InfoSec Program Requirements, Tools and Processes Advisor Lead Job at USAA, Phoenix, AZ

cytqLzZrUHAxRlhvTk5BSGhXMGJkajMzOHc9PQ==
  • USAA
  • Phoenix, AZ

Job Description

**Why USAA?** At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families. Embrace a fulfilling career at USAA, where our core values - honesty, integrity, loyalty and service - define how we treat each other and our members. Be part of what truly makes us special and impactful. **The Opportunity** As a dedicated InfoSec Program Requirements, Tools and Processes Advisor Lead, you will provide information assurance capabilities through technical consultation and guidance to the business for the interpretation and assessment of information security risk for projects, technologies, and environments. You will aim to identify and manage existing and emerging risks and integrate risk management strategies and educate risk owners across the enterprise on information security requirements and best practices. You will also ensure risks associated with business activities are effectively identified, measured, monitored and controlled and administer and implements systems, policies and processes which serve to enhance the mitigation, reporting, and analysis of Information Security risk. We offer a flexible work environment that requires an individual to be **in the office 4 days per week.** This position can be based in one of the following locations: **San Antonio, TX, Plano, TX, Phoenix, AZ, Colorado Springs, CO, Charlotte, NC, Chesapeake, VA or Tampa, FL** . Relocation assistance **is available** for this position. **What you'll do:** + Influences and leads team efforts across the Information Security department and enterprise as a subject matter expert in their domain. + Develops, publishes, maintains and/or interprets highly complex Information Security governance requirements (e.g. policies and standards). + Collaborates with business operations to resolve Information Security governance conflicts. + Leads in the optimization, execution, and maintenance of repeatable methods and measurements for the Information Security risk management program in alignment with business objectives. + Leads, performs and reviews security risk assessments of complex projects, new technologies, business partners and third parties. + Collaborates on Information Security risk management strategies with senior executive risk owners to enable risk-based decisions; educates and recommends risk treatment best practices in alignment with business objectives. + Provides oversight on consulting (advice, guidance and assistance) to the enterprise, focusing on Information Security risk, to guide the strategic security direction of USAA. + Responds both verbally and in writing to complex inquiries and periodic exams from both internal control partners (e.g. legal, compliance, audit, risk) and external control partners (e.g. regulators, external auditors, third parties). + Contributes to the optimization and execution of methods to improve future inquiry responses. + Provides oversight and peer-review of responses. + Leads and provides guidance to team for identification, development, and testing of Information Security controls for risk mitigation effectiveness. + Maintains expert level knowledge of USAA Information Security standards as well as industry information security best practices, frameworks, laws and regulations. + Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures. **What you have:** + Bachelor's degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree. + 8 years of work experience in three or more of the eight areas Security and Risk Management, Asset Security, Security Architecture and Engineering, Communication and Network Security, Identity and Access Management (IAM), Security Assessment and Testing, Security Operations, and/or Software Development Security. + 6 years of related experience in conducting risk assessments, recommending risk treatment options and/or developing program governance (e.g. policies and standards). + Expert level of business acumen in the areas of business operations, risk management, industry practices and emerging trends. + Advanced risk management experience in a complex institution and/or highly matrixed environment related to banking, insurance and/or financial services. + Advanced knowledge of current IT risks and experience implementing security solutions. + Knowledge of a wide range of security technologies, such as network security, database security, tokenization platforms, Data Leakage Prevention, Data Leakage Protection, Database Monitoring, Identity and Access Management systems. + Advanced experience with development of enterprise level policies/standards/Controls + Experience with IT General Controls, Control Execution, Control Testing, etc. & Process Improvement, including identification of risk and controls. + Expert knowledge of applicable information security frameworks, standards, regulatory requirements, and controls. + Expert knowledge and application of security controls/mechanisms and threat/risk assessment techniques pertaining to complex data, application, IT design, secure architecture and/or networking environments. **What sets you apart:** + Hands on experience building and managing a reference library of requirements driving the InfoSec program, including reference to standards, regulations, control at financial services companies similar to USAA + An understanding of primary regulatory requirements (e.g. GLBA, NYDFS, HIPAA, DORA etc.), controls, industry frameworks (e.g. FFIEC, NIST, CRI) and how to build and maintain linkages between them + Experience using and a technical understanding of enterprise tools like Archer or ServiceNow to maintain the reference library, links and compliance/maturity assessment information/evidence + Demonstrated expertise supporting other IT and InfoSec with requirements and assessments + Experience building strong working partnerships with IT, InfoSec and Second and Third Line teams + Experience with other InfoSec governance risk and compliance functions, and Operational functions (e.g. Access Management, Data Protection, Cyber Operations etc.) + US military experience through military service or a military spouse/domestic partner **Compensation range:** The salary range for this position is: $143,320 - $273,930 **.** **USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.).** **Compensation:** USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location. Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors. The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job. **Benefits:** At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals. For more details on our outstanding benefits, visit our benefits page on USAAjobs.com. _Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting._ _USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran._ **If you are an existing USAA employee, please use the internal career site in OneSource to apply.** **Please do not type your first and last name in all caps.** **_Find your purpose. Join our mission._** USAA is unlike any other financial services organization. The mission of the association is to facilitate the financial security of its members, associates and their families through provision of a full range of highly competitive financial products and services; in so doing, USAA seeks to be the provider of choice for the military community. We do this by upholding the highest standards and ensuring that our corporate business activities and individual employee conduct reflect good judgment and common sense, and are consistent with our core values of service, loyalty, honesty and integrity. USAA attributes its long-standing success to its most valuable resource: our 35,000 employees. They are the heart and soul of our member-service culture. When you join us, you'll become part of a thriving community committed to going above for those who have gone beyond: the men and women of the U.S. military, their associates and their families. In order to play a role on our team, you don't have to be connected to the military yourself - you just need to share our passion for serving our more than 13 million members. USAA is an EEO/AA Employer - applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, genetic information, sexual orientation, gender identity or expression, pregnancy, protected veteran status or other status protected by law. California applicants, please review our HR CCPA - Notice at Collection ( here. USAA is an EEO/AA Employer - applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, genetic information, sexual orientation, gender identity or expression, pregnancy, protected veteran status or other status protected by law.

