Talent.com
IT Security Analyst I
IT Security Analyst IBankTalent HQ • Westborough, MA, United States
IT Security Analyst I

IT Security Analyst I

BankTalent HQ • Westborough, MA, United States
4 days ago
Job type
  • Full-time
Job description

Overview

The IT Security Analyst I is responsible for supporting the Bank's IT Security preventative and reactive measures including but not limited to Technology governance, risk, and compliance. IT governance-related duties include ensuring security controls are in place, effective, and that risks are recorded and actively being managed.

Other tasks include configuration management, asset management, patch management, software / hardware lifecycle, threat intelligence, user activity monitoring, and reporting thereof. This role is expected to be fully aware of the Bank's security goals as established by its stated policies, procedures and guidelines and to actively work towards upholding those goals. Other duties include collaboration with senior IT Security personnel to optimize security tools and processes. Performs any functions, within scope of authority and expertise, to provide the highest level of service and responsiveness to customers and co-workers. This is a Hybrid work schedule, 3 days in the office and 2 days remote in Massachusetts.

Responsibilities

  • IT Governance
  • Maintain the Bank's IT security program control framework to ensure compliance with industry standards (NIST, CIS, FFIEC) and MSB's IT security control requirements.
  • Develop systems and processes for identifying, managing, and reporting risks.
  • Provide governance, risk, and compliance data insights to drive improvement across the IT system.
  • Compile metrics / reporting for the weekly IT Governance report. Facilitate weekly presentation to stakeholders.
  • Design and implement security controls for our infrastructure and critical systems.
  • Assigns responsibility for IT Governance related issues and tracks them to resolution.
  • Continually working to improve the Banks overall security posture.
  • Track and understand emerging security practices and threats. Leverage this knowledge to improve security configurations across the enterprise and hunt for potential or active t threats.
  • Manage daily volume of offline computers. Triage and resolve issues so computers can join network and be managed.
  • Reconcile asset type risk scores regularly and report metrics and issues to IT Division.
  • IT Security Control Programs
  • Configuration Hardening :
  • Conduct hardening assessments of hardware and software to identify noncompliance of standards and define remediation requirements.
  • Regular maintenance of configuration hardening benchmarks.
  • Vulnerability Management :
  • Monitoring, delegation, and investigation of vulnerabilities in a severity-prioritized process.
  • Development, deployment, and automation of scripts for remediation of vulnerabilities.
  • Patch Management :
  • Systematic testing, deployment, and reporting of system patches.
  • Threat Intelligence :
  • Monitor, triage, and report on Threat Intelligence alerts accordingly.
  • Software / Hardware Management :
  • Reconciliation of end-of-life / end-of-support hardware and software.
  • Authorization of software based on weight of business need and risk.
  • Regular upkeep of software versions within Bank infrastructure.
  • System & Application Administration
  • Workstation ownership - building, securing, and ongoing management of assigned workstation assets.
  • Identifying and mitigating vulnerabilities on assigned assets and applications.
  • Application ownership - configuring, implementing, securing, and ongoing management of the Bank's security applications.

Security Operations

  • Recommend additional security solutions or enhancements to existing security solutions to improve overall security.
  • Participate in investigations into problematic activity.
  • Consults with third party vendors / suppliers as required.
  • Requirements

    Education

  • Bachelor's Degree in computer science, information systems or equivalent work experience is required
  • Work Experience

  • 2+ years experience supporting security components and applying security best practices across an enterprise application / network infrastructure is required
  • Additional Requirements

  • Experience with managing and securing Microsoft Windows or Linux is preferred.
  • Working knowledge of IT security controls and how to determine their effectiveness.
  • Knowledge, Skills, and Abilities

  • Understanding of common security technologies and functions (Endpoint AV, Patch Management, Encryption, Vulnerability Scanning, etc.)
  • Working knowledge of common operating systems (Windows, Linux, etc.) and basic endpoint security principles
  • Passion and enthusiasm for Cyber Security
  • Demonstrates excellent communication, facilitation, efficient decision making and problem solving skills
  • Licenses and Certifications

  • Certified Information Systems Security Professional (CISSP) or equivalent security related certification Preferred
  • Expected Pay Range

    From : $62,682

    To : $111,280

    The pay range is the salary we in good faith expect to pay for this role at the time of posting. Actual compensation paid may fluctuate higher or lower than the posted range and the range may be modified in the future due to several factors including, but not limited to, relevant experience, certifications, and qualifications, internal equity, adjustments to the requirements and responsibilities of the job, business needs, and economic and market data.

