Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Sr IT Security Engineer

Cornerstone Capital Bank

Cornerstone Capital Bancorp, Inc., headquartered in Houston, is aTexas-basedfinancial services company dedicated to helping families, businesses, and communities thrive. Throughitsprimary subsidiary, Cornerstone Capital Bank, the organizationoperatesa community and business banking franchise alongside a premier national home lending, servicing, and home insuranceplatform-basedfinancial services company dedicated to helping families, businesses, and communities thrive.

Guided by a core Mission, Vision and Convictions statement,Cornerstoneoperates17full-servicebanking locations across major Texas markets andmore than 150mortgage offices nationwide.The companyhas servednearly700,000customersthrough its family of brands, including Cornerstone Home Lending, Roscoe Bank, Peoples Bank, Cornerstone Servicing, and Cornerstone Insurance. Supported by 1,600 team members,Cornerstoneis consistently recognized as a Fortune-certified Great Place to Work and a Top Workplace.

Formed through the combination of Cornerstone Home Lending and The Roscoe State Bank, Cornerstone brings more than a century of experience and is thehighest-capitalizednew bank in Texas history.

We honor God by using our talents to make a positive difference in the lives of our Team Members, Clients, Shareholders, Communities, and the People who provide services to us.

Who we are looking for:

The Senior Security Engineer serves as a senior cybersecurity resource responsible for supporting and enhancing the organization's security program across security architecture, emerging technology and AI reviews, Identity and Access Management (IAM) governance, vulnerability management, and third-party security. Reporting directly to the Chief Information Security Officer (CISO), this role partners with technology and business stakeholders to identify, assess, mitigate, and validate cybersecurity risks and security controls while ensuring alignment with organizational security objectives and regulatory requirements.

The role also supports security assurance, control effectiveness, remediation validation, security engineering, automation, and continuous improvement initiatives designed to strengthen the organization's overall security posture. Working closely with the Head of IAM and other security and technology leaders, the Senior Security Engineer provides oversight and verification of security controls, conducts security assessments, and supports cybersecurity risk management, compliance, and resilience efforts within a highly regulated banking environment.

The ideal candidate brings strong technical expertise, sound risk-based judgment, a collaborative mindset, and the ability to translate cybersecurity requirements into practical and sustainable solutions. Experience within financial services is preferred, including familiarity with FFIEC guidance, NIST Cybersecurity Framework principles, and regulatory examination preparedness

