Information Security Officer
$135k - $140kCityFirst Bank
WHO WE ARE City First Bank N.A. is a mission-driven Community Development Financial Institution (CDFI) principally focused on a transformative impact in underserved, urban markets with the highest needs to drive equitable economic development. Our credit activities are purely commercial and focused on the following segments: Multifamily Affordable Housing, Not-for-Profit Finance, and Small Business Finance. As a depository and commercial lending provider with over $1.3 billion in bank assets as of December 31, 2024, our unified organization has over 100 employees in Washington DC and Los Angeles/Inglewood, CA.
ROLE SUMMARY
The Information Security Officer is responsible for monitoring, analyzing, and maintaining the bank's technical security controls in support of City First Bank's Information Security Program. This role will be focused on maintaining the security of the bank's applications and network which includes creation and timely execution of security projects, tool installations and integrating risk-based threat intelligence into the operational environment. The role also supports the ability to maintain assurance in our technical security controls, especially on the Cloud, so that risks to the confidentiality, integrity, and availability of the bank's information systems and infrastructure are sufficiently mitigated which in turn, supports the bank's operational and compliance goals. The role will also perform triage and analysis of security events escalated from the Tier1 and Tier-2 support teams. ESSENTIAL FUNCTIONS AND RESPONSIBILITIES
$135,000 - $140,000, annually
ROLE SUMMARY
The Information Security Officer is responsible for monitoring, analyzing, and maintaining the bank's technical security controls in support of City First Bank's Information Security Program. This role will be focused on maintaining the security of the bank's applications and network which includes creation and timely execution of security projects, tool installations and integrating risk-based threat intelligence into the operational environment. The role also supports the ability to maintain assurance in our technical security controls, especially on the Cloud, so that risks to the confidentiality, integrity, and availability of the bank's information systems and infrastructure are sufficiently mitigated which in turn, supports the bank's operational and compliance goals. The role will also perform triage and analysis of security events escalated from the Tier1 and Tier-2 support teams. ESSENTIAL FUNCTIONS AND RESPONSIBILITIES
- Advanced monitoring of the day-to-day operation of Security Information and Event Management (SIEM) and Network Anomaly Detection and other security control tools.
- Act as the first point of response for security event alerts and notifications. Maintain an efficient and secure IT computing infrastructure on the bank's environment, cloud, and SaaS products.
- Provide regular security reporting and risk metrics to IT Leadership, Senior Leadership, and committees as appropriate.
- Monitor knowledge sharing services and advise leadership on cybersecurity trends, emerging threats, and regulatory guidance.
- Leads Information Security compliance tasks and coordinate and gather artifacts for internal and external audits.
- Serve as the bank's designee for regulatory and audit purposes. Align controls with guidance and recommendations.
- Work with Compliance to identify, assess, and track remediation of security risk and findings.
- Ensure compliance with GLBA, FFIEC, and other regulatory, industry, and cybersecurity standards for access control and system permissions.
- Manage identity and access, roles and permissions, assignments and changes, and all other activities to ensure adherence to policies and procedures.
- Oversee periodic User Access Reviews for key bank systems.
- Enable and oversee the process of employee user account provisioning and de-provisioning, including Active Directory and SaaS applications.
- Lead the creation, implementation and integration of identity tools and practices that enhance the organization's security and regulatory compliance.
- Conduct and maintain IT risk assessments including Information Security, GLBA, and Vendor / Third Party reviews.
- Manage vendor due diligence reviews from an information security and technology perspective.
- Develop and evaluate security procedures for IT Department.
- Develop and administer the bank's security awareness program including annual training and phishing simulations.
- Partner with IT infrastructure, application, and operations teams to ensure secure system design and configuration.
- Generate and analyze reports, monitor alerts, and review reports to monitor security activities and document findings and recommend corrective actions.
- Work with managed service providers, network administrators and security operations to resolve problems, evaluate new solutions, recommend changes, and investigate incidents.
- Collaborate with lines of business, system, and network administrators to develop and manage role-based access control groups for ensuring appropriate access to information systems, applications, and data.
- Responsible for analyzing user access roles, permissions, and profiles to establish user provisioning within all bank applications.
- Implement and upgrade network security tools running in the physical and virtual environments.
- Ensure confidential data is secure and implement controls to ensure visibility and auditability across organization for changes in roles, functions, access-levels, and data footprint.
- Other duties as assigned.
- Bachelor's degree in Computer Science or Information Systems, Information Technology, or related focused technical training (CISSP, CISM, CRISC, or CISA) or in lieu 4 additional years of engineering and information security experience.
- 7+ years' experience in a combination of information security, or IT operations/engineering, or IT risk management
- 4+ years' experience with designing and implementing information security technologies.
