Sr Cyber Defense Ops Spec

Posted 3 Hours Ago
Be an Early Applicant
Johnston, RI, USA
In-Office
84K-100K Annually
Senior level
Digital Media • Fintech • Information Technology • Machine Learning • Financial Services • Cybersecurity • Automation
Ready to Transform the Future | Careers in Technology & Security
The Role
Performs security monitoring, threat and intrusion analysis, incident handling, malware detection and eradication, data loss prevention, privileged-user monitoring, and incident response. Analyzes logs, NetFlow, and packet captures; assesses vulnerabilities and business impact; applies mitigation techniques; develops security metrics; and communicates recommendations to leadership. Acts as a technical authority, subject matter expert, analyst trainer, and representative for Cyber Defense initiatives.
Summary Generated by Built In

As a Sr. Cyber Defense Ops Specialist, you are a senior individual contributor in the Cyber Defense Threat Detection (CDTD) Cyber Defense Operations Center (CDOC), responsible for performing security monitoring, intrusion analysis, incident handling, data loss prevention, privileged user monitoring, training of analysts, security incident management, malware detection/eradication, and recognizing hacker/incident response tactics, techniques, and procedures. You will have responsibility for one or more of the security systems aligned with their specific function, either directly or indirectly; and will be a technical authority for critical operational decisions having significant impact to the organization with authority extending beyond the team to include both technology and business line areas in security related decisions. This role requires you to stay current with security technology, the threat landscape, and emerging threats. You will also act as a subject matter expert in their specific disciplines and will provide management with recommendations and guidance as needed.

Primary responsibilities include

  • Performing ongoing monitoring and threat analysis, analyzing logs, NetFlow data, and packet capture.
  • Identifying potential IT security incidents and escalating information to appropriate IR senior staff.
  • Assessing threat and vulnerability information from all sources (both internal and external) and promptly applying applicable mitigation techniques.
  • Developing meaningful metrics to reflect the true posture of the environment allowing the organization to make educated decisions based on risk.
  • Using information from cyber security tools and processes, assessing potential security and business impacts while communicating recommendations to management.
  • Representing Cyber Defense as needed on security related or risk related initiatives or working groups where technical skills and security expertise are required.
  • Proactively protecting, monitoring, investigating and resolving threats to secure user environment and company assets.

Experience and Skills: 

  • 3 or more years of security industry experience preferably in a Security Operations Center (SOC) environment 
  • Experience with the following highly desirable: 
    • Security Information and Event Management Tools (Arcsight, Splunk, etc.) 
    • Intrusion Prevention/Detection Tools (FirePower, McAfee) 
    • Database Security Tools (Guardium, jSonar) 
    • Data Loss Prevention Tools (Symantec, Triton, etc.) 
    • Firewalls (Cisco, Palo Alto, Check Point etc.) 
  • Application Security Tools (Web Application Firewalls) 
  • Vulnerability tools 
  • Cyber Security Incident Response 
  • Host Intrusion Detection Systems 
  • XDR and Antivirus Tools (Crowdstrike, Symantec, MS Defender) 
  • Strong verbal and written communication skills including the ability to communicate technical concepts to non-technical audiences. 
  • Excellent critical thinking, problem-solving, and decision-making skills. 
  • Must possess active listening, attention to detail, customer service, prioritization, and problem-solving skills. 
  • Ability to work independently or strategically. 
  • Experience adapting and demonstrating flexibility while working in a dynamic environment. 
  •  

Education and Certifications 

  • Bachelor’s Degree or equivalent combination of experience 
  • A combination of relevant industry certifications preferred (e.g. Net+, Sec+, CySA+, CEH, Pentest+, GCFA, GSOC, AWS Certified Cloud Practitioner, Microsoft Azure Fundamentals) 

Hours & Work Schedule 

Hours per Week:  40 Hrs. (4 days per week) 

Work Schedule:  7:00AM – 5:00PM (Tuesday - Friday)

Location: One Citizens Way, Johnston, RI - Citizens Bank Johnston Campus (this is not a remote opportunity) 

Pay Transparency

The salary range for this position is $84,000 -  100,000 per year, plus an opportunity to earn additional incentive earnings (if applicable). Actual pay is based on various factors including, but not limited to, the budget, work location, and relevant skills and experience. We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more. Note, Citizens’ paid time off policy exceeds the mandatory, paid sick or paid time-away policy of every local and state jurisdiction in the United States. For an overview of our benefits, visit Citizens Benefits

About Us

Equal Employment Opportunity

Citizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical condition, military or veteran status, national origin, pregnancy/childbirth/lactation, colleague’s or a dependent’s reproductive health decision making, race, religion, sex, sexual orientation, or any other category protected by federal, state and/or local laws. At Citizens, we are committed to fostering an inclusive culture that enables all colleagues to bring their best selves to work every day and everyone is expected to be treated with respect and professionalism. Employment decisions are based solely on merit, qualifications, performance and capability.

