Technical consultant addressing information security risks for USAA and guiding strategic security direction. Leading peers in assessing security strategies and educating on best practices.
Responsibilities
Provide technical consultation and guidance to the business for the interpretation and assessment of information security risk for projects, technologies, and environments
Integrate risk management strategies and educate risk owners across the enterprise on information security requirements and best practices
Evaluate, administer, and implement systems, policies and processes which serve to enhance the mitigation, reporting, and analysis of Information Security risk
Stay current on the latest Information Security risks
Leads peers and junior team members in the execution of Information Security domain activities while anticipating efforts that will impact their team
Develops, publishes, maintains and/or interprets complex Information Security governance requirements (e.g. policies and standards)
Designs, develops and optimizes repeatable methods and measurements for Information Security risk management program
Performs security risk assessments of complex projects, new technologies, environments, business partners and third parties
Influences Information Security risk management strategies; educates and consults with risk owners on best practices
Consults across the enterprise (advice, guidance and assistance) on Information Security risk; guides the strategic security direction of USAA technical projects, initiatives and other special projects
Recommends risk treatment options for technical projects, initiatives and other special projects
Responds both verbally and in writing to moderately complex inquiries and periodic exams from both internal control partners (e.g. legal, compliance, audit, risk) and external control partners (e.g. regulators, external auditors, third parties)
Ensures process owners identify, develop and test Information Security controls for risk mitigation effectiveness
Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures
Requirements
Bachelor’s degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree
6 years of work experience in two or more of the eight areas Security and Risk Management, Asset Security, Security Architecture and Engineering, Communication and Network Security, Identity and Access Management (IAM), Security Assessment and Testing, Security Operations, and/or Software Development Security
4 years of related experience in conducting risk assessments, recommending risk treatment options and/or developing program governance (e.g. policies and standards)
Advanced level of business acumen in the areas of business operations, risk management, industry practices and emerging trends
Demonstrated risk management experience in a complex institution and/or highly matrixed environment related to banking, insurance and/or financial services
Knowledge of current IT risks and experience implementing security solutions
Knowledge of a wide range of security technologies, such as network security, database security, tokenization platforms, Data Leakage Prevention, Data Leakage Protection, Database Monitoring, Identity and Access Management systems
Experience with development of enterprise level policies/standards/Controls Experience with IT General Controls, Control Execution, Control Testing, etc. & Process Improvement, including identification of risk and controls
Advanced knowledge of applicable information security frameworks, standards, regulatory requirements, and controls
Advanced knowledge and application of security controls/mechanisms and threat/risk assessment techniques pertaining to complex data, application, and networking environments
Benefits
comprehensive medical, dental and vision plans
401(k)
pension
life insurance
parental benefits
adoption assistance
paid time off program with paid holidays plus 16 paid volunteer hours
Manager of IT Support & Endpoint Security overseeing service desk operations and endpoint security strategies. Leading a team to deliver high - quality technical support and manage IT security policies.
Senior Security Officer responsible for security and safety duties in acute care settings. Providing armed presence and response, coordinating with law enforcement as required.
Security Officer overseeing sensitive information protection and compliance with regulations. Collaborating with internal teams ensure security policy implementation and risk management under EU standards.
Technical Recruiter for BGS managing recruitment of Cybersecurity and IT professionals. Collaborating with technical teams to identify skill requirements and enhance talent acquisition processes.
Security and Privacy SME at Dynanet Corporation responsible for data management compliance and governance guardrails. Ensuring secure data handling and adherence to federal regulations.
PAM Manager responsible for strategy, roadmap, and operations of PAM program at Intact. Leading a team to safeguard privileged identities and secrets across various environments.
Senior Cybersecurity Vulnerability Management Versatilist at Boeing. Protecting the IT ecosystem by innovating vulnerability management solutions and leading security initiatives.
Entry level Associate Security Engineer at Navy Federal securing technical infrastructure and workloads with operational capabilities and threat monitoring practices.
Machine Learning Researcher focusing on innovative AI and intelligent automation for cybersecurity. Driving research in Agentic AI and collaborating with cross - functional teams for production - grade features.
EHS - Management expert overseeing environmental, health, and safety compliance at ZF. Collaborating with teams to foster a safe work culture and manage regulatory compliance.