Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Principal Security Analyst image - Rise Careers
Job details

Principal Security Analyst

REPORTS TO: MANAGER – INFORMATION SECURITY STATUS: EXEMPT JOB CODE: 4321 PAY SCALE: $94,000.00 - $98,006.00 annually GENERAL DESCRIPTION: The Security Analyst focuses on ensuring sound implementation of systems and processes aimed at effectively securing Golden 1’s information, infrastructure and member non-public financial data. It involves overseeing intrusion monitoring, assessing and mitigating any detected threats, recommending and establishing related policies and procedures, as approved. As the subject matter expert, provides internal security consultancy, as well as analyzes, supports and assists resolve system security issues and concerns to Golden 1 internal and external business environments, and others.TASKS, DUTIES, FUNCTIONS:• Conduct ongoing vulnerability management activities and access potential threats. Escalate any immediate and severe issues accordingly to the attention of the Manager – Information Security and appropriate reporting to senior leadership.• Coordinate and lead technology staff in the identification and remediation of system vulnerabilities across the computing environment.• Provide consultative support as a security subject matter expert on Golden 1 projects and initiatives.• Define and evaluate functional requirements and specifications of security systems for both internal and external business environments.• Work in conjunction with IT to ensure appropriate procedures and processes are in place and effective in the detection and prevention of system intrusions as well as in establishing and managing a functional anti-virus/malware/DLP policy.• Monitor, measure, test and report on the effectiveness and efficiency of information security controls as well as compliance with information security policies and procedures.• Administration of the following systems: IDS/IPS, Firewalls, email gateway, certificate issuance, URL filter, network management and identity access control.• Regularly review IDS/IPS/HIDS/SIEM rules, wireless rogue access point detection configuration and procedures and practices to ensure optimal effectiveness of security in the business environment.• Regularly review firewall, VPN, and web content filtering configuration and rules to ensure optimal efficiency and adherence to information security standards.• Keep management updated on outstanding issues that are not resolved in a timely manner in accordance with established escalation procedures.• Work with internal and external auditors during examinations providing support and assistance in addressing audit recommendations.• Maintain a thorough understanding of state and federal laws and regulations related to credit union compliance including bank secrecy and anti-money laundering laws appropriate to the position.• Perform other job-related duties as necessary.PHYSICAL SKILLS, ABILITIES, AND EXERTION UTILIZED IN THE PERFORMANCE OF THESE TASKS:• Effective oral and written communication skills required with a focus on troubleshooting and error identification.• Must possess sufficient manual dexterity to skillfully operate applicable computer hardware, a variety of hand tools and standard office equipment.ORGANIZATIONAL CONTACTS & RELATIONSHIPS:• INTERNAL: All levels of staff and management• EXTERNAL: Vendors, service providers, organizational groups, and other financial institutions as needed.QUALIFICATIONS:• EDUCATION: Bachelors of Science in Computer Science, Management Information Systems, Information Security Information Assurance or equivalent work experience.• EXPERIENCE:• Minimum of 5 years or more hands-on experience in the management, configuration, administration, installation, and evaluation of network (Cisco desired) or operating systems software (Microsoft, Linux desired), hardware and applications.• At least 2 years’ experience in organizational information security, information assurance or providing security consulting services.• Demonstrates working knowledge of Firewalls and Intrusion Detection/Prevention systems.• Demonstrates working knowledge of information security principles, objectives, and security system standards including but not limited to: network topology threats, vulnerabilities, segmentation, filtering, tunneling, authenticating, access control, cryptography, system and network hardening.• Demonstrates working knowledge of risk assessment methodologies, VoIP and mobile device.• Demonstrates working knowledge of business, network systems, hardware concepts, and applications including: DNS, LDAP, virtualization, Database design/hardening, E-mail/secure messaging, Data Loss Prevention, and end point protection.• Strong sense of ethics, integrity, and professionalism.• Demonstrates the ability to articulate methodologies and concepts; communicate effectively in providing technical guidance and expertise to management and other staff.• CERTIFICATIONS:• Possession of a valid California Driver’s License is required.• One of the following security certifications: CEH, Security +, SSCP, SANS GIAC, or GCIH.• One of the following technical certifications: MCP, CCNA, or equivalent.PHYSICAL REQUIREMENTS:• Prolonged sitting throughout the workday to accomplish tasks.• Availability for emergency and on-call duty 24 hours a day, 7 days a week, as needed.• Occasional travel may be required.• Lift and carry communications equipment and computer hardware weighing up to fifty pounds.• Corrected vision in the normal range required to configure, test, and troubleshoot network server hardware and data.• Hearing within normal range.• Must possess sufficient manual dexterity to skillfully operate applicable computer hardware, a variety of hand tools and standard office equipment.• May work additional work hours to accomplish tasks.LICENSES/CERTIFICATIONS:• Possession of a valid California Driver’s License is required.THIS JOB DESCRIPTION IN NO WAY STATES OR IMPLIES THAT THESE ARE THE ONLY DUTIES TO BE PERFORMED BY THIS EMPLOYEE. HE OR SHE WILL BE REQUIRED TO FOLLOW OTHER INSTRUCTIONS AND TO PERFORM OTHER DUTIES REQUESTED BY HIS OR HER SUPERVISOR THAT ARE WITHIN HIS / HER KNOWLEDGE, SKILL AND ABILITY AS WELL AS HIS / HER MENTAL AND PHYSICAL ABILITIES.#J-18808-Ljbffr
Oracle Glassdoor Company Review
3.8 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Oracle DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Oracle
Oracle CEO photo
Safra A. Catz
Approve of CEO

