Information Technology Security Analyst

THE DIME BANKTexas Township, PA
$22 - $36Onsite

About The Position

Supports the Bank’s Information Security Program by assisting in the development, implementation, and maintenance of security technology, security controls and processes designed to protect information systems, networks, and data. Ensures compliance with internal policies, regulatory requirements, and industry best practices through monitoring, analysis, reporting, and continuous improvement activities.

Requirements

  • Bachelor’s degree in information technology, Cybersecurity, Computer Science, or related field preferred, with strong knowledge of Microsoft Windows desktop and server operating systems.
  • Working knowledge of network architecture, including LAN/WAN, firewalls, VPNs, and cloud environments.
  • Familiarity with cybersecurity frameworks (NIST, ISO 27001, CIS, CRI).
  • Strong written and verbal communication skills.
  • Analytical and problem-solving abilities with attention to detail.
  • Understanding of identity and user access management standards.
  • Ability to assess risk and assist in making recommended mitigation strategies.
  • Ability to work collaboratively with vendors and technical peers and management in a complex technology environment.
  • Proven experience evaluating the data privacy risks of third-party generative AI platforms and establishing secure acceptable-use guardrails for corporate users.
  • Minimum of one (1) year of experience in information security, IT security operations, or related field preferred.

Nice To Haves

  • Relevant certifications preferred (e.g., Security+, CISSP, CISA, CEH)
  • Knowledge of regulatory requirements (GLBA, FFIEC, PCI-DSS, etc.) preferred

Responsibilities

  • Deploy, configure, maintain, and patch security technologies—including endpoints, firewalls, intrusion detection/prevention systems (IDS/IPS), SIEM platforms, anti-malware/EDR tools, and data encryption solutions.
  • Test and deploy critical security patches across servers, workstations, and network infrastructure to eliminate vulnerabilities without disrupting bank operations.
  • Review alerts from the SIEM, firewall, and email security gateways (e.g., phishing filters) to distinguish between false positives and real threats.
  • Manage email security, authentication protocols (DKIM, SPF, DMARC) and spam/phishing filters to prevent fraud and business email compromise (BEC).
  • Manage Microsoft 365 Tenant, and email security gateway, data loss prevention and security controls.
  • Audit and clean up Active Directory and SharePoint permissions before turning on internal AI search tools.
  • Update DLP policies with specific rules to detect, alert, and block financial data (SSNs, account numbers, routing numbers) or internal source code from being uploaded to external AI endpoints.
  • Secure the network pipelines and APIs that connect the bank’s databases to the AI models, ensuring all data in transit and at rest is strongly encrypted.
  • Conduct frequent testing of simulated cyber-attacks to look for vulnerabilities in the computer systems and take care of these before an internal or external cyber-attack.
  • Monitor and configure system boundaries to prevent attackers from manipulating the AI’s output or extracting sensitive training data via malicious prompts.
  • Review the SOC 2 reports and "AI governance policies" of third-party vendors to determine how they train their models, where the bank's data is stored, and if the data is used to train public models.
  • Audit internal AI tool usage and configure access controls to prevent the exposure of proprietary company data or customer PII.
  • Perform regular vulnerability scans, analyze system logs for anomalies or breach indicators, and participate in threat hunting and incident response activities.
  • Install, maintain, and upgrade software safeguards, including firewalls, data encryption programs, and anti-malware.
  • Investigate cyberattacks, assess the extent of the damage, and coordinate mitigation and recovery efforts.
  • Develop and enforce cybersecurity best practices, develop disaster recovery plans for security systems and services, and ensure compliance with industry’s best practices and privacy laws.
  • Make recommendations to managers and senior executives about information security advancements to best protect the company’s systems.
  • Conduct and document quarterly or annual user access reviews to ensure the "principle of least privilege" is maintained.
  • Maintain standard operating procedures, asset lists and other documentation that support the Information Technology and Security program.
  • Participate in data collection and presentment during risk assessments and regulatory exams.
  • Execute assigned projects and work with vendors as directed, in oversight and support of the Physical and Information Security infrastructure and solutions.
  • Participate in training as required for the Bank to meet regulatory requirements, recommend and assist in training/retraining of employees in their responsibilities for Information Security Programs.
  • Remain current on Information Technology and Information security trends and assist in Bank compliance with all federal and state laws. Attain certifications as required for the organization to meet vendor guidelines.
  • Complete incident response reporting for security events within the technology infrastructure.
  • Adjust to changing priorities as directed by supervisors or senior management.
  • Abide by the current laws and organizational policies and procedures designed and implemented to promote an environment which is free of harassment and other forms of illegal discriminatory behavior in the workplace.
  • Cooperate with, participate in, and support the adherence to all internal policies, procedures, and practices in support of risk management and overall safety and soundness and the Bank's compliance with all regulatory requirements; work to ensure that assigned personnel adhere to the same.
  • Report pertinent information to the immediate supervisor as requested, or according to an established schedule; compile information as necessary or as directed and provide data to appropriate Bank personnel to integrate goals and activities.
  • Respond to inquiries relating to his/her area of responsibility, or to requests from other Bank personnel, within given time frames and within established policy.
  • Perform tasks which are supportive in nature of the essential functions of the job, but which may be altered or re-designed depending upon individual circumstances.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service