22 days ago
Rockville, MD, USA or Washington, DC, USASenior

Base Salary

$98k - $211k/yr

Responsibilities

  • Own the observability and security telemetry pipeline platform, with primary responsibility for Cribl Stream routes, pipelines, packs, sources, destinations, parsing, enrichment, extraction, reduction, and transformation.
  • Design and operate cloud-native data collection across AWS, Azure, and GCP using services such as SQS, SNS, S3 event notifications, Azure Event Hubs, and GCP Pub/Sub.
  • Engineer reliability and scale through persistent-queue and backpressure tuning, throughput troubleshooting, capacity planning, autoscaling, and load distribution.
  • Manage upgrades, configuration, monitoring, and lifecycle operations for distributed pipeline worker fleets.
  • Help lead adoption of Splunk Edge Processor, including SPL2 pipelines and architectural decisions about tool placement.
  • Administer a Zero Trust Network Access/software-defined perimeter platform, handling access requests, entitlements, policies, and user access issues.
  • Build Python automation against platform APIs to provision and expire just-in-time access from approved workflows.
  • Apply networking fundamentals including subnetting, IP address planning, routing, DNS, ports, protocols, and TLS.
  • Develop scripts and tooling, document architectures and decisions, and partner with SIEM, detection, and infrastructure teams.
  • The posting also lists regulatory-program, speaking, project-management, process-improvement, surveillance, and industry-rule responsibilities.

Requirements

  • Bachelor's degree and a minimum of ten years of experience in the securities or financial services industry, or an equivalent combination of education and experience in positions of increasing responsibility.
  • At least five years of supervisory experience.
  • Strong networking fundamentals and demonstrated ability to design security and data-pipeline solutions.
  • Experience with Cribl Stream, including packs and distributed worker groups, is preferred; Cribl CCOE or Admin certification is a plus.
  • Splunk Edge Processor or SPL2 experience is preferred.
  • Appgate SDP experience, especially API-driven policy or entitlement automation and ITSM-integrated just-in-time access workflows, is preferred.
  • Experience with infrastructure-as-code, deployment tooling, Terraform, Ansible, containers, Kubernetes, and CI/CD pipelines is preferred.
  • Experience with SIEM cost optimization, data reduction strategies, and security tooling in regulated enterprise environments is preferred.
  • Demonstrated project management, process improvement, surveillance development lifecycle, regulatory-program leadership, data analytics, and measurable-results skills.
  • Excellent written, verbal, interpersonal, presentation, organizational, and detail-orientation skills are required.
  • Working knowledge of FINRA, MSRB, other SRO rules, and the Securities Exchange Act of 1934 is listed in the posting.

Benefits

  • Hybrid work environment with defined in-person presence requirements; hours may extend beyond normal business hours and travel may be required.
  • Employees may be eligible for a discretionary bonus, and non-exempt employees may be eligible for overtime.
  • Health, dental, vision, life, disability, long-term care, legal, business travel accident, and related insurance coverage.
  • Immediate 401(k) participation and vesting with company match, plus eligibility for an additional FINRA-funded retirement contribution.
  • Tuition reimbursement, commuter benefits, adoption assistance, backup family care, surrogacy benefits, employee assistance, and wellness programs.
  • Fifteen days of paid time off, five personal days, nine sick days, two volunteer service days, and nine paid holidays for full-time employees, with additional applicable paid leave programs.
Financial Industry Regulatory Authority, Inc. (FINRA)

About Financial Industry Regulatory Authority, Inc. (FINRA)

5,001-10,000 employees
Contact me