Cybersecurity Intelligence Analyst

MidFirst Bank

Oklahoma City (OK)

On-site

USD 80,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

MidFirst Bank seeks a cybersecurity professional to monitor external threat intelligence sources, assess phishing campaigns and report on cyber threats for the bank's digital risk program. You will analyze indicators, produce intelligence summaries and alert stakeholders to risk.

This role requires strong communication and collaboration across incident response and security operations. On-site in Oklahoma City with 3+ years of US-based experience, you will contribute to threat-hunting efforts

Qualifications

  • Two or more years of experience in cybersecurity, threat intelligence, investigations, security operations or a closely related discipline.
  • Working knowledge of common cyber threats, attack methods, phishing techniques, malware trends and threat actor behavior.
  • Experience researching and analyzing cyber intelligence from open-source, commercial or internal sources.
  • Ability to review and interpret security alerts, logs and investigative findings with sound judgment and attention to detail.
  • Ability to evaluate information critically, identify meaningful patterns and distinguish relevant threats from background noise.
  • Strong written and verbal communication skills with the ability to present findings clearly and professionally.
  • Strong organizational skills and the ability to manage multiple priorities in a fast-paced environment.
  • Ability to handle sensitive information with discretion and professionalism.
  • Experience using Microsoft Office tools for documentation, reporting and communication.
  • Ability to work effectively both independently and as part of a team.

Responsibilities

  • Monitor external threat intelligence sources, digital risk platforms, open-source feeds and security alerts for threats relevant to MidFirst Bank.
  • Identify, analyze and report on phishing campaigns, threat actor activity, brand impersonation and fraud indicators.
  • Research emerging cyber risks, vulnerabilities and attack techniques, and summarize findings for technical and non-technical audiences.
  • Support digital risk monitoring related to MidFirst-owned domains, brands and public-facing assets.
  • Review and correlate security events, alerts and telemetry to identify suspicious or malicious activity.
  • Assist with triage, escalation and follow-up for security events in coordination with incident response and security operations.
  • Support internal investigations involving email activity, user activity and related cyber events.
  • Gather, analyze and document findings from internal systems and investigative tools.
  • Produce timely, accurate intelligence reports, summaries, briefings and alerts.
  • Maintain awareness of threat trends affecting financial institutions and recommend risk-reduction measures.
  • Support threat-hunting and repeatable workflows related to intelligence and investigations.
  • Participate in security reviews and related research to support Information Security objectives.

Skills

Threat intelligence
Analytical thinking
Written communication
Team collaboration
Attention to detail
Multitasking

