
Senior Security Engineer
Financial Industry Regulatory Authority, Inc. (FINRA)22 days ago
Rockville, MD, USA or Washington, DC, USASenior
Base Salary
$98k - $211k/yr
Responsibilities
- Own the observability and security telemetry pipeline platform, with primary responsibility for Cribl Stream routes, pipelines, packs, sources, destinations, parsing, enrichment, extraction, reduction, and transformation.
- Design and operate cloud-native data collection across AWS, Azure, and GCP using services such as SQS, SNS, S3 event notifications, Azure Event Hubs, and GCP Pub/Sub.
- Engineer reliability and scale through persistent-queue and backpressure tuning, throughput troubleshooting, capacity planning, autoscaling, and load distribution.
- Manage upgrades, configuration, monitoring, and lifecycle operations for distributed pipeline worker fleets.
- Help lead adoption of Splunk Edge Processor, including SPL2 pipelines and architectural decisions about tool placement.
- Administer a Zero Trust Network Access/software-defined perimeter platform, handling access requests, entitlements, policies, and user access issues.
- Build Python automation against platform APIs to provision and expire just-in-time access from approved workflows.
- Apply networking fundamentals including subnetting, IP address planning, routing, DNS, ports, protocols, and TLS.
- Develop scripts and tooling, document architectures and decisions, and partner with SIEM, detection, and infrastructure teams.
- The posting also lists regulatory-program, speaking, project-management, process-improvement, surveillance, and industry-rule responsibilities.
Requirements
- Bachelor's degree and a minimum of ten years of experience in the securities or financial services industry, or an equivalent combination of education and experience in positions of increasing responsibility.
- At least five years of supervisory experience.
- Strong networking fundamentals and demonstrated ability to design security and data-pipeline solutions.
- Experience with Cribl Stream, including packs and distributed worker groups, is preferred; Cribl CCOE or Admin certification is a plus.
- Splunk Edge Processor or SPL2 experience is preferred.
- Appgate SDP experience, especially API-driven policy or entitlement automation and ITSM-integrated just-in-time access workflows, is preferred.
- Experience with infrastructure-as-code, deployment tooling, Terraform, Ansible, containers, Kubernetes, and CI/CD pipelines is preferred.
- Experience with SIEM cost optimization, data reduction strategies, and security tooling in regulated enterprise environments is preferred.
- Demonstrated project management, process improvement, surveillance development lifecycle, regulatory-program leadership, data analytics, and measurable-results skills.
- Excellent written, verbal, interpersonal, presentation, organizational, and detail-orientation skills are required.
- Working knowledge of FINRA, MSRB, other SRO rules, and the Securities Exchange Act of 1934 is listed in the posting.
Benefits
- Hybrid work environment with defined in-person presence requirements; hours may extend beyond normal business hours and travel may be required.
- Employees may be eligible for a discretionary bonus, and non-exempt employees may be eligible for overtime.
- Health, dental, vision, life, disability, long-term care, legal, business travel accident, and related insurance coverage.
- Immediate 401(k) participation and vesting with company match, plus eligibility for an additional FINRA-funded retirement contribution.
- Tuition reimbursement, commuter benefits, adoption assistance, backup family care, surrogacy benefits, employee assistance, and wellness programs.
- Fifteen days of paid time off, five personal days, nine sick days, two volunteer service days, and nine paid holidays for full-time employees, with additional applicable paid leave programs.