Most recent job postings at First National Bank of Omaha
via First Citizens Careers - First Citizens Bank posted_at: 3 days agoschedule_type: Full-time
Overview This position leads daily engineering, operations, analysis, management, and administration of tools, systems, or processes that secure the Bank's information assets and technology infrastructure. Assesses organizational networks, applications, or systems for potential vulnerabilities. Designs and implements technical solutions that strengthen security. Serves as a technical resource to... management, associates, and business teams. Acts Overview

This position leads daily engineering, operations, analysis, management, and administration of tools, systems, or processes that secure the Bank's information assets and technology infrastructure. Assesses organizational networks, applications, or systems for potential vulnerabilities. Designs and implements technical solutions that strengthen security. Serves as a technical resource to... management, associates, and business teams. Acts as a mentor and leader to less experienced associates in the work group.

Responsibilities
• Security Engineering - Researches and executes process or system improvements that enhance the Bank's information security. Leads security assessments, identifies security gaps, and develops and implements risk mitigation solutions. Ensures compliance with necessary standards, regulations or best practices. Oversees security projects and associate teams as assigned.
• Technical Expertise - Maintains a strong knowledge of industry practices, technology, and evolving threats in order to enhance defenses for the Bank's information systems and resources. Advises management on security protocols and incidents. Mentors and trains associates to ensure team knowledge and effectiveness.
• Issue Resolution - Leads the investigation and resolution of incidents. Prepares, reviews, and conveys reports to management regarding incidents. Implements effective monitoring and alert processes to ensure timely recognition of events. Creates playbooks or other documentation that address recurring issues.
• Analysis - Identifies and evaluates identify potential threats or vulnerabilities in the Bank's networks, applications, or systems. Compiles data from external or internal sources. Creates actionable intelligence based on review of analysis.
• Business Strategy - Assists senior leadership in the development of security policies, standards, and strategies. Facilitates security strategy across the Bank.
• Remote position.

Qualifications

Bachelor's Degree and 8 years of experience in Systems Engineering, Network, or Information Security OR High School Diploma or GED and 12 years of experience in Systems Engineering, Network, or Information Security

License or Certification Type: An industry-recognized technical or security certifications such as Certified Information Systems Security Professional (CISSP) or Security Required

Skill(s): Knowledge of applicable services, products, technologies, and monitoring or alerting tools, Knowledge of coding and scripting lanuages like Python, Perl, and PowerShell, Knowledge of cryptographic implementations, Knowledge of risk management standards, procedures, and data security practices, Ability to clearly communicate risks, threats, and vulnerabilities identified during assessments, Availability to provide after-hours operational support on a rotational basis, with minimal travel
Show more details...
via Dice posted_at: 3 days agoschedule_type: Full-time
Join Our Team! We have a great team of friendly, talented and inspiring people at First United. As a learning organization, we take pride in offering exciting opportunities for employees to grow and follow their passions. That's one of the many reasons First United has been voted as one of the top places to work in Oklahoma since 2009! Browse this page to find out more about the First United... culture and the many benefits of working here. Then, Join Our Team!

We have a great team of friendly, talented and inspiring people at First United. As a learning organization, we take pride in offering exciting opportunities for employees to grow and follow their passions. That's one of the many reasons First United has been voted as one of the top places to work in Oklahoma since 2009! Browse this page to find out more about the First United... culture and the many benefits of working here. Then, use our "Get Started" section to take your first step to being a part of First United.

The Position

Job Title

Senior Information Security Engineer

Job Description

SUMMARY

The Information Security Engineer is responsible for implementing, monitoring, and maintaining security solutions within the organization, not excluding security testing. As risks change, the Information Security Engineer is responsible for recommending modifications and enhancements to ensure the organization is evolving with the threat landscape. The Information Security Engineer ensures that the right security policies and practices are implemented and enforced by managing the security related configurations within the Enterprise security infrastructure. The Information Security Engineer will provide subject matter expertise regarding platform and system design, development, and implementation. The Information Security Engineer delivers these solutions in accordance with the organization's architectural designs, best practices, and regulatory or compliance requirements.

