Principal Cybersecurity Analyst

Posted 22 Days Ago
Durham, NC, USA
In-Office
Senior level
Fintech
The Role
Designs and manages network and perimeter security (email, DNS, DDoS, IDS/IPS, cloud), implements firewalls and endpoint controls, conducts vulnerability and penetration testing, monitors threats, performs risk assessments, and leads incident response and remediation using SIEM and endpoint tools.
Summary Generated by Built In
Job Description:

Position Description:

Note: Fidelity will not provide immigration sponsorship for this position.

Performs functions related to Network and Perimeter specialized Security Engineers including Email Security, DNS, Distributed Denial of Service (DDoS), IDS/IPS and cloud security. Understands cyber threats, malicious cyber threat actor motivations, and capabilities relevant to regions of interest. Builds Email Security, Email and Web Advance Threat Protection, DNS, DDoS, IDS/IPS and cloud security. Stops external attacks to firm systems using endpoint controls includes firewall, antivirus, and host-based intrusion systems. Manages Intrusion Prevention System (IPS), Advance Threat Protection (ATP), Cloud Security and Email Security operational functions. 

Primary Responsibilities:

  • Makes information security risk determinations based on intelligence analysis.
  • Develops plans to safeguard computer files against accidental or unauthorized modification, destruction, or disclosure and to meet emergency data processing needs.
  • Monitors current reports of computer viruses to determine when to update virus protection systems.
  • Encrypts data transmissions and erects firewalls to conceal confidential information as it is being transmitted and to keep out tainted digital transfers.
  • Performs risk assessments and executes tests of data processing systems to ensure functions of data processing activities and security measures.
  • Modifies computer security files to incorporate new software, correct errors, or change individual access status.

Education and Experience:

Bachelor’s degree in Computer Science, Engineering, Information Technology, Information Systems,  or a closely related field (or foreign education equivalent)  and five (5) years of experience as a Principal Cybersecurity Analyst (or closely related occupation) designing and implementing perimeter security defense solutions to protect enterprise networks from external threats, unauthorized access, and DDoS attacks, in on premises and Cloud environments. 

Or, alternatively, Master’s degree in Computer Science, Engineering, Information Technology, Information Systems, or a closely related field (or foreign education equivalent)  and three (3) years of experience as a Principal Cybersecurity Analyst (or closely related occupation) designing and implementing perimeter security defense solutions to protect enterprise networks from external threats, unauthorized access, and DDoS attacks, in on premises and Cloud environments.

Skills and Knowledge:

Candidate must also possess:

  • Demonstrated Expertise (“DE”) designing enterprise networks requiring security using secure routing protocols (RIPv2 and OSPF), encryption protocols (IPSec and SSL or TSL), and robust firewalls and access control implementation.  
  • DE performing manual and penetration testing, using Nmap, Dirbuster, and Metasploit to secure enterprise network from unauthorized access; and performing automated penetration testing using Nessus, Qualys, and Burpsuite to identify vulnerabilities, analyze traffic, and validate security controls. 
  • DE maintaining security systems (Cisco ASA, Juniper SRX, or Check Point Firewalls), intrusion detection and prevention systems, force point proxy servers, and log management tools (Spunk, Qradar, and Sevone) to monitor and troubleshoot network traffic. 
  • DE engaging in incident handling -- threat discovery, triage, containment, recovery, and remediation plan coordination -- using Splunk, Wireshark, Crowdstrike, Sentinelone, and Servicenow to ensure rapid response and resolution.

#PE1M2

#LI-DNI

Fidelity’s Onsite Working Model
Fidelity is transitioning to a full-time onsite working model through a phased rollout across regions and roles. Currently, some roles and locations require 100% onsite presence, while others require less. Onsite expectations are likely to evolve as the rollout continues. This transition does not apply to fully remote roles.

Certifications:

Category:Information Technology

Please be advised that Fidelity’s business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940, the Investment Company Act of 1940, ERISA, numerous state laws governing securities, investment and retirement-related financial activities and the rules and regulations of numerous self-regulatory organizations, including FINRA, among others. Those laws and regulations may restrict Fidelity from hiring and/or associating with individuals with certain Criminal Histories.

Skills Required

  • Bachelor's degree in Computer Science, Engineering, Information Technology, Information Systems, or related field and five years' relevant experience; OR Master's degree and three years' relevant experience
  • Demonstrated expertise designing secure enterprise networks using routing protocols (RIPv2, OSPF), encryption (IPSec, SSL/TLS), and robust firewall/access control implementations
  • Demonstrated expertise performing manual penetration testing with Nmap, DirBuster, Metasploit and automated testing with Nessus, Qualys, Burp Suite
  • Experience maintaining security systems (Cisco ASA, Juniper SRX, Check Point), IDS/IPS, Forcepoint proxy servers, and log management tools (Splunk, QRadar, SevOne)
  • Experience in incident handling (threat discovery, triage, containment, recovery, remediation) using Splunk, Wireshark, CrowdStrike, SentinelOne, and ServiceNow
  • Experience designing and implementing perimeter defense solutions protecting enterprise networks from external threats, unauthorized access, and DDoS in on-premises and cloud environments
  • Knowledge and operational experience with Email Security, DNS protection, Advanced Threat Protection (ATP), and cloud security controls

Fidelity Investments Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Fidelity Investments and has not been reviewed or approved by Fidelity Investments.

  • Strong & Reliable Incentives Bonuses, commissions, and profit-sharing are presented as generous and meaningful components of total compensation, with certain roles achieving high total earnings through multiple pay streams. Variable pay is consistently framed as a positive contributor beyond base salary.
  • Retirement Support A 401(k) match up to 7% alongside additional profit-sharing up to 10% materially enhances long-term compensation. These retirement features are highlighted as standout strengths of the overall package.
  • Parental & Family Support Generous paid parental leave (16 weeks maternity, 12 weeks parental), backup dependent care, and adoption assistance provide robust family support. Hybrid work and caregiving resources further ease family responsibilities.

Fidelity Investments Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Boston, MA
58,848 Employees
Year Founded: 1946

What We Do

At Fidelity, our goal is to make financial expertise broadly accessible and effective in helping people live the lives they want. We do this by focusing on a diverse set of customers: - from 23 million people investing their life savings, to 20,000 businesses managing their employee benefits to 10,000 advisors needing innovative technology to invest their clients’ money. We offer investment management, retirement planning, portfolio guidance, brokerage, and many other financial products. Privately held for nearly 70 years, we’ve always believed by providing investors with access to the information and expertise, we can help them achieve better results. That’s been our approach- innovative yet personal, compassionate yet responsible, grounded by a tireless work ethic—it is the heart of the Fidelity way.

Similar Jobs

Lowe’s Logo Lowe’s

Engineer, Information Security

Consumer Web • eCommerce • Information Technology • Retail • Software • Analytics • App development
Hybrid
Charlotte, NC, USA
300000 Employees

Lowe’s Logo Lowe’s

Financial Analyst

Consumer Web • eCommerce • Information Technology • Retail • Software • Analytics • App development
Hybrid
Mooresville, NC, USA
300000 Employees

Zscaler Logo Zscaler

Account Executive

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
North Carolina, USA
8697 Employees
120K-170K Annually

Zscaler Logo Zscaler

Account Executive

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
North Carolina, USA
8697 Employees
140K-200K Annually

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account