First Citizens Bank is seeking a Cyber Security Engineer III specializing in Identity Access Management and Single Sign-On. This role is responsible for ensuring the security of the bank's technological and digital assets by assessing vulnerabilities, administering security protocols, and resolving incidents as they arise.
Responsibilities:
- Administers tools or processes that secure assigned technical areas and data
- Participates in security audits, identifies security gaps, and develops and implements risk mitigation solutions
- Ensures compliance with necessary protocols, configurations, or procedures
- Identifies and evaluates identify potential threats or vulnerabilities in the Bank's networks, applications, or systems
- Compiles data from external or internal sources
- Creates actionable intelligence based on review of analysis
- Maintains a current knowledge of technology, emerging threats, and security trends within the assigned technical area
- Provides guidance on appropriate security protocols
- Leads technical projects and may serve as a resource to other business units
- Ensures team members are trained on the current trends, threats, and applicable technologies
- Investigates and resolves complex, escalated security incidents which may include unauthorized access, malware infections, configuration anomalies, cyber attacks, and other risks
- Assists senior leadership in the development of security policies, standards, and strategies
Requirements:
- Bachelor's degree with a minimum of 6 years of experience in systems engineering, networking or information security technologies -OR- High school diploma or GED with a minimum of 10 years of experience in systems engineering, networking or information security technologies
- Working knowledge of federated authentication protocols, including SAML and OpenID Connect (OIDC)
- Demonstrated experience automating repetitive security or identity tasks
- Scripting and automation experience using PowerShell
- Python scripting experience
- Experience with one or more enterprise IAM/SSO platforms (e.g., Okta, Ping)
- Familiarity with step-up / adaptive authentication concepts
- Exposure to Infrastructure as Code practices (e.g., Terraform)
- Experience building identity or security workflow automations (e.g., Okta Workflows)
- Familiarity with passwordless technologies (e.g., Windows Hello, Okta FastPass)
- Familiarity with identity threat protection tools (e.g., Silverfort)