Information Security Engineer

Beacon-Bank

Pittsfield (MA)

On-site

USD 56,000 - 102,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Beacon Bank is seeking an Information Security Engineer to design, implement, and maintain security technologies across endpoints, email, data loss prevention, and cloud security. You will partner with IT, Risk, Compliance, and business units to safeguard systems, data, customers, and employees.

Under supervision of the Principal Information Security Engineer, you will strengthen identity and access controls, monitor security posture, and contribute to runbooks, incident response, and regulatory

Qualifications

  • Requires strong information security knowledge and governance.
  • Experience with regulated financial environments preferred.
  • Ability to translate security issues to business risk.

Responsibilities

  • Administer and enhance enterprise security technologies and platforms.
  • Improve access controls, PAM, authentication, and conditional access.
  • Support audits, risk assessments, and regulatory compliance with evidence.
  • Identify opportunities to automate security operations and improve detection.

Skills

Information security
Identity and access management
Incident response
Security monitoring
Security architecture

Education

Bachelor’s degree in Information Security / Computer Science / IT
Security certifications such as CISSP, CISM, CCSP, GIAC, Security+

Tools

Microsoft Entra ID
Active Directory
SIEM
Email security tools
Endpoint security tools
Cloud security tools

Job description

Officer: Officer

Division: Technology

Department: Information Security

Reports to: Principal Information Security Engineer

Status: Exempt/ Officer

Grade: 10

Salary Range: $55,588 - $102,474

Actual compensation within the pay range will be determined based on factors including, but not limited to, skills, prior relevant experience, and specific work location.

Location: MA, CT, NY, VT, RI

Under the direction of the Principal Information Security Engineer, supports the Company's Information Security Program by engineering, maintaining, and improving security technologies, identity and access controls, monitoring capabilities, and defensive security processes. The Information Security Engineer partners with Information Technology, Identity and Access Management, Risk, Compliance, application owners, business units, and third-party service providers to protect Company systems, data, customers, and employees.

Key Accountabilities
  • Administer,maintain, and enhance enterprise information security technologies, including endpoint security, email security, data loss prevention, application security, network security, identity protection, cloud security, logging, monitoring, and security related platforms.Lead the design, implementation, and continuous improvement of enterprise security architecture and engineering programs.
  • Maintain security standards across cloud, network, endpoints, identity, application, and data security domains.
  • Partner with Identity and Access Management to improve access control, privileged access management, authentication, conditional access, role-based access, and user lifecycle security controls.
  • Assists with evaluating security risks associated with AI platforms, agents, models, APIs, third-party AI vendors, and cloud AI services. Assists with developing controls for data protection, AI monitoring, identity management, and secure AI deployment.
  • Develop andmaintainsecurity standards, procedures, runbooks, technical documentation, diagrams, control evidence, and operational playbooks for assigned security platforms and processes.
  • Assistwith security assessments for new systems, technology changes, vendor solutions, mergers, integrations, branch initiatives, and enterprise projects to ensureappropriate securityrequirements areidentifiedand implemented.
  • Support audit, regulatory, risk assessment, and compliance activities by providing evidence, explaining technical controls, remediating findings, andmaintainingdocumentation thatdemonstratescontrol effectiveness.
  • Identifyopportunities to automate security operations, improve alert quality, reduce manual processes, strengthen detection capabilities, and mature the Company's overall security posture.
  • Collaborate with IT Operations, Infrastructure, Service Desk, Application Support, Risk Management, Internal Audit, Compliance, and business stakeholders to resolve security issues and support secure business operations.
  • Participate in security incident response, change management, disaster recovery, business continuity, and other operational activities asrequired.
  • Ensure compliance with all banking laws, rules, regulations, and prescribed policies/practices/procedures necessary to reduce risk and uphold ethical standards related to and required by one's duties.
Education
  • Bachelor’s degree in Information Security, Computer Science, Information Technology, Cybersecurity, or related field preferred.
  • Equivalentcombination of education, technical certifications, and relevant experience may be considered.
  • Security certifications such as CISSP, CISM, CCSP, GIAC, Security+, Microsoft Security certifications, or related credentials preferred.
Experience
  • 5+ years of experience in information security, cybersecurity engineering, security operations, infrastructure security, identity security, or related technology roles.
  • Experience supporting security technologies in a regulated financial institution, banking environment, or similarly regulated industry preferred.
  • Experience with Microsoft Entra ID, Active Directory, privileged access management, email security tools, endpoint security tools, cloud security, network security, data security, security automation, SIEM/logging.
Skills & Knowledge
  • Strong understanding of information security principles, defense-in-depth, identity and access management, incident response, secure configuration, and security monitoring.
  • Working knowledge of banking security expectations, risk management practices, audit evidence requirements, and regulatory frameworks such as FFIEC, GLBA, NIST Cybersecurity Framework, and related industry guidance.
  • Strong technical troubleshooting skills with the ability to analyze security events, system behavior, logs, vulnerabilities, and control exceptions.
  • Ability to translate technical security issues into clear business risk language for IT, business, risk, audit, and executive stakeholders.
  • Strong written and verbal communication skills, including the ability to develop standards, procedures, summaries, diagrams, and control evidence.
  • Strong organizational skills with the ability to manage multiple priorities, document work clearly, meet deadlines, and drive issues to resolution.
  • High degree of professionalism, discretion, integrity, and sound judgment when handling sensitive information and security incidents.
  • Proficient in Microsoft Office Suite and collaboration platforms.

