BankUnited

Cyber Security Analyst II


PayCompetitive
LocationMiami Lakes/Florida
Employment typeFull-Time

This job is now closed

  • Job Description

      Req#: 5001065356506

      Who We Are

      BankUnited (NYSE: BKU) is a national bank headquartered in Miami Lakes, Florida with banking centers in Florida, the New York metropolitan area, Dallas and Atlanta. BankUnited has two subsidiaries, Pinnacle Public Finance headquartered in Scottsdale, Arizona and Bridge Funding Group headquartered in Hunt Valley, Maryland. We pride ourselves on our entrepreneurial and collaborative culture encompassing the best minds, the brightest talent and the boldest decision makers.

      BankUnited is honored to announce that we have been included on the Newsweek and Statista America’s Most Trusted Companies Award List!

      BankUnited has been recognized by Newsweek for two outstanding awards in 2023 as one of America’s Greatest Workplaces and as one of America’s Greatest Workplaces for Job Starters , which acknowledges our commitment to creating an exceptional workplace.

      Our Culture

      At BankUnited, we foster a diverse and inclusive environment where all employees have the opportunity to advance, grow and achieve their goals. Our rally cry is to GO FOR MORE™, a call to action to go above and beyond to provide the best customer experience to every client and to GO FOR MORE in your career.

      Why BankUnited

      Working for BankUnited offers you exciting challenges and opportunities to advance your professional development, while empowering you to deliver and be your best. We are happy to report the average tenure according to LinkedIn insights is 8.3 years. We strive to provide a competitive benefits plan to our employees and are proud to have been nationally ranked #1 as one of the 2023 Healthiest 100 Workplaces in America by Springbuk and awarded HEALTHIEST EMPLOYER by the South Florida Business Journal since 2020.

      As a company, we believe we are only as successful as our people and are committed to providing training and innovative resources that prepare you to reach your full potential. That's why in addition to tuition reimbursement, we provide our employees with exciting career coaching, courses and training through our own GO FOR MORE™ Academy and mentoring opportunities through our iCARE™ (Inclusive Community of Advocacy, Respect and Equality) program.

      At BankUnited, we strive to provide our employees with a work life balance. Specifically, retail branches operate 5 days a week Monday – Friday, excluding evening and/or weekend hours. For many of our positions, we offer a hybrid work environment, as well as a remote work environment for designated positions.

      If you thrive in a fast-paced collaborative work environment, Apply Now and start your journey with BankUnited today!

      Job Description

      SUMMARY: As a member of the Security & Network Operations Center (SNOC) team, this position is responsible for the proactive assessment and analysis of cyber threat information pertaining to the organization's on-premise and cloud environments, understanding cyber threats as they relate to the organization, and implementing measures to prevent or combat existing and potential cyber threats. Essential duties and responsibilities include the following. Other duties and special projects may be assigned.

