Sr. Information Security Risk Analyst at UMB involved with data governance and security initiatives. Collaborating with teams to protect sensitive data while adapting to changing threats and technologies.
Responsibilities
Participate in activities associated with UMB’s information and data governance programs
Support the execution of a multi-year roadmap to enhance UMB’s data governance capabilities
Drive adherence to data protection policies and standards across the organization by monitoring and evaluating security practices
Assist with maintaining UMB’s information governance and data protection related policies and standards
Generate metrics and analytical reports on data security controls and practices to evaluate effectiveness
Partner with teams across the organization to develop and implement processes to protect sensitive and proprietary data
Partner with Information Technology teams to advise and assist with the configuration of data security settings, policies, and controls within systems, applications, and data stores
Conduct periodic risk and maturity assessments to evaluate existing controls and practices for design and performance effectiveness
Develop and assist with implementing retention, disposition and data minimization processes and practices across the organization
Lead special projects and other duties as assigned.
Requirements
Bachelor’s degree in Management Information Systems (MIS), Computer Science or a related discipline OR equivalent work experience
At least 5 years of experience in information security with a specific focus on information and data governance
Strong knowledge of risk and controls, including working knowledge of standards and frameworks such as COSO, COBIT, ISO, NIST, and ITIL
Ability to thrive in an environment of change and manage multiple tasks and responsibilities simultaneously
Understanding of and practical experience with information security risk assessments and information security audits
Bonus Points If: Information Governance Professional (IGP) and/or Certified Information Professional (CIP) certifications
Experience with Informatica data management platform
Industry recognized certification relevant to information security, such as CISSP, CRISC, SEC+, CISM or applicable certifications/accreditation
Strong understanding of information security regulatory requirements and best practices
General understanding of banking and financial services processes, and the related risks to securing and managing data.
Benefits
Paid Time Off
401(k) matching program
Annual incentive pay
Paid holidays
Comprehensive company sponsored benefit plan including medical, dental, vision, and other insurance coverage
Health savings, flexible spending, and dependent care accounts
Senior Security Engineer responsible for implementing security systems and conducting incident response at Emburse. Collaborating with teams to identify and mitigate security threats.
Cybersecurity Engineer guiding systems through the Risk Management Framework at Skyward Federal. Ensuring compliance with DoD cybersecurity requirements and maintaining secure technologies.
Cybersecurity Intern at Thndr. Gain hands - on experience in securing cloud - native infrastructure and applications while collaborating with senior security engineers.
Account Executive driving new business growth for Strider Technologies via strategic client relationships. Transforming open - source data into actionable insights to protect from nation - state risks.
Senior Security Engineer leading security initiatives to protect customer data at an AI - native legal tech company. Collaborating across functions to ensure compliance and security best practices.
Working Student in Information Security at Allianz Direct supporting security monitoring and managing vulnerability assessments. Collaborating with cross - functional teams to enhance cybersecurity posture and awareness.
Enterprise Security Implementation Specialist at Vodafone supporting customers in implementing security solutions. Responsibilities include onboarding, incident management, and ensuring service quality with Fortinet and Zscaler products.
Cyber Security Specialist at Vodafone responsible for shaping and deploying security measures. Collaborating with business, IT, and Network teams as a trusted security partner.
Manager at PwC contributing to digital transformation in Utilities through technology consulting and stakeholder management. Focused on creating strategies and providing technology solutions in a data - driven world.