Average salary estimate

$96003 / YEARLY (est.)
min
max
$94000K
$98006K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Principal Security Analyst, Oracle

As a Principal Security Analyst at Golden 1 in Sacramento, CA, you’ll play a vital role in safeguarding our members' information and infrastructure. Imagine being at the forefront of security measures, where your expertise directly influences how we protect sensitive financial data. Your day-to-day will involve a blend of analytical tasks and hands-on technical work. You will be conducting ongoing vulnerability management activities, identifying potential threats and ensuring that our team is always on top of more sophisticated attacks. Collaboration is key in this role, as you’ll lead technology staff to effectively mitigate any discovered vulnerabilities. Your security consultancy will guide numerous projects, defining the security requirements necessary to keep our systems safe. You will work closely with IT to enforce effective security processes, testing and reporting on our controls to ensure compliance with established policies. You’ll manage various systems, from IDS/IPS to firewalls, ensuring they run optimally. Beyond the day-to-day, your knowledge of state and federal regulations will keep our organization compliant with industry standards. This is not just a job but an opportunity to make a real impact. If you’re looking for a role that thrives on prevention and collaboration, where your contributions are valued and recognized, we’d love to have you join our Golden 1 family!

Frequently Asked Questions (FAQs) for Principal Security Analyst Role at Oracle
What are the primary responsibilities of a Principal Security Analyst at Golden 1?

The Principal Security Analyst at Golden 1 primarily focuses on ensuring the security of our information systems and member data. This includes ongoing vulnerability management, overseeing intrusion monitoring, and providing consultancy on security practices across various projects. The analyst coordinates with IT to establish robust security measures, evaluates security controls, and administers crucial security systems.

Join Rise to see the full answer
What qualifications does Golden 1 require for the Principal Security Analyst position?

To qualify for the Principal Security Analyst position at Golden 1, candidates should possess at least a Bachelor of Science in Computer Science or related fields, along with a minimum of 5 years of relevant experience in information security. Key certifications like CEH or Security + are highly desirable, and strong communication skills are essential for articulating complex security concepts.

Join Rise to see the full answer
How does Golden 1 support skills development for a Principal Security Analyst?

At Golden 1, we believe in continuous growth and skills development for our employees. The Principal Security Analyst will have opportunities to engage in training sessions, industry conferences, and access to resources that enhance their knowledge in cybersecurity. Collaborating with teams across various projects also provides practical learning experiences.

