Point your AI agent at freehire and let it find you a job.

Get the CLI →

Financial Plus Credit Union

Cybersecurity Analyst

Posted Updated 1 view
Discussion

Job Title: Cybersecurity Analyst

Department: Information Technology

Reports to: Director of IT

Hours per Week: 40 hrs./week Salary Exempt


Company Summary

Welcome to Financial Plus Credit Union (FPCU)- The Place that brings Dreams within Reach.

At FPCU, our mission is simple but powerful: Empowering people and communities to strive for more through knowledge, innovation, and service that brings dreams within reach. We are more than a financial institution. We are a growth engine for our members, our teams, and our communities.


We are a purpose-driven organization grounded in five values: represent with purpose, empower through knowledge, appreciate and accept, champion new possibilities, and help make things easier.


FPCU is a team of high performers who care deeply, support each other, work hard, and continuously push forward. We don’t just show up, we represent our purpose every day and every time we interact with our members and teammates. We invest in our people, challenge them to grow, and support them in becoming the best version of themselves.


Joining FPCU means leveling up your career. If you are someone who thrives in a fast-paced, positive, and purpose-driven culture, and you’re ready to grow with an organization that is actively evolving, we want you to join the team!


Position Summary

Financial Plus Credit Union is seeking a hands-on Cybersecurity Analyst with a strong infrastructure background to help protect our members, systems, and data. This individual contributor will own day-to-day security operations across our endpoint, network, and cloud environments – including vulnerability management, patching, and hardening of Microsoft 365 and Azure. The ideal candidate blends deep infrastructure knowledge with practical security experience and thrives in a fast-paced financial services environment governed by regulatory and audit requirements.


Essential Functions & Primary Responsibilities

The candidate will own day-to-day security operations and help embed security across the credit union’s infrastructure, endpoint, network, and cloud environments.


This includes, but is not limited to:


· Administer, tune, and monitor the organization’s security stack (e.g., Cato SASE and/or CrowdStrike EDR/XDR), responding to alerts, investigating incidents, and driving remediation.

· Lead the vulnerability management lifecycle – scanning, triaging, prioritizing, and tracking remediation of vulnerabilities across servers, endpoints, and cloud workloads.

· Own and improve the patch management program, ensuring operating systems, applications, and infrastructure are consistently updated and compliant.

· Harden and secure Microsoft 365 (Exchange Online, SharePoint, Teams, Entra ID) using secure baselines, conditional access, and MFA.

· Administer and mature Microsoft Purview capabilities, including Data Loss Prevention (DLP), sensitivity labels, retention policies, audit logging, eDiscovery support, insider risk signals, and compliance evidence collection to protect member and organizational data.

· Manage Microsoft Intune endpoint security responsibilities, including device compliance policies, configuration profiles, security baselines, device enrollment, conditional access integration, and remediation of non-compliant endpoints.

· Configure, monitor, and secure Microsoft Azure resources, applying cloud security best practices, identity governance, and least-privilege access.

· Apply and enforce security best practices including network segmentation, endpoint protection, logging, monitoring, and configuration management.

· Administer and maintain firewall policies, including rule reviews, segmentation controls, VPN/security access, logging, and coordination of network security changes.

· Develop, review, and enforce Group Policy settings to support secure workstation and server configurations, hardening standards, and consistent endpoint controls.

· Manage email security controls, including phishing protection, attachment and URL defense, quarantine review, policy tuning, and investigation of suspicious messages.

· Coordinate security awareness training and phishing simulation activities, including user education, campaign support, reporting, and follow-up guidance for employees.

· Leverage APIs and base scripting in PowerShell, Bash, and Python to automate security operations, integrate tooling, extract and correlate data, and streamline repetitive tasks across on-premises and cloud environments.

· Support security audits, examinations, and assessments by gathering evidence, documenting controls, and helping remediate findings for regulatory and audit bodies.

· Contribute to security policies, standards, and procedures, and promote security awareness across the organization.

· Assist with incident response activities, including detection, containment, eradication, recovery, and post-incident reporting.

· Collaborate with infrastructure and application teams to embed security into projects, migrations, and new technology rollouts.

· Must be flexible and able to work unusual and variable hours/schedules, without supervision, including but not limited to holidays, evenings or weekends.

· Enforces compliance with all federal and state laws and regulations, including the Bank Secrecy Act (BSA), Patriot Act, and Office of Foreign Asset Controls (OFAC) requirements, and should request legal interpretation as necessary to identify compliance concerns.

· Adhere to applicable federal and state laws, regulations, and internal compliance with standard polices relevant to their roles and responsibilities.

· Perform other duties as assigned.

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available