Summary
The Information Technology Security Analyst I supports the Company’s Information Security Program by assisting with day‑to‑day security operations, monitoring activities, and administrative tasks. This role works closely with senior information security staff to help ensure the confidentiality, integrity, and availability of the Company’s systems, data, and information assets in accordance with the Gramm‑Leach‑Bliley Act (GLBA), FFIEC guidance, and internal information security policies and standards.
This position is execution and task‑focused and provides exposure to core security functions while operating under defined procedures and supervision.
Responsibilities
Business Continuity
- Assist with distributing Business Impact Analysis questionnaires to business units.
- Track responses and follow up on missing submissions.
- Normalize data into BIA worksheets or SharePoint lists.
- Escalate inconsistencies or gaps for senior Information Security staff for review.
- Engage with Disaster Recovery Program activities (and preparation.)Security Operations & Monitoring
- Assist with monitoring and triaging alerts related to malware, phishing, endpoint security, firewall activity, and intrusion detection systems.
- Escalate potential security incidents to senior Information Security staff in accordance with established incident response procedures.
- Engage with investigation and documentation of basic security events with support and direction from senior Information Security staff.
- Assist with Security Infrastructure engagements and document discussed requirements where needed.
Vulnerability & Asset Support
- Assist senior staff with vulnerability management activities, including:
- Collecting scan results
- Validating asset inventories
- Tracking remediation status
- Reviewing basic validation of remediation activities for mitigated systems.
Risk & Compliance Support
- Support information security risk assessments by:
- Collecting evidence and documentation
- Assisting with questionnaires and control validation
- Maintaining risk tracking documentation
- Support collection of audit evidence in repositories and maintaining examiner request materials.
Policy, Awareness & Administration
- Assist with enhancements, enforcement, and communication of information security policies, standards, and procedures.
- Support security awareness initiatives, including phishing simulations and employee training tracking.
- Maintain accurate records related to security tools, incidents, and compliance activities.
Collaboration & Escalation
- Work with IT teams and business units to gather information required for security reviews.
- Promptly escalate issues, risks, or control gaps to senior security staff.
- Participate in team meetings, table‑top exercises, and training to build security knowledge.
Other
- Protect all client and bank information confidentially and follow all company policies.
- Understand, communicate, and instill the Company’s mission, vision, and values (Pillars of Success).
- Complete monthly training in a timely manner to ensure knowledge of bank regulatory requirements, policies, and procedures.
- Working at the worksite during regular business hours and/or assigned hours.
- Other specified duties as assigned.
Compensation & Benefits (for HR USE ONLY)
The IT Security Analyst I position pays a salary of $50,000 - $75,000.
Full‐time associates are eligible for our benefits package:
- Medical
- Dental
- Vision
- 401(k) plan
- Company paid life insurance
- Short and Long-term disability insurance
- Company paid vacation, paid leave and holidays
This position will remain open until a qualified applicant is hired.
Qualifications
Skills
- Foundational understanding of information security concepts (CIA triad, phishing, malware, access control).
- Ability to follow documented procedures and escalation paths.
- Strong attention to detail and documentation skills.
- Willingness to learn regulatory and compliance requirements (GLBA, FFIEC, NIST).
- Basic familiarity with common security tools (endpoint protection, email security, vulnerability scanners) preferred.
- Proficiency in Microsoft Copilot required
Education & Experience
- Bachelor’s degree in Information Technology, Cybersecurity, or a related field (or equivalent experience).
- 0–2 years of experience in IT, security operations, help desk, or related technical support roles preferred.
- Entry‑level security certifications (e.g., Security+, SSCP) are a plus but not required.
Physical Requirements (section to be completed by HR)
The work environment is typical of a standard office or retail banking setting. The position is sedentary, involving sitting most of the workday; however, the position will involve moving about the workspace to reach entrances/exits, restrooms, conference rooms, or other areas within the work environment. Reaching may be required involving the ability to move arms in any direction. Office equipment, such as a computer and telephone, will be used requiring the ability to manipulate a keyboard, mouse, and/or keypad. The ability to decipher a computer screen or written documents is necessary. The ability to express or exchange ideas; impart information to clients, coworkers, or the public; or to convey detailed or important instructions; is required. The ability to receive and understand detailed information shared through oral or written communication is required. Position requires lifting and/or the exerting of up to 10 pounds of force.