Cloud Security Risk and Compliance Analyst at US Bank National Association
Cincinnati, OH 45202, USA -
Full Time


Start Date

Immediate

Expiry Date

01 Oct, 25

Salary

136400.0

Posted On

02 Jul, 25

Experience

3 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Cloud Security, Regulatory Compliance, Architecture, Servicenow, Technology, Communication Skills, Policy Development, Power Bi, Emerging Technologies

Industry

Information Technology/IT

Description

At U.S. Bank, we’re on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at—all from Day One.

JOB DESCRIPTION

The Secure Cloud Governance team is seeking an experienced Security Analyst to support our Enterprise Cloud Transformation by identifying technical requirements that enable risk reduction and validating that proposed solutions meet the intent of those requirements. This role is critical in ensuring that cloud technologies are adopted securely and in alignment with enterprise security and compliance obligations.
The role is primarily responsible for assessment of platform capabilities that are intended to extend and apply to the enterprise cloud environment, ensuring that these capabilities align with security and compliance expectations.
The ideal candidate will have a strong understanding of cloud computing, information security, technology architecture, and risk management. They should also have an understanding of how security fits into the software development process and a willingness to learn about DevSecOps practices.

PREFERRED EXPERIENCE

  • Bachelor’s degree in Technology or Business Related Discipline, or equivalent work experience., or equivalent work experience.
  • 3+ years of experience in cloud security and/or information security roles.
  • 2+ years of experience in technology risk management and/or audit.
  • Working knowledge of cloud security and information security principles.
  • Strong initiative and collaborative mindset.
  • Strong decision-making and problem-solving skills.
  • In-depth knowledge of cloud security concepts and architecture.
  • Excellent interpersonal, verbal, and written communication skills.
  • High attention to detail and documentation quality.
  • Experience working in Agile environments.
  • Ability to communicate technical concepts to diverse audiences.
  • Proven ability to build relationships across technical and non-technical teams.

PREFERRED SKILLS

  • Broad technical background including regulatory compliance, security technologies, and controls.
  • Understanding of information security architecture and governance.
  • Familiarity with IT standards, procedures, and policy development.
  • Basic proficiency with BI tools (e.g., Tableau, Power BI).
  • Experience with GRC tools (e.g., RSA Archer, ServiceNow).
  • Awareness of IT industry trends and emerging technologies.
  • Relevant certifications such as:
Responsibilities

RESPONSIBILITIES

  • Identify technical security requirements to reduce risk and ensure alignment with enterprise policies and standards.
  • Validate that proposed solutions meet the intent of security and compliance requirements.
  • Support the development and documentation of security controls by contributing to control design discussions, drafting procedures, and maintaining accurate records aligned with compliance requirements.
  • Develop and maintain cloud-focused security guidance integrated with the Enterprise Cloud program.
  • Evaluate new cloud technologies for potential security and risk implications.
  • Collaborate with stakeholders to embed security and risk principles into product development.
  • Analyze security and compliance requirements for cloud-based applications and services.
  • Assess risks, vulnerabilities, and threats; support the development of mitigation strategies.
  • Communicate security risks and recommendations clearly to technical and non-technical stakeholders.
  • Maintain repeatable, documented processes and controls aligned with authoritative requirements.
  • Assists with the documentation of risks and treatment plans; monitor remediation efforts with technical and business partners.
  • Aggregate and report on thematic security findings; present insights to governance committees.
  • Review and validate security controls for effectiveness and risk mitigation.
  • Escalate high-impact items through governance channels.
  • Provide recommendations to leadership on program improvements.

Our approach to benefits and total rewards considers our team members’ whole selves and what may be needed to thrive in and outside work. That’s why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following (some may vary based on role, location or hours):

  • Healthcare (medical, dental, vision)
  • Basic term and optional term life insurance
  • Short-term and long-term disability
  • Pregnancy disability and parental leave
  • 401(k) and employer-funded retirement plan
  • Paid vacation (from two to five weeks depending on salary grade and tenure)
  • Up to 11 paid holiday opportunities
  • Adoption assistance
  • Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by la
Loading...