Cyber security Specialist
Location: Must be based in Buffalo, NY, 1-2 days from the office
Design, implement, and monitor security controls across the environment, ensuring compliance with financial industry regulations and security frameworks.
Partner closely with IT, risk, and business teams to embed security best practices across the organization.
Experience & Responsibilities:
Monitor, detect, and respond to security incidents and threats across networks, endpoints, and cloud environments.
Conduct vulnerability assessments and penetration testing; coordinate remediation efforts with IT teams.
Maintain and enhance security policies, standards, and procedures aligned with regulatory requirements (e.g., PCI-DSS, GLBA, SOX, FFIEC).
Administer and optimize security tools, including SIEM, IDS/IPS, DLP, endpoint protection, and identity & access management solutions.
Support audit and compliance activities by preparing documentation and evidence for internal and external assessments.
Evaluate and manage third-party vendor security risks in line with the organization s risk appetite.
Deliver security awareness training and provide guidance to employees at all levels.
Qualifications:
Proficiency in security frameworks such as NIST CSF, ISO 27001, and CIS Controls.
Hands-on experience with SIEM platforms and incident response processes.
Strong understanding of network security, cloud security, and identity & access management.
Excellent analytical, communication, and documentation skills.
Relevant certifications such as CISSP, CISM, CompTIA Security+, CEH, or equivalent.
Familiarity with regulatory standards including PCI-DSS, GLBA, SOX, and FFIEC.