loanDepot

Sr. InfoSec Systems Engineer (Azure Cloud)

loanDepot$121K — $166K *
Plano, TX 75025In-Person
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of professional experience in information security and systems engineering
  • Strong knowledge of Azure services and security technologies
  • Proficient in vulnerability assessments and intrusion management
  • Expertise in networking components and protocols (TCP/IP, UDP)
  • Hands-on experience with Linux, Windows, and Unix operating systems
  • Familiarity with information security standards (NIST, ISO, COBIT)
  • Bachelor's degree in Information Technology or related field, with advanced certifications preferred (CISSP, GIAC, etc.)

Responsibilities

  • Configure vulnerability detection resources for enterprise systems
  • Analyze intrusion detection results to identify malicious activities
  • Schedule security operations for systems and network components
  • Conduct audits for technical assessments and compliance
  • Mentor junior engineers in security practices and technologies
  • Provide crisis management support with specialized security knowledge
  • Design and implement new security technologies and frameworks

Benefits

  • Collaborative and inclusive team culture
  • Career growth opportunities with tuition reimbursement
  • Comprehensive health benefits (medical, dental, vision)
  • Focus on wellness for mental and physical health
  • Generous paid time off for work-life balance
Full Job Description
Description

Position at loanDepot

Position Summary:

loanDepot is actively looking for an experienced Senior Information Security Systems Engineer to join our Cyber Security Practice. The Sr. Information Security Systems Engineer is responsible for guiding the implementation and monitoring of enterprise wide threat and vulnerability management solutions for loanDepot Enterprise systems. The Sr. InfoSec Systems Engineer strives to enforce security best practices, policies, standards and guidance to ensure the safeguard of loanDepot's proprietary data, infrastructure and resources from internal and external threats. The IS Systems Engineer is required to maintain a comprehensive understanding of services provided by loanDepot and develop relationships throughout the organization to assist Information Security in accomplishing its goals for the company.

Responsibilities:
  • Configure resources to detect vulnerabilities to operating systems, applications, databases and the network infrastructure components. Detect, enumerate and classify major vulnerabilities, perform trend analysis and reporting for the Enterprise through the use of vulnerability assessment tools and methodologies.
  • Evaluate the results from intrusion detection devices used for monitoring and reporting of network traffic for analysis of unwanted manipulation to systems, malicious network traffic, network attacks against vulnerable services, data driven attacks on applications, host based attacks or unauthorized access to sensitive data.
  • Schedule and maintain security operations management of operating systems, security applications and network infrastructure components. Provide security configurations, controls for monitoring and centralized logging for network and server devices.
  • Coordinate resources for auditing of applications, operating systems and networks to provide a measurable technical assessment that includes, performing security vulnerability scans, reviewing access controls and analysis to ensure availability, confidentiality and integrity to help the organization meet internal and external regulatory compliance.
  • Have the ability to formulate and interpret penetration test information results for the enterprise. Manage vulnerability detection, analysis and exploitation remediation to ensure confidentiality, integrity and availability of mission critical information assets.
  • Mentor junior engineers in security knowledge and experience in technologies and methodologies as it relates to Security Information and Event Management (SIEM) devices, firewalls, proxies, access controls, encryption, networking, scripting, auditing, vulnerability assessments, intrusion management and operations. Additionally to assist with effective research, data gathering, analysis, metrics reporting and communications.
  • Provide guidance using specialized knowledge and toolsets to operational teams during enterprise wide crisis scenarios outside of the routine change management process or production scope.
  • Have experience with enforcement of information security policies and procedures. Familiarity with information security standards such as NIST, ISO, COBIT, and associated security controls.
  • Must be self-directed with the ability to work independently to meet deadlines and produce quality work in a time-sensitive, fast-paced environment.
  • Designs and implements new technologies, frameworks, and platform improvements. Serves as subject-matter expert for application security, engaging, collaborating, and advising on application security and application security analytics practices, standards, and methods.
  • Reads memory dumps and analyzes log files for patterns. Uses tools to analyze code and looks for problems, including Veracode and SonarQube.
  • Reads and delivers business and technical requirements while searching for opportunities to group capabilities into frameworks, suggest innovative solutions, and leverage existing technologies.
  • Provides oversight and assurance for assessment of enterprise applications, including web, cloud, and mobile applications to deliver secure and robust solutions.
  • Builds tests which validate key capabilities or fragile code and builds automated functional and integration tests.
  • Performs analysis of software code repositories, applications, code designs, processes, and implementation from a security perspective.
  • Works with development and infrastructure members to identify and resolve security issues in context of any potential compensating controls (WAF, IPS, IDS, ML, AI, NBA, EUBA, CASB).
  • Works with software developers to integrate application security from group up for build and assurance processes.
  • Formulates and interprets penetration test information results for the enterprise. Manages vulnerability detection, analysis, and exploitation remediation to ensure confidentiality, integrity, and availability of mission critical information assets.
  • Provides guidance using specialized knowledge and toolsets to operational teams during enterprise wide crisis scenarios outside of the routine change management process or production scope.
  • Performs other duties and projects as assigned.