What you'll do:
  • General Responsibilities & Expectations
  • Security Assurance & Risk Management - Assess security controls, identify risks and gaps, and support remediation and validation activities to promote effective and sustainable security practices.
  • Security Engineering & Automation - Leverage security technologies, engineering practices, and automation to strengthen controls, improve efficiency, and reduce reliance on manual processes.
  • Security Monitoring & Reporting - Support security metrics, reporting, and monitoring activities to provide visibility into security posture, control effectiveness, and emerging risks.
  • Incident Response & Resilience - Participate in cybersecurity incident response, investigations, exercises, lessons learned, and initiatives that strengthen organizational resilience.
  • Security Governance & Standards - Contribute to the development and maintenance of security standards, procedures, and technical guidance aligned with business objectives, regulatory expectations, and industry practices.
  • Cross-Functional Partnership - Serve as a senior security advisor and collaborate with Technology, business, Risk, Compliance, Audit, and other stakeholders to identify and address cybersecurity risks.
  • Phishing - Lead the enterprise phishing awareness program by conducting monthly phishing simulation campaigns, tracking and reporting key performance metrics, identifying user risk trends, and driving continuous improvement in employee cybersecurity awareness and resilience.
  • Security Architecture, Emerging Technology & AI Reviews
  • Serve as a trusted security advisor for enterprise technology initiatives, strategic projects, and business innovation efforts.
  • Conduct security architecture reviews for applications, infrastructure, cloud services, SaaS platforms, AI-enabled solutions, and third-party technologies.
  • Partner with architects, developers, engineers, project managers, and business stakeholders to identify, mitigate, and validate security requirements throughout solution design, implementation, and ongoing operation.
  • Review proposed solutions for secure authentication, authorization, encryption, data protection, logging, monitoring, resiliency, and recovery requirements.
  • Assess emerging technologies, including artificial intelligence (AI), generative AI, machine learning platforms, and AI-enabled business solutions, to ensure appropriate security controls, governance requirements, and data protection measures are established and maintained throughout the technology lifecycle.
  • Evaluate AI-related risks including unauthorized data exposure, excessive permissions, third-party AI integrations, sensitive data protection, model governance considerations, and regulatory compliance implications.
  • Provide guidance aligned with Zero Trust principles, secure-by-design methodologies, banking regulatory expectations, and industry best practices.
  • Participate in AI governance discussions and provide security recommendations for the adoption of emerging technologies.
  • Support the development, maintenance, and continuous improvement of security standards, architectural guidance, and technology control requirements.
  • Validate that key security requirements and controls are appropriately implemented and operating as intended.
  • Participate in vendor evaluations, technology assessments, and project planning activities to ensure security requirements are incorporated early in the project lifecycle.
  • IAM - Governance, Oversight & Verification
  • Primarily support the organization's Identity and Access Management (IAM) program in partnership with the Head of IAM.
  • Provide second-line security oversight and independent verification of key cybersecurity controls, including IAM, privileged access, authentication, vulnerability management, and third-party security controls.
  • Administer and oversee identity lifecycle processes, including onboarding, transfers, role changes, and offboarding activities.
  • Support and verify role-based access controls (RBAC), privileged access controls, and segregation of duties requirements.
  • Support Privileged Access Management (PAM) solutions and privileged account governance activities.
  • Manage and support authentication technologies including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Conditional Access, and identity federation.
  • Perform independent security control validation and testing to assess design effectiveness, implementation, and sustained operating effectiveness. Validate remediation activities end-to-end, including confirmation that changes have been implemented across affected systems, processes, and procedures.
  • Conduct periodic user access reviews and privileged access reviews.
  • Support Microsoft Entra ID, Active Directory, and related identity platforms.
  • Assist with audit requests, regulatory examinations, and control assessments related to identity and access management.
  • Support the tracking, validation, and closure of cybersecurity audit, assessment, and control findings, including validation that corrective actions address the underlying control deficiency and not solely the individual exception identified
  • Develop and maintain cybersecurity metrics, key risk indicators (KRIs), and key performance indicators (KPIs) to measure control effectiveness, remediation progress, risk exposure, and security program maturity.
  • Prepare management-level reporting on cybersecurity risks, control effectiveness, remediation status, and emerging threats.
  • Identify opportunities to improve identity governance, automation, operational efficiency, and security effectiveness.
  • Vulnerability Management & Third-Party Security
  • Lead enterprise vulnerability management activities, including identification, risk-based prioritization, remediation tracking, validation, and reporting across infrastructure, cloud, applications, and technology environments.
  • Establish and apply risk-based vulnerability prioritization using asset criticality, business impact, exploitability, threat intelligence, exposure, and the presence of compensating controls.
  • Partner with infrastructure, cloud, application, engineering, and technology teams to drive timely remediation of vulnerabilities and reduce organizational exposure.
  • Review and assess findings from vulnerability assessments, penetration tests, red team exercises, security assessments, and other technical security testing activities.
  • Monitor remediation performance, vulnerability aging, remediation SLAs, recurring findings, and risk trends; provide meaningful metrics and reporting to security leadership and governance committees.
  • Manage vulnerability-related exceptions, risk acceptances, and compensating controls, ensuring risks are appropriately documented, reviewed, and tracked through resolution.
  • Incorporate threat intelligence and emerging threat activity into vulnerability prioritization and remediation decisions, with heightened focus on actively exploited and internet-facing vulnerabilities.
  • Participate in third-party security reviews, vendor risk assessments, and ongoing security due diligence for prospective and existing vendors.
  • Evaluate the security posture, control environment, resilience, and risk management practices of third parties, with increased scrutiny for critical vendors, technology providers, and vendors that process sensitive or customer information.
  • Assess third-party security controls, technical safeguards, vulnerability management practices, incident response capabilities, data protection measures, and other cybersecurity risks.
  • Support ongoing third-party monitoring and reassessment throughout the vendor lifecycle, including onboarding, periodic reviews, significant changes, incidents, and offboarding.
  • Identify and assess third-party and technology supply-chain risks, including dependencies that may introduce material cybersecurity or operational risk.
  • Partner with Vendor Management, Procurement, Legal, Privacy, Compliance, and business stakeholders to ensure cybersecurity risks are incorporated into vendor selection, contracting, ongoing oversight, and risk decisions.
  • Support continuous improvement of vulnerability management and third-party risk management processes, including automation, workflow optimization, metrics, governance, and alignment with enterprise security objectives
What you'll need to be successful:
  • Bachelor's degree in information technology, Cybersecurity, Computer Science, or related field preferred.
  • Experience working within banking, financial services, mortgage lending, fintech, or other highly regulated industries.
  • Working knowledge of FFIEC guidance, banking regulatory expectations, and cybersecurity requirements applicable to financial institutions.
  • Familiarity with FDIC examinations, internal audits, external audits, and cybersecurity control assessments.
  • Strong understanding of the NIST Cybersecurity Framework (CSF), CIS Controls, and risk-based cybersecurity programs.
  • Familiarity with AI governance, AI risk management concepts, and the secure adoption of emerging technologies.
  • 5+ years of experience in cybersecurity, information security, or security engineering.
  • Experience supporting Identity and Access Management programs, processes, and technologies.
  • Experience conducting security architecture reviews and technical risk assessments.
  • Experience managing or supporting enterprise vulnerability management programs.
  • Experience conducting vendor security reviews and third-party security assessments.
  • Experience with Microsoft Entra ID, Active Directory, Microsoft 365 security technologies, and cloud-based platforms.
Preferred Certifications
  • CISSP
  • CISA
  • CompTIA Security+
  • ISC2 Certified in Cybersecurity (CC)
  • Microsoft SC-900 Security, Compliance, and Identity Fundamentals
  • Microsoft AZ-900 Azure Fundamentals
  • Microsoft SC-300 Identity and Access Administrator Associate
  • Additional cybersecurity, cloud security, or identity-focused certifications preferred.
Physical demands:
  • Occasional evening and weekend work to meet deadlines.
  • Sitting for extended periods of time
  • Dexterity of hands and fingers to operate a computer keyboard, mouse, and to handle other computer components.
  • Ability to participate in training sessions, presentations, and meetings.
  • Ability to lift 30-40 lbs. This job will require picking up and moving equipment.
  • Ability to travel to other locations as needed.

