Senior Security Analyst
Description
Summary:
This role supports the advancement of the organization’s Information Security Program, ensuring robust protection of customer, consumer, and proprietary data against evolving threats. The position is a key player with strategic initiatives, enforces corporate and regulatory compliance, and continuously enhances security posture through proactive risk management and visibility improvements.
Essential Duties and Responsibilities:
- Support the security strategies aligned with organizational goals.
- Lead or serve as a key participant in audits, regulatory examinations, and vendor assessments.
- Ensure compliance with industry standards and regulatory requirements.
- Maintain InfoSec dashboards using Power BI to track key metrics and identify trends.
- Provide actionable insights to leadership for continuous improvement of security controls.
- Implement and optimize security measures to reduce network risk and enhance visibility.
- Continuously improve security controls, policies, and procedures to address emerging threats.
- Manage and audit intrusion prevention systems, SIEM, antivirus, vulnerability management, and content filtering solutions.
- Oversee patch management for operating systems, applications, and hardware.
- Partner with technology and compliance teams to resolve security issues and implement strategic initiatives.
- Manage Data Security Posture Management (DSPM) and Data Loss Prevention (DLP) tools and associated governance controls.
Education and/or Experience
- Bachelor’s degree or equivalent experience
- 5+ years in Information Security or IT Audit, with demonstrated leadership in security strategy and risk management.
- CISSP required
Skills and Abilities
- Ability to assess, prioritize, and mitigate risks across complex environments.
- Strong experience with audit processes, regulatory examinations, and vendor risk assessments.
- Skilled in translating technical data into actionable insights for leadership
- Ability to demonstrate the highest level of ethical behavior and confidentiality and maintain confidentiality with sensitive information.
- Respectful demeanor toward other associates and managers that promotes a positive and professional work environment.
FirstBank does not accept unsolicited resumes from agencies and staffing firms. Recruitment agencies and consultants may not submit resumes directly to managers. FirstBank will not pay fees to any third-party agency or company that does not have a signed agreement as an approved vendor. FirstBank in an Equal Opportunity Employer, including disability.