Join Rise to see the full answer
What tools does a Principal Security Analyst at Golden 1 typically use?

A Principal Security Analyst at Golden 1 will utilize a range of tools including IDS/IPS systems, firewalls, email gateways, and systems for assessing network vulnerabilities. The role involves monitoring and managing these systems to maintain optimal security, thus knowledge of industry-standard tools is crucial.

Join Rise to see the full answer
What is the work environment like for a Principal Security Analyst at Golden 1?

The work environment at Golden 1 for a Principal Security Analyst is dynamic and collaborative. Analysts work closely with IT teams and other departments to tackle security challenges and assess systems. With a strong focus on innovation in security practices, employees are encouraged to share ideas and foster a culture of teamwork.

Join Rise to see the full answer
Common Interview Questions for Principal Security Analyst
Can you describe your experience with vulnerability management?

When answering this question, provide specific examples from your previous roles where you identified and mitigated vulnerabilities. Highlight the tools you used and the processes you followed to ensure systems remain secure.

Join Rise to see the full answer
How do you handle the detection of a security breach?

Discuss your incident response strategy, emphasizing communication with team members, immediate actions taken to contain the breach, and any protocols you would initiate to prevent future incidents.

Join Rise to see the full answer
What security frameworks are you familiar with?

Mention frameworks like NIST, ISO 27001, or COBIT that you have worked with. Discuss how you’ve applied these frameworks in assessing security measures and aligning with compliance requirements.

Join Rise to see the full answer
Describe a time you provided security consultancy on a project. What was the outcome?

Share a specific project where your input was crucial. Detail your role, the recommendations you made, and the positive impact those recommendations had on the project’s security posture.

Join Rise to see the full answer
What influential factors contribute to effective security governance?

Discuss the importance of leadership buy-in, ongoing training, compliance with regulations, and the integration of security into business processes. Provide examples of how these factors play a role in successful governance.

Join Rise to see the full answer
How do you evaluate the effectiveness of security controls?

Share your approach to testing and validating security controls through audits, simulations, or vulnerability assessments. Include examples where you identified gaps and made improvements.

Join Rise to see the full answer
What steps would you take to stay updated on the latest security threats?

Talk about your commitment to continuous learning. Mention following industry news, attending webinars, participating in security forums, or taking relevant courses to stay abreast of evolving threats and best practices.

Join Rise to see the full answer
Can you explain the importance of data loss prevention?

Discuss data loss prevention strategies and their role in protecting sensitive information. Provide examples on how you’ve implemented or evaluated DLP solutions in past roles.

Join Rise to see the full answer
What role does communication play in your work as a security analyst?

Highlight the importance of clear, concise communication in fostering a culture of security awareness and collaboration. Provide examples of how effective communication has helped mitigate risks in your experience.

Join Rise to see the full answer
How do you prioritize security issues when faced with a range of vulnerabilities?

Explain your methodology for assessing risk based on severity, potential impact, and exploitability of vulnerabilities. Discuss how you communicate these priorities to your team and management for timely action.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 11 days ago
Photo of the Rise User
Posted 2 days ago
Photo of the Rise User
Tenable, Inc. Remote US - Remote - California - Bay Area, US - Remote - Massachusetts , US - Headquarters - Maryland - Columbia
Posted 5 days ago
Photo of the Rise User
Instanda Remote No location specified
Posted 9 days ago
Photo of the Rise User
Posted 10 days ago
Photo of the Rise User
Experian Remote Calle Graham Bell s/n Armilla, Granada, MD, Spain
Posted 10 hours ago

Oracle is an American multinational computer technology company and was the third-largest software company in the world in 2020. As the cloud leader for business, Oracle provides computing infrastructure and software to organizations worldwide.

798 jobs
MATCH
Calculating your matching score...
BADGES
Badge ChangemakerBadge Diversity ChampionBadge Family FriendlyBadge Global CitizenBadge Work&Life Balance
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
December 13, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!