Information Security Engineer
Listed on 2026-03-04
-
IT/Tech
Cybersecurity, Systems Engineer, Network Security, Information Security
Company: New Hampshire Mutual Bancorp
Title: Information Security Engineer
Location: New Hampshire
Position Details: Full Time
FLSA: Exempt;
Non Management Staff Administrative Support
Salary: Negotiable based on level of experience between $76,000.00 - $
Primary ResponsibilitiesUnder the direction of the SVP of Information Technology and in accordance with established policies and procedures, the Operational Security Engineer is responsible for protecting the confidentiality, integrity, and availability of the Bank’s information systems through day‑to‑day operational security practices. This role focuses on security operations, threat detection and response, access control, infrastructure security, and audit readiness across network, server, cloud, and endpoint environments.
The incumbent works closely with infrastructure, networking, and information security teams to ensure security controls are implemented, monitored, tested, and continuously improved in alignment with regulatory expectations and industry best practices for financial institutions.
- Model behaviors consistent with the Bank’s A+ Merits to foster a culture of accountability, integrity, and security awareness.
- Operate and maintain security controls across network, server, endpoint, and cloud environments, ensuring systems remain in a secure and auditable state.
- Monitor, analyze, investigate, and respond to security alerts, threats, and incidents, including malware, unauthorized access, and anomalous activity.
- Perform end‑user, system, and network forensic investigations as required and document findings clearly for management and auditors.
- Administer and review user access controls, privileged access, and security configurations to ensure least‑privilege and regulatory compliance.
- Conduct routine security monitoring activities, including log reviews, vulnerability scans, penetration testing coordination, and configuration reviews.
- Work with internal teams and vendors to manage patches, updates, remediation efforts, and security‑related changes within defined timelines.
- Maintain awareness of emerging threats, vulnerabilities, and attack trends impacting the financial services industry and proactively recommend mitigations.
- Provide timely communication, escalation, and reporting of security events, risks, and remediation status to IT leadership.
- Consistent protection of Bank systems, data, and customers with minimal security incidents or service disruptions.
- Rapid detection, containment, and resolution of security events with clear documentation and communication.
- Clean and satisfactory results from internal and external audits, examinations, and vendor reviews.
- High availability and stability of secure network and infrastructure services during business operations.
- Adhere to all Bank policies, regulatory requirements, and security standards applicable to the role.
- Monitor security tools and platforms, focusing on security patching and configuration of endpoint systems.
- Review logs and alerts from network, server, application, and endpoint systems to identify potential threats or policy violations.
- Investigate and respond to security incidents, coordinating containment, remediation, and recovery activities with IT and business partners.
- Support disaster recovery and business continuity efforts by ensuring secure replication, backups, and recovery controls are functioning as designed.
- Maintain and support secure network infrastructure, including LAN, WAN, VPN, wireless, and telecommunications systems.
- Assist in the design, implementation, and enforcement of security policies, standards, and procedures related to operational security.
- Perform routine and ad‑hoc access reviews, system hardening, and configuration validation across platforms.
- Prepare security reports, metrics, and summaries for leadership, auditors, and regulators as required.
- Provide advanced technical support during security‑related incidents, outages, or crisis situations.
- Collaborate with IT teams to securely implement upgrades, replacements, and new technologies.
- Satisfactorily complete required compliance training and maintain…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).