
Corporate Information Security Risk & Vulnerability Analyst
Job Description
About The Role
Summary
The Risk and Vulnerability Analyst I supports the organization’s security risk and vulnerability management efforts
This role assists with identifying, analyzing, and tracking security vulnerabilities and risk exceptions, while contributing to the organization’s compliance with regulatory and industry frameworks such as GLBA, NIST, and CIS Critical Security Controls (CIS CSC)
The Analyst I collaborates with IT teams, supports the CIS CSAT process, and helps maintain the vulnerability management program.
This position reports to the Risk and Vulnerability Manager and plays a key role in executing foundational tasks, conducting data analysis, and contributing to broader governance initiatives.
This is a Corporate position which may be located in an available bank division across our nine-state footprint in AZ, CO, ID, MT, NV, TX, UT, WA, or WY. The entry rate for this position is $34.14 + / hour (calculated for Kalispell, MT). Click here to learn more about our bank divisions.
All
offers are analyzed individually and take into consideration multiple factors including but not limited to geographic location, years of experience, and educational background.
WA Applicants ONLY:
Spokane, WA range $38.14 to 57.20 an hour.
Wenatchee, WA $38.66 to $58.01 an hour.
Duties and
- Vulnerability Management Support - Assist in the scanning, identification, and tracking of vulnerabilities
Help analyze scan results, document findings, and follow up with IT teams to ensure timely remediation aligned with security policy and SLAs.
- Risk Acceptance Support - Assist in the tracking and documentation of vulnerability and configuration exceptions, audit findings, and policy deviations
Verify false positives and assist in maintaining exception records through their lifecycle.
- CIS CSAT Support - Assist in the administration of the CIS Critical Security Controls Self-Assessment Tool
Help gather evidence, track assessment progress, and support control improvement planning.
- Security Risk & Compliance Support - Track remediation progress for open vulnerabilities, risk exceptions, and audit items
Work with the Risk and Vulnerability Manager to prepare status updates and monitor compliance timelines.
- Metrics & Reporting - Maintain spreadsheets, dashboards, and other reporting tools to summarize key risk indicators (KRIs), scan results, and remediation trends
Assist with preparing reports for management review.
About You
Qualifications The listed below are representative of the knowledge, skill, and/or ability required Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. | |||||||||||||||||||||||
| |||||||||||||||||||||||
| |||||||||||||||||||||||
| |||||||||||||||||||||||
|