Information Security Analyst

🏢 Commercial Bank of California · all Commercial Bank of California jobs
📍 United States
💰 USD 75,000 - 95,000 / annual
📅 Posted 2026-08-30 · via Himalayas
🏷 Infosec,Cybersecurity,Security-Operations,IT-Security,Banking-Security,Information-Security-Analyst,IT-Security-Analyst,InfoSec-Analyst,Information-Security-Risk-Analyst,Security-Analyst,Data-Security-Analyst,Cybersecurity-Analyst
Apply on original site ↗

Information Security Analyst

Location: United States
Job Type: Full-Time | Non-Exempt | Remote Eligible
Salary Range: $75,000 – $95,000 per year

About Commercial Bank of California

Commercial Bank of California (CBC) is the largest Latino-owned bank in California and a certified Minority Depository Institution (MDI). Headquartered in Irvine and founded in 2003, CBC is one of the largest privately held banks in the state, with over $3.5 billion in assets as of December 2025.

We are a purpose-driven financial institution committed to building long-term relationships and delivering innovative, personalized banking solutions. Our leadership reflects the diverse communities we serve, and our mission is rooted in empowering entrepreneurs, business owners, and community leaders to thrive.

As a certified MDI, CBC is proud to play a vital role in advancing financial inclusion and economic opportunity. We believe in a higher vision for banking—one that prioritizes trust, collaboration, and community impact. Join us and be part of a team that’s redefining what it means to be a community-focused, relationship-driven bank that puts people over profits.

Job Summary

We are looking for a skilled and adaptable Information Security Analyst who is passionate about protecting critical systems and helping strengthen cybersecurity across our organization.

In this dynamic role, you will contribute across multiple security functions, take ownership of key initiatives, and work closely with cross-functional partners to support a resilient and secure banking environment.

You will play an important role in both preventive and detective security efforts, partnering with internal teams and external vendors to enhance the bank’s security posture and support ongoing regulatory compliance.

The ideal candidate is proactive, detail-oriented, and collaborative, with strong technical expertise, sound judgment, and a solid foundation in information security and compliance practices. If you thrive in a fast-paced environment, communicate effectively, and enjoy solving complex challenges, this is an excellent opportunity to make a meaningful impact.

Essential Duties and Responsibilities

- Help protect the organization by monitoring, investigating, and responding to security alerts generated by enterprise security tools in partnership with management and engineering teams.

- Expand your technical expertise by supporting and serving as backup administrator for a wide range of security tools, including data loss prevention, firewalls, intrusion prevention, cloud content filtering, file integrity monitoring, email security, brand and dark web monitoring, security awareness platforms, privileged access management, endpoint and cloud security, SIEM, and AI-driven detection and response solutions.

- Play a key role in strengthening access governance by coordinating annual user access reviews across applications, cloud environments, network infrastructure, hypervisors, and other critical systems.

- Contribute to a strong security culture by helping develop departmental communications, employee awareness content, and training materials.

- Help drive continuous improvement by documenting, tracking, and supporting remediation of identified control gaps through security posture management, self-assessments, and risk assessment activities.

- Support the bank’s vulnerability management efforts by administering scanning tools across networks, hosts, web applications, and APIs, reporting findings, and partnering with IT on remediation.

- Support oversight of privileged and administrative activity across critical systems to help ensure access and changes align with approved requests and security standards.

- Support security awareness initiatives by coordinating quarterly social engineering tests, follow-up training, retesting, and phishing reporting programs.

- Support secure asset handling by sanitizing IT equipment in accordance with Information Secur

← All remote jobs

Similar for you