Equal Employment and Opportunity Employer

Job Applicant Data Privacy Policy

Background Check

Any offer of employment is conditioned upon the candidate successfully passing a background check, which may include initial credit, motor vehicle record, public record, prior employment verification, and criminal background checks. Results of the background check are individually reviewed based upon legal requirements imposed by our regulators and with consideration of the nature and gravity of the background history and the job offered. Any offer of employment will include further information.


Skills Required

  • At least 3 years of security industry experience, preferably in a Security Operations Center environment
  • Bachelor’s degree or equivalent combination of experience
  • Experience with security information and event management tools such as ArcSight or Splunk
  • Experience with intrusion prevention and detection tools such as FirePower or McAfee
  • Experience with database security tools such as Guardium or jSonar
  • Experience with data loss prevention tools such as Symantec or Triton
  • Experience with firewalls such as Cisco, Palo Alto, or Check Point
  • Experience with application security tools, including web application firewalls
  • Experience with vulnerability assessment tools
  • Cybersecurity incident response experience
  • Experience with host intrusion detection systems
  • Experience with XDR and antivirus tools such as CrowdStrike, Symantec, or Microsoft Defender
  • Strong verbal and written communication skills, including communicating technical concepts to nontechnical audiences
  • Critical thinking, problem-solving, and decision-making skills
  • Active listening, attention to detail, customer service, and prioritization skills
  • Ability to work independently and strategically
  • Flexibility and adaptability in a dynamic environment
  • Relevant industry certifications such as Net+, Security+, CySA+, CEH, Pentest+, GCFA, GSOC, AWS Certified Cloud Practitioner, or Microsoft Azure Fundamentals

What the Team is Saying

Jacqui
Brittany
Alora
Bayard
Brittany
Alora
Bayard
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Providence, RI
17,000 Employees
Year Founded: 1828

What We Do

As one of the oldest and largest financial services firms in the United States with a history dating back to 1828, we’re committed to providing solutions and expertise that support our customers, clients, colleagues, and communities in what’s next on their own unique journey. We invest in the humans who build the logic, ideas, and innovations that bring new technologies to life. Investments in AI, cloud computing, machine learning and automation provide our engineers the tools that enable us to remain competitive and win in today’s environment. At Citizens, we recognize that the journey to accomplishment is no longer linear and that individuals are made of all they have done and all they are going to do. Whether you’re considering banking with us or looking to work with us, you’ll find a customer-centric culture and a supportive, collaborative workforce at Citizens. You’re made ready and so are we. If you're ready to advance your career in technology and security, learn more about opportunity's Citizens offers here: https://jobs.citizensbank.com/digital-transformation

Why Work With Us

We empower the colleagues that power our tech. With growth & upskilling opportunities and sought-after benefits, plus a diverse culture of people and perspectives, we help our colleagues achieve career goals. Because innovation can’t happen without the minds and hearts of our people. Technology is constantly evolving, and we believe you can too.

Gallery

Gallery

Citizens Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Discuss your schedule with managers who support a flexible culture where work-life balance is respected.

Typical time on-site: Not Specified
HQProvidence, RI
Atlanta, US
Attleboro, US
Boston, MA
Bristol, US
Charlestown, US
Charlotte, NC
Cranston, US
Cumberland, US
Dartmouth, US
Dedham, US
East Providence, US
Fairhaven, US
Franklin, TN
Glen Allen, US
Irving, TX
Johnston, RI
Lincoln, US
Narragansett, US
New Bedford, US
New York, NY
Newport, US
North Dartmouth, US
North Kingstown, US
North Smithfield, US
Pawtucket, US
Phoenix, AZ
Riverside, US
Smithfield, US
Swansea, US
Warwick, US
West Palm Beach, US
Westerly, US
Westwood, US
Learn more

Similar Jobs

Citizens Logo Citizens

Workforce Transformation Manager, Consumer Bank

Digital Media • Fintech • Information Technology • Machine Learning • Financial Services • Cybersecurity • Automation
In-Office
2 Locations
17000 Employees
146K-191K Annually

Citizens Logo Citizens

Sr Sourcing Lead- Banking Operations & Services

Digital Media • Fintech • Information Technology • Machine Learning • Financial Services • Cybersecurity • Automation
In-Office or Remote
2 Locations
17000 Employees
123K-161K Annually

Citizens Logo Citizens

Distinguished Engineer - AI Security

Digital Media • Fintech • Information Technology • Machine Learning • Financial Services • Cybersecurity • Automation
In-Office or Remote
2 Locations
17000 Employees
175K-250K Annually

Citizens Logo Citizens

Business Banking Relationship Manager II

Digital Media • Fintech • Information Technology • Machine Learning • Financial Services • Cybersecurity • Automation
In-Office or Remote
2 Locations
17000 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account