Manage vulnerability management program at the Federal Reserve Bank of Chicago. Collaborate on security observability processes and participate in cyber incident response activities.
Responsibilities
Manages and maintains the organization’s vulnerability management program, compiling metrics and performance across the enterprise and its products;
Improving and maintaining processes to categorize vulnerabilities and route to appropriate implementation teams for resolution;
Supporting FRFS cyber risk assessment, evaluation and tolerance processes;
Tracking and ongoing reporting of key performance and risk indicators;
Serving as a liaison between FRFS IS and other key internal and external stakeholders.
Establishes and maintains end-to-end observability processes and improvements, defining key alerts and monitors to support an effective incident response process;
Collaborating with other shared services teams to bring the vision to reality in iterative and incremental fashion.
Key participant in cyber incident response processes and maintainer of associated processes and procedures.
Maintains relationships with business areas that interact with FRFS, District, and National governance processes.
Supports the collection and tracking of cybersecurity and threat intelligence information via open-source and private partnerships.
Requirements
Bachelor's degree in computer science, information systems, business, or a related field; or the equivalent combination of education and experience.
3+ years of demonstrated experience in program management, workflow automation, and/or incident response within an IT enterprise.
Experience in end-to-end monitoring and alerting solutions, SIEMs, and equivalent technologies in support of anomalous activity monitoring/escalation/triage.
Familiarity with Splunk, DataDog, and related SIEM tools.
Familiarity with contemporary scripting tools such as Powershell, Unix shells, etc.
Familiarity with security orchestration and data transformation processes.
Experience collaborating with senior management to define, track and manage key risk indicators (KRIs).
Experience collaborating in cross-functional teams to implement industry best practices such as least-privilege enforcement, infrastructure segmentation, DNSSEC, and zero trust architecture.
Familiarity with cryptographic and public key technologies including, but not limited to, TLS, PKI, Multi-factor Authentication solutions, RSA, and Elliptic Curve Cryptography.
Familiarity in low-code/no-code workflow solutions and application lifecycle management solutions.
Strong oral and written communication skills to support engagement across technical and business stakeholders.
Existing SECRET security clearance or must meet eligibility requirements to apply for clearance.
Benefits
Comprehensive benefits package include medical, dental, vision, prescription drug coverage, 401k savings plan, retirement plan, paid time off, transit benefit, onsite gym and subsidized cafeteria
A continuous learning environment with opportunities to gain new skills and grow your career
The Chicago Fed offers benefits to support overall health and financial security.
Cloud Security Architect integrating cyber defense strategies across cloud platforms for Elevance Health. Lead collaboration with infrastructure and engineering teams to enhance security in cloud environments.
Senior Security Advisor designing advanced security solutions for Optiv’s clients. Driving sales and building relationships in a competitive cyber security landscape.
Personnel Security Specialist leading intake operations at PSI. Focused on case coordination, quality assurance, and team training for security suitability tasks.
Security Coordinator overseeing supervision and training of security personnel for BronxWorks' homeless services programs. Ensuring compliance, safety, and coordination with social services directors in Bronx area.
Part - Time Security Officer safeguarding personnel and property at Kaman Air Vehicles. Providing access control, monitoring systems, and responding to incidents in Bloomfield, CT.
Security Officer responsible for maintaining a safe environment for clients and employees. Enforcing policies and responding to emergencies at the client's site.
Senior Security Advisor enhancing security measures to align with corporate objectives at Desjardins. Leading development of strategic initiatives and overseeing best practices in security.
Controls Professional assessing internal control frameworks at Barclays, improving control effectiveness and managing risks to ensure compliance with regulations.
Senior Information Security Engineer at Wells Fargo investigating insider threats and strengthening cybersecurity measures. Conducting advanced investigations and collaborating with cyber teams to mitigate risks.
Staff Product Manager overseeing enterprise security product strategy for Tenable. Collaborating with various teams to deliver customer - focused solutions and product features.