Security Risk & Controls Engineer

Job not on LinkedIn

48 minutes ago

Apply Now
Logo of Coastal Community Bank

Coastal Community Bank

Banking • Finance • Fintech

Coastal Community Bank is a financial institution offering a comprehensive range of banking services for businesses and individuals. It provides business checking and savings accounts, loans, credit card processing, treasury management, and online banking solutions tailored for enterprises and non-profits. On the personal side, the bank offers various checking and savings accounts, home loans, and retirement savings options such as IRAs. Committed to community engagement, Coastal Community Bank partners with local non-profits to support initiatives like job training, affordable housing, and financial literacy programs. With services such as branch banking, online banking, and mobile access, the bank aims to meet the financial needs of customers throughout the North Puget Sound region and beyond.

201 - 500 employees

Founded 1997

🏦 Banking

💸 Finance

💳 Fintech

📋 Description

• The Cybersecurity Risk & Controls Engineer owns the day-to-day health of Coastal’s Security Program. • Define and maintain our enterprise control baseline aligned to the CRI Profile and FFIEC IT Examination Handbooks. • Work with control owners to implement automated and policy-aligned control processes. • Drive the Security Program Calendar to ensure time-bound and cyclical controls occur on schedule. • Perform and automate internal control testing. • Drive continuous control monitoring across cloud, identity, network, endpoint, data, and application domains. • Blend hands-on technical capability with classic GRC rigor. • Partner with Security Engineering, IT, Business Lines, Risk, Internal Audit, and Compliance.

🎯 Requirements

• Demonstrated ability to operationalize FFIEC IT Handbooks and the CRI Profile into practical, auditable controls and testing procedures. • Hands-on skill implementing proactive controls and automating control testing/evidence collection using APIs, various languages (Python, TypeScript, Bash, and/or PowerShell), and data pipelines/dashboards. • Familiarity with Azure/Microsoft 365/Entra, Okta, Windows/Linux, networks, CI/CD, vulnerability management, EDR, logging/SIEM, and data protection. • Experience with GRC platforms and workflow/ticketing systems. • Strong understanding of FFIEC IT Examination Handbooks, NIST CSF, NIST SP 800-53, GLBA, SOX, and PCI DSS and ability to map and rationalize overlapping requirements. • Excellent written/oral communication with proven ability to influence cross-functional teams and present to management and auditors. • Bias for automation and measurable outcomes; comfortable in fast-moving, high-accountability settings. • 8+ years in Cybersecurity Risk, Governance, Compliance, Security Operations, and/or risk engineering. • Experience in regulated industries, especially financial services, strongly preferred. • Bachelor’s degree in Information Systems, Computer Science, Cybersecurity, or related field; equivalent experience considered. • Certifications preferred: CRISC, CISA, CISSP, CISM, CCSK/CCSP, AZ-500 (or comparable).

🏖️ Benefits

• Medical Coverage: Choose from three competitive medical plans to find the coverage that best fits your needs and lifestyle. • Health Savings Account (HSA): Available with eligible medical plans, offering tax advantages and employer contributions. • Flexible Spending Accounts (FSA): Options for healthcare and dependent care expenses to help you save on out-of-pocket costs. • Dental and Vision Insurance: Plans to keep you and your family smiling and seeing clearly. • Life Insurance: Company-paid basic life insurance with options to purchase additional coverage for yourself and your dependents. • Long-Term (LTD)/Short-Term Disability (STD): Income protection in the event of a long-term illness or injury. • Supplemental Benefits: Including Hospital Indemnity, Accident Insurance, and Critical Illness coverage to provide extra financial support when you need it most. • 401(k) Retirement Plan: A competitive retirement savings plan with company matching to help you plan for the future. • Paid Time Off: Generous vacation and sick leave policies to support your time away from work. • Holidays: Enjoy 11 paid holidays throughout the year.

Apply Now

Similar Jobs

1 hour ago

Cybersecurity Specialist implementing security controls in cloud-hosted environments for Alaska Northstar Federal. Collaborating with government stakeholders to ensure compliance with federal cybersecurity mandates.

Ansible

Cloud

Cyber Security

Oracle

Python

Splunk

Terraform

8 hours ago

NBCUniversal

10,000+ employees

📱 Media

Senior Security Engineer in NBCUniversal's Cyber Security Assurance team supporting technology security strategies. Conducting threat analysis and ensuring best practices in security designs across multiple initiatives.

Cloud

Cyber Security

8 hours ago

Security Specialist ensuring third parties adhere to security policies at Experian. Conducting assessments and working with stakeholders on risk management in a hybrid work environment.

Cloud

10 hours ago

Bungie

1001 - 5000

🎮 Gaming

Product Security Senior Engineering Lead at Bungie overseeing security initiatives for games and player services. Collaborating with teams to embed security practices across the development lifecycle.

SDLC

Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com