Sr. Information Security Analyst
Company LCCU
Location Durham, NC
Preferred GIAC Certifications GFCI, GMON, GDSA, GSEC, GISF
Travel 10%
Salary Not provided
URL Not provided
Contact Name John G Fehr
Contact Email jfehr/at/latinoccu.org
Expires 2024-08-20

Job Description

Description
The Sr. Information Security Analyst will safeguard LCCU's enterprise networks, systems, and applications against cyber threats. Will play a critical role the security and integrity of LCCU's digital assets, ensuring the trust and confidentiality of LCCU's sensitive data and assets. Sr. Information Security Anal\ closely with the management, business units, and technology teams to ensure network availability, network/system security, and data security for LCCU.
Responsibilities:
• Monitor and analyze security events and incidents related to LCCU's core banking systems, applications, and networks.
Provide network defense system architecture, installation, and configuration support by identifying, developing, and facilitating the implementation of initiatives and progra to enhance the security of the credit union's network and data assets.
• Identify potential threats, vulnerabilities, and breaches, and respond promptly to mitigate the impact. Conduct investigations and forensic analysis to determine the root cause of incidents.
• Perform regular risk assessments to identify potential cybersecurity risks and vulnerabilities in the LCCU infrastructure.
• Develop and implement risk mitigation strategies, controls, and countermeasures to protect sensitive data and ensure compliance with industry regulations and best pract Ensure compliance with relevant cybersecurity frameworks, such as NIST Cybersecurity Framework.
• Collaborate with internal and external auditors to address any identified gaps or issues.
Develop and maintain incident response plans specific to LCCU's enterprise systems and applications.
Evaluate the security architecture of the core banking systems and applications, including network infrastructure, servers, databases, and access controls.
• Recommend and implement security controls, such as firewalls, intrusion detection systems, encryption mechanisms, and multi-factor authentication, to strengthen the se posture.
Develop and deliver cybersecurity awareness and training programs for employees and system users. Educate staff on security best practices, phishing awareness, and i reporting procedures to enhance the overall cybersecurity awareness within LCCU.
• Maintain accurate and up-to-date documentation of security policies, procedures, and standards related to the Information Security Program. Provide regular security repc metrics for management and stakeholders, highlighting the status of security measures, incidents, and compliance.
Stay abreast of the latest cybersecurity threats, trends, and technologies relevant to the financial industry. Continuously monitor and research emerging threats and vulne1 may impact the LCCU, make recommendations, and implement proactive security measures to mitigate potential risks.


Requirements
• Bachelor's degree (B.S.) from a four-year college or university; at least eight years related experience and training; or equivalent combination of education and experience with complex IT infrastructures.
5-7 years of Information Technology experience working in a mid-size to enterprise environment. Financial Industry is a plus.
3-5 years of advanced Cyber Security experience required, including knowledge of security assessment and penetration testing methodology. Senior knowledge of network security administration and engineering in a multisite, multilanguage environment.
In-depth experience working with security technologies, including firewalls, IPS/IDS, NAC, EDR, proxies, and other products to secure network egress/ingress.
• Advanced knowledge of network monitoring, SEIM, and incident response/threat-hunting tools. Team player who can manage multiple tasks in a fast-paced environment.
• Able to travel to other locations throughout the state as needed. Excellent communication skills with internal team and external vendors.
• Ability to manage time with strong organizational skills and keen attention to detail. Proven ability to solve problems creatively and proactively.
Ability to learn quickly and work efficiently.