While performing the duties of this job, the employee is regularly required to talk or listen. The employee frequently is required to stand; walk; use hands to finger, handle or feel; and reach with hands and arms. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of the job. The noise level in the work environment is usually quiet to moderate.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities

This employer is required to notify all applicants of their rights pursuant to federal employment laws.

For further information, please review the Know Your Rights notice from the Department of Labor.

#J-18808-Ljbffr
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Sr IT Security Engineer in Houston, TX vacancy
  • $120k - $130k

     ...Responsibilities / Duties:Define and execute enterprise security architecture strategies, standards,...  ...business leaders, enterprise architects, engineering teams, and security stakeholders to embed...  .../ Knowledge:15+ years of progressive IT experience, including 10+ years focused... 
    Senior
    Full time
    Work experience placement
    Work at office
    Flexible hours

    Invesco

    Houston, TX
    1 hour ago
  •  ...Senior Director, Security Architect Location: Houston, Texas (preferred) or United States...  ...by Quorum’s Product, Innovation & Engineering (PIE) function. As a global software company...  ...deliberately staying out of the corporate IT security domains owned elsewhere. This... 
    Senior
    Live in
    Remote work
    Worldwide

    Quorum Business Solutions

    Houston, TX
    4 days ago
  • $200k - $225k

     ...looking to apply your relevant experience to a new industry, join our team as we help shape a brighter way forward. The Senior Security Engineer, AI Enablement is Security's embedded, full-time representative on JLL's Falcon team, owning the product's security... 
    Senior
    Full time
    Local area
    Immediate start
    Remote work

    Jones Lang LaSalle

    Houston, TX
    1 hour ago
  • $116.15k - $182.4k

     ...Senior Network Security Engineer HP is the world’s leading personal systems and printing company, we create technology that makes life better...  ...: The Senior Security Engineer is a high-value role within IT, focused on engineering advanced security solutions. In this... 
    Senior
    Full time
    Temporary work
    Work at office
    Local area
    Remote work
    Flexible hours
    Shift work