MAJOR DUTIES AND RESPONSIBILITIES (ESSENTIAL FUNCTIONS)
• Handle day-to-day implementation, monitoring and operational support of hardware, software, customer applications, managed solutions, and service provider relationships.
• Engage in information security projects that evaluate existing security infrastructure and propose changes as defined by security leadership and architects. Additionally, deliver projects on time, within budget and in accordance with service level agreements (SLAs).
• Research, validate and deploy solutions meeting security and business needs.
• Ensure security solutions, policies and procedures are sufficient to meet and respond to threats to our data and infrastructure.
• Recommend and provide technical support processes, metrics, and SLAs
• Support and document the implementation of approved security services and infrastructure components
• Conduct performance testing to stress the limitations of security solutions while at the same time ensuring business innovation and day-to-day processes are not negatively impacted.
• Defines tuning and configuration parameters/settings for technologies, platforms, and systems to meet operational requirements
• Design, develop and deliver of Identity and Access Management and Identity Governance and Administration technical solutions for both Cloud and On Premises.
• Define access review and new certifications processes and manage the certification campaign cycles until completion and for continued maintenance and support of data security policies and procedures.

Additional Duties and Responsibilities
• Adherence to all First United Policies and Procedures.
• Performs other related duties as required and assigned.
• Complete all required compliance exams on an annual basis

EMPLOYEE SPECIFICATIONS

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Required Education and Work Experience
• Bachelor's degree or equivalent experience.
• Highly technical and analytical expertise, with a proven deep background (preferred 5+ years' IT experience in addition to cybersecurity) in technology design, implementation and delivery
• Okta Certified Admin Preferred
• AZ-104 or AZ-500 Preferred
• Proficient with scripting in Python, JavaScript, PowerShell, PHP or Ruby
• CISSP Required

Knowledge and/or hands on experience in some of the following areas:
• Ability to drive innovation for system and security improvements, determine engineering and design best practices, find automation opportunities and guide proper use of new features
• Deep knowledge of Azure and Microsoft 365 solutions, including both infrastructure and security components.
• Experience implementing cloud-based security policies and procedures, control standards and operational practices
• Effective understanding and working knowledge of authentication, authorization, and identity governance and administration standards such as Single Sign-On (SSO), Multi Factor Authentication (MFA), Access Gateway, Entitlement Management, Just in Time Administration, Principles of Least Privilege, Federation, Conditional Access, Zero Trust
• Architectures and Concepts of Security Assertion Markup Language (SAML), OpenID (OIDC), Open Authentication (OAuth) Incident Response, Documentation, reporting and investigations
• Solid understanding of IAM/PAM tools and review process (Okta, Delinea, SecureEnds)
• Hands-on expertise with Microsoft Certificate Services and related components.
• Working knowledge of Active Directory and its integration with Microsoft PKI Experience with certificate-enabled applications, such as SSL/TLS, S/MIME, authentication, EFS, 802.1X, Code Signing, etc.
• Thorough understanding of cryptographic concepts: symmetric/asymmetric cryptography, secure hash, digital signatures
• Passively & actively test identity, network and system vulnerabilities.
• Experienced with various scripting methods such as PowerShell Ruby or Python and Proficiency with creation and editing of XML files.
• Knowledge of security standards, audits, and log analysis
• Excellent communication skills, written and verbal
• Excellent problem and resolution skills
• Ability to think strategically and tactically, with effective decision-making skills.

NOTE: This job description is not intended to be all-inclusive. Employee may perform other related duties as assigned by supervisor to meet the ongoing needs of the organization.

#LI-MM1 #Managed

All Locations:

McKinney

If any applicant is unable to complete an application or respond to a job opening because of a disability, please email us at for assistance.

