×

Security Engineer – Hardening Network, POS, System, DB & ATM

JOB Description

Ensure security and resilience of the bank’s IT infrastructure, systems, and devices by conducting comprehensive security reviews, implementing hardening strategies, and maintaining robust configurations to safeguard the bank’s assets and sensitive information.

Experience & Skills

  • 2-3 years of experience in network security, system hardening, and/or POS/ATM security or in a similar role.
  • Demonstrated expertise in performing system, network, and application security hardening.
  • Hands-on experience in securing POS systems, ATMs (e.g., Diebold, NCR), and databases in a banking environment is highly desirable.

Knowledge and Skills

  • Advanced knowledge of system hardening techniques, including securing operating systems (Windows, Linux), network devices (firewalls, routers, switches), Point-of-Sale (POS) systems, Automated Teller Machines (ATMs), and databases (Oracle, SQL Server).
  • Familiarity with security standards and benchmarks like CIS Benchmarks, DISA STIGs, PCI DSS, SWIFT CSCF, ISO 27001, and NIST.
  • Expertise in advanced network security, such as firewall rule management, intrusion detection/prevention systems (IDS/IPS), network segmentation, zero-trust principles, and VPN configuration for secure connectivity.

Responsibilities

  • Conduct thorough security assessments of servers, workstations, and applications.
  • Implement hardening measures in accordance with industry best practices and regulatory requirements.
  • Analyze and optimize network configurations to minimize vulnerabilities.
  • Implement security controls, including firewalls, intrusion detection systems, and access management.
  • Perform security reviews on Point-of-Sale (POS) systems to ensure compliance with PCI DSS and related standards. Suggest best practices to secure payment systems and mitigate fraud risks.
  • Assess ATM devices for vulnerabilities. Enhance hardening to prevent unauthorized access and tampering.
  • Conduct reviews of database configurations to identify potential risks. Recommend security patches and optimize settings to protect data integrity and confidentiality.
  • Develop and maintain secure baseline configurations for systems, applications, and network devices.
  • Ensure compliance with industry standards and regulatory requirements such as PCI DSS, SWIFT CSCF, ISO 27001, and local regulatory guidelines.
  • Collaborate with cross-functional teams, including IT, development, and compliance, to integrate security best practices into all deployments.

Qualifications

  • Bachelor’s degree in Cybersecurity, Information Security (IS), Information Technology (IT), Computer Science, or a related field.
  • Master’s degree in Cybersecurity or a related discipline is preferred.

Certifications

  • Certified Ethical Hacker (CEH).
  • CompTIA Security+
  • Cisco Certified Network Associate Security (CCNA Security)
  • Payment Card Industry Professional (PCIP)
  • GIAC Critical Controls Certification (GCCC)
  • Oracle Certified Professional (OCP): Database Security
  • CompTIA Network+
  • GIAC Certified Firewall Analyst (GCFW)
  • Microsoft Certified: Windows Server Security Specialist
  • Linux Professional Institute Certification (LPIC-3 303 - Security)

Job Location

  • Lahore

Important Note

“Females and Persons with disabilities having required skill set are encouraged to apply . MCB bank Ltd is an equal opportunity employer and is committed to create an inclusive environment for all employees.”

To apply for this position please share your resume at [email protected] Do not forget to mention the title of the position in the subject of your email.

Navigate Seamlessly Using
These Quick Shortcuts

Easily access quick links to important web pages from here.