Lead Security Analyst-Threat & Incident Response

Remote Full-time
About the position The Lead Security Analyst monitors for and leads the technical investigation and response to potentially suspicious and malicious activity on Bank IT systems. The Lead Incident Response Analyst monitors for new and emerging threats and leads the development and deployment of new alerts and tools to defend against those threats. In addition, the Lead Incident Response Analyst will assist in the review, analysis, and reporting of various threat intelligence indicators to determine their potential impact to the Bank. Responsibilities • First Responder when the Bank experiences a Cybersecurity Incident • Identifies new and emerging threats to the Bank • Ensures that the Bank has the processes and tools to defend against cybersecurity threats • Lead the technical investigation and response to Cybersecurity Incidents • Oversee Managed Security Service Provider (MSSP) performance, monitoring SLO compliance and working with the MSSP to address issues • Develop and implement new alerts and response playbooks in response to new and evolving threats • Utilize Bank security tools to investigate Alerts escalated by our Managed Security Services Provider (MSSP) • Support efforts to recognize intrusion attempts in IT systems and perform thorough reviews and analyses of event detail • Prepare detailed reporting and documentation of incidents and response actions • Analyze Cyber Security events to determine the risk of their occurrence and potential impact to the Bank • Deliver threat intelligence analysis and reporting to various Bank audiences • Train and mentor junior analysts on the team • Interface with other organization departments and business units providing high quality, low friction, IT security operations services Requirements • 7+ years of experience in a Cybersecurity Incident Response role • Associate degree (Computer Science or Engineering discipline; technical or professional experience may be substituted for formal education if necessary) • Security +, CEH, or similar Security Certifications desired (Not Required) • Strong understanding of data communication concepts and network/software configuration management • Experience with SEIM tools such as Splunk • Experience with Crowdstrike or similar EDR tool • Understanding of AWS or other Cloud Based environments • Able to work well under pressure and within short time constraints • Excellent documentation, communication and interpersonal skills • Excellent analytical and problem-solving abilities • Ability to prioritize and organize competing work demands • Strong organization skills and attention to detail Benefits • Highly competitive compensation and bonus package • Retirement program (401k and Pension) • Medical, dental and vision insurance • Lifestyle Spending Account • Competitive PTO plan • 11 paid holidays per year Apply tot his job
Apply Now →

Similar Jobs

Lead Energy Storage Cyber Security Engineer - REMOTE

Remote Full-time

Cyber Security Incident Response Analyst I

Remote Full-time

Director, Cyber Security Countermeasures

Remote Full-time

Senior Director, Information Security

Remote Full-time

[Remote] Director, Cyber Governance and Controls

Remote Full-time

Cybersecurity Research Engineer - Embedded Systems - "CLEARANCE REQUIRED" - Vernova Research

Remote Full-time

Senior Cybersecurity Engineer job at Emory Healthcare in AL, AR, FL, Atlanta, GA, IL, LA, MI, NH, NC, OH, PA, SC, TN, TX, VA, WI

Remote Full-time

Cyber Security Engineer - 6 Months Contract to Hire - Only Permanenet Residents can apply

Remote Full-time

HHS - Incident Responder

Remote Full-time

Cybersecurity Specialist (Lead or Senior Level)

Remote Full-time

Research Associate - Program on Health Care and Public Health

Remote Full-time

**Experienced Full Stack Developer – Identity and Access Management (IAM) Integration Specialist at arenaflex**

Remote Full-time

**Experienced Full Stack Virtual Assistant – Remote Data Entry Specialist**

Remote Full-time

Chief Operations Officer – Franchising

Remote Full-time

Online Course Developer

Remote Full-time

**Experienced Data Entry Specialist (Remote) – Part-Time Opportunity at arenaflex**

Remote Full-time

**Experienced Data Entry Specialist – Remote Work Opportunity with arenaflex**

Remote Full-time

Industrial Security Program Manager

Remote Full-time

LLM Evaluation Engineer

Remote Full-time

CA PI/Forensic Financial Investigator Needed — Hidden Income & Assets (Los Angeles County Divorce)

Remote Full-time
← Back to Home