Community National Bank

Information Security Officer

Derby, VT 05829

regular

Job Type

full-time

Job Status

associate

Education

salary

Pay Type

25pct

Travel

Mid Level (2-10 years experience)

Career Level


Home location at any one of our convenient locations including our main office in Derby, VT

BASIC SUMMARY:

Responsible for the ongoing management of the Information Security Program and related policies, procedures, risk assessments, and training tools in order to maintain the confidentiality, integrity, and availability of bank information systems and information assets. Responsible for coordinating information security efforts across business departments, ensuring that policies and procedures are appropriate and consistent with daily practices and accountable for ensuring appropriate controls are in place to protect the bank against security threats.

ESSENTIAL DUTIES AND RESPONSIBILITIES:

• Ensure compliance with the Information Security Program, Vendor Management Program, Security Incident Response Plan and Business Continuity Management Plan.

• Responsible and accountable for the day-to-day implementation and management of the Information Security Program and security directives as mandated by the Gramm-Leach-Bliley Act (GLBA).

• Understand data flows to ensure that appropriate administrative, physical and technical safeguards are in place to protect information assets from internal and external threats.

• Perform or manage ongoing information risk assessments to ensure that information systems are adequately protected and gaps are identified.

• Keep abreast of changes to existing and proposed State and Federal legislation and regulatory laws and restrictions pertaining to information security.

• Monitor emerging risks and implement mitigations.

• Lead information security awareness and training initiatives to educate employees and the board about cyber-security and information risks, to include the ID Theft Program.

• Coordinate the maintenance of the disaster recovery and business continuity plans, procedures and testing.

• Develop and manage the Incident Response Management Plan, procedures and testing.

• Manage the investigation of security breaches or potential breaches.

• Participate in any applicable Change Management processes.

• Review internal network activity reports for unusual or inappropriate activity.

• Manage the Vendor Management program, to include evaluating current and new vendor relationships.

• Comply with Code of Ethics standards and all applicable bank compliance laws and regulations

• Perform all other related duties as assigned.

All officers will be expected to demonstrate excellent interpersonal skills and a commitment to high quality personal service to our customers and to other departments and employees within the bank. All officers should have good communication skills and be willing to pursue appropriate continuing education.

Requirements

QUALIFICATIONS:

· Knowledge of Information Security practices, bank operations and procedures, and regulatory requirements

· Solid understanding of IT security management systems

· Detailed knowledge of IT/IS risk assessment processes

· Understand networking protocols, firewall functionality, host and network intrusion detection systems and vulnerability assessments

· Experience in application security, penetration testing and user access monitoring

· Ability to communicate clearly, concisely, and assertively through oral communications and written reports

· Ability to effectively organize workload, assess priorities and handle multiple tasks simultaneously and meet scheduled deadlines

· Must be able to work as an independent, productive, responsible, self-motivated member of a team

· Education: Associate’s (AA) degree or equivalent in Information Technology or other related discipline.

· Experience: three to five years related network technology experience preferred

· An equivalent combination of education and experience may be accepted as a satisfactory substitute for the specific education and experience listed above.

· Other: Must be able to learn new software quickly. Ability to read, write, speak and understand English is required.

PHYSICAL DEMANDS:

· While performing the duties of this job, the employee is regularly required to talk, hear and work/type at a computer.

· Specific vision abilities required by this job include close vision and the ability to adjust focus.

WORK ENVIRONMENT:

· General office working conditions, the noise level in the work environment is usually quiet.

Benefits

A Great Place to Work, Learn and Grow

Thank you for looking to Community National Bank for employment opportunities. We have a lengthy track record for retaining employees. Why? Because it’s a great place to work. We offer competitive salaries, benefits, educational opportunities, challenging and rewarding work, an environment conducive to team building and networking, and the chance for growth.

NOTE: You will be taken to our portal website to complete this action.

Job Details