United Services Automobile Association (USAA)-posted 13 days ago
Full-time • Mid Level
Hybrid • Tampa, FL
5,001-10,000 employees
Religious, Grantmaking, Civic, Professional, and Similar Organizations

Are you a cybersecurity professional looking to make a significant impact? This is your opportunity to join a dynamic team and leverage cutting-edge technologies on critical projects for high-profile clients. You will be instrumental in conducting third-party (3P) cyber assessments covering (INFOSEC, Technology, Privacy and AI/MRM, ensuring the security posture of our partners and contributing to the overall resilience of our digital ecosystem. If you possess experience in third-party assessments and hold certifications such as CISA, Security+, CISSP, or CRISC, we encourage you to apply and become a key player in safeguarding our information assets. As a dedicated InfoSec Advisor - Mid Level (3P Assessor), you will provide information assurance capabilities through technical consultation and guidance to the business for the interpretation and assessment of information security risk for projects, technologies, and environments. Aim to identify and manage existing and emerging risks and integrate risk management strategies and educate risk owners across the enterprise on information security requirements and best practices. Ensure risks associated with business activities are effectively identified, measured, monitored and controlled and administers, and implements systems, policies and processes which serve to enhance the mitigation, reporting, and analysis of Information Security risk. We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in one of the following locations: San Antonio, TX, Plano, TX, Phoenix, AZ, Colorado Springs, CO, Charlotte, NC, Chesapeake, VA or Tampa, FL. Relocation assistance is not available for this position.

  • Creates and contributes to Information Security governance.
  • Publishes, maintains, and/or interprets moderately complex Information Security governance requirements (e.g. policies and standards).
  • Executes repeatable methods and measurements to determine Information Security risk and recommends improvements to the process.
  • Performs security risk assessments of moderately complex projects, new technologies, business partners, and third parties.
  • Consults with individuals and teams (advice, guidance and assistance) on Information Security risk; guides the security direction of USAA technical projects and initiatives.
  • Recommends risk treatment options for technical projects and initiatives.
  • Responds both verbally and in writing to routine inquiries and periodic exams from internal control partners (e.g. legal, compliance, audit, risk).
  • Guides and assists process owners in the identification, development, and testing of Information Security controls for risk mitigation effectiveness.
  • Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
  • Bachelor's degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
  • 4 years of work experience in one or more of the eight areas Security and Risk Management, Asset Security, Security Architecture and Engineering, Communication and Network Security, Identity and Access Management (IAM), Security Assessment and Testing, Security Operations, and/or Software Development Security.
  • 2 years of related experience in conducting risk assessments, recommending risk treatment options and/or developing program governance (e.g. policies and standards).
  • Proficient level of business acumen in the areas of business operations, risk management, industry practices and emerging trends.
  • Solid understanding of security protocols, application security, cryptography, authentication, authorization, and security.
  • Knowledge of applicable information security frameworks, standards, regulatory requirements, and controls.
  • Knowledge and application of security controls/mechanisms and threat/risk assessment techniques pertaining to complex data, application, and networking environments.
  • Experience conducting 3P assessments
  • One or more of the following certifications - CISA, SEC+, CISSP, CRISC
  • US military experience through military service or a military spouse/domestic partner
  • At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service