Cybersecurity Analyst
South Shore BankAbout the role
SUMMARY:
Reporting to the Cybersecurity Manager, the Cybersecurity Analyst I executes the cybersecurity operational processes including the ongoing monitoring and tracking of the organization’s cybersecurity hygiene. They are responsible for the day-to-day monitoring of various alerts and system reports. This role is critical in maintaining security of the organization’s control environment as it relates to confidentiality, integrity and availability of data and systems.
ESSENTIAL DUTIES AND RESPONSIBILITIES
- Coordinating various security assessments, including but not limited to, the FedLine Solutions Security and Resiliency Assurance Program review and the Ransomware Self-Assessment Tool, recommending best practices, corrective actions for identified issues, and updating documentation.
- Assisting in the facilitation of the annual information technology risk assessment process, working with the Technology Owners and Business System Analysts, and reviewing results for consistency across the organization.
- Assisting in the maintenance of the governance, risk, and compliance (GRC) tool inventories (technologies, processes, people, third-parties, etc.) to ensure completeness and accuracy.
- Assisting in the maintenance of the organization’s inventory of systems along with the users and administrators of those systems to support user access reviews and the termination process.
- Assisting in the facilitation of the user access review process providing a consistent mechanism for all user access reviews to be conducted at the organization. Tracking results to ensure timely submission.
- Reviewing the reasonableness and accuracy of user security authorization forms to ensure requests adhere to the least privileged principles and are filled out appropriately.
- Monitoring and analysis of event logging and SIEM alerting, in conjunction with other CyberOps team members. Escalating issues when warranted to pertinent parties for response.
- Gathering and reporting metrics for oversight and monitoring.
- Reviewing activity reports from the network, various CyberOps technologies, and business applications to identify unauthorized changes and anomalous behavior.
- Monitoring threat intelligence sources and informing the appropriate individuals that need to take action. Tracking and reporting these actions as a part of the vulnerability management process.
- Identifying areas of improvement in security technical controls, including those supported by and implemented with CyberOps technology platforms.
- Advocating for security best practices across the organization.
- Monitoring corrective action plans identified for remediation with the IT function and follow up on plans that are not performed in the timeframes specified.
- Adhere to the Company’s privacy and data security policies including but not limited to safeguarding of sensitive information and complying with relevant regulations to protect non-public information.
SECONDARY/ RESPONSIBILITIES
- Reviewing alerts from the secure email system and managing the admin quarantine, in conjunction with other CyberOps team members. Escalating issues when warranted to pertinent parties for response. Providing backup to the Cybersecurity Engineer for policy maintenance.
- Reviewing alerts from the cloud access security broker, in conjunction with other CyberOps team members. Escalating issues when warranted to pertinent parties for response. Providing backup to the Cybersecurity Engineer for policy maintenance.
- Reviewing alerts from the anti-virus system, in conjunction with other CyberOps team members. Escalating issues when warranted to pertinent parties for response. Providing backup to the Cybersecurity Engineer for policy maintenance.
- Providing backup to InfoSec in responding to user reported phishing submissions that come in by providing feedback to employees on if it was a true phish, spam, or other.
- Assisting with the investigation of cybersecurity security incidents and participating on the Incident Response Team.
- Participating in technology projects to provide insight on security best practices and hardening.
- Understanding the risk acceptance processes, including identifying risk, compensating controls, and developing transition plans.
SUPERVISORY RESPONSIBILITIES:
None
Consider this description to be the foundation of your job, not its boundaries. Expect to participate in internal and external training sessions and activities not described here which enhance the quality of service to the client.
Requirements
QUALIFICATIONS
To perform this job successfully, an individual mu
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s