Senior Cyber Security Analyst
Job in
Raleigh, Wake County, North Carolina, 27601, USA
Listed on 2026-08-23
Listing for:
First-Citizens Bank & Trust Company
Full Time
position Listed on 2026-08-23
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
This position supports the Bank's Information Security and Cyber Threat management programs at the highest level of complexity and expertise. Leads the analysis and mitigation of threats identified within the Bank's networks and systems. Ensures that team reporting is timely, accurate, and escalated as necessary to provide actionable intelligence for cyber defense efforts. Develops process improvements and technical solutions that address the identified gaps or deficiencies.
Drives the defense of the organization's information security and technological architecture through expert consultation and threat mitigation. Serves as a resource to team members and management on security threats, industry trends, and other relevant intelligence. Leads projects within the work group and resolves escalated, high-risk issues.
Responsibilities & Qualifications
Duties & Responsibilities:
Security Review - Serves as an escalation point for complex threats and analytics issues from other members in the work group. Leads the review of security incidents, system alerts, audit events, and other threats against the Bank's networks and systems. Detects anomalies, malware infections, and intrusion attempts. Identifies, recommends, and directs the mitigation strategy for identified threats.
Business Support - Serves as an expert analytics resource for associate team, management, and business units. Supports the design and implementation of new security strategies, products, services, processes, and technologies in response to changes in the security threat landscape. Enables the defense of the organization's information security and technological architecture through a number of operational and technical tasks. Ensures all cyber security monitoring systems are online and fully operational as well as ensuring compliance with all security policies and standards.
Assesses whether team members are trained on the latest cyber-security trends, threats, and applicable technologies.
Analysis - Analyzes data from various operating systems, databases, and applications within the Bank as well as external sources. Compiles and interprets data to proactively search for threats. May assist with data management efforts.
Reporting - Produces reports that document investigation and security incidents as well as the results of analysis. Provides analytics and reporting that facilitates actionable cyber-intelligence within daily operations. Conveys information to the appropriate parties, which includes both internal and external partners.
Position Specific
Skills:
Knowledge of security event log analytics and at least two of the following technologies:
Firewall, Web-Proxy, IDS/IPS, Anti-Vir Anti-Malware, Anti-Phishing, Malicious Web Site reporting or take-down
Knowledge of at least three of the following:
Insider Threats, Advanced Persistent Threats, Malware Analysis, Exploit techniques, Regular Expressions, SEIM Tuning , Alarm and Signature Creation
Knowledge of Information Technologies with a focus in two or more of the following areas: operating systems, networking, computer programming, web development or database administration
Understanding of Internet Protocol Suite networking, including routers, switches, public and private networks, internet protocol security, and virtual private networks
Knowledge of Packet Capture and analysis
Knowledge of systems administration and analysis as well as risk management standards, procedures, and practices
Qualifications:
Minimum Required
Education and Experience:
Bachelor's Degree and 8 years' experience OR High School Diploma or GED/Equivalent and 12 years' experience in Information Security
Preferred Education:
Preferred Area of Study:
Preferred Area of
Experience:
Required Licenses or
Certifications:
Preferred Licenses or
Certifications:
Additional Information
Bachelor's Degree and 8 years of experience in Information security OR High School Diploma or GED and 12 years of experience in Information security
- Experience with all aspects of Incident response including stakeholder management.
- 2+ years of Threat Hunting experience.
- Familiarity with MITRE ATT&CK and its application to countermeasure creation is a plus.
- Experience analyzing/dispositioning and escalating security events (systems, application, network, authentication email events)
- Experience translating threat actor techniques to building mitigations across a variety of security technologies. This could take the form of Yara, Sigma or Regular Expressions.
- Ability to define security requirements and drive project deliverables.
- Ability to keep track of multiple incidents and ensure responses are provided in a timely fashion.
- Experience responding to cloud-related incidents in Azure, AWS and Google cloud.
- Cloud administrative experience preferred.
- Cyber Incident Response experience - 3+ years required in which your primary job was an Incident Response role.
- This role requires participation in the after hours on call rotation. Rotations will cycle on a weekly basis.
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×