Information Security Analyst

$54,995 - $84,989/Yr

Unclassified - Rancho Cucamonga, CA

posted 3 months ago

Full-time - Mid Level
Rancho Cucamonga, CA

About the position

The Information Security Analyst position at Cathay Bank is a critical role responsible for managing and maintaining the Bank's security operations in alignment with established Information Security policies, regulations, and industry best practices. This role primarily focuses on the administration, operations, and maintenance of the Security Information and Event Management (SIEM) solution, along with other security tools. The analyst will support incident response activities and perform log data analysis to secure the Bank's information and systems, which include Microsoft Windows Active Directory, financial business applications, network and communications security monitoring, endpoint security tools, and data loss prevention tools. In this position, the analyst will tune the SIEM and other security tools to minimize false positives, assess current security gaps, and identify improvements to enhance the security posture of the organization. The role requires the administration of SIEM configurations as dictated by the Security Operation Center, as well as the adaptation and development of new analyses in response to emerging threats and intelligence. The analyst will also ensure compliance with baseline configuration standards and recommend enhancements as necessary, while overseeing the installation, maintenance, and monitoring of preventive security solutions such as antimalware, security gateways, firewalls, and SIEM solutions. Additionally, the Information Security Analyst will assist in security assessments and vulnerability remediation efforts, collaborating closely with vendors to troubleshoot and optimize the current security toolsets. The role involves gathering performance and compliance data from Information Security and IT sources and interacting with managed security services operations to ensure a robust security framework is maintained.

Responsibilities

  • Tune SIEM and other security tools to reduce false positives.
  • Assess and address current security gaps and identify improvements.
  • Administer configuration of SIEM and other security tools as required by the Security Operation Center.
  • Adapt and develop new analysis in response to emerging threats and intelligence.
  • Support incident response activities and analyze security events and incidents.
  • Ensure compliance with published baseline configuration standards and recommend enhancements.
  • Oversee the installation, maintenance, and monitoring of preventive security solutions including antimalware, security gateways, firewalls, and SIEM solutions.
  • Assist in security assessment and vulnerability assessment remediation efforts.
  • Work closely with vendors to troubleshoot and enhance current security toolsets.
  • Gather performance and compliance data/metrics from IS and IT sources.
  • Interact with managed security services operations.

Requirements

  • BS/MS in Information Technology or Business Administration preferred, or equivalent business experience.
  • Information Security and SIEM-related training required.
  • Security+, SSCP or CISSP certifications preferred.
  • 3+ years' experience in a Security Operations team.
  • 2+ years' experience with Security Information and Event Management (SIEM) solutions.
  • Working knowledge of operating and monitoring network and endpoint security solutions.
  • Understanding of industry security frameworks such as NIST CSF, CIS, and OWASP.
  • Experience with Threat Intelligence platforms and Cloud Security tools preferred.
  • Experience with Regex and custom scripting preferred.
  • Experience with SIEM administration, configuration, and tuning preferred.
  • Excellent communication and problem-solving skills.
  • Strong interpersonal communication and collaboration skills.
  • Self-starter and open to learning opportunities.
  • Ability to train and mentor colleagues with less experience.

Nice-to-haves

  • Experience with Threat Intelligence platforms and Cloud Security tools.
  • Experience with Regex and custom scripting.

Benefits

  • Medical insurance coverage
  • Dental insurance coverage
  • Vision insurance coverage
  • Life insurance coverage
  • Long-term disability insurance
  • Flexible spending accounts (FSAs)
  • Health savings account (HSA) with company contributions
  • Voluntary coverages
  • 401(k) plan
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service