Cybersecurity Operations Analyst, 3rd Shift

Pittsburgh Main Bo Pa, United States

Huntington National Bank

Huntington provides online banking solutions, mortgage, investing, loans, credit cards, and personal, small business, and commercial financial services.

View all jobs at Huntington National Bank

Apply now Apply later

DescriptionThis employer will not sponsor applicants for the following work visas: F-1 student, H-1B worker, O-1 worker, TN worker, E-3 worker. Applicants must be currently authorized to work in the United States on a full-time basis.

###### HYBRID ROLE 3 days in office ###############

Summary:

The Cybersecurity Incident Response Analyst reviews security events to identify and prioritize potential threats and identify trends utilizing various tools and technologies. Analyze available data sources, security tools, and threat trends to identify attacks against the enterprise. Perform incident response, issue resolution, assessment, and communication of security risks to the enterprise. The Cybersecurity Incident Response Analyst recommends and implements defensive measures derived from information collected from a variety of sources. You will work closely with other teams within Cybersecurity and with IT Operations.

Duties & Responsibilities:

  • Participate in the day-to-day security operations monitoring and response from the Cybersecurity Operations Center.
  • Perform malware analysis, reverse engineering, and de-obfuscation techniques
  • Evaluate, respond, and mitigate alerts that originate from the SIEM and the Cybersecurity product suite, e.g.  NGFWs, IDS/IPS, Anti-virus, Web Application Firewalls, NAC Solution, etc.
  • Implement or recommend mitigations including the creation and development of new alerts and rules within the various cyber security tools.
  • Be able to analyze and identify malicious activity during the various attack stages.
  • Maintain a high level of technical expertise on Cyber Security defense-in-depth technology and best practices by performing ongoing research and engagement to maintain awareness of industry trends, best practices.
  • Collaborate with the Cyber Security Engineering and IT Operations teams.
  • Performs other duties as assigned.


Basic Qualifications:

  • Bachelor’s degree
  • 3 years of experience in Cybersecurity


Preferred Qualifications:

  • Familiar with common attack vectors, DDoS attacks, Phishing, web & application attacks, and malware
  • Knowledge of common critical network protocols and layer 7 technologies such as SMTP, HTTP, HTTP/S, SSL/TLS, DNS, FTP, SSH, and others
  • Familiar with a SIEM platform and various cyber security technologies such as EDR, AV, IDS/IPS, and WAFs
  • Familiarity with advanced persistent threats and their tactics, techniques, and procedures
  • Familiarity with the incident response Kill Chain
  • Fundamental understanding of Windows, Mac OSX, and Linux operating systems
  • Fundamental understanding of OSI model, basic networking and troubleshooting concepts
  • Experience with programming or scripting, including PowerShell, Bash, Python, Yara, and Perl
  • Intermediate knowledge of incident response frameworks and handling procedures
  • Understanding and knowledge of various log formats from a variety of network and computer devices
  • Knowledge of Cyber risks and threats related to Cyber attackers
  • Knowledge of recent Cyber events and interpreting kill chain process and threat impacts
  • Presentation, analytical, and critical-thinking skills
  • Occasional travel may be required (<10%)
  • Ability to work nights (3rd Shift) -2 nights in the office /2 nights remote


Exempt Status: (Yes = not eligible for overtime pay) (No = eligible for overtime pay)

Yes

Workplace Type:

Office

Our Approach to Office Workplace Type

Certain positions outside our branch network may be eligible for a flexible work arrangement. We’re combining the best of both worlds:  in-office and work from home. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. Remote roles will also have the opportunity to come together in our offices for moments that matter. Specific work arrangements will be provided by the hiring team.

Huntington is an equal opportunity and affirmative action employer and is committed to providing equal employment opportunities for all regardless of race, color, religion, sex, national origin, age, disability, sexual orientation, veteran status, gender identity and expression, genetic information, or any other basis protected by local, state, or federal law.

Tobacco-Free Hiring Practice: Visit Huntington's Career Web Site for more details.

Agency Statement: Huntington does not accept solicitation from Third Party Recruiters for any position

Huntington will not sponsor applicants for this position for immigration benefits, including but not limited to assisting with obtaining work permission for F-1 students, H-1B professionals, O-1 workers, TN workers, E-3 workers, among other immigration statuses. Applicants must be currently authorized to work in the United States on a full-time basi

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Bash DDoS DNS EDR Firewalls IDS Incident response IPS Linux Malware Monitoring Perl PowerShell Python Reverse engineering Scripting SIEM SMTP SSH TLS Windows

Perks/benefits: Career development Team events

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.