GrapevineRecruiter Since 2001
the smart solution for Grapevine jobs

InfoSec Advisor Senior - Program Operations

Company: USAA
Location: Grapevine
Posted on: May 10, 2022

Job Description:

Purpose of JobAbout USAAUSAA knows what it means to serve. We facilitate the financial security of millions of U.S. military members and their families. This singular mission requires a dedication to innovative thinking at every level.About USAA ITOur most meaningful qualification isn't technical, it's human. Here, we don't just sit in front of a screen. We stand behind our 13 million members who rely on us every day.We're proud of USAA's strong history -- and we're even more passionate about our future. That's why we have a team of supportive and collaborative hardworking technology professionals focused on doing more for our members. And why we're continuing to add innovative problem solvers to our team. With us, you'll find exciting challenges that inspire you to continue learning and growing.USAA is seeking a hard-working InfoSec Advisor Senior - program operations for our San Antonio or Plano, TX, Phoenix, AZ, Colorado Springs, CO, or Tampa, FL facilities. The role can also be hired 100% remote, work from home. This position will support various information security advisory responsibilities, metrics, issue management, Business Intelligence, governance, policy, standards and more. The ISEC advisor lead will work to identify and remediate cybersecurity risk, reviews business processes to ensure compliance, perform process risk assessments, advise business leaders on security implementation and author presentations supporting the program. Serves as security technical advisor through various communication channels. Designs, develops, and optimizes repeatable methods and measurements for Information Security risk management program. Influences Information Security risk management strategies; educates and consults with risk owners on best practices. Responds both verbally and in writing to moderately complex inquiries and periodic exams from both internal control partners (e.g., legal, compliance, audit, risk) and external control partners (e.g., regulators, external auditors, third parties).USAA values a culture that is highly collaborative, and we have found that a hybrid work type helps employees gain the best of both worlds - collaborating in-person in the office and working from home when needed to achieve focused results. The actual onsite days are resolved between each employee and the employee's manager.Job RequirementsProvides information assurance capabilities through technical consultation and guidance to the business for the interpretation and assessment of information security risk for projects, technologies, and environments. Aims to identify and manage existing and emerging risks and integrate risk management strategies and educate risk owners across the enterprise on information security requirements and best practices. Ensures risks associated with business activities are effectively identified, measured, monitored and controlled and administers, and implements systems, policies and processes which serve to enhance the mitigation, reporting, and analysis of Information Security risk.Primary Responsibilities:

  • Identifies and manages existing and emerging risks that stem from business activities and the job role.
  • Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled.
  • Follows written risk and compliance policies, standards, and procedures for business activities.
  • Leads peers and junior team members in the execution of Information Security domain activities while anticipating efforts that will impact their team.
  • Develops, publishes, maintains and/or interprets complex Information Security governance requirements (e.g. policies and standards).
  • Designs, develops and optimizes repeatable methods and measurements for Information Security risk management program.
  • Performs security risk assessments of complex projects, new technologies, environments, business partners and third parties.
  • Influences Information Security risk management strategies; educates and consults with risk owners on best practices.
  • Consults across the enterprise (advice, guidance and assistance) on Information Security risk; guides the strategic security direction of USAA technical projects, initiatives and other special projects.
  • Recommends risk treatment options for technical projects, initiatives and other special projects.
  • Responds both verbally and in writing to moderately complex inquiries and periodic exams from both internal control partners (e.g. legal, compliance, audit, risk) and external control partners (e.g. regulators, external auditors, third parties).
  • Ensures process owners identify, develop and test Information Security controls for risk mitigation effectiveness.Minimum Requirements:
    • Bachelor's degree OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
    • 6 years of work experience in two or more of the eight areas Security and Risk Management, Asset Security, Security Architecture and Engineering, Communication and Network Security, Identity and Access Management (IAM), Security Assessment and Testing, Security Operations, and/or Software Development Security.
    • 4 years of related experience in conducting risk assessments, recommending risk treatment options and/or developing program governance (e.g. policies and standards).
    • Advanced level of business acumen in the areas of business operations, risk management, industry practices and emerging trends.
    • Demonstrated risk management experience in a sophisticated institution and/or highly matrixed environment related to banking, insurance and/or financial services.
    • Knowledge of current IT risks and experience implementing security solutions.
    • Knowledge of a wide range of security technologies, such as network security, database security, tokenization platforms, Data Leakage Prevention, Data Leakage Protection, Database Monitoring, Identity and Access Management systems.
    • Experience with development of enterprise level policies/standards/Controls
    • Experience with IT General Controls, Control Execution, Control Testing, etc. & Process Improvement, including identification of risk and controls.
    • Advanced knowledge of applicable information security frameworks, standards, regulatory requirements, and controls.
    • Sophisticated knowledge and application of security controls/mechanisms and threat/risk assessment techniques pertaining to complex data, application, and networking environments.Preferred Experience:
      • Security-related project leadership experience
      • Experience developing and delivering presentations to executives
      • Experience with technology tools and software implementations in large environments
      • Security certifications like Security+, similarThe above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.Compensation:USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market position. The salary range for this position is: $97,200.00 - 175,000.00 *.Employees may be eligible for pay incentives based on overall corporate and individual performance or at the discretion of the USAA Board of Directors.*Geographical Differential: Geographic pay differential is additional pay provided to eligible employees working in locations where market pay levels are above the national average.Shift premium will be addressed on an individual basis for applicable roles that are consistently scheduled for non-core hours.Benefits:At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.Please click on the link below for more details.USAA Total RewardsRelocation assistance is not available for this position.

Keywords: USAA, Grapevine , InfoSec Advisor Senior - Program Operations, Accounting, Auditing , Grapevine, Texas

Click here to apply!

Didn't find what you're looking for? Search again!

I'm looking for
in category
within


Log In or Create An Account

Get the latest Texas jobs by following @recnetTX on Twitter!

Grapevine RSS job feeds