- Extensive experience in banking regulations and compliance requirements, specifically related to regulatory examinations and security requirements.
- Experience in supporting and managing audit, examination, and regulatory interactions.
- 8 years of Engineering or Security Administration in banking preferred.
- 2 years security engineering/administration in the banking/financial sector
- Knowledge of Microsoft Azure and Microsoft O365 virtualized environment and tools is a must. Ability to configure and work on Azure Security Center and O365 Security Center.
- Knowledge of Active Directory, Azure AD, identity management, DLP policies, Azure Sentinel and other security tools essential.
- Familiarity with at least one security best practice standards such as the Center for Internet Security (CIS) Security Controls or NIST Cybersecurity Framework, or equivalent.
- Excellent knowledge of Azure Security Center and Azure portal. Knowledge of SEIM and AD tools.
- Excellent knowledge of Microsoft Operating system and Azure tools. Strong Active Directory and Windows Group Policy knowledge.
- Networking technology and protocols, including routers, switches, VPNs, Citrix, email gateways, etc.
- Requires skill in providing expert input into technology projects.
- Assist the Tier-1 and Tier-2 escalations with troubleshooting and analysis of security events.
$135,000 - $140,000, annually
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Information Security Officer in Washington DC vacancy
$146k - $234k
ResponsibilitiesJob Description:Peraton is seeking an Sr Information Systems Security Officer to support our Federal Strategic Cyber programs.Location: Washington, DC In this role, you will:Apply best practices for cybersecurity program standards, processes, procedures...SuggestedContract workWork experience placementShift work$99.2k - $145k
...communities we serve.Bank of America is committed to an in-office culture that supports collaboration, engagement, and career... ...opportunities to learn, grow, and make an impact. Join us!The Information Security Officer will be a member of the Business Information Security...SuggestedFull timeWork at officeFlexible hoursDay shift- ...MANTECH seeks a motivated, career and customer-oriented Senior Cloud Information System Security Officer (ISSO) to join our team in Washington, D.C., Chantilly, VA or Quantico, VA.. Responsibilities include, but are not limited to: Ensure the day-to-day implementation...SuggestedWork at office
- ...Chief Information Security Officer The Chief Information Security Officer serves as the advisor to Census Bureau executive management on all areas of Information Technology Security and is responsible for: # Developing and communicating the overall information...SuggestedWork at office
- ...Summary This Senior Executive Service position is in the Department of Homeland Security (DHS), Federal Emergency Management Agency (FEMA), Office of the Chief Information Officer, located in Washington, D.C. The Chief Information Security Officer is responsible...SuggestedPermanent employmentFull timePart timeWork at officeRelocation
- ...Brief Overview of Position: Strategic Operational Solutions (STOPSO) is seeking candidates for an Information Security Officer role to support a federal client where we are focused on delivering innovative operations and solutions through proven successful methods...Fixed term contractWork at office
$300k - $350k
...Chief Information Security Officer (CISO) The CISO is our chief protector. Our infrastructure, threat model, and customer expectations are more complex than a typical mobile carrier or a typical software company. Your challenge is to enable rapid product innovation...Work at officeImmediate startRelocation package- ...Senior Executive Service Position This position is in the Department of Homeland Security (DHS), Federal Emergency Management Agency (FEMA), Office of the Chief Information Officer, located in Washington, D.C. The Chief Information Security Officer is responsible...Work at office
- ...Summary The U.S. Census Bureau is seeking a highly-motivated and capable executive to serve as the Chief Information Security Officer. This position is a Senior Executive Service (SES) General position. Positions in the SES are not graded. SES pay is commensurate with...Interim roleWork at office
- ...The U.S. Census Bureau is seeking a highly-motivated and capable executive to serve as the Chief Information Security Officer. This position is a Senior Executive Service (SES) General position. Positions in the SES are not graded. SES pay is commensurate with qualifications...Work at office
- ...We are seeking a hands-on Chief Information Security Officer (CISO) to lead and execute the company’s cybersecurity program in support of federal government contracts. This is a senior-level individual contributor role with no direct reports, responsible for enterprise...
