Security Operations Specialist
Candescent
Candescent is the leading cloud-based digital banking solutions provider for financial institutions. We are transforming digital banking with intelligent, cloud-powered solutions that connect account opening, digital banking, and branch experiences for financial institutions. Our advanced technology and developer tools enable seamless, differentiated customer journeys that elevate trust, service, and innovation. Success here requires flexibility in a fast-paced environment, a client-first mindset, and a commitment to delivering consistent, reliable results as part of a performance-driven, values-led team. With team members around the world, Candescent is an equal opportunity employer.
Summary
The Security Operations Analyst will focus its day-to-day activities related to the availability, integrity and confidentiality of customers, business partners, employees and business information in compliance with the organization’s information security policies. Work to implement and maintain Candescent’s information security program as directed by senior management and approved by Executive Management. Provide technical expertise on a worldwide basis over the security requirements for applications, systems, networks, peripherals and general infrastructure for all Candescent locations across the enterprise as well as provide advisory and consulting services to business partners as directed. Promote and maintain a professional and cooperative working relationship with peers, internal and external customers.
What you’ll do:
- At the direction of Senior Management, develop, implement and monitor a strategic, comprehensive enterprise information security and risk management program to ensure the integrity, confidentiality and availability of information owned, controlled or processed by the organization.
- Act as an advisor and consultant to all employees on the established enterprise’s information security program, regulations impacting our industry and security awareness programs.
- Understand potential and emerging information security threats, vulnerabilities, and control techniques and communicate this information to appropriate team members throughout the company on a timely basis.
- Provide security component design, testing and deployment for: disaster recovery solutions, daily operation processes and supporting network infrastructures.
- Deploy, integrate and configure of all new security solutions and or any enhancements to existing security solutions in accordance with standard best operating procedures generically and the company’s security documents specifically.
- Execute of vulnerability assessments, penetration tests and security audits.
- Engage in ongoing communications with peers in the Systems and Networking groups as well as the various business groups to ensure the companywide understanding of security goals, to solicit feedback and to foster cooperation.
- Continually investigate and introduce security processes improvement measures, metrics and present suggestions.
- Document all procedures within the security department.
- Provide weekly status reports to senior management within Information Security.
- Open and read emails on a daily basis.
- Conform with and abide by all federal, state, local regulations, Candescent’s Corporate Policies and Procedures, and instructions.
- Participate in any/all training and educational activities necessary to fulfill at least the minimum requirements specified in your department goals.
- Practice and comply with all regulations promoting a safe and healthy work environment (i.e. OSHA).
- Adhere to privacy; confidential, proprietary company policies and procedures (i.e. HIPAA and PCI).
About you:
- Bachelor’s degree in field of computer science, business information systems, or information security with a minimum of 5 years of experience.
- Certification in Enterprise Information Security preferred such as CISSP or GIAC-GSE.
- Working technical knowledge of firewalls, application layer firewalls, database firewalls, routers switches, IDS/IPS, log and event monitoring TCP/IP and other protocols.
- Strong understanding of proxies, content filtering, AV solutions, vulnerability management, and patching.
- Hands on experience with Security Information Event Management Systems (SIEM), Database Activity Monitoring Systems (DAM), Data Leakage Prevention Systems (DLP), Intrusion Prevention Systems (IPS), Intrusion Detection Systems (IDS), encryption appliances and applications.
- Excellent professional oral, written communication and presentation skills.
- Proven track record of competency in the field of information security.
- Strong collaborative and influencing skills.
- Ability to present ideas in a business-friendly and user-friendly language.
- Ability to effectively prioritize and execute tasks in dynamic and high-pressure environments.
- Excellent judgment skills.
- Ability to maintain confidentiality.
- Ability to investigate and document findings.
- Proven analytical and problem-solving abilities.
- Familiarity with risk mitigation strategies and incident response and handling.
- Ability to work independently as well as in a team.
- Competent in Windows based computer applications (Microsoft Office).
Why work for Candescent?
- Learn from and grow with a financial services leader
- Enjoy a competitive salary and a comprehensive benefits package: 401k with match, generous paid time off, medical, dental, vision coverage plus health savings accounts and much more
- Thrive in a collaborative culture that supports innovation
- Take advantage of a supportive work-life balance
- Benefit from global career opportunities and advancement
Statement to Third Party Agencies
To ALL recruitment agencies: Candescent only accepts resumes from agencies on the preferred supplier list. Please do not forward resumes to our applicant tracking system, Candescent employees, or any Candescent facility. Candescent is not responsible for any fees or charges associated with unsolicited resumes.