Information Security Analyst
Listed on 2026-06-01
-
IT/Tech
Cybersecurity, Information Security
Position Summary
The Information Security Analyst I is a key contributor within our information security team, responsible for monitoring, analyzing, and responding to security threats across digital and physical domains using cutting‑edge tools and technologies. Key responsibilities include daily threat intelligence monitoring, vulnerability management support, email security analysis, and physical security device monitoring. This position collaborates closely with information security team members, IT, and physical security departments to maintain a robust security posture and ensure compliance with industry regulations.
The Information Security Analyst I role requires a strong foundation in cybersecurity principles, keen attention to detail, and a desire to continuously learn and adapt to the evolving threat landscape in the banking sector.
- Monitor and analyze daily threat intelligence feeds and alerts using threat intelligence tools, identifying potential threats and escalating as necessary.
- Conduct regular threat hunting activities using threat intelligence tools, focusing on indicators of compromise (IOCs) and suspicious behaviors.
- Assist in vulnerability management processes, including reviewing scan results and supporting remediation efforts.
- Support the development and updating of threat intelligence playbooks, ensuring alignment with the NIST Cybersecurity Framework.
- Assist in analyzing security incidents related to threat management, email security, endpoint security, network security, and physical security devices, providing reports and improvement suggestions.
- Prepare and distribute weekly threat intelligence reports, summarizing trends, potential risks, and mitigation recommendations.
- Participate in threat simulation, incident response, and red team exercises to test and improve the bank's detection and response capabilities.
- Assist in quarterly vulnerability assessments, providing actionable recommendations for risk mitigation.
- Assist in firewall management and reviews to ensure proper configurations and functionality.
- Support email security monitoring activities, investigating potential phishing or malware incidents using email security platforms.
- Collaborate with the physical security team to ensure the security and proper maintenance of physical security devices.
- Contribute to the monthly review and update of physical security device configurations, ensuring compliance with security policies and guidelines.
- Bachelor’s degree in computer science, information security, business administration, or similar; relative years of work experience can be substituted for a bachelor’s degree, 2 or more years of related work experience in vendor management, risk management, or related roles.
- Basic proficiency in scripting languages such as Python or Power Shell.
- Experience with SIEMs, firewalls, email security, vulnerability management, IDS/IPS, and cloud technologies.
- Security+, SSCP, GIAC, or similar industry certifications.
- Prior experience working in a regulated environment.
- Ability to manage multiple tasks and work in a fast‑paced environment.
- Cyber security investigation, research, and troubleshooting.
- Understanding of data privacy and security concepts.
- Proficiency in Microsoft Office, particularly Excel, Word, and PowerPoint.
- Adaptability to changing priorities and deadlines.
- Analytical, critical thinking, and problem‑solving skill with attention to detail.
- Ability to work independently and collaboratively in a team environment.
- Robust medical, dental, and vision insurance packages.
- Generous time off, including paid federal holidays and paid day off for your birthday.
- 401(k) retirement savings plan.
- Tuition reimbursement, professional development, and career growth opportunities.
- Employee assistance program.
- Comprehensive wellness program.
The statements contained herein reflect general details as necessary to describe the principle functions for this job, the level of knowledge and skill typically required, and the scope of responsibility, but should not be considered…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).