Position Summary The Senior IT Security Analyst is responsible for coordinating scheduled disaster recovery and business continuity testing for all pertinent IT functions. This position assists the VP, GRC/Security Manager in implementing and documenting IT change management controls and verification processes. Additionally, this position will be executing the enterprise phishing campaigns, conducting security reviews of perimeter layer controls and, in general, assisting the security program in protecting Busey computing environment against inadvertent & malicious attacks.
Duties & Responsibilities
- Coordinate scheduled disaster recovery and business continuity testing for all pertinent IT functions.
- Perform periodic vulnerability scans on all IT systems to ensure continued compliance with industry standards and related to PCI security; evaluate security posture of the Company.
- Research and recommend solutions to fulfill regulatory compliance with all standards set forth by FFIEC guidelines, Sarbanes Oxley, Gramm-Leach-Bliley and other regulations applicable to the financial services industry and publicly traded companies.
- Perform periodic review of IT procedures and security of all systems in order to maintain integrity of company and customer data.
- Document and perform verification of IT related changes in accordance with Company security policies and procedures.
- Coordinate remediation of all findings and recommendations from internal/external audits and risk assessments.
- Research and recommend hardware and software solutions to augment or enhance existing security measures.
- Stay current in events and trends in IT security.
- Work with all lines of business during major systems implementations and enhancements.
- Investigate and report any security violations and incidents and ensure proper protection and corrective measures have been taken when an incident or vulnerability has been discovered.
- Conduct scheduled reviews of key application security settings.
- Conduct analysis and trending (reports, dashboards, status, etc.) on internal or external progress or events affecting information security
- Assist in process development and improvements to maximize the efficiency and effectiveness of the department and related programs
- Supports audit and incident processes, as required
- Participates in special projects/research; prepare management reports and presentations
- Monitor and support internal SEIM systems, reports, and searches
- Monitor and support internal vulnerability management systems and reports
- Partner and establish relationships to work closely with cross-functional teams consisting of representatives in the business
- Develops strong liaison relationships with key internal business and technology teams
- Coach level I & IIs on security domains and program processesDepending on need, VP Security may determine a Team Lead designation for Level III role
- Supervise the security work streams for a variety of enterprise projects and initiatives
- Partner with business owners to drive remediation efforts to mitigate risk
- Determine and communicate security risk postures to partners and leaders as appropriate
Education & Experience
Knowledge of:
- Strong oral and written communication skills
- Strong organizational skills and attention to detail
- LAN and data communication fundamentals, as well as telecommunications and network operation
- Excellent interpersonal skills
Ability to:
- Take independent action within established options and develops new procedures and approaches to problems when necessary
- Analyze assignments based on a wide knowledge of many factors where application of advanced or technical concepts are required
- Perform duties and make decisions under frequent time pressures
Education and Training:
- Requires Bachelor's degree in Management Information Systems (MIS) or related field or equivalent work experience.
- Security+, CISA, CISM or CISSP certification required.
- Requires knowledge of Microsoft Office.
Benefits and Compensation Salary offered is based on factors, including but not limited to, the job duties, required qualifications and relevant experience, and local market trends. The role may be eligible for bonus or incentives based on company and individual performance. (Base Pay Range: $86,000 - $123,000/year) Busey provides a competitive Total Rewards package in return for your time, talents, efforts and ultimately, results. Your personal and professional well-being-now and in the years to come-are important to us. Busey's Total Rewards include a competitive benefits package offering 401(k) match, profit sharing, employee stock purchase plan, paid time off, medical, dental, vision, company-paid life insurance and long-term disability, supplemental voluntary life insurance, short-term and long-term disability, wellness incentives and an employee assistance program. In addition, eligible associates may take advantage of pre-tax health savings accounts and flexible spending accounts. Visit Busey Total Rewards for more information. Equal Opportunity Busey values a diverse and inclusive workplace and strives to recruit, develop and retain individuals with exceptional talent. A team with diverse talent, working together, is essential to Busey's commitment of delivering service excellence. Busey is an Equal Opportunity Employer including Disability/Vets. Visit Busey.com/Careers to learn more about Busey's Equal Opportunity Employment. Unsolicited Resumes Busey Bank, and its subsidiaries, does not accept any liability for fees for resumes from recruiters or employment agencies ("Agency"), without a binding, written recruitment agreement between Busey and Agency describing the services and specific job openings ("Agreement"). Busey may consider any candidate for whom an Agency has submitted an unsolicited resume and explicitly reserves the right to hire those candidate(s) without any financial obligation to the Agency, unless an Agreement is in place. Any email or verbal contact with any Busey associate is inadequate to create a binding agreement. Agencies without an Agreement are requested not to contact any associates of Busey with recruiting inquiries or resumes. Busey respectfully requests no phone calls or emails.
|