Formed in 1934, Telhio began as a credit union for Columbus Telephone Company (now AT&T) employees. Telhio now serves over 70,000 member-owners throughout central and southwest Ohio.
Telhio's mission is to be a trusted financial partner, committed to serving our community with integrity, care and commitment. Every interaction with our members is guided by these core values. We foster a culture of accountability, respect, and inclusivity-embracing diverse perspectives and actions to strengthen our organization, Board of Directors, staff, and membership.
Summary:
The Senior Systems Security Analyst is a new capability for Telhio Credit Union and will report to the VP of Information Security. The primary goal of this position is to ensure delivery of best-in-class cybersecurity, risk management, and compliance for Telhio Members. The Information Security Risk Analyst will be responsible for day-to-day activities in implementing the corporate information security risk program. The individual will be a front-line partner to technical teams and business leaders across the organization to deliver security and compliance initiatives aligning to Information Security policies, standards, procedures, business continuity, and support audit activities. Success in the role will be measured by the effectiveness of the implementation of information security risk management and InfoSec compliance directives.
This role will work with various IT and business teams to drive both information security and InfoSec compliance and business continuity initiatives. The individual will assist with internal and external Informational security compliance monitoring activities and reporting, review and manage InfoSec pre and post audit activities, Support Information Security control reviews, architecture reviews, threat modeling, and security risk assessments. Good interpersonal and relationship-building skills are essential for success.
Job Responsibilities Include:
- Maintain compliance with the Information Security Program by providing required risk reviews, supporting all Business Continuity activities and managing the BIA process.
- Serve as liaison to other Telhio teams to ensure knowledge share and best practices.
- Partner with the Information Security Engineering, IT, and Information Security operations teams to ensure delivery of infrastructure reviews and threat models supporting InfoSec security requirements.
- Monitor security trends and drive security best practices throughout the organization via risk analysis and reporting.
- Evaluate, design, test, and recommend new or improved controls.
- Work with Vendor Management to perform Information Security Third-Party reviews, identifying and tracking
- After Action Items that are identified through the review process. Consult with internal stakeholders to conduct independent security reviews, work with IT partners to remediate and report results of vulnerability scans, and any internal or external penetration tests.
- Partner with internal or external developers to validate the use of secure coding and compliance with SDLC security practices, assist in defining test cases, and ensure appropriate testing is completed, remediations are tracked to mitigations.
- Investigate, assist in driving resolution, and document security incidents.
Qualifications:
- Bachelor's Degree in a related field, or equivalent work experience leading cybersecurity or information security initiatives. - Required
- 1-5 years of information security-related work experience, preferably within the financial industry. - Required
- Experience with network and infrastructure, security, and ideally cloud security. - Preferred
- Experience in vulnerability management programs, vulnerability assessments, and advanced understanding of risk management. - Required
- Familiarity with at least one common programming language, software development pipelines, scripting, and system lifecycles. - Preferred
- Familiarity with standards such as CIS NIST, PCI, NCUA, and OWASP. - Preferred
- Professional security certification (Network+, A+, Security+, CISA, CISM, or CISSP).- Preferred
- Experience advising and mentoring diverse teams where you do not have direct authority. - Required
- Strong written and verbal communication skills. - Required
What you will earn:
- Competitive pay
- Benefits: several medical plan options, dental, free vision, free life insurance and free disability insurance
- Additional financial incentive programs for employees enrolled in our insurance
- 6% matching and immediately vested 401(k) plan
- Generous schedule for paid holidays, vacation and personal time for a healthy work-life balance
- Opportunity for personal career growth and continued education
- Volunteer opportunities impacting the local community
Physical Demands:
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
This position requires sitting; some reaching; frequent standing and walking; some stooping or kneeling. The employee must occasionally lift and move up to 50 pounds.
This is a Non-Collective Bargaining Unit
Telhio is an Equal Opportunity Employer
|