Tools

SIEM
Microsoft Office

Job description

Description
  • Monitor external threat intelligence sources, digital risk platforms, open-source intelligence feeds and security alerts for threats relevant to MidFirst Bank
  • Identify, analyze and report on phishing campaigns, threat actor activity, brand impersonation, fraud-related indicators and other cyber threats
  • Research emerging cyber risks, vulnerabilities and attack techniques, and summarizing findings for technical and non-technical audiences
  • Support digital risk monitoring related to MidFirst-owned domains, brands, public-facing assets and other exposed identifiers
  • Review and correlate security events, alerts and available telemetry to help identify suspicious or malicious activity
  • Assist with triage, escalation and follow-up for security events in coordination with incident response, security operations and other Information Security functions
  • Support internal investigations involving email activity, user activity, suspicious communications, fraud indicators and related cyber events
  • Gather, analyze and document relevant findings from internal systems, intelligence sources and investigative tools
  • Produce timely, accurate and actionable intelligence reports, investigative summaries, briefings and alerts
  • Maintain awareness of threat trends affecting financial institutions and recommend practical risk-reduction measures
  • Support threat-hunting, process improvement and repeatable workflows related to intelligence, investigations and security monitoring
  • Participate in security reviews and related research efforts as needed to support the broader objectives of the Information Security team
Position Requirements
  • Two or more years of experience in cybersecurity, threat intelligence, investigations, security operations or a closely related discipline
  • Working knowledge of common cyber threats, attack methods, phishing techniques, malware trends and threat actor behavior
  • Experience researching and analyzing cyber intelligence from open-source, commercial or internal sources
  • Ability to review and interpret security alerts, logs and investigative findings with sound judgment and attention to detail
  • Ability to evaluate information critically, identify meaningful patterns and distinguish relevant threats from background noise
  • Strong written and verbal communication skills with the ability to present findings clearly and professionally
  • Strong organizational skills and the ability to manage multiple priorities in a fast-paced environment
  • Ability to handle sensitive information with discretion and professionalism
  • Experience using Microsoft Office tools for documentation, reporting and communication
  • Ability to work effectively both independently and as part of a team
Preferred Qualifications
  • Experience supporting cyber threat intelligence, fraud investigations, incident response or SOC-related activities in a banking or financial services environment
  • Familiarity with threat intelligence platforms, digital risk monitoring tools, SIEM platforms, case management systems or investigative tools
  • Experience with phishing analysis, domain and brand monitoring, dark web monitoring or external attack surface awareness
  • Experience supporting email investigations, eDiscovery requests, user activity reviews or related investigative workflows
  • Knowledge of MITRE ATT&CK, threat intelligence frameworks and intelligence lifecycle concepts
  • Understanding of indicators of compromise, indicators of attack and common investigative techniques
  • Familiarity with vulnerability intelligence and assessing the potential business impact of emerging threats
  • Experience producing executive summaries, operational alerts, case notes and technical intelligence reporting
  • Relevant certifications such as Security+, CySA+, GCTI, GCIA, GCIH, CISSP or similar industry credentials
  • Experience in a regulated environment with an understanding of confidentiality, risk management and control expectations

This position is on-site located in Oklahoma City, must reside within the area to be considered.

Position requires a minimum of 3 years of relevant US based experience.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities. This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Intelligence Analyst
Cybersecurity Intelligence Analyst

MidFirst Business Credit, Inc. • Oklahoma City (OK)

On-site
USD 70,000 - 110,000
Threat Intelligence Analyst - Banking Cybersecurity (OKC)
Threat Intelligence Analyst - Banking Cybersecurity (OKC)

MidFirst Bank • Oklahoma City (OK)

On-site
USD <120,000
On-Site Banking Cyber Threat Intelligence Analyst
On-Site Banking Cyber Threat Intelligence Analyst

MidFirst Business Credit, Inc. • Oklahoma City (OK)

On-site
USD 70,000 - 110,000
Cyber Threat Analyst
Cyber Threat Analyst

Alliant Credit Union • Chicago (IL)

Hybrid
USD 70,000 - 108,000
Annual performance bonus
Work from home up to 3 days a week
Paid parental leave
+3
Cyber Threat Analyst
Cyber Threat Analyst

Donnelley Financial, LLC • Rockville (MD)

On-site
USD 90,000 - 120,000
Competitive compensation
Flexible workplace
Professional growth opportunities
Information Security Analyst
Information Security Analyst

Bank of the Orient • Millbrae (CA)

On-site
USD 110,000 - 140,000
Insider Threat Senior Analyst
Insider Threat Senior Analyst

KeyBank • United States

On-site
USD 96,000 - 181,000
In-office with flexible options
Analyst, Threat Intelligence
Analyst, Threat Intelligence

Altice USA • Norwalk (CT)

On-site
USD 85,000 - 115,000
Cybersecurity Threat Analyst I (Hybrid)
Cybersecurity Threat Analyst I (Hybrid)

The Bancorp Bank, N.A. • Sioux Falls (SD)

Hybrid
USD 60,000 - 80,000
Technical Incident Response Analyst - Hybrid (IL)
Technical Incident Response Analyst - Hybrid (IL)

First American Bank • Elk Grove Village (IL)

Hybrid
USD 85,000 - 115,000