- Job Posting TitleInformation Security System Officer (ISSO)Job DescriptionInformation Security System Officer (ISSO))REQUIRED:Active Public... ...to recovery and post-incident reporting Current Certified Information Systems Security Professional (CISSP) Certification Current...For contractorsFixed term contractWorldwideRelocation package
- General information Job Posting Title Information System Security Officer (ISSO) Date Thursday, August 20, 2026 City Arlington State VA Country United States Working time Full-time Description & Requirements Maximus is seeking a...Minimum wageFull timeContract workTemporary workWork experience placement
$103.8k - $218.1k
Job Title: Information System Security Officer (ISSO)Job Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: SecretEmployee Type: RegularPercentage of Travel Required: NoneType of Travel: None* * *The Opportunity:CACI is searching for...Contract workWork experience placementWork at officeFlexible hours$104k - $166k
ResponsibilitiesPeraton is seeking an Information System Security Officer (ISSO) to support our customer onsite in Washington D.C. Responsibilities include:Assist the Information System Security Manager (ISSM) with information assurance efforts, and systems across numerous...Contract workShift work- ...CYBERCORE TECHNOLOGIES TEAM.We are GROWING! Bring your Technical Capabilities, Enthusiasm, and Team Focus.Opportunity for an Information System Security Officer (Active TS/SCI) to Join Our Team.Job Description:Duties:Provides Subject Matter Expertise for Cyber Security and...
- ...customers, with a particular focus on Defense and National Security mission sets. We leverage more than 17 years of support... ...Systems Engineering backgrounds to join our team as an Information System Security Officer (ISSO). You will collaborate with other Palantir...For contractors
$131.3k - $237.35k
Job DescriptionJob DescriptionInformation Systems Security Officer (ISSO) Leidos - Cyber & Analytics Business Area, Key Management & Analytics... ....Leidos has an exciting opportunity for an experienced Information Systems Security Officer (ISSO) to join our Cyber & Analytics...Full timeImmediate startRemote work$120k - $165k
Job DescriptionEverforth ECS is seeking an Information System Security Officer (ISSO) to work onsite in our Arlington, VA and Fairfax, VA corporate offices.Job Description:Everforth ECS Federal has an immediate opening for a mid-level Information System Security Officer...Local areaImmediate start$93.7k - $190k
...ISSO is responsible for ensuring the appropriate operational security posture is maintained for the component DoD IS or PIT system.... ...ATO.Provide advice in describing the system and its functions, information types, operating environments, and security requirements.Review...Contract workWork experience placementH1b$92.21k - $125.15k
...DCInformation Technology /Full Time On-Site /On-siteISSOEmployment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment...Full timeLocal area$120.8k - $265.8k
Job Title: Senior Information System Security OfficerJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start... ...CACI is searching for a Senior Information System Security Officer (Senior ISSO) to support the FEMA Office of the Chief...Contract workWork experience placementWork at officeFlexible hours- Job DescriptionECS is seeking a TS-cleared Junior Information Systems Security Officer (ISSO) to support one of our mission critical programs for the Department of Justice in Washington, DC.We offer the chance to support the world’s finest law enforcement organization...
$99k - $225k
Information Systems Security Officer, SeniorThe Opportunity: Manage the day-to-day operations and effectiveness of security-related programs and initiatives. Assess the costs associated with potential threats and solutions required to eliminate or minimize threats. Apply...Full timeContract workPart timeWork at officeLocal areaRemote work- ...with federal regulations and industry standards, manages risk, and supports the system lifecycle from design through decommissioning.Security Governance & ComplianceDevelop, implement, and maintain security policies, procedures, and protocols.Ensure compliance with NIST...Temporary work
$102k - $127k
Job DescriptionECS is seeking a TS-cleared Senior Information Systems Security Officer (ISSO) to support one of our mission critical programs for the Department of Justice in Washington, DC.Please Note: This position is contingent upon contract award.Salary Range: $102...Contract work- ...Program (DON SAP) IT program. Monitor, assess, and maintain security controls to ensure systems strictly comply with Risk... ...requirements and federal regulations. Collaborate closely with Information Systems Security Engineers (ISSE) and technical teams to integrate...Work experience placement
$150k
...Zachary Piper Solutions is seeking an Information Systems Security Officer (ISSO) to support a rapidly growing defense technology organization through 100% remote work . Candidates must reside within one of the approved hiring hubs: DC/MD/VA | Raleigh/Durham/Chapel...Remote work- ...Description Gray Analytics is seeking a Senior Cloud Information System Security Officer (ISSO) / Senior Cloud Security Engineer to support a Federal Government customer in designing, securing, and sustaining enterprise cloud environments. The successful candidate...
- ...Information Systems Security Officer (ISSO) II BTS Software Solutions is seeking an Information Systems Security Officer (ISSO) II with an active TS/SCI w/ POLY to join our team in Laurel, MD What You'll Get To Do: Provides support for a program, organization...Local area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Officer. Be the first to apply!
Related searches
- chief information security officer ciso Washington DC
- ciso Washington DC
- information security officer Washington DC
- business information security officer Washington DC
- remote ciso Washington DC
- information systems security officer Washington DC
- chief information security officer Washington DC
- entry level information security analyst Washington DC
- information system security engineer Washington DC
- data center security officer Washington DC


