program by identifying and proposing controls on data loss channels.
  • Ensure that security systems and tools such as firewalls, web filtering, EDR, XDR, NAC for adequate coverage and periodically reassess configurations and security controls for improvements.
  • Maintain information security systems and tools such as CASB, DLP, MDM and WAF and periodically review configurations.
  • Establish, plan, and manage overall program and goals for the system security requirements and baseline configurations.
  • Participate in efforts to remediate audit and regulatory findings and recommendations related to Information Security.
  • Define and implement solutions to meet compliance requirements, including but not limited to : Sarbanes-Oxley, Payment card industry standards, and state and federal regulations.

REQUIRED QUALIFICATIONS

Education : College degree in Information Technology or Information Security or equivalent.

Certification : Requires one or more of the following certifications CISSP, CISM, CRISC, CISA, Security+, EnCE, CEH, OSCP, GIAC. Splunk and Microsoft certifications preferred.

Experience :

  • 5+ years experience in Information Security Operations or Information Security Risk Management, preferably in the financial services industry.
  • 3+ years experience in Security Engineering or Security Architecture role operating and / or implementing SIEM, EDR / XDR, NAC, IDS / IPS, WAF, IAM, FW, AD, EntraID and AVs.
  • Proven experience in securing and implementing policies for Cloud Technologies (M365, Azure, AWS) and the Microsoft (E5) technology stack including Microsoft Defender, Microsoft Intune or similar.
  • Experience defining and / or reviewing firewall rules and IDS / IPS topology and configurations.
  • Experience in defining or participating in penetration tests and / or attack simulation exercises and implementing remediation plans.
  • Strong understanding of networking, communication, and secure email protocols (TCP / IP, UDP, SSL / TLS, IPSEC, SPF, DKIM, DMARC, DNSSEC, etc.)
  • Experience configuring and managing a Security Information and Event Management (SIEM) platform is highly preferred.
  • Governance or oversight of a third-party risk management program experience preferred.
  • Experience implementing tools and policies for Data Loss Prevention, Cloud Access Security Broker (CASB) and Insider Threat Management tools preferred.
  • Experience with Secure Development Life Cycle (SDLC) practices and application security testing, including implementation and use of static and dynamic application security testing platforms preferred.
  • Experience performing and assessing the effectiveness of vulnerability management program and performing security assessments of internal and external systems based on industry standards preferred.
  • Skills / Ability :

  • Proven ability to initiate and manage projects.
  • Self-starter, highly motivated, and able to work with general supervision.
  • Strong documentation skills to include presentations to technical audiences and to business-driven departments.
  • Strong interpersonal communication and collaboration skills.
  • Must be available to respond to emergencies in support of incident investigations carried out by the Security Operations team, or for troubleshooting security tools.
  • Combination of strong troubleshooting, technical and communication skills.
  • OTHER DETAILS

    $100K - $120K / year

    Pay determined based on job-related knowledge, skills, experience, and location.

    This position may be eligible for a discretionary bonus.

    Cathay Bank offers its full-time employees a competitive benefits package which is a significant part of their total compensation. It is our goal to provide employees with a comprehensive benefits package to fit their needs which includes, coverage for medical insurance, dental insurance, vision insurance, life insurance, long-term disability insurance, and flexible spending accounts (FSAs), health saving account (HSA) with company contributions, voluntary coverages, and 401(k).

    Cathay Bank may collect personal information from potential job candidates and applicants. For more information on how we handle personal information and your applicable rights, please review our Privacy Policy .

    Cathay Bank is an Equal Opportunity and Affirmative Action Employer. We welcome applications for employment from all qualified candidates, regardless of race, color, ethnicity, ancestry, citizenship, gender, national origin, religion, age, sex (including pregnancy and related medical conditions, childbirth and breastfeeding), reproductive health decision-making, sexual orientation, gender identity and expression, genetic information or characteristics, disability or medical condition, military status or status as a protected veteran, or any other status protected by applicable law.

    Click here to view the "Know Your Rights : Workplace Discrimination is Illegal" Poster :

    Poster- English

    Poster- Spanish

    Poster- Chinese Traditional

    Poster- Chinese Simplified

    Cathay Bank endeavors to make www.CathayBank.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact, Mickey Hsu, FVP, Employee Relations Manager, at (626) 582-7370 or mickey.hsu@cathaybank.com . This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.

    Create a job alert for this search

    Information Security Engineer • Rancho Cucamonga, CA, United States

    Related jobs
    Security Engineer

    Security Engineer

    Experis • Irvine, CA, United States
    Full-time
    The Security Engineer is a hands-on technical expert responsible for implementing, maintaining, and optimizing MNAO's security tooling. This role works closely with platform and infrastructure teams...Show more
    Last updated: 30+ days ago • Promoted
    Security Operations Engineer III (IAM)

    Security Operations Engineer III (IAM)

    Alura Workforce Solutions • Rancho Cucamonga, CA, United States
    Full-time +1
    Security Operations Engineer III - Identity Access Management (IAM).Hybrid | Rancho Cucamonga (Monday & Friday Remote) (Tuesday - Thursday Onsite). Under the direction of the Manager of Information ...Show more
    Last updated: 18 days ago • Promoted
    Security Operations Engineer III-IAM

