IT Systems Risk Analyst

United Fidelity Bank, fsb

Indiana (PA)

Hybrid

USD 70,000 - 90,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

United Fidelity Bank, fsb is seeking an IT Systems Risk Analyst responsible for identifying, assessing, and mitigating cybersecurity risks. This role collaborates with IT department leaders and aims to ensure the security of hardware and software systems.

The ideal candidate has a Bachelor’s degree and over 4 years of relevant experience, including proficiency with risk management platforms and strong communication skills.

Qualifications

  • Bachelor’s degree in a compositional, technical, or security field, preferred.
  • 4+ years’ work experience in systems administration, cybersecurity, GRC, or Risk.
  • Experience in using risk management platforms such as Optro, AuditBoard, or Archer.

Responsibilities

  • Produce articles and presentations on the latest technology and cybersecurity incidents.
  • Conduct formal risk assessments using various frameworks.
  • Develop cybersecurity risk controls and mitigation plans.

Skills

Threat analysis
Regulatory compliance frameworks
Technology frameworks
Written and verbal communication
Risk mitigation plan implementation
Microsoft Office Suite proficiency

Education

Bachelor's degree in technical or security field
4+ years in systems administration or cybersecurity

Tools

Risk management platforms (Optro, AuditBoard, Archer)

Job description

Job Summary

The IT Systems Risk Analyst is responsible for the identification, evaluation, and assessment of cybersecurity risks affecting United Fidelity Bank systems – including hardware, software, and networking system architectures – from threats and vulnerabilities to inefficient configurations and setups. The incumbent will work closely with other functional area subject matter experts (Enterprise Risk Management, Compliance, Audit, and Information Technology) to understand, develop, and maintain United Fidelity Bank’s internal systems risk areas.

Essential Responsibilities
  • Works closely with the IT GRC Manager, IT department stakeholders, and leadership for all duties.
  • Produces articles, case studies, blogs, white papers and presentations on the latest technology and cybersecurity incidents, threats, trends, and techniques for employee consumption.
  • Leverages Threat & Vulnerability Intelligence Sources to identify and evaluate potential Cybersecurity Risks to the Bank.
  • Conducts formal Risk Assessments using CIA / IL and other risk frameworks.
  • Develops Cybersecurity Risk Controls and Mitigation Plans for IT Risks and evaluates their implementation and mapping objectives.
  • Conducts comprehensive risk assessments for the Bank’s technology assets, including hardware, software, and networking assets within the Bank’s Source of Record.
  • Reviews CIS Level I Configuration reports and analyses to assess risks and gaps associated with departmental configuration initiatives.
  • Taps industry accepted vulnerability databases cross-referenced with the Bank’s systems and assets to create priority plans for the most severe threats.
  • Assists in reviewing, editing, and maintaining existing IT Risk documentation, controls, and mitigations, which can become outdated or factually inaccurate as new technologies emerge.
  • Contribute to internal system and asset Business Impact Analysis (BIA) from an IT risk perspective.
  • Measure risks against the Bank’s risk tolerance and review control expirations and compensations.
  • Reviews JML (Joiner/Mover/Leaver) Control health in the Bank’s internal systems.
  • Coordinates with Vendor Management concerning EULA Licensure of IT vendors.
  • Classifies vital statistics and data sensitivity labeling for IT systems.
  • Assists with BC/DR (Business Continuity/Disaster Recovery) testing and documentation.
  • Work with auditors and regulators for annual and/or bi-annual risk reviews.
  • Participate in Change Advisory as needed.
  • Perform all duties in relation to the Bank Secrecy Act under the guidance of the BSA Officer.
Skills and Abilities
  • Demonstrable knowledge analyzing threats and vulnerabilities for inherent and residual risk.
  • Working knowledge of regulatory compliance frameworks, e.g., GLBA, FFIEC, or similar.
  • Thorough understanding of technology frameworks, e.g., NIST CSF 2.0, CIS, COBIT or similar.
  • Understanding of the contemporary information security threat landscape and how to protect it via industry best practice policies, standards, and written guidance.
  • Knowledge of cybersecurity EDR tools, risk remediation, and governance processes.
  • General knowledge of security systems, e.g., firewalls, IDS, WAF, NAC, and net communications.
  • Understanding data loss prevention, threat protection, group policy, and anti-malware tools.
  • Knowledge of cloud infrastructure, virtual platforms, encryption technologies, endpoint protection, network systems such as routers, load balancers, mail transport systems and cybersecurity.
  • Clear and concise written and verbal communication skills.
  • Analytical, multi-tasking, hypothetical modeling, and critical thinking skills.
  • Experience working with cross-functional leaders and stakeholders to devise risk mitigation plans and implement cybersecurity risk controls before evaluating their effectiveness.
  • Proficiency with Microsoft Office Suite (Excel, Outlook, PowerPoint, Teams, SharePoint, and Word).
Education, Experience, and Qualifications
  • Bachelor’s degree in a compositional, technical, or security field, preferred.
  • 4+ years’ work experience in systems administration, cybersecurity, GRC, or Risk.
  • Experience in using risk management platforms such as Optro, AuditBoard, or Archer.
  • Security (Sec+, CySA+, CISSP, CEH) or GRC (CRISC, CGRC) certification(s) preferred.
  • Banking industry experience preferred.
Physical Requirements

