First Citizens Bank
Senior Information Security Analyst (Incident Response)
First Citizens Bank, Virginia, Minnesota, United States, 55792
Senior Information Security Analyst (Incident Response)
Join to apply for the
Senior Information Security Analyst (Incident Response)
role at
First Citizens Bank Senior Information Security Analyst (Incident Response)
Join to apply for the
Senior Information Security Analyst (Incident Response)
role at
First Citizens Bank Get AI-powered advice on this job and more exclusive features. Overview
This is a remote role that may be hired in several markets across the United States. Overview
This is a remote role that may be hired in several markets across the United States.
As a Senior Incident Response Analyst, you'll be a member of the bank's Cyber Incident Response team. We are looking for an experienced senior level analyst with proven skillsets to detect and respond to threats in the environment, interact with business stakeholders and work to restore operations. This is a technical role and will support the Threat Hunting, Intelligence, and Monitoring functions with content creation, threat analysis, detection recommendations, and colleague mentoring. Seeking a candidate with strong communication skills to complement their technical skillset providing the ability to distill down complex issues for broader understanding expedited incident management.
Responsibilities
Incident Analyst/handler -investigate SIEM/SOAR events as necessary; bring experience in malware analysis, network/endpoint security to respond to and contain incidents. Incident Responder/Incident Lead - Lead Incidents, coordinating the investigation, mitigation, and remediation from a technical perspective. Liaise with technical and business stakeholders. Incident Management - Ensures Information Security incidents are properly detected, documented, investigated, and resolved. Content Development - Support the creation of countermeasures and mitigations in response to an incident. Threat Hunting - Support the operational driven inputs (eg. on the heels of an incident or event) into threat hunting and help build countermeasures/mitigations to address commodity and targeted threats. Also build a capability to track evolving threat actor techniques. Post Incident Review - Provide recommendations to improve communication, processes, procedures, and mitigation options based on high severity incidents.
Qualifications
Bachelor's Degree and 8 years of experience in Information security OR High School Diploma or GED and 12 years of experience in Information security
Experience with all aspects of Incident response including stakeholder management. Familiarity with MITRE ATT&CK and its application to countermeasure creation is a plus. Support the build out of a proactive threat hunting capability. Experience analyzing/dispositioning and escalating security events (systems, application, network, authentication email events) Experience translating threat actor techniques to building mitigations across a variety of security technologies. This could take the form of Yara, Sigma or Regular Expressions. Ability to define security requirements and drive project deliverables. Ability to keep track of multiple incidents and ensure responses are provided in a timely fashion. Experience responding to cloud-related incidents in Azure, AWS and Google cloud. Cloud administrative experience preferred. Cyber Incident Response experience - 3+ years required in which your primary job was an Incident Response role. This role requires participation in the afterhours on call rotation. Rotations will cycle on a weekly basis.
The base pay for this position is generally between $140,000 and $188,000. Actual starting base pay will be determined based on skills, experience, location, and other non-discriminatory factors permitted by law. For some roles, total compensation may also include variable incentives, bonuses, benefits, and/or other awards as outlined in the offer of employment.
This job posting is expected to remain active for 45 days from the initial posting date listed above. If it is necessary to extend this deadline, the posting will remain active as appropriate. Job postings may come down early due to business need or a high volume of applicants
Benefits are an integral part of total rewards and First Citizens Bank is committed to providing a competitive, thoughtfully designed and quality benefits program to meet the needs of our associates. More information can be found at https://jobs.firstcitizens.com/benefits.
Seniority level
Seniority level
Not Applicable Employment type
Employment type
Full-time Job function
Job function
Information Technology Industries
Banking and Financial Services Referrals increase your chances of interviewing at First Citizens Bank by 2x Sign in to set job alerts for Senior Information Security Analyst roles.
Senior Cybersecurity & Compliance Analyst
Reston, VA $145,000.00-$165,000.00 2 weeks ago Cyber Security Analyst/Specialist, FAA BNATCS
Virginia, United States $86,700.00-$151,700.00 9 hours ago Information Technology (IT) Asset Visibility and Security Engineer
Falls Church, VA $125,528.00-$169,832.00 1 week ago Arlington, VA $100,000.00-$118,000.00 4 months ago Sterling, VA $90,300.00-$189,600.00 1 week ago Threat Hunter - Security Operations Expert
McLean, VA $170,000.00-$200,000.00 1 month ago Security Engineer (SIEM/SOAR/SOC Optimization) - Mid-Atlantic region (Remote in NC, VA, WV, MD, DC, DE, NJ, or PA)
Arlington, VA $98,000.00-$115,000.00 4 months ago Lorton, VA $86,800.00-$198,000.00 5 days ago Lorton, VA $86,800.00-$198,000.00 5 days ago Information Assurance/Security Specialist (RPA -Robotic Process Automation)
Arlington, VA $180,000.00-$210,000.00 4 days ago Virginia, United States $81,045.75-$150,000.00 2 weeks ago AIRS Solutions Specialist - Public Sector
Arlington, VA $180,000.00-$210,000.00 1 week ago GPSU Military and Spouses - Commercial Fellowship
Chantilly, VA $86,800.00-$198,000.00 1 month ago Cyber Client Service Technician - Richmond VA (Hybrid Role)
Cyber Security Risk Specialist and Security Engineer, Lead
McLean, VA $99,000.00-$225,000.00 1 week ago Sterling, VA $100,000.00-$120,000.00 2 months ago Zero Trust Compliance Auditor / Engineer (Assessor)
Red Team Penetration Tester - Technical Lead (In Office or Remote)
McLean, VA $150,000.00-$224,000.00 1 week ago Cyber Security Risk Specialist and Security Engineer, Lead
McLean, VA $99,000.00-$225,000.00 1 week ago Were unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI. #J-18808-Ljbffr
Join to apply for the
Senior Information Security Analyst (Incident Response)
role at
First Citizens Bank Senior Information Security Analyst (Incident Response)
Join to apply for the
Senior Information Security Analyst (Incident Response)
role at
First Citizens Bank Get AI-powered advice on this job and more exclusive features. Overview
This is a remote role that may be hired in several markets across the United States. Overview
This is a remote role that may be hired in several markets across the United States.
