Summary
SouthState Bank is a financial institution committed to serving customers through personal relationships and forward-thinking solutions. The Cybersecurity Engineer I performs day-to-day operations of cybersecurity controls and platforms, investigates security events, manages security solutions, and supports incident response, vulnerability assessments, audits, and related security initiatives.
Responsibilities
- Ensures compliance with all bank policies and procedures as well as state, federal, and regulatory requirements
- Be fully aware of the enterprise’s security goals as established by its stated policies, procedures, and guidelines and to actively work towards upholding those goals
- Review logs and reports of all in-place devices, whether they be under direct control (i.e. security tools) or not (i.e. workstations, servers, network devices, etc.) and interpret the implications of that activity to provide feedback to leadership
- Participate in investigations into anomalous activity
- Serve as a first responder and assist with initial investigations for potential security events or control impacts
- Assist in the ticket queue rotation to ensure efficient handling of requests
- Participate in the cybersecurity on-call rotation
- Maintain operational configurations of all in-place security solutions as per the established baselines and security best practice
- Participate in the design and execution of vulnerability assessments, penetration tests and security audits
- Provide on-call support for end users and all in-place security solutions
- Monitor all in-place security solutions for efficient and appropriate operations
- Maintain up-to-date detailed knowledge of the IT security industry including awareness of new or revised security solutions, improved security processes and the development of new attacks and threat vectors
- Recommend and implement additional security solutions or enhancements to existing security solutions to improve overall enterprise security
- Research, evaluate, and stay current on emerging tools, techniques, and technologies
- Participate in projects or department initiatives
- Assist in the development and implementation of internal security projects
- Perform daily management of assigned security solutions
- Serve as a member of the incident response team as needed for response to cybersecurity incidents
- Participate in incident response planning and testing exercises
Skills
- Associate Degree (or equivalent work experience) from a regionally accredited institution in Information Security, computer science, mathematics, engineering, or a closely related field
- Two (2) or more years of direct Cybersecurity experience
- A strong security mindset, understanding of financial sector regulatory requirements and security best practice
- Proven analytical and problem-solving abilities
- Ability to effectively prioritize and execute tasks in a high-pressure environment
- Good written, oral, and interpersonal communication skills
- Ability to conduct research into security issues and products as required
- Ability to present ideas in business-friendly and user-friendly language
- Highly self-motivated and directed
- Keen attention to detail
- Team-oriented and skilled in working within a collaborative environment
- Preferably as a cybersecurity engineer or similar role maintaining cybersecurity safeguards at a financial institution
- Direct experience maintaining and operating current security platforms is preferred
- One or more of the following (or similar) certifications preferred:
- Global Information Assurance Certification (GIAC) Certifications (e.g., GIAC Security Essentials (GSEC), GIAC Certified Incident Handler (GCIH), GIAC Continuous Monitoring Certification (GMON), GIAC Certified Intrusion Analyst (GCIA), GIAC Security Operations Certified (GSOC), GIAC Certified Enterprise Defender (GCED), GIAC Certified Detection Analyst (GCDA))
- CompTIA Certifications (e.g., Security+, CySA+)
- Other certificates and professional credentials with cybersecurity relevance will be considered
Qualifications
Must Haves
- Associate Degree (or equivalent work experience) from a regionally accredited institution in Information Security, computer science, mathematics, engineering, or a closely related field
- Two (2) or more years of direct Cybersecurity experience
- A strong security mindset, understanding of financial sector regulatory requirements and security best practice
- Proven analytical and problem-solving abilities
- Ability to effectively prioritize and execute tasks in a high-pressure environment
- Good written, oral, and interpersonal communication skills
- Ability to conduct research into security issues and products as required
- Ability to present ideas in business-friendly and user-friendly language
- Highly self-motivated and directed
- Keen attention to detail
- Team-oriented and skilled in working within a collaborative environment
Nice to Haves
- preferably as a cybersecurity engineer or similar role maintaining cybersecurity safeguards at a financial institution
- Direct experience maintaining and operating current security platforms is preferred
- One or more of the following (or similar) certifications preferred:
- Global Information Assurance Certification (GIAC) Certifications (e.g., GIAC Security Essentials (GSEC), GIAC Certified Incident Handler (GCIH), GIAC Continuous Monitoring Certification (GMON), GIAC Certified Intrusion Analyst (GCIA), GIAC Security Operations Certified (GSOC), GIAC Certified Enterprise Defender (GCED), GIAC Certified Detection Analyst (GCDA))
- CompTIA Certifications (e.g., Security+, CySA+)
- Other certificates and professional credentials with cybersecurity relevance will be considered
Benefits
- Remote Opportunity - VA, NC, SC, GA, FL, AL, TX, & CO, United States of America
- Telecommuting roles, no matter if hybrid or 100% full time telecommuting