About Wells Fargo
Wells Fargo & Company (NYSE WFC) is a leading global financial services company with $2.0 trillion in assets and offices in over 37 countries. Founded in 1852 and headquartered in San Francisco, Wells Fargo provides asset management, capital raising and advisory, financing, foreign exchange, payments, risk management, and trade finance services to support customers who conduct business in the global economy. At Wells Fargo, we want to satisfy our customers' financial needs and help them succeed financially. We also value the viewpoints of our team members and encourage them to be their best. Join our diverse and inclusive team where you will feel valued and inspired to contribute your unique skills and experience. We are looking for talented people who will put our customers at the center of everything we do. Help us build a better Wells Fargo. It all begins with outstanding talent. It all begins with you. Learn more at ourInternational Careers website
About Wells Fargo India
enables global talent capabilities for Wells Fargo Bank NA., by supporting business lines and staff functions across Technology, Operations, Risk, Audit, Process Excellence, Automation and Product, Analytics and Modeling. We are operating in Hyderabad, Bengaluru and Chennai locations.Wells Fargo India
Department Overview
Wells Fargo views Cybersecurity as enabling lines of business to mitigate Cyber Security risk in accordance with our risk appetite. Through a framework that addresses policy, process, operations, people, and technology, Cybersecurity protects our infrastructure, company data, and customer assets while ensuring alignment with applicable regulations and laws.
About Role
This position is a Senior Information Security Engineer performing as an Individual contributor, as part of Developer Enablement team within Enterprise Application Security Enablement (EASE) team. This position will be responsible for reviewing code of variety of applications for managing secrets. This position will also be responsible for enabling the development teams adhere to various application security policies in the enterprise.
Responsibilities
- Reviewing code to identify and manage secrets them to avoid information disclosure.
- Enhance and implement the secret scanning procedures and scripts in the enterprise.
- Provide consultation to improve awareness and adherence to Enterprise Application Security Program (EASP) policy, processes and standards.
- Enable application teams in remediation of application security risks and reporting to support application teams adhere to Enterprise Application Security Program.
- Provide guidance and direction in reviewing assessment findings and mitigating controls to optimize application security.
- Collaborate and consult with peers, colleagues, and managers to resolve issues and achieve goals.
- Maintain seamless communication with Stateside and India stakeholders to ensure smooth delivery.
Essential Qualifications
- 8+ years of overall Information Technology experience with a Bachelor's degree or higher in Engineering or Information technology
- 4+ years of application/cyber security experience
- 3+ years of Information Security reporting and analysis experience
- Knowledge and experience in identifying and suggesting mitigations to OWASP top 10, CWE/SANS top 25 to development teams.
- 3+ years of experience in at least one of the following practices like Security Requirements, Application Threat Modeling, Static Analysis, Application Security Risk Assessments, Security Design requirements.
- Understanding of one or more programming languages and ability to analyze vulnerabilities and identify false positives as part of SAST is a must.
- Comfortable in scripting in Powershell or Python.
- Good understanding and ability in customizing Regex.
- Ability to work on Git hub.
- Ability to manage multiple priorities in a fast-paced dynamic environment.
- Advanced problem solving skills, ability to develop effective long-term solutions to problems.
- Excellent verbal and written communication skills
- Excellent inter-personal skills contributing to cordial team environment.
Desired Skills
- Knowledge and understanding of secure SDLC (System Development Life Cycle) methodologies.
- Experience in drafting application security coding standards.
- Ability to manage highly complex issues and negotiate solutions
- Knowledge and understanding of Application security threat management and mitigation domain.
- Application security experience with banking/financial services applications.
- Certified in Industry renowned certifications like CSSLP, CEH etc.,
Posting End Date
*Job posting may come down early due to volume of applicants.
We Value Diversity
At Wells Fargo, we believe in diversity, equity and inclusion in the workplace accordingly, we welcome applications for employment from all qualified candidates, regardless of race, color, gender, national origin, religion, age, sexual orientation, gender identity, gender expression, genetic information, individuals with disabilities, pregnancy, marital status, status as a protected veteran or any other status protected by applicable law.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
Candidates applying to job openings posted in USAll qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Candidates applying to job openings posted in Canada Applications for employment are encouraged from all qualified candidates, including women, persons with disabilities, aboriginal peoples and visible minorities. Accommodation for applicants with disabilities is available upon request in connection with the recruitment process.
Applicants with Disabilities
To request a medical accommodation during the application or interview process, visitDisability Inclusion at Wells Fargo
Drug and Alcohol Policy
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy