Cyber Threat Intelligence Analyst I

Posted 7 Days Ago
Be an Early Applicant
Miami Lakes, FL, USA
In-Office
Entry level
Fintech
The Role
Analyzes cyber threats, security events, logs, network traffic, and DLP alerts; performs incident triage, investigations, DFIR, and mitigation. Maintains security controls, policies, tickets, and compliance processes; supports incident responders and IT teams; monitors threat intelligence and emerging vulnerabilities; and communicates risks, alerts, and remediation actions to stakeholders.
Summary Generated by Built In
Job Summary & Responsibilities

JOB SUMMARY: As a member of the Cyber Threat Unit, this position is responsible for the proactive assessment and analysis of cyber risk, understanding threats as they relate to the organization, responding to cyber incidents, and implementing measures to prevent or combat existing and potential threats.


ESSENTIAL DUTIES AND RESPONSIBILITIES

  • Monitor and analyze network traffic, Intrusion Detection/Prevention Systems (IDS/IPS), Data Loss Prevention (DLP) events, security events and logs.
  • Perform secondary reviews and maintain Data Loss Prevention (DLP) systems and policies.
  • Understand a variety of security and compliance policies and incident response processes.
  • Review daily reports and files to ensure compliance to policies and standards.
  • Escalate non-compliance issues to the appropriate group and follow-up on remediation actions
  • Work with internal customers to respond to escalations.
  • Prioritize and differentiate between potential intrusion attempts and false alarms.
  • Determine if security events monitored should be escalated to incidents and follow all applicable incident response and reporting processes and procedures.
  • Create and track security investigations to resolution.
  • Open and assign tickets to the correct resolver, and validate/close tickets related to false positives.
  • Provide investigation, triage, and mitigation of detected security events.
  • Compose security alert notifications and other communications.
  • Advise incident responders in the steps to take to investigate and resolve computer security incidents.
  • Stay up to date with current vulnerabilities, attacks, and countermeasures.
  • Work closely with the SNOC 24x7 operations team, network and system administrators, other appropriate IT/IS groups and business lines to provide incident response (IR) support and determine the risk of a given event.
  • Implement and monitor controls necessary to ensure processes are performed and are effective to protect the environment from all forms of malicious cyber activity.
  • Conduct Digital Forensics and Incident Response (DFIR) analysis of suspected compromised systems.
  • Assist in establishing procedures for handling each security event detected.
  • Keep abreast of emerging technology and public policy trends in the information security space.
  • Assist in the gathering and analysis of the current and future threat landscape, and assist the SNOC Manager in providing leadership with a realistic overview of risks and threats in and to the organization.
  • Maintain knowledge of the current security threat level by monitoring related threat intelligence sources as necessary.
  • Utilize intelligence provided by the Threat Intelligence team from past or current events to improve detection, update monitoring and possibly facilitate prevention of successful cyber attacks.
  • Provide advice on IT initiatives, IT business projects, and IT engineering in regards to security industry best practices.
  • Adheres to and complies with applicable, federal and state laws, regulations and guidance, including those related to anti-money laundering (i.e. Bank Secrecy Act, US PATRIOT Act, etc.).
  • Adheres to Bank policies and procedures and completes required training.
  • Identifies and reports suspicious activity.

QUALIFICATIONS


Education

  • Bachelor's Degree in Computer Science, Information Assurance, Cyber Security or related field or equivalent combination of work with certifications is required

Experience

  • An understanding of network and host based DLP technologies, processes, policies and procedures
  • Basic understanding of regulatory compliance initiatives related to Sarbanes Oxley (SOX), and the Gramm–Leach–Bliley Act (GLBA)
  • Experience in cloud security, or cloud administration
  • Experience with cloud security tools and technologies, such as AWS Security Hub, Azure Security Center, GCP Security Command Center, etc
  • Experience with scripting languages
  • Familiarization of cyber and cloud security standards, frameworks, and guidelines such as NIST, PCI-DSS, MITRE, OWASP, etc
  • Ability to organize and analyze large amounts of data and report findings
  • Firm grasp of the design and implementation of effective IS controls
  • Proficiency with a Security Incident handling tool (ie SIEM, ESEM)
  • Experience with Security orchestration Automation Response (SOAR)
  • Working knowledge of monitoring tools
  • Familiar with Active Directory, group policies and role based concepts
  • Possess a working knowledge of TCP/IP and the functions of Network technologies
  • Possess a working understanding of Network security devices, IPSec VPNs, TCP/IP, Routing, Switching, VRF, VLANS, Bandwidth Utilization, and Load Balancers
  • Cyber security analysis, incident response, or related security experience
  • Strong analytical and problem solving skills
  • Good interpersonal, organizational, writing and communications skills
  • Ability to work well in a team environment as a whole
  • Ability to perform multiple projects simultaneously