As a Senior Incident Response Analyst, you'll be a member of the bank's Cyber Incident Response team. We are looking for an experienced senior level analyst with proven skillsets to detect and respond to threats in the environment, interact with business stakeholders and work to restore operations. This is a technical role and will support the Threat Hunting, Intelligence, and Monitoring functions with content creation, threat analysis, detection recommendations, and colleague mentoring. Seeking a candidate with strong communication skills to complement their technical skillset providing the ability to distill down complex issues for broader understanding expedited incident management.
Responsibilities
Incident Analyst/handler -investigate SIEM/SOAR events as necessary; bring experience in malware analysis, network/endpoint security to respond to and contain incidents. Incident Responder/Incident Lead - Lead Incidents, coordinating the investigation, mitigation, and remediation from a technical perspective. Liaise with technical and business stakeholders. Incident Management - Ensures Information Security incidents are properly detected, documented, investigated, and resolved. Content Development - Support the creation of countermeasures and mitigations in response to an incident. Threat Hunting - Support the operational driven inputs (eg. on the heels of an incident or event) into threat hunting and help build countermeasures/mitigations to address commodity and targeted threats. Also build a capability to track evolving threat actor techniques. Post Incident Review - Provide recommendations to improve communication, processes, procedures, and mitigation options based on high severity incidents.
Qualifications
Bachelor's Degree and 8 years of experience in Information security OR High School Diploma or GED and 12 years of experience in Information security
Experience with all aspects of Incident response including stakeholder management. Familiarity with MITRE ATT&CK and its application to countermeasure creation is a plus. Support the build out of a proactive threat hunting capability. Experience analyzing/dispositioning and escalating security events (systems, application, network, authentication email events) Experience translating threat actor techniques to building mitigations across a variety of security technologies. This could take the form of Yara, Sigma or Regular Expressions. Ability to define security requirements and drive project deliverables. Ability to keep track of multiple incidents and ensure responses are provided in a timely fashion. Experience responding to cloud-related incidents in Azure, AWS and Google cloud. Cloud administrative experience preferred. Cyber Incident Response experience - 3+ years required in which your primary job was an Incident Response role. This role requires participation in the afterhours on call rotation. Rotations will cycle on a weekly basis.
The base pay for this position is generally between $140,000 and $188,000. Actual starting base pay will be determined based on skills, experience, location, and other non-discriminatory factors permitted by law. For some roles, total compensation may also include variable incentives, bonuses, benefits, and/or other awards as outlined in the offer of employment.
This job posting is expected to remain active for 45 days from the initial posting date listed above. If it is necessary to extend this deadline, the posting will remain active as appropriate. Job postings may come down early due to business need or a high volume of applicants
Benefits are an integral part of total rewards and First Citizens Bank is committed to providing a competitive, thoughtfully designed and quality benefits program to meet the needs of our associates. More information can be found at https://jobs.firstcitizens.com/benefits.
Seniority level
Seniority level
Not Applicable Employment type
Employment type
Full-time Job function
Job function
Information Technology Industries
Banking and Financial Services Referrals increase your chances of interviewing at First Citizens Bank by 2x Sign in to set job alerts for Senior Information Security Analyst roles.
Senior Cybersecurity & Compliance Analyst
Reston, VA $145,000.00-$165,000.00 2 weeks ago Cyber Security Analyst/Specialist, FAA BNATCS
Virginia, United States $86,700.00-$151,700.00 9 hours ago Information Technology (IT) Asset Visibility and Security Engineer
Falls Church, VA $125,528.00-$169,832.00 1 week ago Arlington, VA $100,000.00-$118,000.00 4 months ago Sterling, VA $90,300.00-$189,600.00 1 week ago Threat Hunter - Security Operations Expert
McLean, VA $170,000.00-$200,000.00 1 month ago Security Engineer (SIEM/SOAR/SOC Optimization) - Mid-Atlantic region (Remote in NC, VA, WV, MD, DC, DE, NJ, or PA)
Arlington, VA $98,000.00-$115,000.00 4 months ago Lorton, VA $86,800.00-$198,000.00 5 days ago Lorton, VA $86,800.00-$198,000.00 5 days ago Information Assurance/Security Specialist (RPA -Robotic Process Automation)
Arlington, VA $180,000.00-$210,000.00 4 days ago Virginia, United States $81,045.75-$150,000.00 2 weeks ago AIRS Solutions Specialist - Public Sector
Arlington, VA $180,000.00-$210,000.00 1 week ago GPSU Military and Spouses - Commercial Fellowship
Chantilly, VA $86,800.00-$198,000.00 1 month ago Cyber Client Service Technician - Richmond VA (Hybrid Role)
Cyber Security Risk Specialist and Security Engineer, Lead
McLean, VA $99,000.00-$225,000.00 1 week ago Sterling, VA $100,000.00-$120,000.00 2 months ago Zero Trust Compliance Auditor / Engineer (Assessor)
Red Team Penetration Tester - Technical Lead (In Office or Remote)
McLean, VA $150,000.00-$224,000.00 1 week ago Cyber Security Risk Specialist and Security Engineer, Lead
McLean, VA $99,000.00-$225,000.00 1 week ago Were unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI. #J-18808-Ljbffr