Job Tags

Holiday work, Work experience placement, Relocation package, H1b, Flexible hours,

Similar Jobs

Mount Sinai Health System

Mammography Tech - Wantagh - Per Diem - Days - OFFSITE Job at Mount Sinai Health System

 ...Description Mammography Tech - Wantagh - Per Diem - Days - OFFSITE To operate Mammographic Imaging Equipment to produce clinical...  ...specific to job to include adherence to Article 35 of the Public Health Code. Other relevant duties as assigned. Maintains appropriate... 

Louise Rana

Online Business Mentor in Success Education/Remote/Unique Opportunity Job at Louise Rana

 ...Online Business Mentor in Success Education/Remote/Unique Opportunity Join forces with a global leader in personal and leadership development, supporting driven individuals to unlock their true potential and create meaningful life change. We offer a range of transformative... 

Lumen

Manager Solution Architecture DoD Accounts Job at Lumen

About LumenLumen connects the world. We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly. Together, we are building a culture and company from the people up - committed to teamwork, trust and transparency. People... 

Zenly

Startup Software Developer Internship Job at Zenly

 ...DESCRIPTIONWe're looking for an ambitious student to join as a summer intern (with the possibility to start in the spring and continue...  ...with the company foundersand receive real-world experience in developing and deploying production software.You will get exposure to... 

Ernst & Young

CBS - Global Mercury Value and Expense - Assistant Director - Multiple Positions - 1600501 Job at Ernst & Young

At EY, youll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And were counting on your unique voice and perspective to help EY become even better. Join us and ...