> Markdown version of [/jobs/ext/465200-info-sec-analyst-1-governance-pci-compliance](https://www.wearedevelopers.com/jobs/ext/465200-info-sec-analyst-1-governance-pci-compliance). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Info Sec Analyst 1 - Governance/PCI Compliance - **Company:** Arvest Bank - **Location:** United States - **Experience:** Experienced - **Salary:** $84,850.0 - $106,060.0 - **Contract:** Permanent contract - **Skills:** CompTIA Security+, Cyber Security, Computer Networks, System Configuration, Information Security Management, Intrusion Detection and Prevention, Network Monitoring, PCI Data Security Standards, Mitre Att&ck, Information Technology - **Published:** June 6, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=a2a09d83066ae757 ## About the Role Do you have experience in Vendor communication?, Do you have a Bachelor's degree?, Position is Monday through Friday from 8 am to 5 pm with the ability to work additional hours as project needs demand. Incumbent should reside within the Arvest 4 State Footprint (AR, KS, MO, OK) in order to be considered for the position., * Working knowledge of PCI requirements to support business-wide compliance for audit preparedness. * Ability to obtain PCIP certification within 3 months of hire. * Knowledge of Banking Industry Frameworks and Control Sets (e.g., PCI, FDICIA, FFIEC, NIST CSF, CRI Profile, HIPAA, CIS). * Understanding of Information Security governance and compliance, with critical thinking skills to identify gaps and explain them to business stakeholders. * Experience with Archer, specifically regarding standards, control procedures, and findings., ยท Bachelor's Degree in Computer Science or Information Security, or equivalent relevant work or military experience, is required. * 3 years of relevant experience is required. * Knowledge and understanding of relevant Information Security Management frameworks such as NIST, ISO, CIS, etc., is required. * Knowledge and understanding of frameworks such as MITRE, Lockheed Martin Kill Chain, etc., is required. * CompTIA Security+, MITRE ATT&CK Defender (MAD), or equivalent certification, is preferred. OTHER SKILLS AND ABILITIES: * Must be able to identify critical infrastructure systems that were designed without system security considerations. * Must be able to begin work on time and have regular work attendance. * Must be able to work cooperatively with other co-workers and customers, both existing and prospective, regardless of personality, presence, or communication style. * Must be able to perform several tasks at once and rotate job tasks. * Must be able to work in a stressful atmosphere. * Must be able to coordinate multiple and changing priorities. * Must be able to occasionally work outside of normal business hours. * Must be able to move from department, division, or bank to department, division, or bank to attend meetings. * Must be able to lead and participate in productive networks with internal and external business partners, process experts, and the vendor community. * Must be able to develop and deliver training and educational opportunities on security issues., The associate must be able to travel occasionally by themselves within the US, including overnight, and via automobile and air. ## Description SUMMARY: An information security professional with advanced expertise in developing, configuring, deploying, and supporting numerous security tools and configuration. Knowledgeable in best and emerging practices in various information security domains . We are seeking candidates who embrace diversity, equity, and inclusion in a workplace where everyone feels valued and inspired. ESSENTIAL DUTIES AND RESPONSIBILITIES include the following. Other duties may be assigned. 1. Provides Level 2 support and root cause analysis problem management for security events/incidents. 2. Conducts network monitoring and intrusion detection analysis using various computer network defense tools, such as intrusion detection/prevention systems, firewalls, and host-based security systems. 3. Conducts log-based and endpoint-based threat detection to detect and protect against threats coming from multiple sources. 4. Supports the resolution of security incidents. Creates and updates standard operating procedures as appropriate. 5. Reviews alerts and data from sensors and documents formal, technical incident reports. Prepares the analysis and reporting of security activities to management. 6. May provide security expertise across multiple technical platforms. 7. Identifies meaningful insights about Arvest threat environment and assists in development of plans to improve its information security posture. 8. Correlates network, cloud, and endpoint activity across environments to identify attacks and unauthorized use. 9. May be required to perform work after hours. 10. May participate in on-call rotations as needed. 11. Understands and complies with bank policy, laws, regulations, and the bank's BSA/AML Program, as applicable to job duties. This includes but is not limited to; completing compliance training and adhering to internal procedures and controls; reporting any known violations of compliance policy, laws, or regulations and reporting any suspicious customer and/or account activity. TEAM ACCOUNTABILITIES: * Support and uphold the Arvest Mission Statement. * Uphold the Arvest Code of Ethics and ensure that confidential information is safeguarded. * Maintain a high level of cooperation and rapport with all associates to ensure accurate and efficient operations and service. * Formulate and communicate new ideas and suggestions that will improve profitability and efficiency for the company's overall operation. Promote professionalism at all times. Responsibilities: QUALIFICATION REQUIREMENTS: To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Less Is More: How Lagom and Agile Can Create Harmonious Workflows](https://www.wearedevelopers.com/videos/1993-less-is-more-how-lagom-and-agile-can-create-harmonious-workflows) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [Data Analyst Salary Austria](https://www.wearedevelopers.com/magazine/275-data-analyst-salary-austria) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)