InfoSec Advisor conducting third-party assessments for USAA to safeguard information assets. Engaging in risk management and compliance governance across various technologies and projects.
Responsibilities
Creates and contributes to Information Security governance
Publishes, maintains, and/or interprets moderately complex Information Security governance requirements (e.g. policies and standards)
Executes repeatable methods and measurements to determine Information Security risk and recommends improvements to the process
Performs security risk assessments of moderately complex projects, new technologies, business partners, and third parties
Consults with individuals and teams (advice, guidance and assistance) on Information Security risk; guides the security direction of USAA technical projects and initiatives
Recommends risk treatment options for technical projects and initiatives
Responds both verbally and in writing to routine inquiries and periodic exams from internal control partners (e.g. legal, compliance, audit, risk)
Guides and assists process owners in the identification, development, and testing of Information Security controls for risk mitigation effectiveness
Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures
Requirements
Bachelor’s degree; OR 4 years of related experience may be substituted in lieu of degree
4 years of work experience in one or more of the eight areas Security and Risk Management, Asset Security, Security Architecture and Engineering, Communication and Network Security, Identity and Access Management (IAM), Security Assessment and Testing, Security Operations, and/or Software Development Security
2 years of related experience in conducting risk assessments, recommending risk treatment options and/or developing program governance (e.g. policies and standards)
Proficient level of business acumen in the areas of business operations, risk management, industry practices and emerging trends
Solid understanding of security protocols, application security, cryptography, authentication, authorization, and security
Knowledge of applicable information security frameworks, standards, regulatory requirements, and controls
Knowledge and application of security controls/mechanisms and threat/risk assessment techniques pertaining to complex data, application, and networking environments
Benefits
comprehensive medical, dental and vision plans
401(k)
pension
life insurance
parental benefits
adoption assistance
paid time off program with paid holidays plus 16 paid volunteer hours
Industrial Security Representative supporting background investigations for a behavioral health program at Leidos. Responsible for comprehensive security oversight and compliance with government regulations.
Industrial Security Coordinator supporting behavioral health program by ensuring onboarding of new personnel and managing background investigations. Reviewing security forms and maintaining databases as part of a remote team.
Senior Cloud Security Engineer managing security solutions across cloud environments at Manulife. Collaborating with teams to enforce security policies and conducting risk assessments.
Fire & Security Design Projects Lead coordinating technical information and supporting major bids for Fire & Security solutions. Engaging with teams globally to ensure project success.
Cybersecurity Security Risk & Compliance Officer at Severn Trent Water protecting IT systems from cyber threats. Identify and manage security compliance while developing a strong security awareness culture.
Product Security Manager ensuring compliance with Secure Development Lifecycle and managing security assessments at RIB. Collaborating with interdisciplinary teams to enhance product security across the lifecycle.
Financial Security Advisor at Desjardins selling life and health insurance products to clients. Building relationships and developing personalized financial solutions for members and clients.
IT Professional designing and implementing solutions for industrial networks and cybersecurity at SpiraTec. Collaborating in an agile environment with a focus on industry 4.0 and digitalization.
Sicherheitsmitarbeiter bei proSicherheit in Kaltenkirchen. Durchführung von Zugangskontrollen und Einhaltung von Sicherheitsstandards im Objekt - und Werkschutz.
Lead Information Security projects, focusing on Cyber Essentials assessments for clients in the Not - for - Profit sector. Oversee delivery, team leadership, and client communication in the London area.