$117000 - $200000 / Year

Location

BANK OF THE WEST location DENVER, CO

Type

Full Time

Status

Open

JOB DESCRIPTION
Manager, Cyber Security Exam and Findings Management

Job Description Summary

In this role, the candidate would be responsible for the oversight, participation and successful completion of Information Security Risk/Issues, Audit and Regulatory engagements. Individual will work closely with cross-functional teams, Subject Matter Experts, and Risk partners to construct time sensitive deliverables and execute on legal, regulatory and enterprise risk requirements. Responsibilities include engagement and materials creation in preparation for senior level reviews, regulatory exams, and other associated risk reporting.

Essential Job Functions

Manage the tracking, oversight, and reporting of Information Security findings/issues

Analyze Information Security Issues/Findings within the control environment and provide recommendations for addressing the root cause of issues.

Conduct risk assessment of every security issue/finding and determine a risk rating based on the risk impact matrix.

Analyze identified Information Security issues/findings and identify trends and growing areas of risk in the environment.

Support assigned Information Security teams to respond to Regulatory / Audit inquiries and coordinate evidence gathering.

Lead in the development of Issue Management processes and procedures and disseminate the same to all Security Governance and Issue management collaborators

Capture, validate and, present closure evidence to auditors, regulators and 2LOD for review and approval.

Prepare periodic clear and accurate issue management metrics and reports that are informational, actionable, and appropriate for management

Perform qualitative review of information provided in response to examinations to ensure responses are responsive, consistent, and accurate.

Use a risk-based approach to assist in the management and successful remediation of action plans from regulatory bodies, internal audit and other lines of defense.

Manages department staff.

#LI-WJ1

Qualifications

Required Experience

Bachelor's Degree Business, Computer Science, Information Assurance, Management Information Systems or related field
Work Experience

7 years Risk Management, Business Analytics, Information Security, IT Audit, Business Resiliency, or related field.

Minimum of 2 – 4 years of team lead or people leadership experience, including people management.

Banking industry experience preferred

Information or Cyber Security experience preferred

Skills

CISA, CISM, CRISC or CISSP certification(s) preferred or working toward one

Good written and verbal communication skills for report writing, business requirement proposals, technical policies, and methodology documentation.

Good interpersonal, negotiation, and influencing skills; ability to facilitate discussions around issues and bring them to resolution

Good analytical and problem-solving skills coupled with thoroughness and attention to detail is highly desired.

Good understanding of industry practices and metric reporting fundamentals.

Ability to optimize and condense information and transform data into easily understandable concepts.

Basic technical skills in MS Excel, PowerPoint, Word, and Project

General knowledge in various cybersecurity areas such as: Identity and Access Management, Threat and Vulnerability Management, Information Risk and Governance, IT Architecture, Monitoring, Incident Response and Security Strategy, Physical Security and/or Business Resiliency.

General knowledge of security controls for the handling of Personally Identifiable Information (PII) data, regulations and security compliance requirements affecting financial institutions (FFIEC/GLBA)

Annual Hiring Range:

$117,000 - $200,000

Actual compensation offer to candidate may vary from posted hiring range based upon geographic location, work experience, education, and/or skill level.

In addition to base salary, this position is eligible for annual incentives.

The base salary opportunity can vary based on candidate’s geographic location, experience, knowledge, skills, and abilities.

Equal Employment Opportunity Policy

Bank of the West is an Equal Opportunity employer and proud to provide equal employment opportunity to all job seekers without regard to any status protected by applicable law. Bank of the West is also an Affirmative Action employer - Minority / Female / Disabled / Veteran.

Bank of the West will consider for employment qualified applicants with criminal histories pursuant to the San Francisco Fair Chance Ordinance subject to the requirements of all state and federal laws and regulations.

JOB DESCRIPTION Manager, Cyber Security Exam and Findings Management Job Description Summary In this role, the candidate would be responsible for the oversight, participation and successful completion of Information Security Risk/Issues, Audit and Regulatory engagements. Individual will work closely with cross-functional teams, Subject Matter Experts, and Risk partners to construct time sensitive deliverables and execute on legal, regulatory and enterprise risk requirements. Responsibilities include engagement and materials creation in preparation for senior level reviews, regulatory exams, and other associated risk reporting. Essential Job Functions Manage the tracking, oversight, and reporting of Information Security findings/issues Analyze Information Security Issues/Findings within the control environment and provide recommendations for addressing the root cause of issues. Conduct risk assessment of every security issue/finding and determine a risk rating based on the risk impact matrix. Analyze identified Information Security issues/findings and identify trends and growing areas of risk in the environment. Support assigned Information Security teams to respond to Regulatory / Audit inquiries and coordinate evidence gathering. Lead in the development of Issue Management processes and procedures and disseminate the same to all Security Governance and Issue management collaborators Capture, validate and, present closure evidence to auditors, regulators and 2LOD for review and approval. Prepare periodic clear and accurate issue management metrics and reports that are informational, actionable, and appropriate for management Perform qualitative review of information provided in response to examinations to ensure responses are responsive, consistent, and accurate. Use a risk-based approach to assist in the management and successful remediation of action plans from regulatory bodies, internal audit and other lines of defense. Manages department staff. #LI-WJ1 Qualifications Required Experience Bachelor's Degree Business, Computer Science, Information Assurance, Management Information Systems or related field Work Experience 7 years Risk Management, Business Analytics, Information Security, IT Audit, Business Resiliency, or related field. Minimum of 2 – 4 years of team lead or people leadership experience, including people management. Banking industry experience preferred Information or Cyber Security experience preferred Skills CISA, CISM, CRISC or CISSP certification(s) preferred or working toward one Good written and verbal communication skills for report writing, business requirement proposals, technical policies, and methodology documentation. Good interpersonal, negotiation, and influencing skills; ability to facilitate discussions around issues and bring them to resolution Good analytical and problem-solving skills coupled with thoroughness and attention to detail is highly desired. Good understanding of industry practices and metric reporting fundamentals. Ability to optimize and condense information and transform data into easily understandable concepts. Basic technical skills in MS Excel, PowerPoint, Word, and Project General knowledge in various cybersecurity areas such as: Identity and Access Management, Threat and Vulnerability Management, Information Risk and Governance, IT Architecture, Monitoring, Incident Response and Security Strategy, Physical Security and/or Business Resiliency. General knowledge of security controls for the handling of Personally Identifiable Information (PII) data, regulations and security compliance requirements affecting financial institutions (FFIEC/GLBA) Annual Hiring Range: $117,000 - $200,000 Actual compensation offer to candidate may vary from posted hiring range based upon geographic location, work experience, education, and/or skill level. In addition to base salary, this position is eligible for annual incentives. The base salary opportunity can vary based on candidate’s geographic location, experience, knowledge, skills, and abilities. Equal Employment Opportunity Policy Bank of the West is an Equal Opportunity employer and proud to provide equal employment opportunity to all job seekers without regard to any status protected by applicable law. Bank of the West is also an Affirmative Action employer - Minority / Female / Disabled / Veteran. Bank of the West will consider for employment qualified applicants with criminal histories pursuant to the San Francisco Fair Chance Ordinance subject to the requirements of all state and federal laws and regulations.
·5740 Views