|
Position Summary The Information Security Specialist plays a vital role in protecting the Bank's information assets by ensuring the integrity, confidentiality, and availability of systems across the enterprise. This position is responsible for the effective application of security controls across both business operations and technology environments. The successful candidate will performsecurity administration, conductcontinuous monitoring, and leadinvestigations into security eventstriggered by the Bank's security infrastructure. Organization Overview FHLBank Pittsburgh provides reliable funding and liquidity to its member financial institutions, which include commercial and savings banks, community development financial institutions, credit unions and insurance companies in Delaware, Pennsylvania and West Virginia. FHLBank products and resources help support community lending, housing and economic development. As one of 11 Federal Home Loan Banks established by Congress, FHLBank has been an integral and reliable part of the financial system since 1932. Primary Success Factors
Supports the efficient and effective implementation and maintenance of security for the Bank's information assets and resources; evaluates, installs and maintains security software on a variety of platforms; and actively promotes the advancement of sound security policies and procedures. Provides customer support for email processing and security, Help Desk ticket queues for security and account requests. Monitoring and investigation of security events generated by the Bank's security infrastructure Designs appropriate security measures in new system development efforts as defined by security requirements, product options and implementation strategies. Evaluates, engineers, and recommends security enhancements to Bank's current environment and architecture. Establishes and executes procedures for authorizing access to information across all platforms to appropriately restrict access. Participates in establishing and maintaining security policies and procedures Provides daily support and management of Security incident and event Management (SIEM) solution according to industry best practice and Bank policy. Performs monitoring, analysis, and reporting of security events across a complex environment. Establishes and executes procedures for performing self-audits of the security administration function to detect inappropriately defined security parameters. Manages bank firewalls to ensure access and controls are properly applied to all systems. Manages security systems (IDS, firewall, mail/web filtering, etc.) to ensure systems are properly functioning and upgraded. Works with business users to ensure proper access to applications is in place. Regularly reviews systems and networks to ensure compliance with IT Security policy. Assists in the designing of network architecture to ensure industry-standard network practices are enforced. Deciphers network packet captures for troubleshooting. Ensures compliance with applicable policies, procedures, and regulations to ensure safe and sound business operations.
Required Experience
Bachelor's degree in Computer Science, Information Systems or related degree or equivalent work experience At least one of the following professional Security-related certifications required: CISSP, SANS GIAC, CCSP Five or more years of experience in an information security role At least two years of hands-on experience with firewall administration Hands-on experience with administering security in Windows Active Directory Security Demonstrated knowledge of managing and administering spam filtering system Demonstrated knowledge of securing and administering security on multiple operating environments: Linux, Windows Demonstrated knowledge of host-based and network-based Intrusion Detection System concepts Experience with DDOS mitigation and related network traffic risk mitigation techniques Experience with Network Access Control Platforms and Procedures
Candidates with at least three years of experience in an information security role and Windows Active Directory Security will be considered for an alternative role. It is the policy of the Federal Home Loan Bank of Pittsburgh to ensure equal employment opportunity (EEO) for all employees and applicants for employment without regard to race, religion, color, sex, national origin, age, disability status, genetic information, veteran's status, ancestry, sexual orientation or status as a parent as defined by applicable law. It is the Bank's policy to comply with applicable laws concerning the employment of persons with disabilities, including reasonable accommodation for applicants and employees with disabilities.
|