> Markdown version of [/jobs/ext/191539-cybersecurity-analyst-iii](https://www.wearedevelopers.com/jobs/ext/191539-cybersecurity-analyst-iii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Analyst III - **Company:** CUNA Mutual Group - **Location:** Madison, WI, United States - **Experience:** Experienced - **Salary:** $95,000.0 - $142,500.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Cyber Security, Information Systems, Intrusion Detection and Prevention, PCI Data Security Standards, Mitre Att&ck, Information Technology, Purple Team (Cyber Security), Vulnerability Analysis - **Published:** May 23, 2026 - **Apply:** https://trustage.wd1.myworkdayjobs.com/TruStage/job/Madison-WI/Cybersecurity-Analyst-III_R-011905 ## About the Role * Bachelor's degree in computer science, information systems, or related field, or equivalent combination of education and/or related professional work experience. * 3+ years of demonstrated proficiency with an cybersecurity audit, assessment, engineering or architecture focus or comparable professional experience. * Knowledge of cybersecurity regulations, guidance and policies (e.g., PCI-DSS, NYDFS, CCPA, etc.). * Knowledge of general security concepts and methods such as vulnerability assessments, privacy assessments, intrusion detection, incident response, security policy creation, enterprise security strategies, and governance. * Proven ability to clearly and effectively communicate business and technical information, both verbally and in writing. * Basic leadership and teaming skills as well as demonstrated integrity within a professional environment. * Proven ability to clearly and effectively communicate business and technical information, both verbally and in writing. * Aptitude for speaking or communicating to varied groups of business and technical professionals. * Experience in presenting technical material to a nontechnical audience and to senior management. * Experience in the review and development of security policies, standards or other governance practices. * Demonstrated relationship management and consulting skills, including ability to effectively influence and negotiate. * Proven ability to provide high quality customer service. * Preferred: Financial Services industry experience. ## Description The Cybersecurity Analyst III will be responsible for the following duties: * Continuously monitor the internal and external landscape for relevant events, risks, and threats related to malicious code, vulnerabilities, and potential attacks in alignment with the MITRE ATT&CK framework. * Remain current with emerging threats and share knowledge with colleagues to improve incident response processes. * Help coordinate and ensure cybersecurity-related alerts and incidents are prioritized and responded to at all hours of the day. * Act as a technology, service or process owner as appropriate, ensuring appropriate documentation, configuration, maintenance and access reviews of technologies, vended services and processes. * Participate in the coordination, consultation, and assessment efforts to track and remediate events and alerts, directs response to related incidents, internal or external audits, and / or control assessments. * Collaborate with other Enterprise Information & Technology (EI&T) teams to protect data from compliance, privacy or security compromises. * Participate in the creation and execution of tabletop, purple team, and attack simulation exercises designed to identify gaps, improve skills, enhance communication and engage with key stakeholders. * Review findings from tabletop exercises, vulnerability scans and penetration testing to identify weaknesses or gaps in existing security controls and assist in providing recommendations where appropriate. * Review and evaluate third-party security posture, helping to identify risks, document findings, and support remediation efforts to ensure vendors and partners meet organizational security standards. * Participate in the identification of risks throughout the organization, reporting and monitoring formats on risk management issues and developing methodologies for the assessment of risks throughout the organization. * Contributes to the development, tracking, and reporting of security metrics and KPIs for team activities, using insights to drive continuous improvement, reduce security risk and/or inform other security education opportunities. * Contribute to the strategic direction of the Cybersecurity team to develop new capabilities, process efficiencies and goals. * Assist in the development, review, ongoing maintenance and development of security policies, standards, processes, procedures and requirements to facilitate the establishment of common administrative controls for the delivery of security capabilities. * Develop content for organization wide and targeted security awareness training. Present relevant cybersecurity topics through a variety of forums depending on the audience. * Support leadership with all aspects of the cybersecurity enterprise-wide risk management program, with minimal supervision. Responsibilities include facilitating the identification of risks throughout the organization, reporting and monitoring formats on risk management issues and developing methodologies for the assessment of risks throughout the organization. * Participate in various security assessments in support of compliance, privacy or security requirements for the enterprise. Lead localized assessments where appropriate. * Participate in the development, review, ongoing maintenance and development of security policies, standards, processes, procedures and requirements to facilitate the establishment of common administrative controls for the delivery of security capabilities. Provide cybersecurity guidance as appropriate * Escalate issues as deemed appropriate. The above statement of duties is not intended to be all inclusive and other duties will be assigned from time to time. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Microservices? Monoliths? An Annoying Discussion!](https://www.wearedevelopers.com/videos/970-microservices-monoliths-an-annoying-discussion) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Giving AI eyes: How to build a dashboard you can't see](https://www.wearedevelopers.com/videos/100193-giving-ai-eyes-how-to-build-a-dashboard-you-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Data Analyst Salary in Switzerland](https://www.wearedevelopers.com/magazine/276-data-analyst-salary-in-switzerland) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)