Cyber Security Analyst
Job Description
FCS Financial seeks a Cyber Security Analyst to help protect the organization’s digital environment. The role focuses on threat detection, incident investigation, security control improvements, and support for the Information Security Program through monitoring and analysis across enterprise platforms.
Role Overview
This position is classified as Exempt under the Fair Labor Standards Act and sits within the Information Services department. The Analyst reports to the Chief Information Security Officer and supervises none.
The role includes hybrid work opportunities in alignment with candidate qualifications and business needs. This position is located in Jefferson City, MO 65101 and remains open until filled.
Key Responsibilities
- Monitor and investigate security events across networks, systems, cloud environments, and endpoints.
- Identify, analyze, and respond to cybersecurity threats and incidents.
- Conduct incident triage, vulnerability management, access reviews, and security troubleshooting.
- Use threat intelligence and security monitoring tools to strengthen organizational defenses.
- Support penetration testing, security audits, implementation of security controls, and compliance initiatives.
- Recommend and implement security improvements to reduce risk and enhance resiliency.
- Contribute to security policies and support business continuity and disaster recovery efforts.
- Partner with the CISO and technology teams to advance the cybersecurity strategy.
- Stay current with emerging security alerts and issues, including network alert intake and cause determination.
- Review and interpret server logs, firewall logs, intrusion detection logs, and network traffic to identify unusual or suspicious activity and recommend resolutions.
- Design, implement, and report on security system and end user activity audits.
- Correlate incident data to identify vulnerabilities and enable expeditious remediation.
- Investigate security exceptions, administer incident response procedures, and coordinate with internal personnel or external agencies as needed.
- Perform cyber defense incident triage, including determining scope, urgency, potential impact, identifying specific vulnerability, and recommending remediation.
- Recommend and schedule fixes, security patches, disaster recovery procedures, and other measures in the event of a breach.
- Track and document incidents from initial detection through final resolution.
- Assist the CISO with coordination of incident response functions.
- Assess systems and solutions for ongoing defense of the business and support compensating controls to reduce identified risk to an acceptable level.
- Analyze cyber defense policies and configurations and evaluate compliance with regulations and organizational directives.
- Conduct and/or support authorized penetration testing on enterprise network assets.
- Prepare audit reports covering technical and procedural findings and recommended remediation strategies.
- Perform risk and vulnerability assessments across technology focus areas such as cloud, local computing environment, network and infrastructure, supporting infrastructure, and applications.
- Participate in planning and design of enterprise security architecture and the creation of security documents (policies, standards, baselines, guidelines, and procedures) as directed by the CISO.
- Support planning and design of enterprise Business Continuity and Disaster Recovery Plans as directed by the CISO.
- Recommend additional security solutions or enhancements to existing solutions.
- Participate in the design and execution of vulnerability assessments, penetration tests, and security audits.
- Recommend data security policies, procedures, standards, and practices focused on minimizing breach risk and improving timely detection and containment.
- Other duties as assigned to meet organizational needs.
Typical Time Allocation (Job Functions)
- 30% Data and Information Security Monitoring and Automation
- 30% Incident Analysis and Response
- 25% Cyber Intelligence and Vulnerability Management
- 15% Planning
- n/a Other duties as assigned to meet the needs of the organization.
Essential Functions
Essential functions consist of all items listed under any category that make up 5% or more of the job duties. The job description is subject to change without notice.
Required Qualifications
- Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Security Management, or a related field (or equivalent experience).
- Five or more years of cybersecurity, information security, or related experience.
- Experience with incident response, threat detection, vulnerability management, and security monitoring.
- Knowledge of endpoint monitoring, email security, vulnerability scanning, and threat intelligence platforms.
- Understanding of cloud, network, and infrastructure security best practices.
- Strong analytical, investigative, and problem-solving skills.
- Ability to assess risk, prioritize threats, and communicate recommendations effectively.
- Skill in exercising judgment within broadly defined practices and policies, and making decisions based on analysis, discussion, experience, and judgment.
- Responsible for the security and integrity of the Association’s systems and data and clients’ data.
- Working knowledge of applicable laws, regulations, and controls.
- Working knowledge of business processes and management.
- Working knowledge of the use of technology in agriculture and the financial services industries.
- Working knowledge of systems design and business requirements sufficient to understand opportunities and limitations of security measures and tools.
Preferred Certifications
- CISSP
- GCIA
- GCIH
- GMON
- Or similar cybersecurity certifications
Security Tools and Technologies
- Security Information and Event Management (SIEM) systems
- Intrusion detection/prevention systems (IDS/IPS)
- Public key infrastructure (PKI)
- Identity and access management (IDAM) systems
- Antivirus and firewalls
- Endpoint detection and response (EDR)
- Threat intelligence platforms
- Data loss prevention (DLP)
- Security automation and orchestration
- Deception technologies
- Application controls
- Endpoint monitoring and email security
- Vulnerability scanning
- Cloud, network, and infrastructure security best practices
Compensation and Benefits
Salary range: USD 88,000 - 150,000 per year.
- Comprehensive salary
- Incentive opportunities
- Comprehensive benefits package designed to support your overall well-being
- Hybrid work opportunities available based on candidate qualifications and business needs
Additional Notes
This role supports monitoring, investigation, and planning activities that align with the enterprise security program. All duties listed may be adjusted as organizational needs evolve.