Cybersecurity Analyst
Job Description
FIRST SERVICE CREDIT UNION is seeking a Cybersecurity Analyst to help protect information assets, systems, and member data through proactive monitoring, risk management, incident response, and continuous improvement. This onsite role in Houston, TX supports cybersecurity operations, regulatory compliance, vendor risk management, and cyber resilience initiatives aligned to NIST CSF, CIS Controls, FFIEC guidance, and NCUA expectations, with opportunities to strengthen security maturity and improve services for employees and customers.
What you’ll do
- Monitor and investigate security events, alerts, and anomalous activity to maintain effective detection and response capabilities.
- Analyze threats using SIEM, EDR, NGAV, and threat intelligence sources.
- Support detection, containment, eradication, and recovery activities during cybersecurity incidents.
- Maintain cybersecurity playbooks and incident response procedures, including documentation and evidence repositories.
- Assist with cyber investigations and forensic evidence collection activities.
- Produce incident reports, dashboards, and security metrics to communicate risks and outcomes.
- Coordinate vulnerability identification, assessment, remediation, and validation.
- Support endpoint security technologies including EDR, NGAV, MDM, and hardening tools.
- Validate secure configurations for servers, workstations, cloud services, and network infrastructure.
- Administer and support cybersecurity platforms, including Fortinet security products: FortiGate, FortiManager, FortiAnalyzer, FortiAuthenticator, FortiClient, and FortiEMS.
- Support identity security initiatives including MFA, SSO, PAM, and privileged account governance.
- Assist with penetration testing activities and remediation of security vulnerabilities and assessment findings.
- Support cybersecurity policies, standards, procedures, and guidelines, along with risk assessments and cybersecurity control reviews.
- Assist with NCUA examinations, internal audits, external audits, and regulatory reviews, including tracking corrective actions and remediation plans.
- Conduct and support security reviews of vendors, fintech partners, and service providers, including reviewing SOC reports, penetration testing reports, SIG questionnaires, and security attestations.
- Identify and document vendor-related cybersecurity risks and support ongoing due diligence and monitoring.
- Support cybersecurity awareness and phishing simulation programs, including participation in tabletop exercises.
- Support disaster recovery and business continuity testing activities.
- Research emerging threats, communicate relevant risks to management, and recommend improvements to strengthen cybersecurity maturity.
Technologies you’ll work with
- SIEM platforms, EDR, NGAV, threat intelligence sources
- Fortinet security products: FortiGate, FortiManager, FortiAnalyzer, FortiAuthenticator, FortiClient, FortiEMS
- MDM, Identity security initiatives, MFA, SSO, PAM, privileged account governance
- Email Security Solutions, Data Loss Prevention (DLP)
- Security Awareness Platforms, Security Automation & Orchestration (SOAR)
- Vulnerability Management Platforms
- IAM/PAM Technologies
What we’re looking for
- 3-5 years of cybersecurity, information security, or related IT experience
- Financial services or credit union experience preferred
- Experience working with security technologies and security operations processes
- College degree in Computer Science, Information Security, Cyber Security, or equivalent
- Strong verbal and written communication skills
- Ability to build effective working relationships with employees, management, vendors, auditors, and regulators
- Ability to communicate technical cybersecurity concepts to both technical and non-technical audiences
- Professionalism, sound judgment, discretion, and ability to handle sensitive and confidential information
How success is measured
- Identify opportunities to improve services for the organization and customers through new products and technologies
- Support successful completion of internal audits, external audits, and NCUA examinations
- Improve cybersecurity maturity through measurable control enhancements
- Deliver accurate and timely reporting of cybersecurity metrics and risks
- Maintain positive relationships with internal departments, members, auditors, and vendors
- Contribute to cybersecurity awareness and employee engagement initiatives
Location: Houston, TX (onsite)