Sr Cyber Defense Ops Spec

Citizens Bank

$84K — $100K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3+ years of security industry experience in a Security Operations Center (SOC) environment
  • Proficiency in Cyber Security Incident Response and threat analysis
  • Experience with security tools like SIEM, IPS/IDS, DLP, and firewalls
  • Strong communication skills for conveying technical concepts to non-technical staff
  • Active listening and attention to detail, with excellent problem-solving abilities
  • Bachelor's Degree or equivalent experience, with relevant industry certifications preferred

Responsibilities

  • Perform ongoing security monitoring and threat analysis
  • Identify and escalate potential IT security incidents
  • Assess and mitigate threat and vulnerability information
  • Develop metrics to reflect the security posture of the environment
  • Communicate potential security impacts and recommendations to management
  • Represent the Cyber Defense team on security initiatives
  • Proactively secure and investigate threats to the organization

Benefits

  • Comprehensive medical, dental, and vision coverage
  • Retirement benefits with company contribution
  • Maternity/paternity leave
  • Flexible work arrangements including a four-day work week
  • Education reimbursement for professional development
  • Wellness programs and health initiatives
  • Generous paid time off exceeding local and state requirements
Full Job Description
Job Description

As a Sr. Cyber Defense Ops Specialist, you are a senior individual contributor in the Cyber Defense Threat Detection (CDTD) Cyber Defense Operations Center (CDOC), responsible for performing security monitoring, intrusion analysis, incident handling, data loss prevention, privileged user monitoring, training of analysts, security incident management, malware detection/eradication, and recognizing hacker/incident response tactics, techniques, and procedures. You will have responsibility for one or more of the security systems aligned with their specific function, either directly or indirectly; and will be a technical authority for critical operational decisions having significant impact to the organization with authority extending beyond the team to include both technology and business line areas in security related decisions. This role requires you to stay current with security technology, the threat landscape, and emerging threats. You will also act as a subject matter expert in their specific disciplines and will provide management with recommendations and guidance as needed.

Primary responsibilities include
  • Performing ongoing monitoring and threat analysis, analyzing logs, NetFlow data, and packet capture.
  • Identifying potential IT security incidents and escalating information to appropriate IR senior staff.
  • Assessing threat and vulnerability information from all sources (both internal and external) and promptly applying applicable mitigation techniques.
  • Developing meaningful metrics to reflect the true posture of the environment allowing the organization to make educated decisions based on risk.
  • Using information from cyber security tools and processes, assessing potential security and business impacts while communicating recommendations to management.
  • Representing Cyber Defense as needed on security related or risk related initiatives or working groups where technical skills and security expertise are required.
  • Proactively protecting, monitoring, investigating and resolving threats to secure user environment and company assets.


Experience and Skills:
  • 3 or more years of security industry experience preferably in a Security Operations Center (SOC) environment
  • Experience with the following highly desirable:
    • Security Information and Event Management Tools (Arcsight, Splunk, etc.)
    • Intrusion Prevention/Detection Tools (FirePower, McAfee)
    • Database Security Tools (Guardium, jSonar)
    • Data Loss Prevention Tools (Symantec, Triton, etc.)
    • Firewalls (Cisco, Palo Alto, Check Point etc.)
  • Application Security Tools (Web Application Firewalls)
  • Vulnerability tools
  • Cyber Security Incident Response
  • Host Intrusion Detection Systems
  • XDR and Antivirus Tools (Crowdstrike, Symantec, MS Defender)
  • Strong verbal and written communication skills including the ability to communicate technical concepts to non-technical audiences.
  • Excellent critical thinking, problem-solving, and decision-making skills.
  • Must possess active listening, attention to detail, customer service, prioritization, and problem-solving skills.
  • Ability to work independently or strategically.
  • Experience adapting and demonstrating flexibility while working in a dynamic environment.

Education and Certifications
  • Bachelor's Degree or equivalent combination of experience
  • A combination of relevant industry certifications preferred (e.g. Net+, Sec+, CySA+, CEH, Pentest+, GCFA, GSOC, AWS Certified Cloud Practitioner, Microsoft Azure Fundamentals)


Hours & Work Schedule

Hours per Week: 40 Hrs. (4 days per week)

Work Schedule: 7:00AM - 5:00PM (Tuesday - Friday)

Location: One Citizens Way, Johnston, RI - Citizens Bank Johnston Campus (this is not a remote opportunity)

PayTransparency

The salary range for this position is $84,000 - 100,000 per year, plus an opportunity to earn additional incentive earnings (if applicable). Actual pay is based on various factors including, but not limited to, the budget, work location, and relevant skills and experience. We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more. Note, Citizens' paid time off policy exceeds the mandatory, paid sick or paid time-away policy of every local and state jurisdiction in the United States. For an overview of our benefits, visit Citizens Benefits

Similar Jobs

More Jobs at Citizens Bank

More Information Technology Jobs

Find similar Sr Cyber Defense Ops Spec jobs: