Information Security Analyst - Colorado City, United States - FirstBank

    FirstBank
    FirstBank Colorado City, United States

    1 month ago

    Default job background
    Description
    *Relocation assistance is not provided and this is not a fully remote position. FirstBank does not sponsor work visas.

    *If candidates are in a familial or romantic relationship with a current FirstBank employee or FirstBank Board of Director they cannot be considered at this time.
    Salary Range
    $92,144 - $130,00


    Founded in 1963, FirstBank maintains more than $20 billion in assets and operates over 110 branch locations across Colorado, Arizona and California.

    Its growth can be attributed to one simple philosophy:

    do right by customers, communities and employees, which at is the center of the company's "banking for good" mantra.

    FirstBank believes that a company is nothing without the people that comprise it, and prides itself in hiring and training a diverse and talented group.

    By joining the FirstBank team you will experience its great team culture with ample opportunity for growth.

    There's an opportunity for everyone with positions all across the company, from Teller and Call Center to Technology and Lending.

    Apply today to learn more and join the team

    A Brief Overview

    The Analyst, Info Security-Splunk will work to promote and ensure the security of FirstBank's and its customers' data through the rigorous application of SIEM

    tools and skills for the purpose of intrusion/breach prevention, threat hunting, and incident response.

    Will endeavor to maintain the tactical advantage against adversaries through continuous research, development, involvement in peer security groups, and the procurement of tools/services to fill gaps that are identified in our security posture.

    The Analyst role will be focused on managing and implementing projects.

    This Analyst role will be specifically focused on the maintenance and maturity of usage around Splunk Enterprise Security in a large enterprise environment.

    What you will do
    Apply Splunk system installation and maintenance of FirstBank SIEM tools, configurations, and security policies.
    Oversee planning, researching deployment, monitoring, upgrading, and security maintenance activities.
    Managing Splunk data models that support cyber security operations.
    Ensure Splunk Enterprise Security is optimized and working as expected in the environment.
    Provide support and offer guidance on Splunk related projects.
    Manage vendor efforts in conjunction with project plans.
    Balance multiple projects and multiple tasks while meeting agreed upon objectives.

    Maintain documentation on an on-going basis of the security aspects of our network and applications; include documentation updates as an integral part of every project.

    Evaluate hardware and software products and network services for potential fit with company's security requirements.
    Actively participate in the design of security policies for equipment and of baseline security policies for various host platforms.

    Implement security policies in equipment and baseline security policies on various host platforms; test security policies when changed and on a regular, scheduled basis to verify that they are functioning as designed.

    Work effectively with auditors in the evaluation of security policies, procedures, and infrastructure.
    Provide input on various design topologies from a security perspective and identify the pros and cons of each approach.
    Consult on security aspects of software design and make recommendations.
    Troubleshoot security-related problems; coordinate resolution with internal technical resources and vendors.
    Actively participate in all security-related strategic planning efforts.

    Monitor access to FirstBank networks to ensure that security policies in networking equipment and host systems have been implemented correctly and are functioning properly.

    Maintain knowledge of current technology and developing technology .
    Mentor other personnel.
    Perform other duties and projects as assigned.
    Understand and comply with all provisions of the Safety in the Workplace policy.
    Typically requires a bachelor's degree in related field and a minimum of 2 years of related experience.

    A combination of post-high school education, job related certification and related experience equivalent to 5 years may be considered in lieu of minimum requirements.

    Preferred Requirements
    Bachelor's Degree in Computer Science or other technical field preferred
    Knowledge, Skills, and Abilities
    Strong knowledge of Splunk best practices in a large enterprise environment
    Strong knowledge of Splunk engineering, administration, and troubleshooting
    Working knowledge of onboarding data into Splunk
    Experience working with Splunk data models
    Experience with configuring and maintaining SOAR integrated with Splunk
    Strong organizational skills
    Strong technical problem-solving skills
    Ability to talk with individuals and business groups about their needs and ask the right questions related to the security of a product or vendor
    Strong understanding of LAN and WAN protocols, including TCP/IP, SNMP, DNS, and SMTP
    Working knowledge of network transmission technologies, including DSS, T1, T3, DSL, and ISDN
    Strong knowledge of application security, and best practices
    Working knowledge of various networking equipment, such as CSU/DSU's, routers and switches and how this network equipment fits into various network topologies
    Working knowledge of how security is implemented in equipment and on various host platforms; knowledge should include a good understanding of firewalls, packet filtering routers, and the security mechanisms implemented in various operating systems
    Good understanding of various security technologies including VPN's, IPSec, strong authentication methodologies, encryption, and digital certificates
    Working knowledge of various security tools including syslog analyzers, intrusion detection software, penetration scanning software, and host audit software
    Understanding of malware and how to detect and remediate infections
    Excellent writing skills to communicate information effectively to non-technical and technical stakeholders with the appropriate level of detail
    Strong incident response skills

    Working Conditions and Physical Requirements
    Frequently remains stationary throughout a typical business day
    Frequently operates a computer and other office machinery, such as a calculator, copy machine, and computer printer
    Occasionally moves about inside the office to access file cabinets, office machinery, and other rooms
    Occasionally positions self to access drawers and shelves of various heights
    Frequently reaches for and handles paperwork and files
    Constantly communicates with customers, coworkers, and management in-person and on the phone
    Must be able to exchange accurate information
    Provide after hours support (on-call)

    Statement of Benefits

    FirstBank offers a suite of benefits that support our employees' professional, financial, physical, emotional and spiritual well-being.

    Benefits currently offered with our positions include:
    Paid Time Off/paid leave programs, 401K/Employee Stock Ownership, United Healthcare medical, MetLife dental, VSP vision, Employee tuition reimbursement, Volunteer Time Off, Short-Term Disability, Long-Term Disability, and Group Life Insurance/AD&D

    FirstBank is an EOE/Affirmative Action employer.

    All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, national origin, genetic information, disability, veteran status, or any other applicable status protected by state or local law.

    FirstBank does not permit pay inequities.

    Anyone who believes they have been subject to pay inequity should immediately report their concerns to the Human Resource Department.

    *This opportunity is expected to close on 3/20*Explore more InfoSec / Cybersecurity career opportunities


    Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

    #J-18808-Ljbffr