First United Bank is an Equal opportunity employer. This company considers candidates regardless of race, age, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status
Show more details...
via CareerArc posted_at: 14 days agoschedule_type: Full-time
APPLICATION SECURITY ENGINEER WHAT IS THE OPPORTUNITY... As a member of the Attack Surface Reduction team, you will be responsible for implementing and maintaining secure software development practices within our organization. You will work closely with software developers and other team members to ensure that our applications are secure, addressing security issues discovered during the secure development process. As security issues are uncovered, APPLICATION SECURITY ENGINEER

WHAT IS THE OPPORTUNITY...

As a member of the Attack Surface Reduction team, you will be responsible for implementing and maintaining secure software development practices within our organization. You will work closely with software developers and other team members to ensure that our applications are secure, addressing security issues discovered during the secure development process. As security issues are uncovered, the Application Security Engineer communicates technical solutions to development teams with a focus on risk mitigation to improve business continuity.

The engineer is also responsible for assessing the security of internally developed, third-party developed, commercial off the shelf (COTS), and open-source software applications. This includes using automated and manual tools to verify vulnerability risk and perform penetration tests.

Additional responsibilities will include development of automated process, training developers, deploying application security tools, developing remediation solutions, or finding solutions to other challenging problems related to application security.

WHAT YOU WILL BE DOING?
• Partnering with development teams to verify automated scan and penetration testing results and design/select remediation approaches.
• Perform application penetration tests
• Collaborate with other security teams such as security operations, red teams, threat intelligence and risk management to remediate vulnerabilities, understand risk, and reduce the attack surface.
• Interface with development teams to configure, perform, and validate the results of SAST, DAST, OSS, and penetration testing, and assist in selecting remediation solutions for those findings.
• Develop automated testing scripts, process, testing tools, exploits, remediation notes, or attack vectors
• Consult, advise or oversee the secure design and configuration requirements of key application projects to ensure compliance with bank and regulatory standards
• Educate and train application teams on security topics and skills to build strong relationships within the development community
WHAT DO YOU NEED TO SUCCEED

Must-Have*
• Bachelor's Degree in Business, Computer Science or equivalent
• Minimum 5 years experience in Information/Cyber Security field
• Minimum 5 years experience as an engineer or administrator of enterprise security technology platform

Skills and Knowledge
• Experience in application security vulnerabilities, tools, and exploits
• A strong understanding of the OWASP top ten and other frameworks for application security
• Strong understanding of testing methodologies used for SAST, DAST, and OSS.
• Web development experience along with proficiency in common development tools such as Git and IDEs, and how security tools integrate with CI/CD pipelines
• Strong written and verbal communication skills, as well as the ability to work well with a diverse mix of stakeholders
• Experience with common development tools such as Git and IDEs
• Experience in developing alternative solution to difficult problems
• Self-motivation with a strong desire to learn, improve skills and share knowledge with others.
• Security Certifications such as CISSP, OSCP, PenTest+, GWAPT.
• Pen Testing Experience
• Experience using vulnerability detection tools
• Experience exploiting vulnerabilities
• Threat modeling experience
• Experience with one or more enterprise security platforms
• Experience as an engineer in the design, implementation and support in a complete enterprise IT environment
• Knowledge of secure build and configuration standards in a highly regulated environment
• Excellent communication and interpersonal skills. Including a strong ability to create positive and professional business relationships with partner engineering and architecture teams across IT
• Strong commitment to working as a team and providing excellent customer service.
• Bachelor's degree in business, computer science or related field preferred
• Security certifications (CISSP, GSEC, etc.) are preferred.
• System administration certifications (CCNA, MCSA, etc.) Preferred
• Formalized training and mastery in security platform or product
Compensation Starting base salary: $92,114 - $156,880 per year. Exact compensation may vary based on skills, experience, and location. This job is eligible for bonus and/or commissions.
• To be considered for this position you must meet at least these basic qualifications
The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of employees assigned to this job. Benefits and Perks At City National, we strive to be the best at whatever we do, including the benefits and perks we offer our colleagues. Get an inside look at our Benefits and Perks. INCLUSION AND EQUAL OPPORTUNITY EMPLOYMENT
City National Bank is an equal opportunity employer committed to diversity and inclusion. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status or any other basis protected by law.