Beacon Bank is an Equal Opportunity Employer - all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin. If you would like to contact us regarding the accessibility of our website, need assistance completing the application process, or would like to request alternative methods of applying, please contact us athr@berkshirebank.com .

We endeavor to make this site accessible to any and all users.

Beacon Bank is an Equal Opportunity Employer - all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin. If you would like to contact us regarding the accessibility of our website, need assistance completing the application process, or would like to request alternative methods of applying, please contact us at hr@berkshirebank.com .

EEO is the Law

ADP Privacy Statement

Artificial Intelligence

Google Privacy Policy

Google Terms of Service

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Engineer
Information Security Engineer

Beacon Bank • Pittsfield (MA)

On-site
USD 56,000 - 102,000
Principal Information Security Engineer
Principal Information Security Engineer

Beacon-Bank • Pittsfield (MA)

On-site
USD 96,000 - 177,000
Information Security Engineer - Pittsfield, MA
Information Security Engineer - Pittsfield, MA

Berkshire Bank • Pittsfield (MA)

On-site
USD 56,000 - 102,000
Principal Information Security Engineer - Pittsfield, MA
Principal Information Security Engineer - Pittsfield, MA

Berkshire Bank • Pittsfield (MA)

On-site
USD 96,000 - 177,000
Information Security Analyst
Information Security Analyst

Bank of the Orient • Millbrae (CA)

On-site
USD 110,000 - 140,000
Information Security Engineer
Information Security Engineer

Farmers & Merchants Bank of Long Beach • Seal Beach (CA)

On-site
USD 114,000 - 194,000
Cyber Threat Intelligence Analyst I
Cyber Threat Intelligence Analyst I

BankUnited • Miami (FL), Northern (KY)

Hybrid
USD 90,000 - 130,000
Senior Information Security Engineer — Banking Security
Senior Information Security Engineer — Banking Security

Beacon Bank • Pittsfield (MA)

On-site
USD 56,000 - 102,000
Cyber Security Engineer
Cyber Security Engineer

Middlesex Savings Bank • Westborough (MA)

On-site
USD 76,000 - 136,000
Information Technology Security Analyst
Information Technology Security Analyst

Socket.dev • Honesdale

On-site
USD 90,000 - 130,000