Requirements:
  • Proven experience with Azure Cloud-based security engineering and hands-on implementation on security technologies
  • Strong knowledge of Azure services, including VMs, Azure SQL Database, Azure Functions, and Azure Networking (Required)
  • Demonstrates knowledge of, adherence to, monitoring and responsibility for compliance with state and federal regulations and laws as they pertain to this position.
  • Demonstrates comprehensive understanding of security methodologies.
  • Demonstrates comprehensive knowledge of networking components (routers, switches, load balancers, wireless access points); client/server relationships; relational databases and structured query language; encryption algorithms and ciphers (PKI/SSL); malicious code (works, viruses spyware, etc.); Virtual Private Networking; and multi-tier environments).
  • Comprehensive understanding of Security Methodologies.
  • Experience with reverse engineering of malware.
  • Advanced experience with TCPIP/UDP/ICMP.
  • Comprehensive knowledge of the OSI Reference Model.
  • Windows / Linux / Unix operating systems.
  • Advanced experience with networking components (routers, switches, load balancers, wireless access points, etc.).
  • Comprehensive knowledge of firewalls, proxies, mail servers and web servers.
  • Advanced experience with operational support for operating systems, applications and networks.
  • Comprehensive knowledge of client/server relationships.
  • Comprehensive knowledge of relational databases and structured query language.
  • Advanced experience with vulnerability assessments.
  • Advanced experience with intrusion management and its components.
  • Comprehensive understanding of encryption algorithms and ciphers (PKI/SSL).
  • Comprehensive knowledge of malicious code (worms, viruses, spyware, etc.).
  • Comprehensive experience with Virtual Private Networking.
  • Comprehensive knowledge of multi-tier environment.
  • Advanced experience with packet inspection / sniffers.
  • Advanced experience in forensics and e-discovery.
  • Advanced experience in automation and scripting of applications and systems.
  • Advanced experience in anomaly detection (signature / behavioral).
  • Advanced experience with event and log correlation.
  • Effective team management, time management, and organizational skills.
  • Effective written and verbal communication skills.
  • Effective analytical and problem solving skills.
  • Proficient in Microsoft Office Suite products.
  • Bachelor's Degree in Information Technology, Mathematics, Business, Engineering or related fields with 5-7 years of professional experience.

Preferred Certifications:
  • CISSP
  • GIAC
  • CRISC
  • CEH

Why work for #teamloanDepot:
  • Work with other passionate, purposeful, and customer-centric team members
  • Aggressive earning potential with good career growth
  • Inclusive, diverse, and collaborative culture where people from all backgrounds can thrive
  • Extensive internal growth and professional development opportunities including tuition reimbursement
  • Comprehensive benefits package including Medical/Dental/Vision
  • Wellness program to support both mental and physical health
  • Generous paid time off options to support work-life balance

Base pay is one part of our total compensation package and is determined within a range. This provides the opportunity to progress as you grow and develop within a role. The base pay for this roles is between $121,000 and $166,000. Your base pay will depend on multiple individualized factors, including your job-related knowledge/skills, qualifications, experience, and market location.

About loanDepot

LoanDepot, sometimes stylized as loanDepot, is a Lake Forest, California-based holding company which sells mortgage and non-mortgage lending products. In 2015, the company claimed to be the second largest non-bank provider of direct-to-consumer loans in the United States. LoanDepot was founded in 2010 by entrepreneur Anthony Hsieh, who had previously founded mortgage companies LoansDirect.com which he sold to E*Trade, and HomeLoanCenter.com, which he sold to LendingTree. The company's products at the time included fixed rate, jumbo, FHA and home equity loans, in addition to more controversial adjustable-rate mortgages and negative amortization products. In November 2015, the company postponed a planned IPO, citing poor market conditions. In March 2017, the company introduced technology to automate the loan process, allowing customers to apply for a mortgage without talking to a loan officer. In January 2018, the company announced two products as part of its technology platform, now called Mello, a home improvement unit to allow contractors to offer financing to customers, and Mello Home, a platform to connect pre-approved buyers to realtors. In September 2019, the company partnered with Century 21 Redwood Realty to form a new mortgage platform for the mid-Atlantic area, Day 1 Mortgage. loanDepot went public on the New York Stock Exchange on February 11, 2021 under the ticker symbol LDI.
Learn more about loanDepot
Market Cap
$453.5 million
Industry
Founded
2010
5 Year Trend
+26.8%
NASDAQ

Similar Jobs

More Jobs at loanDepot

More Information Technology Jobs

Find similar Sr. InfoSec Systems Engineer (Azure Cloud) jobs: