Sr. Information Security Specialist

Posted:
7/16/2024, 5:00:00 PM

Location(s):
Cincinnati, Ohio, United States ⋅ Minnesota, United States ⋅ North Carolina, United States ⋅ Hopkins, Minnesota, United States ⋅ Charlotte, North Carolina, United States ⋅ Ohio, United States

Experience Level(s):
Senior

Field(s):
IT & Security

Workplace Type:
Hybrid

At U.S. Bank, we’re on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed.  We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at—all from Day One.

Job Description

U.S. Bank is seeking a Senior Information Security Specialist with demonstrated competence in Data Security and experience to contribute toward the success of our technology initiatives. This person will provide support to clients, management, security partners, and security operations. In this role, the individual will review, develop, and implement data security remediation plans in collaboration with business line risk teams. Will leverage data security as an opportunity to enhance controls, improve training or re-engineer business processes. Will review circumstances surrounding data security risks and partner with delivery teams on corrective actions. The person will document remediation procedures and track efficacy as well as provide implementation support for risk assessment and data security procedures and products.

The role offers a hybrid/flexible schedule, which means there’s an in-office expectation of 3 or more days per week and the flexibility to work outside the office location for the other days at one of the following locations:

  • Cincinnati, OH
  • Minneapolis, MN
  • Charlotte, NC

Responsibilities include: 

  • Independently investigate and analyze security incidents, identifying false positives and true positives.
  • Troubleshoot data security / DLP support issues to determine resolution.
  • Work with the business (end-user, managers, Risk Managers) to identify and resolve data security / DLP issues causing business interruption.
  • Collaborate with cross-functional teams to provide support to the business.
  • Assist in refining data security / DLP policies based on support issues, false positives, incident trends and organizational needs.
  • Develop and implement data security strategies aligned with the organization's risk profile and compliance requirements.
  • Identify areas of remediation by analysis of DLP data for trends and outliers to target areas of risk.
  • Collaborate with business partners to assist in implementing solutions to remediate areas of data security risk.
  • Lead initiatives to enhance data security support and remediation processes.

 

Basic Qualifications

  • Bachelor's degree or equivalent work experience
  • At least five years of experience with the processes, tools, techniques, and practices for assuring adherence to quality standards associated with information technology and data security.

 

 Experience Should Include

  • 3+ years’ experience in Information Security and Data Loss Prevention (DLP) frameworks
  • 3+ years’ experience supporting business lines/stakeholders in evaluating and remediating security risk.
  • 3+ years demonstrated experience working with customers to troubleshoot and resolve issues.
  • 3+ years’ experience working with IT standards, procedures, and policies including NIST & ISO27000
  • 3+ years’ experience tracking and reporting on monthly metrics
  • 4+ years’ experience with MS-Office (advanced Excel)
  • 5+ years’ demonstrated experience documenting risk analysis results and technical writing
  • Proven ability to present analyses to leadership with observations and recommendations.
  • Ability to build and maintain effective relationships with cross-functional teams, senior leadership, and technical resources.
  • Experience presenting findings and communicating technical information to non-technical audiences and stakeholders.
  • Excellent problem-solving skills and willingness to solve open-ended problems while demonstrating an ability to work independently.
  • Professional written and verbal skills

 

Preferred Skills/Experience

  • Certified Information System Security Professional (CISSP) or equivalent certification/experience
  • CISA, CISM, CRISC
  • GIAC GSEC
  • Experience with the Microsoft DLP Suite

If there’s anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to our disability accommodations for applicants.

Benefits: 

Our approach to benefits and total rewards considers our team members’ whole selves and what may be needed to thrive in and outside work. That's why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following (some may vary based on role, location or hours):

  • Healthcare (medical, dental, vision)

  • Basic term and optional term life insurance

  • Short-term and long-term disability

  • Pregnancy disability and parental leave

  • 401(k) and employer-funded retirement plan

  • Paid vacation (from two to five weeks depending on salary grade and tenure)

  • Up to 11 paid holiday opportunities

  • Adoption assistance

  • Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law

EEO is the Law

U.S. Bank is an equal opportunity employer committed to creating a diverse workforce. We consider all qualified applicants without regard to race, religion, color, sex, national origin, age, sexual orientation, gender identity, disability or veteran status, among other factors. Applicants can learn more about the company’s status as an equal opportunity employer by viewing the federal KNOW YOUR RIGHTS EEO poster.  

E-Verify

U.S. Bank participates in the U.S. Department of Homeland Security E-Verify program in all facilities located in the United States and certain U.S. territories. The E-Verify program is an Internet-based employment eligibility verification system operated by the U.S. Citizenship and Immigration Services. Learn more about the E-Verify program.

The salary range reflects figures based on the primary location, which is listed first. The actual range for the role may differ based on the location of the role. In addition to salary, U.S. Bank offers a comprehensive benefits package, including incentive and recognition programs, equity stock purchase 401(k) contribution and pension (all benefits are subject to eligibility requirements). Pay Range: $102,340.00 - $120,400.00 - $132,440.00

Job postings typically remain open for approximately 20 days of the posting date listed above, however the job posting may be closed earlier should it be determined the position is no longer required due to business need. Job postings in areas with a high volume of applicants, such as customer service, contact center, and Financial Crimes investigations, remain open for approximately 5 days of the posting listed date.