Sr. Information Security Risk Analyst at UMB involved with data governance and security initiatives. Collaborating with teams to protect sensitive data while adapting to changing threats and technologies.
Responsibilities
Participate in activities associated with UMB’s information and data governance programs
Support the execution of a multi-year roadmap to enhance UMB’s data governance capabilities
Drive adherence to data protection policies and standards across the organization by monitoring and evaluating security practices
Assist with maintaining UMB’s information governance and data protection related policies and standards
Generate metrics and analytical reports on data security controls and practices to evaluate effectiveness
Partner with teams across the organization to develop and implement processes to protect sensitive and proprietary data
Partner with Information Technology teams to advise and assist with the configuration of data security settings, policies, and controls within systems, applications, and data stores
Conduct periodic risk and maturity assessments to evaluate existing controls and practices for design and performance effectiveness
Develop and assist with implementing retention, disposition and data minimization processes and practices across the organization
Lead special projects and other duties as assigned.
Requirements
Bachelor’s degree in Management Information Systems (MIS), Computer Science or a related discipline OR equivalent work experience
At least 5 years of experience in information security with a specific focus on information and data governance
Strong knowledge of risk and controls, including working knowledge of standards and frameworks such as COSO, COBIT, ISO, NIST, and ITIL
Ability to thrive in an environment of change and manage multiple tasks and responsibilities simultaneously
Understanding of and practical experience with information security risk assessments and information security audits
Bonus Points If: Information Governance Professional (IGP) and/or Certified Information Professional (CIP) certifications
Experience with Informatica data management platform
Industry recognized certification relevant to information security, such as CISSP, CRISC, SEC+, CISM or applicable certifications/accreditation
Strong understanding of information security regulatory requirements and best practices
General understanding of banking and financial services processes, and the related risks to securing and managing data.
Benefits
Paid Time Off
401(k) matching program
Annual incentive pay
Paid holidays
Comprehensive company sponsored benefit plan including medical, dental, vision, and other insurance coverage
Health savings, flexible spending, and dependent care accounts
Residential Security Agent providing safety and security for clients' residences in the Bay Area or beyond. Responsible for liaisons and emergency response, ensuring client safety at all times.
Event Security Associate supporting corporate events and high - visibility functions in the United States. Responsible for conducting risk assessments and translating findings into security plans.
IT Security Specialist performing operational tasks on firewalls and security systems in Doha. Maintaining IT security measures, user configurations, and assessing network vulnerabilities.
Cloud Cybersecurity Engineer supporting multi - cloud environments for critical USAF missions. Designing, deploying, and maintaining security for AWS, Azure, Google, and Oracle Clouds.
Information Systems Security Engineer (ISSE) driving cybersecurity initiatives in the Digital Modernization Sector. Supporting A&A efforts and ensuring security compliance with federal requirements.
Intern supporting occupational safety and health initiatives at ALTEN Mexico. Assisting in risk management and promoting safe work environments through regulatory compliance and innovation.
Senior SAP Security Specialist working with SAP Security solutions on customer projects. Responsible for workshops and leading consultancy in SAP Security environments.
Cybersecurity Engineer ensuring the security of IT & OT systems at ArianeGroup. Collaborating with internal teams and overseeing compliance and protection measures.