The associate is frequently required to sit and/or stand, communicate, reach, and manipulate objects, tools or controls that are typical of an office/bank environment. Lifting items weighing up to 10 pounds on a consistent basis. Manual dexterity and coordination are required over 80% of the work period while operating equipment such as computers, phones, calculators, etc.

Working Conditions

Typical office environment. Extended viewing of computer screens. Periodic travel between locations may be required.

Equal Employment Opportunity Statement

United Fidelity Bank is proud to be an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, protected veteran status, status as a qualified individual with disability, sexual orientation, gender identity or any other characteristic protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Systems Risk Analyst
IT Systems Risk Analyst

United Fidelity Bank • North Carolina

On-site
USD 85,000 - 110,000
IT Systems Risk Analyst
IT Systems Risk Analyst

United Fidelity Bank; International • Indiana (PA), Town of Florida (NY)

Hybrid
USD 80,000 - 100,000
IT Systems Risk Analyst — Cybersecurity & Controls
IT Systems Risk Analyst — Cybersecurity & Controls

United Fidelity Bank • North Carolina

On-site
USD 85,000 - 110,000
IT Risk Analyst II
IT Risk Analyst II

First Interstate Bank • Billings (MT)

On-site
USD 70,000 - 90,000
Generous Paid Time Off (PTO)
Student debt employer repayment program
401(k) retirement plan with a 6% match
IT Risk Analyst II
IT Risk Analyst II

First Interstate Bank • Casper (WY)

On-site
USD 80,000 - 100,000
Generous Paid Time Off (PTO)
401(k) retirement plan with a 6% match
Student debt employer repayment program
IT Risk Analyst II
IT Risk Analyst II

First Interstate Bank • Grant City (MO)

On-site
USD 75,000 - 95,000
Generous Paid Time Off (PTO)
Student debt employer repayment program
401(k) retirement plan with a 6% match
IT Risk Analyst II
IT Risk Analyst II

First Interstate Bank • Clive (IA)

On-site
USD 75,000 - 95,000
Generous Paid Time Off (PTO)
Student debt employer repayment program
401(k) retirement plan with a 6% match
IT Risk Analyst II
IT Risk Analyst II

First Interstate Bank • Bend (OR)

On-site
USD 80,000 - 110,000
Generous Paid Time Off (PTO)
Student debt employer repayment program
401(k) retirement plan with a 6% match
IT Risk Analyst II
IT Risk Analyst II

First Interstate Bank • Sioux Falls (SD)

On-site
USD 80,000 - 100,000
Generous Paid Time Off (PTO)
Student debt employer repayment program
401(k) retirement plan with a 6% match
IT Risk Analyst II
IT Risk Analyst II

First Interstate Bank • Omaha (NE)

On-site
USD 85,000 - 105,000
Generous Paid Time Off (PTO)
Student debt repayment program
401(k) retirement plan with 6% match