    Security Operations Engineer III-IAM

    Inland Empire Health Plan • Rancho Cucamonga, CA, United States
    Full-time
    Find joy in serving others with IEHP! We welcome you to join us in "healing and inspiring the human spirit" and to pivot from a "job" opportunity to an. Under the direction of the Manager, Informati...Show more
    Last updated: 17 days ago • Promoted
    AWS Security engineer / Security Engineer

    AWS Security engineer / Security Engineer

    Jconnect Inc • Irvine, CA, United States
    Full-time
    Below is the requirement with my client.Please let me know if you are available for this role.AWS Security engineer / Security Engineer. Proficiency in AWS security services (e.GuardDuty, Security Hu...Show more
    Last updated: 16 days ago • Promoted
    Information System Security Officer (ISSO)

    Information System Security Officer (ISSO)

    CIRCOR International • Corona, CA, United States
    Full-time
    Chief Information Security Officer (CISO).Corona, CA P&L Leaders, and A&D VP of Engineering.About CIRCOR Aerospace & Defense. CIRCOR Aerospace & Defense is focused on the design, development, and ma...Show more
    Last updated: 5 days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Artech • Irvine, CA, United States
    Full-time
    Title : Senior Security Engineer.We are looking for a dynamic and experienced individual to join our team as a Senior Security Engineer. This role requires a deep understanding of cloud security, dat...Show more
    Last updated: 7 days ago • Promoted
    Senior Cyber Security Engineer

    Senior Cyber Security Engineer

    KORE1 Technologies • Irvine, CA, United States
    Full-time
    KORE1, a nationwide provider of staffing and recruiting solutions, has an immediate opening for a Senior Cyber Security Engineer. Proven experience implementing and managing : .Firewalls, IDS / IPS, SIE...Show more
    Last updated: 17 days ago • Promoted
    Information Security Manager / Senior Manager

    Information Security Manager / Senior Manager

    Applied Medical • Rancho Santa Margarita, CA, United States
    Full-time
    Applied Medical is a new generation medical device company with a proven business model and commitment to innovation fueled by rapid business growth and expansion. Our company has been developing an...Show more
    Last updated: 12 days ago • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Syntricate Technologies • Irvine, CA, United States
    Full-time
    Please take a moment to review the job description below.If you are interested in applying, please reply so we can discuss it more. W2 contract position, and the rate is on W2 per hour only (No C2C)...Show more
    Last updated: 18 days ago • Promoted
    Jr. Cyber Security Engineer New York, NY

    Jr. Cyber Security Engineer New York, NY

    AHU Technologies • Ontario, California, USA
    Full-time +1
    The ideal candidate will be responsible for deploying managing and optimizing security tools across enterprise endpoints. This role focuses on ensuring robust protection against threats through adva...Show more
    Last updated: 13 days ago • Promoted
    IT Security Engineer

    IT Security Engineer

    Woongjin, Inc • Irvine, California, USA
    Full-time
    The IT Security Engineer is responsible for supporting the planning implementation and management of the organizations IT security infrastructure and policies. This role assists in identifying secur...Show more
    Last updated: 14 days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Akkodis • Irvine, CA, United States
    Full-time
    Candidates must have strong AWS cloud security experience and hands-on expertise with CSPM tools and scripting for automation. The rate may be negotiable based on experience, education, geographic l...Show more
    Last updated: 18 days ago • Promoted
    Sr Information Security Systems Engineer

    Sr Information Security Systems Engineer

    loanDepot • Irvine, California, USA
    Full-time
    Responsible for delivering senior level innovative compelling coherent software solutions for our consumer internal operations and value chain constituents across a wide variety of enterprise appli...Show more
    Last updated: 6 days ago • Promoted
    Security Engineer

    Security Engineer

    Manpower Group Inc. • Irvine, CA, United States
    Full-time
    The Security Engineer is a hands-on technical expert responsible for implementing, maintaining, and optimizing MNAO's security tooling. This role works closely with platform and infrastructure teams...Show more
    Last updated: 30+ days ago • Promoted
    USA_Senior Security Engineer

    USA_Senior Security Engineer

    Varite • Irvine, CA, United States
    Full-time
    Cloud Engineering Job DescriptionKey ResponsibilitiesDesign and implement secure configurations for AWS services (e.IAM, S3, EC2, RDS, Lambda, etc. Deploy and manage CSPM tools to monitor and remedi...Show more
    Last updated: 7 days ago • Promoted
    Information Technology_USA - USA_Senior Security Engineer

    Information Technology_USA - USA_Senior Security Engineer

    SysMind Tech • Irvine, CA, United States
    Full-time
    Please strictly adpersonre to tperson following resume naming convention : .ALL CAPS, NO SPACES B / T UNDERSCORES.PTN_US_GBAMSREQID_CandidateBeelineID. PTN_US_9999999_SKIPJOHNSON0413.Role Description : C...Show more
    Last updated: 16 days ago • Promoted
    Information Security Architect

    Information Security Architect

    Masimo • Irvine, CA, United States
    Full-time
    The Information Security Architect is responsible for designing, implementing, and maintaining the organization's information security strategy and architecture. This role ensures that security cont...Show more
    Last updated: 30+ days ago • Promoted
    Aws cloud security engineer

    Aws cloud security engineer

    Randstad • Irvine, CA, United States
    Full-time
    This role is responsible for leading the engineering, deployment, and operational compliance of a secure and highly available AWS cloud environment, specifically tailored for campus research use.Th...Show more
    Last updated: 8 days ago • Promoted