At Third Federal, named for five years in a row as “One of the Best Companies to Work For" in America by Fortune magazine, we look for associates who can help us fulfill our mission to help customers achieve the American dream of home ownership and financial security and provide value to our customers and our communities. We take a genuine interest in each of our associates – from their professional development to their health and wellness. We offer a pleasant customer service oriented work environment, competitive salary, comprehensive benefits package and career growth opportunities.
At Third Federal, you will find strength and stability in your career. Nearly 15 percent of our associates have been with the company for 25 years or more and, in the more than 80 year history of our company, we have never had layoffs.
Description:
This is a senior level position within the Information Security team. Responsibilities include monitoring and investigation of alerts, administration of software and tools used by the team, and researching and implementing improvements to our Information Security posture. You will be the go-to person for other members of the team to provide cross-training and assistance. This position requires a minimum of 10-15 years of experience in Information Security and/or Information Technology with knowledge and skills in networking, Windows, Linux and Cloud platforms. The ideal candidate will have hands-on experience in multiple areas of Information Security, and will have general knowledge of all other areas of Information Security required by a medium-sized organization.
Duties and Responsibilities may include:
- Monitoring and alerting is a significant portion of this position. This includes log reviews, creating alerts, responding to alerts, investigations and incident response. Also periodic testing of alerts, working with vendors to create and improve correlation rules, and SIEM maintenance.
- Conduct threat and risk analysis along with analyzing the business impact of new and existing systems and technologies to eliminate and/or reduce risk.
- Maintain situational awareness about the entire Information Technology environment at Third Federal.
- Regularly provide ideas and recommendations to improve the Information Security posture.
- Awareness and understanding of current topics and threats occurring in the Information Security community.
- Identify vulnerabilities that exist in Third Federal's infrastructure.
- Provide guidance and advice to other members of the Information Security.
- Conduct formal and informal training classes for knowledge sharing and training.
- Review product proposals and architecture changes from other departments including Information Technology.
- Evaluate, design, and implement new Information Security tools and products.
- Administer, troubleshoot, and upgrade software and devices used by the Information Security team.
- Create policies, playbooks, how-to guides and other documentation.
Required Skills and Qualifications:
- Very strong problem solving skills to investigate and understand security events.
- Ability to locate and utilize logs from different products and tools to perform investigations.
- Ability to correlate information between multiple tools to reach a conclusion.
- Ability to work successfully in team settings.
- Ability to think like an attacker in order to stay ahead of threats.
- Ability to identify vulnerabilities and assess risk and impact.
- Strong understanding of SIEM technology and how to perform searches and create rules. Preferably at least 3-5 years hands-on experience using a SIEM product.
- Understanding of TCP/IP and networking products including firewalls, switches, routers.
- Experience with the administration of Windows servers and workstations including Active Directory.
- Experience with the administration of Linux.
- Hands-on administration of anti-malware products, firewalls, web proxies, SIEMs, vulnerability scanners, penetration testing tools, and email filtering products.
- Experience with Azure and AWS platforms along with experience in a variety of cloud applications is a plus.
- Knowledge of best practices and frameworks used in Information Security.
- Capable of explaining technical information to both I.T. and non-technical audiences.
- Experience using at least one scripting language such as PowerShell, Perl, or Bash.
- Extremely detailed orientated.
- Ability to handle multiple projects and prioritize critical work.
- Desire to self-educate on the ever changing landscape of cyber tactics.
Education and Experience:
- Minimum 10-15 years of experience in an Information Security or Information Technology position with 3-5 years of experience in cybersecurity at a midsize company in the financial services industry.
- Bachelor's degree in computer science or information systems, or equivalent work experience.
- Certifications a plus that match this job position such as CISSP, CEH, Security+, CySA+ etc…
Third Federal is an Equal Opportunity and Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, ethnicity, religion, sex, national origin, gender identification or sexual orientation, disability, protected veteran status or any other classification protected under law.