Lead Manager of Application Security Engineering at USAA focusing on application security throughout SDLC. Managing risks and compliance across information security domains.
Responsibilities
Lead Application Security Engineering (ASE) Team responsible for protecting and securing USAA applications.
Identify emerging risks, document, and build business cases to address them.
Develop, design, and implement security governance and assurance processes within security domains.
Responsible for implementing and managing enterprise information security policies and processes.
Plan and organize activities of professional and administrative staff providing information security/cyber security services.
Partner with lines-of-business, Enterprise Risk and Compliance, Audit Services, and Legal to support information security risk and compliance initiatives.
Promote information security awareness within teams and across Enterprise Security Group.
Build and oversee a team through recruiting, development, retention, coaching, performance management, and managerial activities.
Requirements
Bachelor’s degree in Information Security, Information Technology, Computer Science, Business Administration, Information Systems/Management or related field; OR 4 years of related experience may be substituted in lieu of degree.
6 years of related information security experience in one or more domains, e.g.: Cybersecurity, Identity and Access Management, Information Assurance and Governance, Operational Risk Management and/or Information Technology.
2 years of direct team lead, supervisory, or management experience in an Information Security or Information Technology domain.
2 years of researching, designing, or implementing technology, information security or cybersecurity solutions in a large financial institution or large enterprise information security program.
Working knowledge of relevant regulations and standards related to risk management and information security.
Strong written and verbal communication skills, including the ability to communicate technical analyses to a non-technical audience.
Strong knowledge of security technologies to include cryptography, authentication, authorization, and controls.
Strong knowledge of IT risks and experience implementing security solutions.
Knowledge of threats, vulnerabilities, attack methods and countermeasures for web-based applications, networks, and cyber security solutions.
Expertise in risk management processes and principles.
Familiarity with budgets, forecasting, and executing on the budgets for the applicable information security, cybersecurity, or technology support function.
Benefits
comprehensive medical, dental and vision plans
401(k)
pension
life insurance
parental benefits
adoption assistance
paid time off program with paid holidays plus 16 paid volunteer hours
Senior Information Security Analyst responsible for protecting Omni's technology environment. Focus areas: Monitoring, Defense, Operations across on - premises, cloud, and endpoints.
Alternate Information System Security Officer overseeing security compliance for classified information systems. Evaluating security solutions and assisting in system security documentation and procedures.
IT - Systemadministrator managing physical security systems and multimedia solutions. Administration, support, and project involvement in multimedia and surveillance technologies in Roding.
Security Officer performing patrols, emergency response, and customer service at Climax Molybdenum. Managing site security and assisting with emergency situations at various locations.
Security Officer overseeing safety inspections and personnel training for Crown Equipment Corporation. Responsible for monitoring facilities and responding to security incidents.
Security Officer leading safety inspections and facility patrols at Crown Equipment Corporation. Assigning duties and responding to security incidents efficiently.
Manager of Security Risk at Grainger overseeing Information Security Risk team and managing security risk programs. Focused on regulatory compliance, leadership, and risk assessment integration.
SAP Security GRC Consultant involved in designing and implementing security architectures for Swiss clients. Collaborating with project teams on compliance and security solutions.
Senior Consultant with Wavestone providing SAP Security and IAM solutions in Switzerland. Collaborating on security architectures and supporting clients on SAP security transformations.
Network Security Engineer ensuring secure, highly available enterprise network systems with a focus on collaboration and technical excellence. Involves designing and implementing networking solutions.