Description
- Monitor external threat intelligence sources, digital risk platforms, open-source intelligence feeds and security alerts for threats relevant to MidFirst Bank
- Identify, analyze and report on phishing campaigns, threat actor activity, brand impersonation, fraud-related indicators and other cyber threats
- Research emerging cyber risks, vulnerabilities and attack techniques, and summarizing findings for technical and non-technical audiences
- Support digital risk monitoring related to MidFirst-owned domains, brands, public-facing assets and other exposed identifiers
- Review and correlate security events, alerts and available telemetry to help identify suspicious or malicious activity
- Assist with triage, escalation and follow-up for security events in coordination with incident response, security operations and other Information Security functions
- Support internal investigations involving email activity, user activity, suspicious communications, fraud indicators and related cyber events
- Gather, analyze and document relevant findings from internal systems, intelligence sources and investigative tools
- Produce timely, accurate and actionable intelligence reports, investigative summaries, briefings and alerts
- Maintain awareness of threat trends affecting financial institutions and recommend practical risk-reduction measures
- Support threat-hunting, process improvement and repeatable workflows related to intelligence, investigations and security monitoring
- Participate in security reviews and related research efforts as needed to support the broader objectives of the Information Security team
Position Requirements
- Two or more years of experience in cybersecurity, threat intelligence, investigations, security operations or a closely related discipline
- Working knowledge of common cyber threats, attack methods, phishing techniques, malware trends and threat actor behavior
- Experience researching and analyzing cyber intelligence from open-source, commercial or internal sources
- Ability to review and interpret security alerts, logs and investigative findings with sound judgment and attention to detail
- Ability to evaluate information critically, identify meaningful patterns and distinguish relevant threats from background noise
- Strong written and verbal communication skills with the ability to present findings clearly and professionally
- Strong organizational skills and the ability to manage multiple priorities in a fast-paced environment
- Ability to handle sensitive information with discretion and professionalism
- Experience using Microsoft Office tools for documentation, reporting and communication
- Ability to work effectively both independently and as part of a team
Preferred Qualifications
- Experience supporting cyber threat intelligence, fraud investigations, incident response or SOC-related activities in a banking or financial services environment
- Familiarity with threat intelligence platforms, digital risk monitoring tools, SIEM platforms, case management systems or investigative tools
- Experience with phishing analysis, domain and brand monitoring, dark web monitoring or external attack surface awareness
- Experience supporting email investigations, eDiscovery requests, user activity reviews or related investigative workflows
- Knowledge of MITRE ATT&CK, threat intelligence frameworks and intelligence lifecycle concepts
- Understanding of indicators of compromise, indicators of attack and common investigative techniques
- Familiarity with vulnerability intelligence and assessing the potential business impact of emerging threats
- Experience producing executive summaries, operational alerts, case notes and technical intelligence reporting
- Relevant certifications such as Security+, CySA+, GCTI, GCIA, GCIH, CISSP or similar industry credentials
- Experience in a regulated environment with an understanding of confidentiality, risk management and control expectations
*This position is on-site located in Oklahoma City, must reside within the area to be considered.
*Position requires a minimum of 3 years of relevant US based experience.
#LI-Onsite
#LI-DNI
Equal Opportunity Employer/Protected Veterans/Individuals with DisabilitiesThis employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
Skills Required
- Minimum of 3 years of relevant US-based experience
- Experience in cybersecurity, threat intelligence, investigations, security operations, or a closely related discipline
- Working knowledge of common cyber threats, attack methods, phishing techniques, malware trends and threat actor behavior
- Experience researching and analyzing cyber intelligence from open-source, commercial or internal sources
- Ability to review and interpret security alerts, logs and investigative findings with sound judgment and attention to detail
- Strong written and verbal communication skills
- Strong organizational skills and ability to manage multiple priorities
- Ability to handle sensitive information with discretion and professionalism
- Experience using Microsoft Office tools for documentation, reporting and communication
- Ability to work effectively independently and as part of a team
- Must reside in Oklahoma City area; position is on-site
- Experience supporting cyber threat intelligence, fraud investigations, incident response or SOC activities in a banking or financial services environment
- Familiarity with threat intelligence platforms, digital risk monitoring tools, SIEM platforms, case management systems or investigative tools
- Experience with phishing analysis, domain and brand monitoring, dark web monitoring or external attack surface awareness
- Experience supporting email investigations, eDiscovery requests, user activity reviews or related investigative workflows
- Knowledge of MITRE ATT&CK, threat intelligence frameworks and intelligence lifecycle concepts
- Relevant certifications such as Security+, CySA+, GCTI, GCIA, GCIH, CISSP or similar
- Experience in a regulated environment with understanding of confidentiality, risk management and control expectations
MidFirst Bank Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about MidFirst Bank and has not been reviewed or approved by MidFirst Bank.
-
Healthcare Strength — Health, dental, and vision coverage are available to eligible full‑time and part‑time employees, with company‑paid long‑term disability and an EAP included. Medical plans through Blue Cross Blue Shield and wellness incentives that can lower premiums are highlighted.
-
Retirement Support — A company 401(k) match with a clear formula and a defined vesting schedule provides meaningful retirement support. Eligibility and enrollment timing are specified, reinforcing predictable access to the plan.
-
Leave & Time Off Breadth — Paid vacation, paid sick leave, and paid holidays are emphasized, with a paid community service day also referenced. Time‑off offerings are portrayed as generous across materials.
MidFirst Bank Insights
What We Do
MidFirst Bank occupies a rare position within the banking industry. With $41.2 billion in assets, MidFirst Bank is the largest privately owned bank in the country. This combination of size and private ownership provides our customers with a special brand of banking. MidFirst Bank offers a full range of personal, commercial, trust, private banking and mortgage banking products and services. MidFirst is a strong commercial real estate lender and a major servicer of mortgage loans nationally. As a private business ourselves, we understand the unique needs of each business community we serve at each of our locations in Arizona (Phoenix), California (Los Angeles, Orange County, Santa Barbara, San Diego), Colorado (Boulder, Denver, Edwards, Fort Collins), Nevada (Las Vegas), Oklahoma (Oklahoma City, Tulsa, Western Oklahoma), Texas (Dallas, Houston, San Antonio) and Utah (Salt Lake City). Additionally, MidFirst Bank has commercial lending offices in Atlanta, Chicago, Nashville, New York City, Orlando, Raleigh and Southern California. We serve Southern California through 1st Century Bank, a division of MidFirst Bank. We also operate MidFirst Business Credit as a subsidiary of MidFirst Bank. MidFirst Bank provides services that compete with larger banks, while the people and culture truly define the MidFirst Bank difference. MidFirst provides exceptional financial and deeply committed customer service. Team members are loyal in their character, loyal in their personal commitment to customers, and loyal to always doing the right thing. MidFirst customers can always count on working with thoughtful, intelligent, honest professionals who are true to their financial goals. MidFirst Bank is a strong supporter of the communities they serve, investing time and money in important educational, charitable and civic organizations. Copyright © 2025 MidFirst Bank. All rights reserved. Member FDIC. Equal Housing Lender.









