Lead Information Security Analyst-Cloud Security Risk
at Wells Fargo
Minneapolis, Minnesota, USA -
Start Date | Expiry Date | Salary | Posted On | Experience | Skills | Telecommute | Sponsor Visa |
---|---|---|---|---|---|---|---|
Immediate | 07 Nov, 2024 | USD 237100 Annual | 09 Aug, 2024 | 5 year(s) or above | Security Tools,Regulated Industry,Powerpoint,Cloud Computing,Cloud Security,Ffiec,Government,Analytical Skills,Cloud,Risk,Security Risk,Training,Cissp | No | No |
Required Visa Status:
Citizen | GC |
US Citizen | Student Visa |
H1B | CPT |
OPT | H4 Spouse of H1B |
GC Green Card |
Employment Type:
Full Time | Part Time |
Permanent | Independent - 1099 |
Contract – W2 | C2H Independent |
C2H W2 | Contract – Corp 2 Corp |
Contract to Hire – Corp 2 Corp |
Description:
PAY RANGE
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to achievements, skills, experience, or work location. The range listed is just one component of the compensation package offered to candidates.
$111,100.00 - $237,100.00
APPLICANTS WITH DISABILITIES
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo .
WELLS FARGO RECRUITMENT AND HIRING REQUIREMENTS:
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process
Required Qualifications, US:
- 5+ years of Information Security Analysis experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- 3+ years of information security risk and controls management experienc
Desired Qualifications:
- Knowledge of Cybersecurity, Cloud Computing, Cloud Security, Artificial Intelligence/Machine Learning
- Demonstrated experience with industry standards (i.e. NIST, CSA, FFIEC, CIS, CRI Profile)
- Cloud, Risk and Cybersecurity certification (e.g. CISA, CISM, CISSP, CRISC, CCSK)
- Understanding of information security threats, trends and industry best practices and security tools
- Ability to communicate effectively, with peers, stakeholders, partners, senior management, auditors and regulators
- Strong analytical skills and ability to solve complex problems with minimal direct oversight, and the ability to handle multiple, high priority deliverables simultaneously
- Experience with standard Microsoft Office tools (i.e Advanced Excel, Powerpoint, Word)
- Finance sector security experience or other regulated industry (e.g. utilities, health care, government
Responsibilities:
The Cloud Security Risk organization leads the strategy, planning and execution of Cybersecurity risk management of WF applications in the cloud. To achieve its goals, Cloud Security Risk works horizontally and collaboratively across the Cybersecurity domains, Independent Risk Management, Internal Audit, Tech Controls, Applications & Cloud Technology (ACT) and Regulatory Relations through the Risk Management Framework processes designed to identify, assess, disposition, monitor, measure and report risk and control maturity.
The Cloud Security Risk Lead Analyst role will be responsible for the execution of Cloud Security risk and controls identification, assessment, monitoring, measurement and governance activities ensuring cloud workloads meet risk tolerance and adhere to the cloud security requirements across all cloud service and deployment models. In addition, they will support the continuous enhancement of the cloud control framework, ensuring its alignment to Wells Fargo policy and threat vectors. Candidates for this role should be knowledgeable of industry standard frameworks for cybersecurity, cloud and artificial intelligence (AI), risk management principles, controls and analytics, and be able to deliver cloud security risk insights for executive decision making.
Responsibilities of this position include:
- Oversee and challenge cloud workload/services functions for all cloud service types (public, private, hybrid, multi-cloud) and deployment models (SaaS, PaaS. IaaS) including AI and Generative AI models to understand residual risk and ensure adherence to the cloud security control framework
- Identify, analyze and monitor risk to ensure cloud workloads, including AI/GenAI models are secure prior to deployment and maintain control framework adherence post-deployment.
- Evaluate control environments across the enterprise, platform and application layer, conduct risk assessments, root cause analysis and ensure sustainable remediation.
- Support audit, independent risk testing and regulatory examinations
- Engage with relevant governance and control management bodies and routines in support of control monitoring and adherence
- Develop and monitor metrics and key risk indicators of the threat and risk environment, and Wells Fargo policy and control frameworks to understand the aggregate impact and ensure coverage of the control framework.
- Support the continuous enhancement and adoption of the Cloud Security Control Framework
- Develop requirements for automation in support of Cloud Security Risk and support adoption
Required Qualifications, US:
- 5+ years of Information Security Analysis experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- 3+ years of information security risk and controls management experience
Desired Qualifications:
- Knowledge of Cybersecurity, Cloud Computing, Cloud Security, Artificial Intelligence/Machine Learning
- Demonstrated experience with industry standards (i.e. NIST, CSA, FFIEC, CIS, CRI Profile)
- Cloud, Risk and Cybersecurity certification (e.g. CISA, CISM, CISSP, CRISC, CCSK)
- Understanding of information security threats, trends and industry best practices and security tools
- Ability to communicate effectively, with peers, stakeholders, partners, senior management, auditors and regulators
- Strong analytical skills and ability to solve complex problems with minimal direct oversight, and the ability to handle multiple, high priority deliverables simultaneously
- Experience with standard Microsoft Office tools (i.e Advanced Excel, Powerpoint, Word)
- Finance sector security experience or other regulated industry (e.g. utilities, health care, government)
Job Expectations:
- Ability to travel up to 20% of the time
- Wells Fargo offers a hybrid work environment. Candidates will be expected to work three (3) days per week at the designated location.
- No relocation assistance
- Wells Fargo can only hire those individuals who will not require immigration assistance either now or in the future.
REQUIREMENT SUMMARY
Min:5.0Max:10.0 year(s)
Financial Services
IT Software - Network Administration / Security
Finance
Graduate
Proficient
1
Minneapolis, MN, USA