What are the responsibilities and job description for the Cybersecurity Analyst position at Symmetry Lending?
Job Description
The Cybersecurity Analyst plays a key role in monitoring, analyzing, and strengthening the organization's cybersecurity posture. This role is responsible for threat detection, incident response, vulnerability management, and supporting IT audits. The ideal candidate will have strong technical expertise, knowledge of security best practices, and experience supporting audits in a financial services environment.
The candidate should have a deep understanding of various information security technologies and approaches, enabling them to conduct accurate security assessments and ensure robust protection of critical systems and data.
Key Responsibilities
Security Monitoring & Incident Response
- Monitor security alerts and logs continuously using SIEM tools to detect and respond to threats.
- Investigate security incidents, conduct forensic analysis, and escalate issues as necessary.
- Assist in the development and execution of the Incident Response Plan (IRP), including participation in tabletop exercises.
- Analyze phishing attempts, malware threats, and unauthorized access activities.
- Ensure security playbooks and standard operating procedures (SOPs) are maintained and updated.
IT Audit Support & Compliance Monitoring
- Support internal and external IT audits by collecting security evidence, logs, and documentation.
- Assist in conducting User Access Reviews (UARs) to ensure least privilege access is enforced.
- Coordinate with IT teams to provide documentation on vulnerability management, patching, and security controls.
- Ensure adherence to industry security frameworks such as NIST 800-53, ISO 27001, CIS Controls, and FFIEC IT Examination Handbook.
- Provide auditors with information on log retention, incident handling, and security monitoring processes.
- Assist in ensuring third-party vendors meet security requirements, including security due diligence assessments.
- Vulnerability & Risk Management
- Conduct vulnerability scans using tools and work with IT teams to remediate findings.
- Perform risk assessments and document potential security gaps, providing recommendations for mitigation.
- Ensure that patch management policies are followed, and security updates are implemented.
- Assist in managing endpoint security tools, such as EDR, anti-malware, and application whitelisting solutions.
Security Awareness & Architecture Assessments
- Perform security assessments and provide recommendations for enhancing security controls across the organization.
- Partner closely with IT teams to ensure proper firewall configurations, IDS/IPS rules, and VPN security settings.
- Conduct assessments on Data Loss Prevention (DLP), Web Application Firewalls (WAF), and Endpoint Detection & Response (EDR) tools to improve security resilience.
- Assist in application security assessments by reviewing secure coding practices and vulnerability scans.
- Ensure security best practices are implemented across cloud and on-premises environments.
Collaboration & Reporting
- Partner with IT and security teams to enhance security controls and architecture.
- Prepare reports on cybersecurity incidents, audit findings, and security trends for leadership.
- Stay up to date on emerging threats, vulnerabilities, and financial industry security trends.
Qualifications / Requirements
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Information Security, a related field, or equivalent experience.
- 5 years of hands-on experience in cybersecurity, IT security, or security operations (SOC), preferably in the financial industry.
- Experience supporting internal and external IT audits related to cybersecurity policies, procedures, and compliance frameworks.
- Prior experience with financial institution security standards such as FFIEC, ISO 27001, CIS Controls, or NIST 800-53.
Technical Skills & Competencies
- Security Assessments & Risk Analysis: Ability to evaluate security controls and recommend improvements.
- SIEM Management: Experience configuring and reporting on SIEM tools.
- Firewall & Network Security: Strong knowledge of firewalls, IDS/IPS, and VPN security.
- Endpoint Protection & Threat Detection: Hands-on experience with EDR, anti-malware, and behavioral analytics tools.
- Data Loss Prevention (DLP): Understanding of DLP policies and implementation strategies.
- Web Application Security (WAF): Experience with WAF tools and application security best practices.
- Vulnerability Management: Proficiency in vulnerability scanning tools.
- Identity & Access Management (IAM): Experience with least privilege access, MFA, RBAC, and SSO.
- Cloud Security Knowledge: Understanding of AWS, Azure, or GCP security configurations.
Preferred Certifications
- Certified Information Systems Security Professional (CISSP) – or actively working towards it.
- Certified Ethical Hacker (CEH) – for hands-on penetration testing knowledge.
- GIAC Security Essentials (GSEC) – foundational technical security knowledge.
- Certified Information Systems Auditor (CISA) – for IT audit and compliance expertise.
- CompTIA Security – for entry-level security proficiency.
- Experience with cloud security (AWS, Azure, GCP) and cloud security tools.
- Familiarity with security automation and scripting (Python, PowerShell, Bash).
- Understanding of Zero Trust Architecture and implementation best practices.
About Symmetry
Symmetry Lending specializes in providing mortgage fulfillment services to include origination, servicing, and capital markets needs to various Lenders across the country with whom we partner. We have offices in Atlanta, GA, Eden Prairie, MN, Orlando, FL, and Anaheim, CA, and we do business from coast to coast. We take great pride in building a diverse team of motivated professionals that contribute to an exciting work atmosphere. We provide a competitive benefits package including medical, dental, and vision plan options, paid time off, and more.
Job Type: Full-time
Pay: $115,000.00 - $145,000.00 per year
Benefits:
- 401(k)
- 401(k) matching
- Dental insurance
- Employee assistance program
- Flexible spending account
- Health insurance
- Health savings account
- Life insurance
- Paid time off
- Vision insurance
Schedule:
- Monday to Friday
- On call
Ability to Commute:
- Anaheim, CA 92807 (Required)
Work Location: In person
Salary : $115,000 - $145,000