IT Security Engineer

  • Full-time

Company Description

DFC Global Corp. is a leading, international, diversified non-bank financial services company responsibly serving unbanked and under-banked consumers and small business owners for over thirty years.

Our customers purchase some or all of their financial services from us rather than from banks and other traditional financial institutions, due to convenience, accessibility and our high quality customer service. We attribute our long-term success to being attuned to our customers' needs, conducting our business responsibly, and contributing to the communities we serve.

We serve our customers from over 1,500 retail storefront locations, and digitally through our websites, mobile phone and other remote platforms. DFC Global Corp. provides consumer financial products and services across a broad geographic footprint in 10 countries across North America and Europe—Canada, the United Kingdom, the United States, Sweden, Finland, Poland, Spain, the Republic of Ireland, Czech Republic and Romania.

DFC Global Corp.'s global retail operations include the brands Money Mart®, The Money Shop®, Insta-Cheques®, Suttons and Robertsons®, The Check Cashing Store®, Sefina®, Helsingin PanttiSM, Optima®, MoneyNow!®, Super Efectivo® and ExpressCredit®. We also offer Internet-based unsecured short-term consumer loans in the United Kingdom primarily under the brand names PaydayUK® and Payday Express®, in Canada under the Money Mart name, in Finland, Sweden, Poland and Spain primarily under the Risicum® and OK Money® brand names, in the Czech Republic under the Money Now!® brand.

Job Description

The IT Security Operations Team provides enterprise-wide security architectural direction and guidance to ensure that security is embedded in all high priority projects and/or initiatives. The IT Security Engineer is responsible for providing network and systems security support to key DFC projects and to participate in the development, implementation and ongoing maintenance of the network enterprise security and associated technical and/or infrastructure standards to ensure that DFC information and systems are protected. 

ESSENTIAL RESPONSIBILITIES
  • Responsible for providing internal consultative services focused on information security. Ensure that all layers of the network and application infrastructure integrate in a secure fashion.
  • Conduct security risk assessments on all computing systems and components, both new and current, utilizing the appropriate security diagnostic tools. Identify security deficiencies and instigate appropriate corrective action, and report on findings.
  • Stay current with information security trends and provide threat intelligence in the areas of intrusion techniques, social engineering, technology and security solutions by researching security resources. Advise management on applicable trends and recommended solutions. Serve as subject matter expert (SME) for designated information security controls.
  • Monitor and respond to events discovered by Security Information and Event Management (SIEM)
  • Lead and execute Information Security projects. Develop, execute on and communicate project tasks, timelines, and status information.
  • Assess, analyze and document security requirements for all information systems, which may include applications, 3rd party providers, mainframes, servers, wireless, telecom, LAN/WAN, databases and personal computers.
  • Perform collaborative problem determination activities on overall security network and application infrastructure consisting of software, code, firewalls and other devices (such as IPS/IDS sensors, load balancers, routers and switches).
  • Provide expertise on integration of security technologies (such as IPS/IDS, HIDS, Firewalls, AV, SIEM) within a common security reporting system.
  • Assist in the development and continual enhancement of our Information Security program, used to maintain security of our Information Systems. Develop and maintain the documentation for Information Security Policies, Procedures, and Standards.
  • Assist in monitoring the compliance of the corporate Information Security policy. Monitor protection levels and security related events. Perform security auditing and work with management to address detected security issues.
  • Provide security related on-call emergency support, which is defined by the team’s operational procedures. Participate as a member of the Security Incident Response Team, acting as a security first responder.
  • Ensure proper protection and use of software, including virus protection. 

Qualifications

Education:

  • Degree in Computer Science or related discipline
  • 6+ years related experience

One or more of the following security certifications:

  • CISSP
  • GIAC (GSEC, GCIH, GCIA, GPEN)
  • ISACA (CRISC, CISA, CISM)
  • Cisco (CCNA, CCNP – Security)

Knowledge, Skills and Abilities:

  • Security Architecture
  • Vulnerability Assessments & Penetration Testing
  • Risk Management
  • Project Management
  • Research & Development
  • Threat Intelligence
  • Security Policies
  • Information Security Metrics
  • Alert & Event Management
  • Security Incident Response
  • Problem Solving
  • Security Awareness Program

 

Other:

  • Work independently and as a team player
  • Outstanding interpersonal skill
  • Excellent reading/writing and verbal skills
  • Proven experience providing customer service and satisfaction
  • Ability to analyze complex problems and quickly provide working solutions
  • Possess innovative and creative problem solving
  • Excellent communication, organization and interpersonal skills

EOE

Additional Information