ALMA Bank logo

Information Security Analyst

ALMA Bank

On-siteQueens, NY · +1 moremid$70k–$80kPosted 3h ago
2 locationsQueens, NYAstoria, NY

Job description

Alma Bank, headquartered in Long Island City, New York and having 13 branches located throughout Queens, NYC, New Jersey, Brooklyn, Long Island and the Bronx, brings personal service back to personal banking. We have genuine banking professionals ready to serve our customers and offer a full range of products and services. Alma Bank delivers a private banking style experience to our business banking customers. Come join our winning team!

SUMMARY**:**

The Information Security Analyst is primarily responsible for assisting the Information Security team in the development, maintenance and monitoring of Alma Bank’s cybersecurity and information security programs, which are designed to protect the confidentiality, integrity and availability of the Bank’s information systems. In fulfilling this responsibility, the Information Security Analyst will serve as a technical expert on information security policy and will work with the Bank’s Information Security and risk management teams to develop, implement and maintain an effective cybersecurity risk framework.

RESPONSIBILITIES:

Overall, the Information Security Analyst’s job is to work with Alma Bank's IT, Internal Audit, Risk Management, and various business lines to plan, coordinate and develop recommendations for all aspects of information security policies and procedures in order to:

  • Ensure that the procedures and rules of use for information systems comply with Alma Bank's information security policies.

  • Perform periodic reviews to assure that security policies and procedures are being complied with, as well as develop recommendations for improvements.

  • Work with Alma Bank's business lines, vendors, and systems professionals to identify solutions to advance the bank’s information security goals.

  • Assist in the development and maintenance of policies, standards, processes, and procedures to assess, monitor, report, escalate and remediate information security risks and related compliance issues.

  • Use metrics to measure, monitor and report on the effectiveness and efficiency of information security controls and compliance with information security policies.

  • Assist in maintaining the information security risk register and ensure that compliance issues and other variances are resolved in a timely manner.

  • Oversee entitlement reviews of critical systems to protect Alma Bank's information assets from internal and external threats.

  • Assist in the development and delivery of activities and programs that can positively influence Alma Bank's information security culture and the related behavior of its staff, including information security education and awareness.

  • Assist in developing and coordinating business contingency plans and incident response plans along with related testing of both on a regular basis.

  • On a daily basis, review and provide an analysis of security event logs and alerts from security systems and tools such as Firewall, IDS/IPS, DLP, SIEM, Syslog, and security subscription feeds. Communicate threat intelligence to the appropriate stake holders.

  • Monitor and report on emerging cybersecurity threats and trends and provide recommendations to internal teams on how to mitigate risks.

  • Respond to security incidents and/or policy violations which might put the Bank at risk.

  • Implement and monitor controls and efforts in various other information security domains, including disaster recovery, business continuity, incident response, and vendor management.

  • Monitor performance of various controls to ensure effectiveness and recommending/implementing improvements as necessary.

QUALIFICATIONS:

CISSP (or comparable certification) required or to be attained within four years of hire date.

A 4-year College Degree with related information security and cybersecurity experience, having strong knowledge in:

  • Financial services regulatory requirements (FFIEC, GLBA, NYSDFS), and industry standards (NIST, ISO 27001/2).

  • Demonstrated understanding of technological trends and developments in the areas of information security, risk management, and business continuity.

  • IT Systems which include Windows, Linux, virtualization technologies, VDI environment etc., and network infrastructure, including but not limited to routers, firewalls (CISCO and Palo Alto) and network analyzers.

  • Exposure to enterprise security tools preferred (i.e. SIEM, vulnerability scanners, firewalls, identity governance and administration).

  • The configuration of security tools such IAM, SOAR, SIEM , EDR, NDR, IDS/IPS , DLP.

  • Patch Management, Incident Management, Vendor Management, and Risk Assessment.

  • Knowledge of vulnerability assessment and GRC tools is desirable.

  • Work collaboratively across teams to achieve organizational goals.

  • Excellent verbal and written communication skills.

BENEFITS:

  • Salary is commensurate with experience.

  • Alma Bank employees work in an open and collaborative environment.

  • Alma Bank Offers its eligible employees a generous matching 401(k), excellent healthcare coverage (medical/dental/vision), short- and long-term disability, life insurance and long-term care options.

Alma Bank is an Equal Opportunity Employer that welcomes and encourages all applicants to apply regardless of age, race, sex, religion, color, national origin, disability, veteran status, sexual orientation, gender identity and/or expression, marital or parental status, ancestry, citizenship status, pregnancy or other reason protected by law.

No Agencies Please