Info Security Advisor Senior jobs in United States
cer-icon
Apply on Employer Site
company-logo

USAA · 3 hours ago

Info Security Advisor Senior

USAA is dedicated to empowering its members to achieve financial security. The Info Security Advisor Senior will provide technical consultation and guidance on information security risk, ensuring effective risk management across the enterprise.

BankingFinancial ServicesInsuranceVenture Capital
badNo H1Bnote

Responsibilities

Leads peers and junior team members in the execution of Information Security domain activities while anticipating efforts that will impact their team
Develops, publishes, maintains and/or interprets complex Information Security governance requirements (e.g. policies and standards)
Designs, develops and optimizes repeatable methods and measurements for Information Security risk management program
Performs security risk assessments of complex projects, new technologies, environments, business partners and third parties
Influences Information Security risk management strategies; educates and consults with risk owners on best practices
Consults across the enterprise (advice, guidance and assistance) on Information Security risk; guides the strategic security direction of USAA technical projects, initiatives and other special projects
Recommends risk treatment options for technical projects, initiatives and other special projects
Responds both verbally and in writing to moderately complex inquiries and periodic exams from both internal control partners (e.g. legal, compliance, audit, risk) and external control partners (e.g. regulators, external auditors, third parties)
Ensures process owners identify, develop and test Information Security controls for risk mitigation effectiveness
Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures

Qualification

Risk ManagementInformation Security GovernanceSecurity Risk AssessmentsSecurity TechnologiesCISSP CertificationGRC Tool ExperienceAdvanced Business AcumenCommunication SkillsTeam LeadershipProblem Solving

Required

Bachelor's degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree
6 years of work experience in two or more of the eight areas Security and Risk Management, Asset Security, Security Architecture and Engineering, Communication and Network Security, Identity and Access Management (IAM), Security Assessment and Testing, Security Operations, and/or Software Development Security
4 years of related experience in conducting risk assessments, recommending risk treatment options and/or developing program governance (e.g. policies and standards)
Advanced level of business acumen in the areas of business operations, risk management, industry practices and emerging trends
Demonstrated risk management experience in a complex institution and/or highly matrixed environment related to banking, insurance and/or financial services
Knowledge of current IT risks and experience implementing security solutions
Knowledge of a wide range of security technologies, such as network security, database security, tokenization platforms, Data Leakage Prevention, Data Leakage Protection, Database Monitoring, Identity and Access Management systems
Experience with development of enterprise level policies/standards/Controls
Experience with IT General Controls, Control Execution, Control Testing, etc. & Process Improvement, including identification of risk and controls
Advanced knowledge of applicable information security frameworks, standards, regulatory requirements, and controls
Advanced knowledge and application of security controls/mechanisms and threat/risk assessment techniques pertaining to complex data, application, and networking environments

Preferred

US military experience through military service or a military spouse/domestic partner
Experience with GRC tool (Archer or Metric Stream)
Experience with vendor information security assessments
CISSP, CRISC, or CISA certification
Ability to travel up to 40% of the time as needed

Benefits

Comprehensive medical, dental and vision plans
401(k)
Pension
Life insurance
Parental benefits
Adoption assistance
Paid time off program with paid holidays plus 16 paid volunteer hours
Various wellness programs

Company

USAA is a financial services company.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Julie McPeak
SVP, General Counsel Insurance
linkedin
leader-logo
Waqas Durrani
Senior Vice President, General Counsel - Enterprise Shared Services
linkedin
Company data provided by crunchbase