      ESSENTIAL DUTIES AND RESPONSIBILITIES include the following. Other duties and special projects may be assigned.
      • Monitor and analyze network traffic, Intrusion Detection/Prevention Systems (IDS/IPS), Data Loss Prevention (DLP) events, security events and logs.
      • Perform secondary reviews and maintain Data Loss Prevention (DLP) systems and policies.
      • Understand a variety of security and compliance policies and incident response processes.
      • Review daily reports and files to ensure compliance to policies and standards.
      • Escalate non-compliance issues to the appropriate group and follow-up on remediation actions
      • Work with internal customers to respond to escalations.
      • Prioritize and differentiate between potential intrusion attempts and false alarms.
      • Determine if security events monitored should be escalated to incidents and follow all applicable incident response and reporting processes and procedures.
      • Create and track security investigations to resolution.
      • Open and assign tickets to the correct resolver, and validate/close tickets related to false positives.
      • Provide investigation, triage, and mitigation of detected security events.
      • Compose security alert notifications and other communications.
      • Advise incident responders in the steps to take to investigate and resolve computer security incidents.
      • Stay up to date with current vulnerabilities, attacks, and countermeasures.
      • Work closely with the SNOC 24x7 operations team, network and system administrators, other appropriate IT/IS groups and business lines to provide incident response (IR) support and determine the risk of a given event.
      • Implement and monitor controls necessary to ensure processes are performed and are effective to protect the environment from all forms of malicious cyber activity.
      • Conduct Digital Forensics and Incident Response (DFIR) analysis of suspected compromised systems.
      • Assist in establishing procedures for handling each security event detected.
      • Keep abreast of emerging technology and public policy trends in the information security space.
      • Assist in the gathering and analysis of the current and future threat landscape, and assist the SNOC Manager in providing leadership with a realistic overview of risks and threats in and to the organization.
      • Maintain knowledge of the current security threat level by monitoring related threat intelligence sources as necessary.
      • Utilize intelligence provided by the Threat Intelligence team from past or current events to improve detection, update monitoring and possibly facilitate prevention of successful cyber attacks.
      • Provide advice on IT initiatives, IT business projects, and IT engineering in regards to security industry best practices.
      • Adheres to and complies with applicable, federal and state laws, regulations and guidance, including those related to anti-money laundering (i.e. Bank Secrecy Act, US PATRIOT Act, etc.).
      • Adheres to Bank policies and procedures and completes required training.
      • Identifies and reports suspicious activity.
      EDUCATION

      Bachelor's degree or higher in Information Security, Computer Science, Information Assurance, Cyber Security, or related field, or equivalent combination of work and certifications is required.

      EXPERIENCE
      • Experience in cloud security, or cloud administration
      • Experience with cloud security tools and technologies, such as AWS Security Hub, Azure Security Center, GCP Security Command Center, etc
      • Experience with scripting languages
      • Firm grasp of the design and implementation of effective IS controls
      • Experience with Security Orchestration Automation Response (SOAR)
      • Cyber security analysis, incident response, or related security experiencepreferred
      CERTIFICATES, LICENSES, REGISTRATIONS
      • CISSP Certified Information Systems Security Professional
      • CEH Certified Ethical Hacker
      • CHFI Computer Hacking Forensics Investigator
      • SANS/GIAC Training or certifications
      • CCSP Certified Cloud Security Professional
      • SSCP Systems Security Certified Professional
      • Cloud Security Certifications (e.g. AWS)
      • Security+
      • Certificate in Cyber Security
      KNOWLEDGE, SKILLS AND ABILITIES
      • An understanding of network and host based DLP technologies, processes, policies and procedures
      • Basic understanding of regulatory compliance initiatives related to Sarbanes Oxley (SOX), and the Gramm--Leach--Bliley Act (GLBA)
      • Familiarization of cyber and cloud security standards, frameworks, and guidelines such as NIST, PCI-DSS, MITRE, OWASP, etc.
      • Ability to organize and analyze large amounts of data and report findings
      • Working knowledge of monitoring tools
      • Proficiency with a Security Incident handling tool (i.e. SIEM, ESEM)
      • Familiar with Active Directory, group policies and role based concepts
      • Possess a working knowledge of TCP/IP and the functions of Network technologies
      • Possess a working understanding of Network security devices, IPSec VPNs, TCP/IP, Routing, Switching, VRF, VLANS, Bandwidth Utilization, and Load Balancers
      • Strong analytical and problem solving skills
      • Good interpersonal, organizational, writing and communications skills
      • Ability to work well in a team environment as a whole
      • Ability to perform multiple projects simultaneously
      • Firm understanding of penetration testing and vulnerability assessments
      • A strong networking background
      • Demonstrated understanding of TCP/IP networking
      • Self-motivator
      • Working knowledge with various technologies including forensic tools, network monitoring tools, host security prevention tools, etc.

       

  • About the company

      BankUnited provides a full range of online banking solutions, including personal, commercial, and small business financing, checking, savings and lending.