Cloud Information Security Governance Lead - Application Support at US Bank National Association
Cincinnati, OH 45202, USA -
Full Time


Start Date

Immediate

Expiry Date

22 Jun, 25

Salary

0.0

Posted On

22 Mar, 25

Experience

5 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Architecture, Power Bi, Tableau, Regulatory Requirements, Auditing, Cloud Security, Servicenow

Industry

Information Technology/IT

Description

At U.S. Bank, we’re on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at—all from Day One.

JOB DESCRIPTION

The Secure Cloud Governance team is seeking a senior cloud risk and compliance specialist, to support cloud security automation targets and provide cloud security oversight expertise as part of the U.S. Bank Shield Platform. Candidates will support activities related to the support of application governance automation tools, application migration governance, and the identification, tracking, and mitigation of program-related risks, keeping in mind the security & compliance obligations of the Enterprise. The ideal candidate with have a deep understanding of cloud computing, information security, technology risk management, and security’s role in the software development lifecycle, as well as applied experience implementing said principles as part of a large-scale enterprise transformation effort.

BASIC QUALIFICATIONS:

  • Bachelor’s degree in engineering or science, or equivalent work experience
  • 5+ years’ experience with cloud security and/or information security execution roles
  • Effective communication and collaboration skills
  • ability to articulate complex technical issues in a clear and concise manner.

PREFERRED SKILLS/EXPERIENCE:

  • 2+ years’ experience with risk management and/or audit in the technology space
  • Strong internal initiative, desire to collaborate
  • Working knowledge/understanding of cloud security principles
  • Experience using GRC tools such as RSA Archer or ServiceNow
  • Working knowledge of information security principles, standards, and best practices
  • Experience in Information Security architecture, technologies, and management

EXPERIENCE SHOULD INCLUDE:

  • Strong decision-making and problem-solving skills
  • Detailed knowledge of cloud security concepts and architecture
  • Confidence in communicating technical information to both technical and non-technical audiences and stakeholders at every level of the organization
  • Strong writing skills with experience in documenting gap analyses and team documentation
  • The ability to build and maintain relationships across diverse technical and non-technical teams
  • A diverse technical background including experience with regulatory requirements, technologies and controls that mitigate information security risks
  • Experience using reporting with advanced BI tools such as Tableau and/or Power BI
  • Knowledge of IT industry trends and direction and environment

TOP SKILLS:

  • Cloud Security Expertise (Azure preferred)
  • Information Security Risk Management
  • Auditing, Governance, and/or Information Security Architecture experience a plus
Responsibilities

THE ROLE OFFERS A HYBRID/FLEXIBLE SCHEDULE, WHICH MEANS THERE’S AN IN-OFFICE EXPECTATION OF 3 OR MORE DAYS PER WEEK AND THE FLEXIBILITY TO WORK OUTSIDE THE OFFICE LOCATION FOR THE OTHER DAYS AT ONE OF THE FOLLOWING LOCATIONS:

  • Minneapolis, MN
  • Cincinnati, OH

Responsibilities:

  • Assist in the development and maintenance of cloud-focused security solutions and guidance that are integrated with the Enterprise Cloud program
  • Review new platform features and cloud technologies to identify any potential security, information security, or risk issues
  • Collaborate with internal and external stakeholders to incorporate appropriate cloud, information security, and risk principles into new oversight processes
  • Analyze security and compliance requirements for cloud-based applications and services
  • Provide support in the evaluation of security risks, vulnerabilities, and threats, and assist in the development of mitigation strategies
  • Communicate security risks and recommendations to stakeholders in a clear and concise manner
  • Supporting the development and maintenance of repeatable, documented processes and controls that align to authoritative source requirements
  • Identifying and documenting risks and risk treatment plans, facilitating remediation plan development and ongoing monitoring of remediation plans in partnership with technical and business partners
  • Analyzing, aggregating, and reporting on thematic security findings and risks, socializing these findings in governance committees to determine actions
  • Identifying risks across the organization and driving remediation planning efforts
  • Assisting in the review and validation of security controls, including understanding the efficacy of the control and the level of risk mitigation
  • Assisting in the development and enhancements to risk metrics and reporting high impact items through governance committees or through other escalation processes
  • Providing recommendations to leadership on program effectiveness and enhancements

Our approach to benefits and total rewards considers our team members’ whole selves and what may be needed to thrive in and outside work. That’s why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following (some may vary based on role, location or hours):

  • Healthcare (medical, dental, vision)
  • Basic term and optional term life insurance
  • Short-term and long-term disability
  • Pregnancy disability and parental leave
  • 401(k) and employer-funded retirement plan
  • Paid vacation (from two to five weeks depending on salary grade and tenure)
  • Up to 11 paid holiday opportunities
  • Adoption assistance
  • Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by la
Loading...