Licenses and Certifications

  • CISSP Certified Information Systems Security Professional
  • CEH Certified Ethical Hacker
  • SANS/GIAC Training or certifications
  • SSCP Systems Security Certified Professional
  • Cloud Certifications (eg AWS)
  • Security+
  • Certificate in Cyber Security

Knowledge, Skills, and Abilities

  • Firm understanding of penetration testing and vulnerability assessments.
  • A strong networking background.
  • Demonstrated understanding of TCP/IP networking.
  • Cyber security analysis, incident response, or related security experience preferred.
  • Strong analytical and problem solving skills.
  • Good interpersonal, organizational, writing and communications skills.
  • Ability to work well in a team environment as a whole.
  • Self-motivator
  • Working knowledge with various technologies including forensic tools, network monitoring tools, host security prevention tools, etc.
    Additional Information
    Candidates residing in locations within BankUnited's footprint may be given preference.

Skills Required

  • Bachelor’s degree in Computer Science, Information Assurance, Cyber Security, or a related field, or equivalent work experience with certifications
  • Understanding of network and host-based DLP technologies, processes, policies, and procedures
  • Understanding of SOX and GLBA regulatory compliance requirements
  • Experience with cloud security or cloud administration
  • Experience with cloud security tools such as AWS Security Hub, Azure Security Center, or GCP Security Command Center
  • Experience with scripting languages
  • Familiarity with NIST, PCI-DSS, MITRE, OWASP, and related security frameworks
  • Ability to organize and analyze large amounts of data and report findings
  • Knowledge of effective information security controls
  • Proficiency with a security incident handling tool, such as SIEM or ESEM
  • Experience with Security Orchestration, Automation and Response (SOAR)
  • Working knowledge of monitoring tools
  • Familiarity with Active Directory, group policies, and role-based concepts
  • Working knowledge of TCP/IP and network technologies
  • Understanding of network security devices, IPSec VPNs, routing, switching, VRF, VLANs, bandwidth utilization, and load balancers
  • Cybersecurity analysis, incident response, or related security experience
  • Strong analytical and problem-solving skills
  • Strong interpersonal, organizational, writing, and communication skills
  • Ability to work effectively in a team environment and manage multiple projects
  • CISSP certification
  • CEH certification
  • SANS or GIAC training or certification
  • SSCP certification
  • Cloud certification, such as AWS
  • Security+ certification or a certificate in cybersecurity
  • Understanding of penetration testing and vulnerability assessments
  • Strong networking and TCP/IP knowledge
  • Working knowledge of forensic, network monitoring, and host security prevention tools

BankUnited Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about BankUnited and has not been reviewed or approved by BankUnited.

  • Healthcare Strength Healthcare coverage is positioned as comprehensive, with medical, dental, and vision options plus disability and life insurance. Wellness programming is described as robust, including incentives, screenings, and on-site fitness facilities at the corporate center.
  • Retirement Support Retirement support includes a 401(k) plan with a company match and relatively quick eligibility after one month. Auto-enrollment and auto-increase features are described, which can help employees build savings consistently.
  • Leave & Time Off Breadth Time-off offerings are described as broad, including a sizable PTO range by level and paid holidays. Additional time-off programs such as volunteer time and flexible/hybrid/remote arrangements are also described for eligible positions.

BankUnited Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Miami Lakes, FL
1,635 Employees
Year Founded: 2009

What We Do

BankUnited, Inc., with total consolidated assets of $35.2 billion at March 31, 2021, is a bank holding company with one wholly owned subsidiary, BankUnited. BankUnited, a national banking association headquartered in Miami Lakes, Florida, provides a full range of banking services to individual and corporate customers through banking centers in Florida and New York. The Bank also provides certain commercial lending and deposit products on a national platform. Here at BankUnited, we endeavor to provide, through experienced lending and relationship banking teams, personalized customer service and offer a full range of traditional banking products and services to both commercial and retail customers.

Similar Jobs

GoodRx Logo GoodRx

VP, Marketing Science & Analytics

Consumer Web • Coupons • Healthtech • Social Impact • Pharmaceutical
Remote or Hybrid
USA
800 Employees
238K-465K Annually
In-Office
Miami, FL, USA
62 Employees
85K-115K Annually
In-Office
Miami, FL, USA
62 Employees
85K-115K Annually
In-Office
Miami, FL, USA
62 Employees
85K-115K Annually

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account