Network Security Manager

Herring Bank


Date: 16 hours ago
City: Amarillo, TX
Contract type: Full time
About Herring Bank

Herring Bank is a dynamic financial institution with an unwavering commitment to serving our customers while ensuring the highest level of security for their financial assets. As a leading bank, we take pride in seamlessly merging traditional banking values with cutting-edge cybersecurity practices.

Position Summary

As a Network Security Manager at Herring Bank, you will play a pivotal role in fortifying our organization's cybersecurity defenses, with a strong emphasis on owning and optimizing patch management processes. The ideal candidate will possess a unique blend of technical expertise, hands-on experience in cybersecurity management—including deep knowledge of patch management tools and practices—and strong leadership skills. You will be responsible for driving proactive vulnerability exploration and remediation, ensuring compliance with industry standards, leading incident response efforts, and maintaining meticulous documentation throughout all processes to support auditability and continuous improvement. While experience with Fortinet Firewalls is valued, it is not a critical requirement, as we already have dedicated expertise in this area.

Key Responsibilities

Cybersecurity Infrastructure Management

  • Oversee and manage the bank's cybersecurity infrastructure, including CrowdStrike endpoint security, ensuring optimal performance and security posture.
  • Support existing Fortinet Firewall operations, leveraging prior experience to assist as needed, though primary responsibilities lie elsewhere.
  • Implement, configure, and manage Linux, AWS, and Azure environments as part of the cybersecurity infrastructure.
  • Utilize Microsoft PowerShell for automation, scripting, and management of cybersecurity tasks and processes.
  • Develop and maintain an advanced understanding of network protocols to enhance security measures and incident response capabilities.


Patch Management and Vulnerability Remediation

  • Take full ownership of patch management across the organization's systems, endpoints, and infrastructure, proactively exploring vulnerabilities, seeking out detailed reports, implementing corrections, and ensuring timely remediation to minimize risks.
  • Demonstrate expertise in utilizing patch management and vulnerability assessment tools such as Red Hat Satellite, Azure Arc, ManageEngine Endpoint Central, Qualys, and similar platforms to automate deployments, scan for vulnerabilities, and maintain a secure environment.
  • Foster a culture of continuous improvement in patch management by regularly reviewing processes, identifying gaps, and documenting all activities with a high level of detail, including vulnerability assessments, patch application logs, remediation steps, and post-implementation verifications.


Compliance and Reporting

  • Ensure compliance with industry-standard security frameworks such as NIST and ISO 27001, incorporating patch management best practices into compliance strategies.
  • Prepare comprehensive compliance reports for internal and external stakeholders, including detailed documentation on vulnerability and patch management activities.
  • Identify and address compliance gaps and vulnerabilities, with a focus on integrating patch-related remediation into broader security initiatives.


Incident Response

  • Lead incident response efforts in the event of a cybersecurity breach, prioritizing vulnerabilities that could be addressed through patching.
  • Collaborate with the incident response team to contain and remediate security incidents, leveraging patch management tools for rapid fixes.
  • Conduct post-incident reviews to enhance the bank's security posture, with emphasis on lessons learned related to patch management and documentation.


Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, or equivalent, or 2 additional years of experience in a related field.
  • Minimum of 5 years of experience in cybersecurity management, with a strong focus on patch management processes and CrowdStrike administration.
  • Proven experience as a Linux, AWS, and Azure administrator, demonstrating a strong command of cloud security practices, including patch deployment in these environments.
  • Hands-on experience with patch management and vulnerability assessment tools such as Red Hat Satellite, Azure Arc, ManageEngine Endpoint Central, Qualys, or equivalent.
  • Microsoft PowerShell scripting experience for efficient cybersecurity management, including automation of patch-related tasks.
  • Advanced understanding of network protocols and their implications on cybersecurity, with the ability to integrate this knowledge into vulnerability exploration and remediation.
  • Knowledge of industry-standard security frameworks and regulations, with a focus on how they apply to patch management.
  • Familiarity with Fortinet Firewalls is preferred but not critical, as the role supports rather than leads this function.
  • Excellent problem-solving skills, attention to detail, and a proactive mindset for owning and improving patch management areas.
  • High affinity for clean, thorough, and auditable documentation, particularly in vulnerability reporting, patch processes, and remediation efforts.
  • Effective communication and teamwork abilities.
  • Certifications in patch management or vulnerability tools (e.g., Qualys Certified Vulnerability Management Specialist) are highly desirable; Fortinet certifications are a plus but not required.


What We Offer

  • Competitive salary and benefits package.
  • Comprehensive health, dental, and vision benefits.
  • 401(k) plan after six months of employment.
  • Four weeks of paid time off (PTO).
  • Opportunity to be part of a forward-thinking bank that values cybersecurity.
  • Ongoing professional development and growth opportunities.


Interested candidates are encouraged to submit their resume, along with a cover letter detailing their relevant experience. Herring Bank is an equal opportunity employer committed to cybersecurity excellence.

Disclaimer:

This job description is intended to describe the general nature and level of work being performed. It is not intended to be an exhaustive list of all responsibilities, duties, or skills required. Management reserves the right to revise the job description or require that other tasks be performed as needed.

Flexible work from home options available.

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume