This job posting is expected to remain active for 31 days from the initial posting date listed above. If it is necessary to extend this deadline, the posting will remain active as appropriate. Job postings may come down early due to business need or a high volume of applicants.
Cyber Security Analyst II
Location
United States
Posted
1 day ago
Salary
0
Seniority
Mid Level
Job Description
Cyber Security Analyst II
First Citizens Bank
Role Description This is a remote position that can only be hired in VA and NC. This position supports Information Security and Cyber Threat management programs within the Bank at an advanced level of ability. Analyzes vulnerability and threat data to provide actionable intelligence for cyber defense efforts. Evaluates the Bank's networks and systems to identify technical security gaps or deficiencies. Recommends process improvements and technical solutions to address the identified gaps or deficiencies. Facilitates the defense of the organization's information security and technological architecture through ongoing reporting and escalation of emerging threats. May provide guidance for less experienced associates in the work group or assist special projects. Responsibilities - Security Review: Monitors and evaluates security incidents, system alerts, audit events, and other activity for potential threats against the Bank's networks and systems. Detects anomalies, malware infections, and intrusion attempts. Identifies, recommends, and executes appropriate mitigation tactics for identified threats. May perform system testing or provisioning. - Analysis: Analyzes data from various operating systems, databases, and applications within the Bank. Sources and interprets data to proactively search for threats. - Business Support: Supports the defense of the organization's information security and technological architecture through a number of operational and technical tasks. Ensures all cyber security monitoring systems are online and fully operational as well as ensuring compliance with all security policies and standards. Maintains current knowledge about threat indicators, attack trends, and cyber-intel as well as news and reports from industry sources. Participates in the creation and maintenance of playbooks and incident response procedures. May answer inquiries or facilitate training on security threats for other associates in the work group. - Reporting: Produces reports that document investigation and security incidents as well as the results of analysis. Provides analytics and reporting that facilitates actionable cyber-intelligence within daily operations. Conveys information to the appropriate parties, which includes both internal and external partners. Qualifications - Bachelor's Degree and 4 years of experience in Information security OR High School Diploma or GED and 8 years of experience in Information security - Preferred Qualifications: Current FCB contractor Benefits - Benefits are an integral part of total rewards and First Citizens Bank is committed to providing a competitive, thoughtfully designed and quality benefits program to meet the needs of our associates. More information can be found at https://jobs.firstcitizens.com/benefits .
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Cyber Security Analyst – Governance, Risk and Culture
BaringaPutting people first. Creating impact that lasts.
• Develop a complete understanding of Baringa’s technology and information systems. • Lead in the response to RFPs/audits, including supplier security due diligence and third-party audit and assurance activities. • Identify and communicate current and emerging security threats and cyber risks. • Support a program of awareness-raising and training to deliver compliance and to foster a cyber conscious culture across the company. • Assist with the definition, implementation and maintenance of corporate security policies, standards and procedures. • Provide ‘hands on’ assistance, particularly in technical control implementation and incident response. • Coordinating the needs of in-house IT experts and remote employees, vendors and contractors. • Work as part of a team to communicate ideas, suggestions and solutions that achieve the firm’s long-term objectives, especially the GRC Strategy. • Align organisational security strategy and infrastructure with overall business and information technology strategy. • Manage company compliance with information security, policies, standards, contractual obligations and guidance through business managers and champions providing advice, support and guidance on risk based good practice. • Lead on and produce technical security MI in support of governance and vulnerability management engagements. • Support client engagement leads on client queries and requests - during the business development process and during ongoing client engagement - regarding Baringa’s information technology security policies and processes.
• Analyze and remediate security alerts related to misconfigurations and vulnerabilities in cloud environments; • Support the implementation of security enhancements and best practices; • Monitor the evolution of cloud environments, ensuring compliance and risk reduction; • Collaborate with Information Security and DevOps teams; • Support the adoption of secure development practices and the proper use of Infrastructure as Code (IaC); • Participate in security incident handling when necessary; • Contribute suggestions and continuous improvements for cloud environments; • Assist in organizing, standardizing, and strengthening security in cloud environments.
Senior Security Analyst
OceaneeringOceaneering provides engineered products and services for global deepwater applications. The company primarily serves offshore oil and gas enterprises, but its
Role Description The Oracle Fusion Application Security Analyst is responsible for the design, implementation, administration, and governance of security across Oracle Fusion Cloud ERP, HCM, and SCM applications. This role ensures secure, compliant, and scalable access management aligned with Oceaneering’s internal controls, SOX requirements, and enterprise application security standards. - Partners closely with Functional Analysts, Internal Audit, HR, Finance, and IT Operations. - Supports access provisioning, role design, audits, quarterly reviews, and production support across global Oracle Fusion environments. Qualifications - Experience with Oracle Fusion Cloud ERP, HCM, and SCM applications. - Knowledge of security governance and compliance standards. - Strong analytical and problem-solving skills. - Ability to work collaboratively across various teams. Requirements - Proven experience in application security management. - Understanding of SOX requirements and internal controls. - Excellent communication skills. Benefits - Competitive salary and performance-based bonuses. - Comprehensive health benefits. - Opportunities for professional development and training. - Flexible work culture. Company Description Oceaneering is a global provider of engineered services and products, primarily to the offshore energy industry. We develop products and services for use throughout the lifecycle of an offshore oilfield, from drilling to decommissioning. We operate the world's premier fleet of work class ROVs. Additionally, we are a leader in offshore oilfield maintenance services, umbilicals, subsea hardware, and tooling. We also use applied technology expertise to serve the defense, material handling, aerospace, science, and renewable energy industries. - Oceaneering’s India Center has been integral to operations since 2003. - Offers diverse business solutions including Subsea Engineering, Robotics, and Automation. - Hosts crucial business functions like Finance, SCM, IT, HR, and HSE. - Provides modern offices and industry-leading tools and software. - Promotes a flexible, transparent, and collaborative work culture.
Cybersecurity Analyst
General DynamicsGeneral Dynamics is a global aerospace and defense company offering products designed to provide safety and security to people around the world. In the past, Ge
Title: Cybersecurity Analyst Job Description: Job ID Number RQ220334 Category Information Technology Employment Type Full Time Business Unit GDIT Location: Any Location / Remote Full Part/Time: Full time Job Req: RQ220334 Type of Requisition: Regular Clearance Level Must Currently Possess: None Clearance Level Must Be Able to Obtain: None Public Trust/Other Required: SSBI (T5) Job Family: Cyber and IT Risk Management Job Qualifications: Skills: Indigenous Culture, Information Technology (IT), Security Controls, Security Practices Certifications: None Experience: 1 + years of related experience US Citizenship Required: No Job Description: GDIT is seeking aCybersecurity Analystto support the Indian Health Service PATH EHR system. This role will help deploy, assess, and secure a government-owned Electronic Healthcare Record (EHR) system within a cloud environment. The system must be deployed with a secure baseline, ensuring system integrity, confidentiality, and availability while maintaining compliance with healthcare and federal cybersecurity regulations and addressing vulnerabilities across interconnected medical and enterprise systems. GDIT has been supporting the IHS mission for 20+ years; working with the agency to provide integral services to raise health access and availability to 2.6 million American Indians and Alaska Natives. You'll be part of modernizing the EHR platform to enable better data access, patient experience, and quality of care for 567 tribes, 37 states, and over 600 medical facilities. Our work depends on a Cybersecurity Analyst joining our team to support the Indian Health Service (IHS) Electronic Health Records Modernization (EHRM) program. As a Cybersecurity Analyst supporting the IHS EHRM program, you will be responsible for performing security assessments, analyzing system configurations, identifying vulnerabilities, and ensuring compliance with federal cybersecurity requirements throughout the EHR implementation lifecycle. This position is fully remote! This role requires you to obtain and maintain an in-depth Public Trust Level 5. This investigation will review personal and criminal behavior, financial conduct, foreign influence, as well as other adjudications. HOW A CYBERSECURITY ANALYST WILL MAKE AN IMPACT: Conduct security assessments and support Authorization to Operate (ATO) activities under the NIST Risk Management Framework (RMF). Analyze security scan results (e.g., ACAS, Nessus, container scans) and track remediation efforts to closure. Perform continuous monitoring activities and maintain security documentation to support compliance with NIST 800-53 controls. Review and validate secure configurations across Windows, Linux, cloud, container, and network environments. Support the assessment of medical device integrations and EHR system interfaces to identify cybersecurity risks. Evaluate and document Ports, Protocols, and Services (PPS) requirements and maintain the PPSM Master List for EHR-related systems. Review firewall rules, boundary protections, IDS/IPS configurations, and secure network architecture diagrams. Assist in reviewing and validating DISA Security Technical Implementation Guides (STIGs) compliance. Assess authentication and access control implementations including MFA, SSO, RBAC, and privileged access management. Review Interface Control Documents (ICDs) and Interconnection Security Agreements (ISAs) to ensure cybersecurity requirements are met prior to submission. Support incident response efforts by analyzing logs, alerts, and security events impacting the EHR environment. Develop and maintain security documentation including Security Plans (SSPs), Security Assessment Reports (SARs), POA&Ms, and change requests. Provide cybersecurity recommendations to engineering and architecture teams to mitigate risk across cloud and on-prem environments. Assist in ensuring HIPAA and federal data privacy safeguards are implemented to protect patient information. REQUIRED QUALIFICATIONS AND EXPERIENCE: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field. 3+ years of experience in cybersecurity analysis, assessment, or compliance roles in healthcare, government, or regulated IT environments. Experience with Cherokee Native American Culture and Indian Health personnel required Strong knowledge of NIST 800-53 and the Risk Management Framework (RMF), including security control assessments and POA&M management. Experience conducting vulnerability assessments and analyzing scan results. Knowledge of networking concepts including TCP/IP, ports, protocols, encryption standards (SSL/TLS), and secure network architecture principles. Understanding of authentication methods such as MFA, SSO, and identity federation. Experience with cloud environments (e.g., AWS, Azure, OCI) and applying security best practices to cloud-hosted services. Experience securing Windows and Linux operating systems. Familiarity with container technologies (Docker, Kubernetes) and associated security controls. Understanding of healthcare data privacy regulations (HIPAA) and federal information security standards (FISMA). Experience with DISA STIG validation and remediation. Ability to develop and maintain PPS documentation and security artifacts. Proficiency in Microsoft Office Suite (Word, Excel, PowerPoint, Visio). Must be able to obtain a Public Trust Level 5 clearance. Ability to travel up to 25% of the year, if needed. DESIRED QUALIFICATIONS AND EXPERIENCE: Masters degree strongly preferred. Security certifications such as CompTIA Security+ CE, CISSP (Associate or full), CISM, or equivalent. Experience supporting federal ATO processes and interacting with Authorizing Officials (AOs). Advanced knowledge of encryption technologies, key management systems, and secure data transmission methods. Experience with zero-trust architecture implementation in federal healthcare environments. Familiarity with scripting languages (PowerShell, Python) to automate security analysis and reporting. Experience reviewing and securing healthcare interoperability standards (HL7-MLLP, FHIR, HTTPS). Experience supporting large-scale federal EHR implementations or healthcare IT modernization programs. Strong analytical and documentation skills with experience producing high-quality cybersecurity artifacts. Excellent organizational and time management skills with the ability to manage competing priorities. Ability to communicate effectively with engineers, architects, government stakeholders, and medical system owners. Ability to work independently within structured federal compliance frameworks. Proficiency with Adobe Acrobat Professional. GDIT IS YOUR PLACE: Full-flex work week to own your priorities at work and at home. 401K with company match. Comprehensive health and wellness packages. Internal mobility team dedicated to helping you own your career. Professional growth opportunities including paid education and certifications. Cutting-edge technology you can learn from. Rest and recharge with paid vacation and holidays. #IHSJobs #GDITFedHealthJobs The likely salary range for this position is $68,000 - $92,000. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range. Scheduled Weekly Hours: 40 Travel Required: 10-25% Telecommuting Options: Remote Work Location: Any Location / Remote Additional Work Locations: Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee's date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most. We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology. Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc. Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans PI284716247



