COMPANY DESCRIPTION: Forbright is a nationwide full-service bank and lender helping accelerate the transition to a sustainable and low-carbon economy. Headquartered in Chevy Chase, Maryland, Forbright is committed to accelerating the transition to a sustainable economy by financing visionary leader in clean energy, healthcare, technology, financial services, real estate, and other industries with extraordinary service.
COMPANY CULTURE: We are a dynamic, high energy, fun, and fast-paced organization that has an exciting growth trajectory, meaningful mission, and embedded responsible environmental, social, and governance practices into our daily interactions. We offer our team members a culture of collaboration, inclusion, flexibility, recognition, and giving back. We look to hire individuals that are passionate about our mission, and who are motivated, customer and results-oriented, innovative, adaptable, and thoughtful.
COMPANY MISSION: We are a mission-driven institution. We operate a sound dynamic institution that is well capitalized, liquid, profitable and uses best practices to manage risk and assure compliance with laws and regulations. We use Forbright’s capital, capabilities, innovation, and expertise to help our clients succeed and contribute broadly to building a more sustainable future.
JOB SUMMARY: The primary mission of the Senior Information Security Analyst at Forbright Bank is to support the security operations of the Bank. This role is responsible for identifying, investigating, mitigating, and reporting on potential threats such as phishing, malware, and network attacks through technical and written assessments. The Senior Information Security Analyst provides technical analysis, assessment, and recommendations in security situational awareness, operational, network, and applications systems security monitoring, and vulnerability management.
DUTIES AND RESPONSIBILITIES:
- Identify, investigate, mitigate, and report on potential threats such as phishing, malware, and network attacks through technical and written assessments
- Perform detailed static and behavioral analyses on emails, applications, websites, and cloud applications
- Assist with developing, conducting, and reporting on Red, Blue, and Purple Team exercises conducted internally and by 3rd-parties from a technical perspective
- Assist with penetration testing, results analysis, recommendations, remediation planning and implementation, and reporting
- Conduct regular assessments of industry best practices and benchmark standards and make recommendations for implementation and reporting
- Administer enterprise SIEM and Vulnerability Management solutions and related tools, including proactive event monitoring with independent analysis and assessments, containment and remediation recommendations, alert tuning, and cloud and on-premise solutions integrations
- Utilize incident response procedures and workflows for triage, analysis, notification, escalation, containment, remediation, and reporting
- Active participation in the Bank’s Security Awareness Program, providing guidance for and conducting IT and Staff training, simulated phishing campaigns, and reporting
- Provide clear and detailed written analysis, reports, and tickets for both technical and executive audiences
- Provide after-hours and weekend analysis on an as-needed basis outside of general working hours
QUALIFICATIONS:
- Bachelor’s degree in information technology or a related technical discipline with at least two years of experience working in a Cybersecurity role required
- Expertise in threat identification, cybersecurity tools, intrusion detection, and the implementation and maintenance of secured networks and systems required
- A background with at least three years in Systems Administration or Engineering focusing on Windows-based environments is required; additional familiarity with Linux, Mac, and Cloud environments (AWS, Azure) is preferred
- Cybersecurity-related certifications (or ability to obtain certification) such as Certified Ethical Hacker (CEH), GIAC Certified Incident Handler (GCIH), CERT Certified Computer Security Incident Handler (CSIH), GIAC GSEC Certified (GIAC), CompTIA Cybersecurity Systems (CySA+) preferred
- Hands-on experience in cybersecurity and network analysis tools, network topologies, intrusion detection methodologies, Windows systems, and preferably Linux systems analysis for evidence of compromise
- Familiarity with industry best practices and benchmark standards such as NIST SP 800-53, CIS, CISA, FFIEC Booklets, and Critical Security Controls
- Excellent verbal, written, and interpersonal communication skills
- Excellent analytical and problem-solving skills
- Highly organized and efficient, able to work with all levels of staff in all areas of the Bank, detail-oriented, a team player, and excellent time management skills
POSITION REQUIREMENTS: The requirements described are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable employees to perform the essential functions. Work is conducted primarily in an office; however, some positions may be conducted remotely via technology. While performing duties of this job, the employee may be regularly required for prolonged periods of time to:
- Sit or stand at a desk
- Walk, stoop down, crouch, kneel or bend over
- Use hands and fingers
- Utilize a computer monitor with visual acuity
- Operate technology and other office machinery such as printers, fax machines, scanners, etc
- Communicate clearly both verbally and in writing with others
ADDITIONAL DUTIES: For Forbright Bank to remain efficient and nimble as a growing organization, team members are expected to exhibit a high level of flexibility regarding any duties that may be situationally assigned outside of this job description.
PERKS/BENEFITS:
- Comprehensive health, dental, and vision plans
- 4 weeks PTO
- 401k + company match
- Metro SmartTrip benefits ($50/mo)
- Remote or hybrid work schedules for most positions
- Bonuses for purchasing solar panels, electric vehicles, biking to work, etc
- Paid subscriptions to Veterans Compost, Imperfect Foods, and more!
- Best Workplaces for Commuters 2023 & 2024 winner
- The Washington Post Top Workplaces 2023 & 2024 winner
- American Banker Best Banks to Work For 2023 winner
It is the policy of Forbright Bank to provide equal employment opportunities to all qualified individuals and to administer all aspects and conditions of pre-employment and employment without regard to protected characteristics.