Requirements
7+ years of experience in cybersecurity/information security. Banking or financial-services experience is preferred. Strong knowledge of FRA, ISO 27001, NIST, PCI DSS, and CBE requirements. Experience in vulnerability management, penetration testing, security assessments, SIEM, firewalls, EDR, IAM/PAM, and security hardening. Strong documentation, audit, follow-up, and stakeholder-management skills.
Description
Senior Cybersecurity EngineerRole Purpose:Responsible for supporting the Information Security and Cybersecurity program, with a strong focus on FRA compliance, security controls, risk management, and audit readiness.Key Responsibilities: Follow up and maintain compliance with FRA cybersecurity requirements, including Resolution 139/2023 and applicable updates. Maintain the FRA compliance tracker, gap assessments, remediation plans, and evidence repository. Coordinate FRA audits, inspections, regulatory requests, and findings closure. Conduct cybersecurity and information-security control assessments. Support compliance with ISO 27001, NIST, PCI DSS, CBE, and other applicable requirements. Coordinate vulnerability assessments and penetration testing and follow up on remediation. Review network, infrastructure, endpoint, IAM, database, and security controls. Support security incident management and regulatory reporting where applicable. Maintain security policies, procedures, standards, and technical evidence. Prepare cybersecurity, FRA compliance, risk, and management reports. Work closely with Infrastructure, Network Security, SOC, Risk, Compliance, and Internal Audit teams.