ABOUT CITY NATIONAL We start with a basic premise: Business is personal. Since day one we've always gone further than the competition to help our clients, colleagues and community flourish. City National Bank was founded in 1954 by entrepreneurs for entrepreneurs and that legacy of integrity, community and unparalleled client relationships continues to drive phenomenal growth today. City National is a subsidiary of Royal Bank of Canada, one of North America's leading diversified financial services companies. Equal Opportunity Employer Minorities/Women/Protected Veterans/Disabled
Show more details...
via Dice posted_at: 16 days agoschedule_type: Full-time
Join Our Team! We have a great team of friendly, talented and inspiring people at First United. As a learning organization, we take pride in offering exciting opportunities for employees to grow and follow their passions. That's one of the many reasons First United has been voted as one of the top places to work in Oklahoma since 2009! Browse this page to find out more about the First United... culture and the many benefits of working here. Then, Join Our Team!

We have a great team of friendly, talented and inspiring people at First United. As a learning organization, we take pride in offering exciting opportunities for employees to grow and follow their passions. That's one of the many reasons First United has been voted as one of the top places to work in Oklahoma since 2009! Browse this page to find out more about the First United... culture and the many benefits of working here. Then, use our "Get Started" section to take your first step to being a part of First United.

The Position

Job Title

Information Security Architect III

Job Description

SUMMARY

The Information Security Architect III will be responsible for architecting data, cloud, infrastructure, and application security solutions for business and technology operations and secure data flows between work zones.

MAJOR DUTIES AND RESPONSIBILITIES (ESSENTIAL FUNCTIONS)
• Implement secure solutions that suit the company's risk appetite and increase the organization's security posture
• Assist with operational departments to innovate and preserve security strategy and framework for business unit and company-wide projects
• Perform incident response and remediation procedures
• Install and maintain appropriate security technologies, systems, tools, and countermeasures for risk mitigation and vulnerability management
• Maintain knowledge of current security and technology products, threats, and trends
• Assist in security standards, procedures, and policy development
• Provide security guidance and training to business and IT employees

Additional Duties and Responsibilities
• Assist all company employees and customers in a prompt, professional, and courteous manner
• Adhere to company security practices according to policy and adopted security framework
• Uphold system and application hardening procedures
• Comply with all banking regulations and legal statutes
• Document records accurately
• Maintain confidentiality of company and customer information
• Adherence to all First United Policies and Procedures
• Complete all required compliance exams on an annual basis
• Perform other duties as assigned

EMPLOYEE SPECIFICATIONS

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Required Education and Work Experience
• 7 to 10 years of similar or related experience
• Bachelor's degree or higher education or equivalent work experience
• CISSP and AZ-104 or AZ-500 certification
• CCSE or PCNSE certification helpful

Knowledge and Skills Requirements
• Collaboration with internal operation departments, regulating entities, IT teams, Risk Management, 3rd party contractors and consultants, internal and external audit groups, and management.
• Hands-on and architecture experience with firewall, SIEM, penetration, vulnerability, and forensics tools
• Hands-on and architecture experience implementing secure cloud solutions
• Strong knowledge of information technology architecture and topology design
• Moderate security framework and standard implementation (ISO, NIST, ITIL, etc.)
• Knowledge of programming and scripting language application
• Microsoft Office Suite and Visio proficiency
• People skills requisite to work with business units, system engineers, & management
• Good verbal communication and writing skills
• Strong attention to detail
• Ability to work independently and as a team member
• Ability to prioritize tasks and manage projects

Physical Demand

Light work that includes moving objects up to 20 pounds.

NOTE: This job description is not intended to be all-inclusive. Employee may perform other related duties as assigned by supervisor to meet the ongoing needs of the organization.

#managed #LI-MM1

All Locations:

McKinney

If any applicant is unable to complete an application or respond to a job opening because of a disability, please email us at for assistance.

First United Bank is an Equal opportunity employer. This company considers candidates regardless of race, age, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status
Show more details...