Infrastructure Cybersecurity Risk Management Lead
142019-NC-300 South Brevard, Charlotte, United States
Full Time Senior-level / Expert USD 84K - 149K
Wells Fargo
Committed to the financial health of our customers and communities. Explore bank accounts, loans, mortgages, investing, credit cards & banking services»Wells Fargo is seeking Infrastructure Cybersecurity Risk Management Lead. In this critical role, you will act as a liaison serving as the primary point of contact between the Infrastructure Security team and audit. Each day you’ll drive the validation and remediation processes, ensuring risks are effectively mitigated. You care deeply about risk mitigation, and the kind of person who takes action when it comes to cybersecurity standards. You’ll be relationship focused and able to communicate at a high level for positive outcomes for all parties.
This is a hybrid position.
There is no Visa Transfers or Visa sponsorships for this role.
Position is posted in the city where the role will be seated.
Your main focus will be to serve as the Lead Risk Management Liaison between the Infrastructure Security organization and internal risk management teams, ensuring clear communication and alignment on risk management efforts.
Unafraid, you’ll challenge internal risk remediation activities to ensure proposed action plans adequately address identified cybersecurity risks and align with organizational security objectives.
In addition, you’ll validate that remediation evidence is sufficient and demonstrates clear risk reduction, working closely with the Infrastructure Security team and with applicable cybersecurity and technology teams. Each day you’ll interpret and ensure compliance with applicable cybersecurity laws, regulations, and industry standards. You are well versed in FFIEC IT Handbook, GLBA, PCI-DSS, NYDFS, and can properly articulate policy language.
Part of your job will be to communicate key findings and recommendations with leadership and relevant stakeholders, acting as the primary representative for cybersecurity risk management in this lead role.
Ideal candidates may have worked with regulators prior and come out of large financial service companies. You’ll bring keen presentation skills to our team.
In this role, you will:
- Provide information security consultation to improve awareness and compliance with Enterprise Information Security policy, processes, and standards
- Perform remediation of security assessment review issues, complex ad hoc data, and reporting to support information security risk management
- Provide guidance and direction in reviewing assessment findings and mitigating controls to optimize information security
- Identify and direct information asset portfolio reconciliations and certifications
- Provide advanced data aggregation and data of information security risk exposure
- Develop and deliver Information Security Education Awareness and Training in accordance with the Enterprise Information Security Program standards
- Review draft and proposed control standards for business impact and recommend modifications or clarifications as required
- Conduct security control testing and consultation with stakeholders
- Evaluate and interpret internal and Enterprise Information Security policies, processes and standards, and provide recommendations to improve them
- Collaborate and consult with peers, colleagues, and managers to resolve issues and achieve goals
- Interact with internal customers
- Serve as a mentor to less experienced staff
Required Qualifications:
- 4+ years of Information Security Analysis experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- Minimum of 4 years of experience in cybersecurity / technology risk management, audit, or legal functions.
- Proven ability to lead risk validation and remediation processes
Desired Qualifications:
- Ability to work independently, confidently challenge assumptions, and lead by example in ensuring risks are effectively mitigated
- Excellent communication with the ability to drive initiatives and engage with stakeholders at all levels
- Exceptional attention to detail and analytical skills, particularly in evaluating technical and risk-related information
- Strong understanding of cybersecurity frameworks, risk management principles, and regulatory compliance
- Experience interpreting and applying cybersecurity laws, rules, regulations, and industry standards within the financial services industry
- Prior experience working with regulators or within a highly regulated industry such as banking and financial services
- Keen and crisp presentation skills with prior experience presenting to leadership
Pay Range
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to achievements, skills, experience, or work location. The range listed is just one component of the compensation package offered to candidates.
$84,000.00 - $149,400.00Benefits
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs for an overview of the following benefit plans and programs offered to employees.
- Health benefits
- 401(k) Plan
- Paid time off
- Disability benefits
- Life insurance, critical illness insurance, and accident insurance
- Parental leave
- Critical caregiving leave
- Discounts and savings
- Commuter benefits
- Tuition reimbursement
- Scholarships for dependent children
- Adoption reimbursement
Posting End Date:
18 Apr 2025*Job posting may come down early due to volume of applicants.
We Value Diversity
At Wells Fargo, we believe in diversity, equity and inclusion in the workplace; accordingly, we welcome applications for employment from all qualified candidates, regardless of race, color, gender, national origin, religion, age, sexual orientation, gender identity, gender expression, genetic information, individuals with disabilities, pregnancy, marital status, status as a protected veteran or any other status protected by applicable law.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit’s risk appetite and all risk and compliance program requirements.
Candidates applying to job openings posted in US: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Applicants with Disabilities
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo.
Drug and Alcohol Policy
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more.
Wells Fargo Recruitment and Hiring Requirements:
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
Tags: Banking Compliance FFIEC GLBA Governance Monitoring Risk management Security analysis Security assessment
Perks/benefits: Equity / stock options Health care Insurance Medical leave Parental leave Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.