> Markdown version of [/jobs/ext/150764-information-security-analyst](https://www.wearedevelopers.com/jobs/ext/150764-information-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Analyst - **Company:** Commercial Bank - **Location:** United States (Remote available) - **Experience:** Experienced - **Salary:** $75,000.0 - $95,000.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Software System Penetration Testing, Application Performance Management, Cloud Computing, Cloud Computing Security, Cyber Security, Information Systems, Information Leak Prevention, Hypervisor, Identity and Access Management, Intrusion Detection and Prevention, Network Architecture, Phishing, Security Information and Event Management, Software Vulnerability Management, Web Applications, Enterprise Software Applications, Cloud Platform System, Firewalls (Computer Science), Web Filtering, Information Technology, Tenable Nessus, Vulnerability Analysis - **Published:** May 16, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=ca492d4156c740f4 ## About the Role Do you have experience in Regulatory compliance?, Do you have a Bachelor's degree?, The ideal candidate is proactive, detail-oriented, and collaborative, with strong technical expertise, sound judgment, and a solid foundation in information security and compliance practices. If you thrive in a fast-paced environment, communicate effectively, and enjoy solving complex challenges, this is an excellent opportunity to make a meaningful impact., * Bachelor's degree in Information Security, Computer Science, Information Systems, or a related field, or equivalent practical experience. * Relevant security certifications are preferred, such as CISSP, CISA, CISM, CEH, or Security+. * At least three years of hands-on or audit experience in IT, information security, or security operations within a regulated environment, including FFIEC, FDIC, NACHA, or PCI frameworks. * Strong understanding of applicable legal and regulatory requirements, including FFIEC guidance and FDIC and DFPI rules and regulations. Preferred Qualifications * Experience with network penetration testing and vulnerability scanning. * Experience securing and monitoring applications, cloud environments, networks, hypervisors, and enterprise systems. Skills and Abilities * Strong analytical, critical thinking, decision-making, and problem-solving skills. * Ability to prioritize work, manage multiple tasks, and meet deadlines with minimal supervision. * Ability to respond to escalated support issues with urgency and professionalism. * Ability to quickly learn new technologies using documentation, research, and available resources. * Strong written and verbal communication skills, with the ability to work effectively with employees, executives, and external vendors. Collaborative team player with the ability to work effectively across diverse teams and contribute to a positive, results-driven environment. ## Description We are looking for a skilled and adaptable Information Security Analyst who is passionate about protecting critical systems and helping strengthen cybersecurity across our organization. In this dynamic role, you will contribute across multiple security functions, take ownership of key initiatives, and work closely with cross-functional partners to support a resilient and secure banking environment. You will play an important role in both preventive and detective security efforts, partnering with internal teams and external vendors to enhance the bank's security posture and support ongoing regulatory compliance., * Help protect the organization by monitoring, investigating, and responding to security alerts generated by enterprise security tools in partnership with management and engineering teams. * Expand your technical expertise by supporting and serving as backup administrator for a wide range of security tools, including data loss prevention, firewalls, intrusion prevention, cloud content filtering, file integrity monitoring, email security, brand and dark web monitoring, security awareness platforms, privileged access management, endpoint and cloud security, SIEM, and AI-driven detection and response solutions. * Play a key role in strengthening access governance by coordinating annual user access reviews across applications, cloud environments, network infrastructure, hypervisors, and other critical systems. * Contribute to a strong security culture by helping develop departmental communications, employee awareness content, and training materials. * Help drive continuous improvement by documenting, tracking, and supporting remediation of identified control gaps through security posture management, self-assessments, and risk assessment activities. * Support the bank's vulnerability management efforts by administering scanning tools across networks, hosts, web applications, and APIs, reporting findings, and partnering with IT on remediation. * Support oversight of privileged and administrative activity across critical systems to help ensure access and changes align with approved requests and security standards. * Support security awareness initiatives by coordinating quarterly social engineering tests, follow-up training, retesting, and phishing reporting programs. * Support secure asset handling by sanitizing IT equipment in accordance with Information Security Policy requirements. * Contribute to the development and maintenance of security procedures, standards, and documentation that support a strong control environment. * Partner with internal stakeholders to support audit and regulatory requests by gathering information and responding to documentation needs. * Take on additional projects and responsibilities that support team goals and provide opportunities for growth. * Occasional travel of up to 5% to corporate locations may be part of this role. ## Related Videos - [An alternative approach to digital sovereignty: Confidential Computing](https://www.wearedevelopers.com/videos/100043-an-alternative-approach-to-digital-sovereignty-confidential-computing) - [Lies, Damned Lies and Large Language Models](https://www.wearedevelopers.com/videos/1231-lies-damned-lies-and-large-language-models) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Perfect Pitch: Unveiling the Mathematical Symphony Behind a Guitar Tuner](https://www.wearedevelopers.com/videos/1095-perfect-pitch-unveiling-the-mathematical-symphony-behind-a-guitar-tuner) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know)