    Socket

    Houston, TX
    2 days ago
  •  ...modern life. About this Role Quanta Services is seeking an IT Security Architect to join our IT Security team, reporting to the...  ...The role blends security architecture with forward-deployed engineering: the Architect both designs secure cloud architectures and embeds... 
    Suggested
    Work at office
    Local area
    Worldwide
    Night shift

    Quanta Services

    Houston, TX
    5 days ago
  •  ...Hi, We are looking for a Cyber Security Architect/Security Operations Architect. Please let me know, if interested. Cyber Security Architect/Security Operations Architect Houston, TX or Plano, TX (Houston preferred) Looking for nearby candidates W... 
    Contract work
    Immediate start

    Syntricate Technologies

    Houston, TX
    4 days ago
  •  ...METECS is an engineering and applied technology company specializing in high-fidelity simulation, software, robotics, and systems analysis. We are looking for an IT Security Engineer to lead security operations and assist with maintaining our IT infrastructure. This role... 
    Permanent employment
    Full time

    METECS

    Houston, TX
    more than 2 months ago
  • Senior Security Design Engineer Job Description A Senior Security Design Engineer will design, implement, and maintain systems that protect facilities, assets, and personnel, such as card access control, surveillance (CCTV), and intrusion detection. The role will... 
    Senior
    Full time
    Work at office
    Remote work
    Flexible hours

    RAE Security

    Houston, TX
    a month ago
  • $143.25k - $179.04k

     ...strategies, provide expert guidance on technical security solutions, and ensure the effective...  ...and security goals. Design secure IT environments and systems, including network...  ...technical leader and mentor for cybersecurity engineers and analysts, fostering a collaborative... 
    Full time
    Temporary work
    Work experience placement
    Local area
    Immediate start
    Shift work
    Day shift

    Old Dominion Freight Line

    Houston, TX
    3 days ago
  •  ...proud of our reputation as one of North America’s most dynamic IT providers — and we’re even prouder of our culture that allows our...  ...rated Long View as a good or great place to work! Are you a Security professional who excels at designing enterprise-grade security solutions... 
    Permanent employment
    Full time
    Temporary work
    Work at office
    Relocation
    Flexible hours

    Long View Systems

    Houston, TX
    9 days ago
  •  ...Senior Sales EngineerThe Senior Sales Engineer assists the Sales team in reaching revenue...  ...assist in developing tailored strategies to secure new business.Tactical Support: Assist...  ...includes building relationships across customer IT silos to document infrastructure,... 
    Remote work

    US HealthCare Careers

    Houston, TX
    5 days ago
  •  ...Sr Principal Solution Consultant The driving force behind our success has always been the people of AspenTech. What drives us...  ...software company helping the world's leading energy, chemical and engineering companies succeed in their digital transformation, making their... 
    Senior

    Aspen Technology

    Houston, TX
    1 day ago
  •  ...Title: Associate Security Engineer, Identity Security KBR is seeking an Associate Security Engineer to join our Identity Security Services team within a global cybersecurity organization supporting complex, highly regulated enterprise environments. This hands-on... 
    Permanent employment
    Full time
    Local area

    KBR

    Houston, TX
    more than 2 months ago
  • We are searching for a detail-oriented Sr. Accountant in the Manufacturing industry, to be based in Houston, Texas. The successful candidate will be responsible for providing comprehensive financial updates to senior management, supporting and managing the accounting of... 
    Senior

    Robert Half

    Houston, TX
    6 hours ago
  • $55 - $60 per hour

     ...and how cybersecurity can best support reliability, security, and business outcomes. You will help translate vulnerabilities...  ...security reviews for OT environments, and hybrid IT/OT architectures* Partner with engineering and operations teams to understand how systems are... 
    Senior

    KForce

    Houston, TX
    2 days ago
  • $105.4k - $207.8k

    Position Summary As a Physical Security Senior Consultant in Deloitte’s Cyber Defense & Resilience team, you will help clients...  ...criminal justice, international relations, intelligence studies, engineering, homeland security, public administration, or infrastructure... 
    Senior
    Local area
    Visa sponsorship

    Deloitte

    Houston, TX
    1 day ago
  • Join our team as a Senior Transportation Manager and lead a high-performing transportation department focused on safety, service, and operational excellence. Drive process improvements, ensure regulatory compliance, and develop top talent while optim
    Senior

