Deutsche Bank - Cary, NC

posted 4 months ago

Full-time - Mid Level
Remote - Cary, NC
Credit Intermediation and Related Activities

About the position

The Site Reliability Engineer/DevOps role at Deutsche Bank is a critical position within the global Chief Security Office (CSO) team located in Cary, North Carolina. This position is designed for an individual who will take charge of managing and engineering network security solutions that are delivered by the CSO Chief Technology Office (CTO). The CTO Network Security Engineering team collaborates closely with Network Services to deploy new and enhanced network security tools and technologies. As a Site Reliability Engineer/DevOps, you will be responsible for managing on-premises vendor appliance products such as Guardicore, providing L3 service level support, and automating operational tools using the bank's automation platform. You will also oversee the automation of host-based agent deployment across a large scale of over 25,000 hosts. This role encompasses the development and implementation of security policies, procedures, and controls, as well as the evaluation and selection of security products and services. You will work in close partnership with key stakeholders across networks, operations, architecture, and production support functions to ensure the stability and security of the network infrastructure. In this role, you will manage the Guardicore vendor appliance, liaising with centralized support teams and platform engineering teams to ensure the platform's stability. You will design, build, and manage the automation deployment capability of Guardicore Agents across various application infrastructures, providing L3 support for Guardicore production while collaborating with L2 level centralized support teams. Your responsibilities will also include automating operational tasks using the bank's automation platform for proactive monitoring, auto-healing, and auto-scaling capabilities. You will package, test, deploy, and troubleshoot endpoint security agents in partnership with platform engineering and vendor product teams, while also working collaboratively with vendor partners and Deutsche Bank internal teams across different geographies. Additionally, you will be responsible for reporting and escalating product issues to vendor elite support and product management for immediate resolution. You will analyze large datasets to design micro-segmentation policies based on network flows and security requirements, and support large-scale deployment planning and rollout for micro-segmentation use cases. Testing and implementing application security policies will be part of your duties, ensuring that critical key performance indicators (KPIs), service level agreements (SLAs), and deliverables are met periodically for the micro-segmentation program.

Responsibilities

  • Manage vendor appliance product Guardicore hosted on-premises, liaising with centralized support and platform engineering teams.
  • Design, build, and manage automation deployment capability of Guardicore Agents across various applications infrastructure.
  • Provide L3 support for Guardicore production, working closely with L2 level centralized support teams.
  • Automate operational tasks using the bank's automation platform for proactive monitoring, auto healing, and auto scaling capabilities.
  • Package, test, deploy, and troubleshoot endpoint security agents in partnership with platform engineering and vendor product teams.
  • Report and escalate product issues to vendor elite support and product management for immediate resolution.
  • Analyze large datasets to design micro-segmentation policies based on network flows and security requirements.
  • Support large-scale deployment planning and rollout for micro-segmentation use cases.
  • Test and implement application security policies, ensuring KPIs, SLAs, and deliverables are met periodically for the micro-segmentation program.

Requirements

  • Strong automation framework implementation experience using Ansible and other programming languages such as Python, Go, Bash, and BladeLogic.
  • Experience with databases like Oracle, PostgreSQL, Mongo, and Prometheus.
  • Prior L3 application support experience for Network Security products on a global scale.
  • DevOps technical expertise and strong Linux sysadmin experience.
  • Understanding of networking principles and protocols for troubleshooting and optimizing system performance.
  • Preferred certifications include Guardicore Certified Segmentation Administrator & Engineer (GCSA / GCSE).
  • Experience with micro-segmentation vendor products like Guardicore and Illumio is an added advantage.
  • Proactive self-starter with strong work ethics and professionalism, capable of problem-solving.
  • Experience working with multi-cultural/global teams and enterprise-level projects.
  • Exceptional communication and leadership skills to lead triages for production incidents.
  • Ability to work under pressure with tight deadlines while maintaining attention to detail.
  • ITIL process awareness and working knowledge of change/incident/problem management.
  • Experience with business tools including Jira, Confluence, SharePoint, and Microsoft 365.

Nice-to-haves

  • Bachelor's degree in Computer Science, Information Technology, Information Systems, or a related technical field, or equivalent practical experience.
  • Proficiency in Google Cloud Platform.
  • Logical, innovative, and articulate with the ability to develop and maintain relationships with technical and non-technical teams.

Benefits

  • Diverse and inclusive environment that embraces change, innovation, and collaboration.
  • Hybrid working model allowing for in-office and work from home flexibility.
  • Generous vacation, personal, and volunteer days.
  • Employee Resource Groups supporting an inclusive workplace and community engagement.
  • Competitive compensation packages including health and wellbeing benefits, retirement savings plans, parental leave, and family building benefits.
  • Educational resources, matching gift, and volunteer programs.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service