    EEO Statement

    Middlesex Savings Bank is an Equal Opportunity Employer / protected Veterans / Individuals with Disabilities

    Create a job alert for this search

    It Security Analyst • Westborough, MA, United States

    Related jobs
    Information Systems Security Engineer (ISSE)

    Information Systems Security Engineer (ISSE)

    CACI International • Hanscom Air Force Base, MA, United States
    Full-time
    Information Systems Security Engineer (ISSE).Job Category : Information Technology.Minimum Clearance Required to Start : TS / SCI. Percentage of Travel Required : Up to 25%.Type of Travel : Continental US...Show more
    Last updated: 30+ days ago • Promoted
    Information Assurance (IA) System Security Engineer III

    Information Assurance (IA) System Security Engineer III

    gTANGIBLE Corporation • Bedford, MA, USA
    Full-time
    Quick Apply
    TANGIBLE Corporation (gTC), , is a S corporation and a registered Government contractor that provides services and solutions in : . Professional, Administrative, and Management Support.Mission and War...Show more
    Last updated: 30+ days ago
    Info Sec Risk Analyst II, Full-Time, Hybrid, Marlborough MA

    Info Sec Risk Analyst II, Full-Time, Hybrid, Marlborough MA

    Digital FCU • Berlin, MA, United States
    Full-time
    The Information Security Risk Analyst will support overseeing the confidentiality, integrity, and availability as it relates to the credit union's process, procedures, and systems.Working with depa...Show more
    Last updated: 16 days ago • Promoted
    Security Compliance Analyst

    Security Compliance Analyst

    Centuria • Hanscom Afb, Massachusetts, United States, 01731
    Full-time
    Job Title : Security Compliance Analyst.Location : Hanscom Air Force Base, Massachusetts.Centuria, a Service-Disabled Veteran-Owned Small Business (SDVOSB), has been delivering IT, Engineering, and S...Show more
    Last updated: 21 days ago
    Security Compliance Analyst

    Security Compliance Analyst

    Abacus Technology • Hanscom Air Force Base, MA, United States
    Full-time
    Abacus Technology is seeking a Security Compliance Analyst to provide cyber security support for Hanscom AFB.Conduct vulnerability scans on Windows-based servers and infrastructure using DoD-approv...Show more
    Last updated: 8 days ago • Promoted
    Information System Security Engineer, Senior

    Information System Security Engineer, Senior

    Booz Allen Hamilton • Lexington, MA, United States
    Full-time +1
    Information System Security Engineer, Senior.Maintain responsibility for all Information Systems Security Engineer (ISSE) duties in support of Department of Defense (DoD) Risk Management Framework ...Show more
    Last updated: 30+ days ago • Promoted
    IT Security Engineer - Senior

    IT Security Engineer - Senior

    Procyon TS • Framingham, MA, United States
    Full-time
    An immediate opening for a technical engineer to join our Loss Prevention IT team, with key focus on Genetec applications. Using knowledge of industry best practices skills you will help to analyze,...Show more
    Last updated: 5 days ago • Promoted
    IT - IT Engineer - Security (Mid Level)

    IT - IT Engineer - Security (Mid Level)

    Omni Inclusive • Marlborough, MA, United States
    Full-time
    Organization Unit : Global Life Sciences Solutions USA LLC.Mon-Fri 8-5 100% onsite - Need a candidate that is a problem solver, can pick up materials / training and go, take initiative.Role Summary : T...Show more
    Last updated: 30+ days ago • Promoted
    Information System Security Engineer (ISSE) I