    US Foods

    Houston, TX
    5 days ago
  • A Houston-based investment firm is seeking a Senior Treasury Accountant to join its accounting and finance team. This position combines treasury and accounting responsibilities, with a strong focus on cash activity, bank reconciliations, journal entries, and financial reporting...
    Senior

    Robert Half

    Houston, TX
    6 hours ago
  •  ...Job Description Job Description Senior Cloud Security Engineer Are you passionate about securing modern cloud environments and building...  ...environments. This is an opportunity to join a collaborative IT and cybersecurity team where your expertise will directly... 
    Senior
    Night shift
    Weekend work
    Afternoon shift

    Heath Consultants Incorporated

    Houston, TX
    8 days ago
  •  ...IAM Security Engineer, Identity Governance and Administration We are currently seeking an IAM Security Engineer, Identity Governance and Administration. An ideal candidate will work as part of the identity and access management team to manage risks to the information... 

    Samprasoft

    Houston, TX
    4 days ago
  • $82.6k - $162.8k

     ...delivering practical outcomes for clients across industries. Qualifications Required: * BA/BS in Computer Engineering, Computer Science, Information Systems, Cyber Security, or equivalent demonstrated technical background * 2+ years of experience in infrastructure or... 
    Local area
    Visa sponsorship

    Deloitte

    Houston, TX
    1 day ago
  • $134.5k - $265.1k

     ...with confidence, and proactively manage to secure success.Work you will do:As Privileged...  ...processes, internal control risk management, IT controls and related standards.· Identify...  ..., Cyber Security, Information Security, Engineering, Information Technology, Finance,... 
    Local area
    Visa sponsorship

    Deloitte

    Houston, TX
    3 days ago
  •  ...The Senior Design Engineer will develop and test downhole completion tool products per industry standards. The requirements of the Senior Design Engineer position will include:•Conducting mathematical modelling to determine if proposed designs are technically feasible... 
    Senior

    National Oilwell Varco

    Houston, TX
    3 days ago
  •  ...diverse team that values results, analytical approach to problem solving and teamwork, Tenaris is the place for you.Marketing Analyst/Sr Analyst - Houston, TXLOCATION: Houston - Texas - USA DEPARTMENT:PLANNINGPurposeThe Marketing Analyst supports business decision-... 
    Senior

    Tenaris

    Houston, TX
    3 days ago
  •  ...The Senior Electrical Engineer is responsible for delivering electrical engineering work across feasibility studies, process design packages, and detailed engineering activities. The role operates within a project task force team and may act as a technical or project... 
    Senior
    Relocation package

    CTS - Complete Technical Services

    Houston, TX
    2 days ago
  • We are looking for an experienced Sr. Investment Accountant to support the accounting and reporting of a public securities portfolio in Houston, Texas. This role works closely with finance and investment professionals to maintain accurate records, deliver timely analysis... 
    Senior

    Robert Half

    Houston, TX
    3 days ago
  • $70 per hour

     ...Summary Shift : Day 8-5 PM CST Seeking a highly experienced Sr. Architect with 9-13 years of experience in Google Cloud-Machine...  ...- Projects [45PM00] Demand Requires Travel? : No Certification(s) Required : Google Cloud Certified - Professional Data Engineer
    Senior
    Shift work

    Keylent Inc

    Houston, TX
    1 day ago
  •  ...organization offers a hybrid work schedule, strong benefits, excellent retirement contributions, and long-term career growth opportunities.Sr. Financial Analyst Responsibilities: This role sits at the intersection of finance and the business. Rather than spending the... 
    Senior

    Robert Half

    Houston, TX
    4 days ago
  •  ...collaborating with other Honeywell businesses selling into this market segment, you will position Honeywell for long-term success and establish it as a leader in the LNG industry. You will report directly to our Commercial Director - LNG and you will work out of the Allentown... 
    Senior
    Contract work
    Work at office

    Honeywell

    Houston, TX
    3 days ago
  • We are looking for an experienced Sr. Project Manager to lead several concurrent security and network infrastructure projects supporting large-scale client sites in Houston, Texas. This contract opportunity is ideal for someone who excels at coordinating field execution... 
    Senior
    Contract work

    Robert Half

    Houston, TX
    1 hour ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Sr IT Security Engineer. Be the first to apply!