USAA Logo

USAA

InfoSec Program Requirements, Tools and Processes Advisor - Mid Level

Posted Yesterday
Be an Early Applicant
In-Office
7 Locations
103K-198K Annually
Mid level
In-Office
7 Locations
103K-198K Annually
Mid level
Provide information assurance through consultation and guidance, assessing information security risks and ensuring compliance with policies and standards across the business.
The summary above was generated by AI

Why USAA?

At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families.

Embrace a fulfilling career at USAA, where our core values – honesty, integrity, loyalty and service – define how we treat each other and our members. Be part of what truly makes us special and impactful.

The Opportunity

As a dedicated InfoSec Program Requirements, Tools and Processes Advisor - Mid Level, you will provide information assurance capabilities through technical consultation and guidance to the business for the interpretation and assessment of information security risk for projects, technologies, and environments. Aims to identify and handle existing and emerging risks and integrate risk management strategies and educate risk owners across the enterprise on information security requirements and standard methodologies. Ensures risks associated with business activities are effectively identified, measured, monitored and controlled and administers, and implements systems, policies and processes which serve to enhance the mitigation, reporting, and analysis of Information Security risk.

We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in one of the following locations: San Antonio, TX, Plano, TX, Phoenix, AZ, Colorado Springs, CO, Charlotte, NC, Chesapeake, VA or Tampa, FL. Relocation assistance is available for this position.

What you'll do:

  • Creates and contributes to Information Security governance.

  • Publishes, maintains, and/or interprets moderately complex Information Security governance requirements (e.g. policies and standards).

  • Performs repeatable methods and measurements to determine Information Security risk and recommends improvements to the process.

  • Performs security risk assessments of moderately complex projects, new technologies, business partners, and third parties.

  • Consults with individuals and teams (advice, guidance and assistance) on Information Security risk; guides the security direction of USAA technical projects and initiatives.

  • Recommends risk treatment options for technical projects and initiatives.

  • Responds both verbally and in writing to routine inquiries and periodic exams from internal control partners (e.g. legal, compliance, audit, risk).

  • Guides and assists process owners in the identification, development, and testing of Information Security controls for risk mitigation effectiveness.

  • Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.

What you have:

  • Bachelor’s degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.

  • 4 years of work experience in one or more of the eight areas Security and Risk Management, Asset Security, Security Architecture and Engineering, Communication and Network Security, Identity and Access Management (IAM), Security Assessment and Testing, Security Operations, and/or Software Development Security.

  • 2 years of related experience in conducting risk assessments, recommending risk treatment options and/or developing program governance (e.g. policies and standards).

  • Proficient level of business insight in the areas of business operations, risk management, industry practices and emerging trends.

  • Solid grasp of security protocols, application security, cryptography, authentication, authorization, and security.

  • Knowledge of applicable information security frameworks, standards, regulatory requirements, and controls.

  • Knowledge and application of security controls/mechanisms and threat/risk assessment techniques pertaining to complex data, application, and networking environments.

What sets you apart:

  • Hands on experience building and handling a reference library of requirements driving the InfoSec program, including reference to standards, regulations, control at financial services companies.

  • Understanding of primary regulatory requirements (e.g. GLBA, NYDFS, HIPAA, DORA etc.), controls, industry frameworks (e.g. FFIEC, NIST, CRI) and how to build and maintain linkages between them.

  • Experience using and technical understanding of enterprise tools like Archer or ServiceNow to maintain the reference library, links and compliance/maturity assessment information/evidence.

  • Demonstrated expertise supporting other IT and InfoSec with requirements and assessments.

  • Experience building strong working partnerships with IT, InfoSec and Second and Third Line teams.

  • Experience with other InfoSec governance risk and compliance functions, and Operational functions (e.g. Access Management, Data Protection, Cyber Operations etc.)

Compensation range: The salary range for this position is: $103,450.00 - $197,730.00.

USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.).

Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location.

 

Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.

The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.

 

Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.

 

For more details on our outstanding benefits, visit our benefits page on USAAjobs.com.

Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.

 

USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Top Skills

Archer
Servicenow

USAA Colorado Springs, Colorado, USA Office

1855 Telstar Dr., Colorado Springs, CO, United States, 80920

Similar Jobs

Yesterday
7 Locations
127K-243K Annually
Senior level
127K-243K Annually
Senior level
Insurance
The InfoSec Assurance Advisor Senior provides risk management consultation, leads assessments, and guides best practices in information security for technical projects and initiatives.
Top Skills: Identity And Access ManagementInformation SecurityRisk ManagementSecurity FrameworksSecurity Technologies
Yesterday
7 Locations
127K-243K Annually
Senior level
127K-243K Annually
Senior level
Insurance
Responsible for the operational health and security of authentication platforms, monitoring for vulnerabilities, and engaging in incident response while mentoring team members.
Top Skills: Auth0ForgerockOktaPing Identity
Yesterday
7 Locations
143K-274K Annually
Senior level
143K-274K Annually
Senior level
Insurance
The InfoSec Assurance Lead provides technical consultation on information security risks, manages risk strategies, and develops governance for security processes across the enterprise.
Top Skills: Identity And Access ManagementInformation SecurityNetwork SecurityRisk ManagementSecurity Governance

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account