This is a hands-on engineering role for someone who wants to build and harden the security platforms that protect an organization, not just review them. You will architect, implement, and manage the core technologies that keep an established financial institution and its members safe, working closely with the security team to strengthen its posture.
ABOUT THE COMPANY
Our client is a well-established, member-focused financial institution with deep roots in the North Carolina communities it serves. The organization is investing in its cybersecurity program and modernizing its technology, and this role sits on a tight-knit security team where hands-on engineering drives the work. Your ideas on standardization, automation, and modern tooling will help shape where the program goes next.
WHY YOU'LL LOVE THIS ROLE
- Architect and harden core security platforms, where your work directly protects members and teammates.
- Do deep, hands-on engineering work with real technical ownership, not audit checklists.
- Bring your perspective on tooling and automation to a security stack that is actively evolving.
- Join a collaborative team and a culture grounded in trust, integrity, and a shared commitment to the people you serve.
- Help build out a growing cybersecurity program, with the chance to influence how the team and its tools mature over time.
- Work for an organization with deep community roots and a genuine investment in the growth of its people.
WHAT YOU'LL DO
- Design and implement security technology solutions, from requirements gathering and architecture through configuration standards, testing, and production rollout.
- Administer and maintain platforms such as PAM, EDR, firewall, IDS/IPS, and CASB, including upgrades, patching, high availability, and documentation.
- Partner with Network Engineering on secure network controls, including segmentation, VPN and remote access, and secure routing, and troubleshoot complex connectivity and policy issues.
- Integrate security tooling with SIEM, SOAR, and MDR workflows through high-quality telemetry, effective alerting, and detection tuning.
- Develop automation and repeatable deployment patterns to improve consistency, speed, and auditability.
- Lead advanced troubleshooting and root cause analysis across the security and network stacks during high-impact incidents.
- Contribute to risk and compliance objectives, support vendor and product evaluations, and mentor other security team members.
WHAT YOU BRING
- 7+ years in information security and network engineering, including hands-on ownership of security technologies in an enterprise environment.
- Bachelor's degree in a related field, or equivalent hands-on experience.
- Expertise in implementing and operating enterprise security platforms such as PAM, EDR, firewall, IDS/IPS, CASB, and vulnerability tooling, including hardening, policy design, and troubleshooting.
- Demonstrated experience designing and implementing at least two of the following at enterprise scale: PAM, EDR, firewall and segmentation, IDS/IPS, CASB or SASE, or secure remote access and VPN.
- Strong networking fundamentals across TCP/IP, routing and switching, DNS, DHCP, VPN, and segmentation. Familiarity with BGP, OSPF, and load balancing is a plus.
- Experience integrating security tools with monitoring and response workflows, including log onboarding and detection tuning.
- Strong documentation and communication skills, with the ability to lead technical discussions across IT and the business.
- Familiarity with regulatory expectations for financial services, such as GLBA, NCUA and FFIEC guidance, and PCI DSS as applicable.
- Must be able to pass a background check and a post-offer, pre-employment drug screen.
BONUS POINTS IF YOU HAVE
- Professional certifications such as CISSP, CCSP, or GIAC certifications, including GCIA, GSEC, or GCIH.
- Vendor certifications from providers such as Palo Alto, Fortinet, Microsoft, CrowdStrike, CyberArk or BeyondTrust, or Zscaler.
- Networking certifications such as CCNA or CCNP, or equivalent practical networking experience.
- Offensive security certifications such as OSCP or other OffSec and Kali-based credentials.
- A background in banking, credit unions, fintech, or other financial services environments, along with familiarity with the FFIEC examination framework.
ABOUT CATCH TALENT
Catch Talent is a high-touch recruiting agency that delivers end-to-end talent acquisition solutions to growing technology, digital media, and professional services companies. Headquartered in Charleston, SC, Catch brings decades of technical recruiting expertise to local and national clients and offers a full range of flexible solutions, including direct placement hiring, recruitment process outsourcing, contract and contract-to-hire models. Learn more at catchtalent.com.
Catch Talent provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.