Heritage Bank is a Minnesota-based institution seeking a Network Security Engineer to enhance secure banking operations. The role involves designing, implementing, and maintaining network and IT infrastructure to ensure the security and compliance of banking systems.
Responsibilities:
- Design, implement, and maintain LAN/WAN infrastructure across headquarters, branches, and remote locations
- Manage routers, switches, firewalls, VPNs, and wireless networks
- Monitor network performance and proactively address capacity, reliability, and latency issues
- Manage MPLS, SD-WAN, and secure remote access solutions
- Support connectivity for core banking systems, online/mobile banking platforms, and third-party vendors
- Implement and maintain secure network architectures aligned with banking regulatory requirements (e.g., FFIEC guidance)
- Manage firewalls, intrusion detection/prevention systems (IDS/IPS), and network access controls
- Conduct regular vulnerability assessments and remediation efforts
- Support audits and examinations by internal auditors and regulatory agencies
- Maintain documentation for compliance and security standards
- Administer user access controls and permissions
- Oversee the patching strategy
- Utilize network monitoring tools to ensure uptime and performance
- Lead troubleshooting efforts for network outages and service disruptions
- Participate in incident response, root cause analysis, and post-incident reporting
- Maintain and test disaster recovery and business continuity network components
- Lead or contribute to IT infrastructure projects, including upgrades, migrations, and new branch deployments
- Evaluate and recommend new technologies to improve performance, security, and scalability
- Assist in evaluating and onboarding new vendors and monitoring providers for performance and risk
- Maintain accurate network diagrams, configurations, and procedures
- Establish and enforce network standards and best practices
- Provide technical guidance to junior IT staff
Requirements:
- Bachelor's degree in information technology, Computer Science, Cybersecurity or related field (or equivalent experience)
- 5+ years of experience in: network engineering, IT infrastructure or cybersecurity operations. Preferably in financial services or a regulated industry
- Strong knowledge of routing and switching (Cisco, Aruba, or similar)
- Experience with firewalls (e.g., Fortinet, Palo Alto, Cisco ASA)
- Familiarity with VPNs, VLANs, QoS, and network segmentation
- Understanding of cloud networking (Azure/AWS)
- Knowledge of cybersecurity principles and frameworks
- Strong problem-solving and analytical skills
- Ability to work independently and manage multiple priorities
- Excellent communication skills for both technical and non-technical stakeholders
- High attention to detail and commitment to security and compliance
- Proactive mindset with a focus on continuous improvement
- On-call availability for critical incidents and maintenance windows
- Occasional travel to branch locations
- Ability to work in a fast-paced, highly regulated environment