CybersecurityJobs.io
← Back to all jobs

Job Description

Banco de Credito e Inversiones is seeking a hands-on Cyber Security Engineer to join its Information Security team in Miami, FL (onsite). In this role, you will help safeguard digital assets, sensitive customer data, and internal systems while strengthening enterprise defenses across endpoint, network, email, and cloud environments.

The position focuses on leading patch management, maintaining core security platforms, and driving continuous vulnerability and threat monitoring. Work will be aligned to the NIST Cybersecurity Framework and relevant banking regulations, with responsibilities that include incident response and control validation through red and blue team exercises.

Key Responsibilities

  • Lead enterprise patching by planning, testing, scheduling, and executing patch deployments across endpoints, mobile devices, servers, and network infrastructure, with an emphasis on rapid, proactive remediation to reduce attack surface.
  • Perform continuous vulnerability scans and assessments, prioritize risks, and coordinate with IT teams to drive remediation before vulnerabilities are exploited.
  • Establish, document, and enforce baseline security hardening standards across enterprise assets and systems.
  • Monitor security event logs for suspicious activity, anomalies, and potential breaches. Continuously update detection logic to stay ahead of emerging AI threats such as automated phishing, adversarial machine learning, and deepfake social engineering.
  • Support red and blue team (purple teaming) exercises to validate security control effectiveness, identify gaps, and tune alerting systems based on simulated real-world attacks.
  • Lead incident investigation and containment during high-impact security events.
  • Oversee the implementation, configuration, and daily operations of Endpoint Detection and Response (EDR), Anti-Virus, DLP, and device access controls.
  • Provide hands-on management for critical security platforms, including Security Email Gateways, IPS/IDS, and database security controls.
  • Support secure configuration and continuous security monitoring for cloud environments including AWS, Azure, SaaS, and Office 365 in alignment with industry frameworks.
  • Ensure technical controls, architectures, and operational procedures map to NIST CSF and NIST SP 800-53, demonstrating a high-level understanding of banking regulations such as FFIEC, GLBA, and FINRA.
  • Enforce security policies, maintain network/architecture diagrams, and support standard operating procedures (SOPs). Assist internal and external auditors during security reviews.

Required Qualifications

  • English and Spanish ability: understand, speak, read, and write.
  • Ability to speak effectively before groups of customers or employees.
  • Capacity to assume evolving duties and responsibilities as the position changes.
  • Willingness to work all hours required, including weekends, evenings, and holidays as needed.
  • Travel as required, and provide coverage for other positions when requested.
  • Ability to carry and lift boxes and objects weighing 10 to 25 pounds.
  • Perform additional duties and responsibilities assigned by management.
  • Ability to operate IBM compatible personal computers, and fluency with Microsoft Word, Microsoft Excel, and Microsoft PowerPoint.

Technologies and Frameworks

  • NIST Cybersecurity Framework (CSF), NIST SP 800-53, FFIEC, GLBA, FINRA
  • EDR, Anti-Virus, DLP
  • Security Email Gateways, IPS/IDS, database security controls
  • AWS, Azure, Office 365
  • Microsoft Word, Microsoft Excel, Microsoft PowerPoint
  • Python, Bash, PowerShell
  • LLMs and artificial intelligence, including automated phishing, adversarial machine learning, and deepfake social engineering

Certifications (Core Security)

  • CISSP, CISA, OSCP, CHFI, or CISM

Certifications (Operations & Cloud)

  • CCSP, AWS Certified Security, Azure Security Engineer, or Google Secops

Experience and Background

  • Strong mindset for proactive remediation and vulnerability lifecycle management, with in-depth understanding of enterprise patch deployment processes.
  • Working knowledge and practical experience implementing the NIST Cybersecurity Framework.
  • Familiarity with red and blue teaming methodologies and translating offensive findings into defensive engineering improvements.
  • Up-to-date awareness of emerging AI threats and how LLMs and artificial intelligence are changing the threat landscape.
  • Proven experience configuring and supporting EDR tools, Firewalls, Secure Email Gateways, and vulnerability scanners.
  • Proficiency with Python, Bash, or PowerShell for automation and task execution.
  • Excellent verbal and written communication skills, with the ability to explain regulatory and technical concepts to non-technical business partners.

Minimum Experience and Education

  • Minimum experience: 3 years
  • Education: Degree in Information Security, Computer Science, Software Engineering, Management Information Systems, or practical bac

Similar Jobs