Senior Security Engineer (VP)


New York
Permanent
$175,000 - $200,000 USD a year
Cybersecurity
PR/604247_1785791694
Senior Security Engineer (VP)

Glocomms is partnered with a leading financial services organization seeking a Senior Cybersecurity Engineer to join its enterprise security team in New York City. This role will be responsible for advancing the firm's threat intelligence, vulnerability management, and cybersecurity engineering capabilities while supporting enterprise-wide risk reduction initiatives. The successful candidate will serve as a senior technical contributor and subject matter expert, partnering with Security Operations, Infrastructure, Application Development, and Technology Risk teams to identify emerging threats, improve security controls, and strengthen the organization's overall security posture. Experience within financial services or other highly regulated environments is highly preferred.

Primary Responsibilities

  • Lead threat intelligence and vulnerability management initiatives to identify, assess, prioritize, and mitigate cybersecurity risks across the enterprise.
  • Manage the end-to-end threat intelligence lifecycle, including collection, analysis, enrichment, validation, dissemination, and operationalization of actionable intelligence.
  • Monitor global cyber threats, threat actors, emerging attack vectors, indicators of compromise (IOCs), and zero-day vulnerabilities relevant to the organization.
  • Produce threat assessments, security advisories, and executive-level reporting to support risk-based decision making and cybersecurity strategy.
  • Conduct risk-based vulnerability assessments and oversee remediation efforts, ensuring alignment with established standards, SLAs, and risk priorities.
  • Partner with Security Operations and Engineering teams to enhance threat detection, threat hunting, incident response support, and security monitoring capabilities.
  • Design, implement, and optimize integrations between threat intelligence platforms, vulnerability management tools, SIEM, SOAR, and external intelligence feeds.
  • Drive security automation and orchestration initiatives utilizing Python, PowerShell, APIs, and workflow automation technologies to improve operational effectiveness.
  • Develop and maintain cybersecurity metrics, dashboards, and risk posture reporting to communicate risk exposure, remediation progress, and program maturity to stakeholders.
  • Serve as a senior cybersecurity SME, providing guidance on enterprise security architecture, security technologies, security controls optimization, and cybersecurity best practices.

Key Qualifications

  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Engineering, or a related discipline.
  • 8+ years of experience in cybersecurity engineering, threat intelligence, vulnerability management, security operations, or related information security functions.
  • Deep understanding of cyber threat intelligence, vulnerability management operations, security analytics, and enterprise security programs.
  • Hands-on experience with Threat Intelligence Platforms (TIPs), SIEM, SOAR, vulnerability scanning tools, security monitoring platforms, and threat intelligence feeds.
  • Strong knowledge of MITRE ATT&CK, NIST Cybersecurity Framework (NIST CSF), OWASP Top 10, CVE management, and security frameworks and best practices.
  • Experience managing vulnerability remediation programs, attack surface management initiatives, risk assessments, and remediation governance activities.
  • Ability to communicate complex technical and security concepts to executive leadership, technical teams, and business stakeholders.
  • Experience developing security automation and integrations using Python, PowerShell, APIs, or similar technologies.
  • Proven ability to manage multiple priorities, work independently with minimal supervision, and thrive in a fast-paced environment.
  • CISSP, CISM, or other relevant security certifications are highly preferred. Experience within financial services, banking, capital markets, asset management, insurance, or other highly regulated industries is strongly preferred.

This position is based in New York City and operates in a hybrid work environment. Candidates should be comfortable working onsite 2-3 days per week, collaborating closely with security, technology, and business teams while helping drive critical cybersecurity initiatives across the organization.

FAQs

Congratulations, we understand that taking the time to apply is a big step. When you apply, your details go directly to the consultant who is sourcing talent. Due to demand, we may not get back to all applicants that have applied. However, we always keep your resume and details on file so when we see similar roles or see skillsets that drive growth in organizations, we will always reach out to discuss opportunities.

Yes. Even if this role isn’t a perfect match, applying allows us to understand your expertise and ambitions, ensuring you're on our radar for the right opportunity when it arises.

We also work in several ways, firstly we advertise our roles available on our site, however, often due to confidentiality we may not post all. We also work with clients who are more focused on skills and understanding what is required to future-proof their business. 

That's why we recommend registering your resume so you can be considered for roles that have yet to be created. 

Yes, we help with resume and interview preparation. From customized support on how to optimize your resume to interview preparation and compensation negotiations, we advocate for you throughout your next career move.

Handpicked roles for you