    Information System Security Engineer (ISSE) I

    Cyber Defense Technologies • Marlborough, MA, United States
    Full-time
    CDT is seeking a skilled ISSE I for a DoD program in Marlborough, MA.This position is hands-on technical and will provide on-site security engineering, systems administration, and information assur...Show more
    Last updated: 8 days ago • Promoted
    Information System Security Engineer, Senior

    Information System Security Engineer, Senior

    BOOZ, ALLEN & HAMILTON, INC. • Lexington, MA, United States
    Full-time +1
    Information System Security Engineer, Senior.Maintain responsibility for all Information Systems Security Engineer ( ISSE ) duties in support of Department of Defense ( DoD ) Risk Management Framew...Show more
    Last updated: 30+ days ago • Promoted
    Information System Security Engineer (ISSE) II

    Information System Security Engineer (ISSE) II

    Cyber Defense Technologies • Marlborough, MA, United States
    Full-time
    CDT is seeking an experienced and skilled ISSE for a DoD program in Marlborough, MA.This position is hands-on technical and will provide on-site security engineering, systems administration, and in...Show more
    Last updated: 8 days ago • Promoted
    IT Senior Architect, Security (Hybrid)

    IT Senior Architect, Security (Hybrid)

    Eversource Energy • Westwood, MA, United States
    Full-time
    Develops and implements security architecture that will meet business needs to ensure confidentiality, integrity and availability to Eversource systems. Security Architect's responsibilities include...Show more
    Last updated: 30+ days ago • Promoted
    Info Sec Risk Analyst II, Full-Time, Hybrid, Marlborough MA

    Info Sec Risk Analyst II, Full-Time, Hybrid, Marlborough MA

    DCU Inc. • Marlborough, MA, United States
    Full-time
    The Information Security Risk Analyst will support overseeing the confidentiality, integrity, and availability as it relates to the credit union’s process, procedures, and systems.Working with depa...Show more
    Last updated: 8 days ago • Promoted
    Need submission details for IT Security Engineer-Senior, Framingham, MA

    Need submission details for IT Security Engineer-Senior, Framingham, MA

    Guru Schools • Framingham, MA, United States
    Full-time
    Dear Partner, Good Morning , Greetings from Nukasani group Inc !, We have below urgent long term contract project immediately available for • •IT Security Engineer-Senior, Framingham, MA • • need subm...Show more
    Last updated: 30+ days ago • Promoted
    Senior Cyber Security Analyst

    Senior Cyber Security Analyst

    Neighborhood Health Plan of Rhode Island • Smithfield, RI, United States
    Full-time
    Smithfield, RI - Smithfield, RI.Senior Cyber Security Analyst is an experienced cyber security individual who maintains the security of an organization's technical environment.They study existing s...Show more
    Last updated: 30+ days ago • Promoted
    Information Systems Security Engineer (ISSE)

    Information Systems Security Engineer (ISSE)

    Odyssey Systems • Hanscom Air Force Base, MA, United States
    Full-time
    Information Systems Security Engineer (ISSE).Odyssey Systems has an exciting opportunity for a.Senior Information Systems Security Engineer (ISSE). AFLCMC / HNJ Special Programs Division, located at H...Show more
    Last updated: 8 days ago • Promoted
    CYBERSECURITY ANALYST

    CYBERSECURITY ANALYST

    City of Worcester • Worcester, MA, United States
    Full-time
    The City of Worcester is seeking qualified applicants for a.Innovation and Technology Department.The Cybersecurity Analyst plays a critical role in protecting the municipality's digital infrastruct...Show more
    Last updated: 13 days ago • Promoted
    IT Security Engineer - Senior

    IT Security Engineer - Senior

    Kaav Inc. • Framingham, MA, United States
    Full-time
    An immediate opening for a technical engineer to join our Loss Prevention IT team, with key focus on Genetec applications. Using knowledge of industry best practices skills you will help to analyze,...Show more
    Last updated: 5 days ago • Promoted