Senior Information Security Engineer
Actively Reviewing the ApplicationsWells Fargo
India, Telangana
Full-Time
On-site
Posted 1 day ago
•
Apply by June 11, 2026
Job Description
About This Role
Wells Fargo is seeking a Senior Information Security Engineer.
In This Role, You Will
R-518146
Wells Fargo is seeking a Senior Information Security Engineer.
In This Role, You Will
- Lead or participate in computer security incident response activities for moderately complex events
- Conduct technical investigation of security related incidents and post incident digital forensics to identify causes and recommend future mitigation strategies
- Provide security consulting on medium projects for internal clients to ensure conformity with corporate information, security policy, and standards
- Design, document, test, maintain, and provide issue resolution recommendations for moderately complex security solutions related to networking, cryptography, cloud, authentication and directory services, email, internet, applications, and endpoint security
- Review and correlate security logs
- Utilize subject matter knowledge in industry leading security solutions and best practices to implement one or more components of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management, and business continuity
- Identify security vulnerabilities and issues, perform risk assessments, and evaluate remediation alternatives
- Collaborate and consult with peers, colleagues and managers to resolve issues and achieve goals
- 4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- Bachelor’s degree in computer science, Information Security, or a related field - or equivalent work experience
- 4+ years of Penetration testing, offensive security or Red teaming experience
- Good understanding of OWASP top 10, SANS top 25 and application security testing, threats, vulnerabilities and attacks
- 4+ years of experience in at least one of the following practices like Security requirements, Threat Modeling, static Analysis/Code Review, Application Security Risk Assessments, Security Design Requirements
- 4+ years of experience in initiating scan using scanners like HCL AppScan or Invicti or WebInspect and troubleshooting any scanner related issues
- Understanding of one or more programming languages and ability to analyze vulnerabilities and perform false positive analysis as part of DAST is a must
- Comfortable in scripting in Python or PowerShell
- Ability to performing cloud security assessments
- Ability to work on Git hub
- Ability to manage multiple priorities in a fast-paced dynamic environment
- Advanced problem solving skills, ability to develop effective long- term solutions to problems
- Excellent verbal and written communications skills
- Excellent inter-personal skills contributing to cordial team environment
- Certified in Industry recognized certifications such as CEH, SANS GIAC - GWAPT or GPEN or GMOB, Cloud Certification: AZ-900
- Industry recognized certifications like Offensive Security Certified Professional (OSCP) or Certified Penetration Tester (CPT) or CISSP
- Good understanding of networking concepts like ICMP, DNS, TCP/IP, DHCP
- Knowledge and understanding of secure SDLC (System Development Life Cycle) methodologies.
- Application security experience with banking/financial services applications.
- Ability to manage highly complex issues and negotiate solutions.
- High quality engagements delivered within expected timelines
- Demonstrate advancements in Penetration testing capabilities of self and team
- Perform application security assessments / penetration testing engagements on web, mobile, thick client applications and API/web services covering multiple techniques and procedures
- Scan the applications using automated scanners like HCL AppScan, Invicti or Web Inspect and perform false positive analysis.
- Identify and exploit vulnerabilities on web, mobile, thick client applications and API/web services using manual testing tools like Burp Suite.
- On a regular basis, provide subject matter expertise to the team on technical issues (Automated test & Manual test), reporting and conduct peer review.
- Writing security test cases to check for vulnerabilities or broken/missing security controls
- Develop tools and exploits to support application security automation and penetration testing
- Stay current with the latest cybersecurity threats, attack vectors and penetration testing techniques
- Lead DAST projects and initiatives and participate in computer security incident response activities for moderately complex events. Asist with stakeholder's requests for net-new and enhancements to existing solutions
- Contribute to Newsletter/blogs, articles and presentation for internal or other audiences
- Collaborate and consult with peers, colleagues and managers to resolve issues and achieve goals
- Maintain seamless communication with stateside and India stakeholders to ensure smooth delivery of goals.
R-518146
Quick Tip
Customize your resume and cover letter to highlight relevant skills for this position to increase your chances of getting hired.
Related Similar Jobs
View All
Consultant
Virtusa
India
Full-Time
₹18–20 LPA
Python
Cloud Platforms
CI/CD Pipelines
+7
Cloud Product Manager
airtel
India
Full-Time
Sales
Engineering
Cloud
Business Analyst
ACL Digital
India
Full-Time
Python
English
Process Analyst Risk and Compliance - Fraud Analyst
IBM
India
Full-Time
₹8–18 LPA
Cloud
Junior Data Engineer - Must have - DataStage ETL
CBTS
India
Contract
Data Modeling
Data Mining
PowerShell
+4
Share
Quick Apply
Upload your resume to apply for this position