Sr. Information Security Risk Analyst (Hybrid/Remote)
MO - Kansas City - 1010 Grand Blvd
As part of UMB’s Corporate Information Security and Privacy (CISP) team, the mission is to identify threats, vulnerabilities, and risks and to help protect the people, information, and services within the organization. CISP works closely with all lines of business. This role will work especially close with UMB enterprise technology and information security teams to ensure data protection initiatives are present, usable and, understood within the organization.
As the Sr. Information Security Risk Analyst, you will be responsible for supporting UMB’s Information Security Program to ensure UMB is able to address rapidly changing threats, technologies, and business conditions. This is a subset of the overall responsibilities which involves other multiple initiatives as assigned by Corporate Risk leadership.
This role is hybrid (Tue through Thu on-site) for candidates in the Kansas City metropolitan area and open to qualified remote candidates outside of the Kansas City area but only within the US.
How you’ll spend your time:
- Collaborate and drive security initiatives, working with people across multiple teams and diverse functions.
- Enable the business and other stakeholders to make risk-aware decisions by advising business units and technology leaders of the information security risks and proposing acceptable risk treatment options and alternatives.
- Support the information security program efforts through the collection of performance indicators, metrics, and other evidence and communicating relevant, succinct, and actionable recommendations to leadership.
- Support UMB’s PCI-DSS compliance and assessment activities while supporting our internal technology and business teams across the organization.
- Proactively maintain a current and working understanding of information security best practices, the practical application of security concepts, relevant information security and technology regulations, threats, and industry trends.
- Assist in responding to internal/external audits, including third-party security assessments, if applicable.
- Maintain a current and working understanding of relevant information security and technology regulations and industry trends, including UMB Information Security Policies and the practical application of the Policies.
- Manage multiple simultaneous workstreams supporting disparate stakeholders, providing appropriate and timely communication of issues, concerns, risks, and status.
We’re excited to talk with you if:
- You have working knowledge and practical application of the PCI-DSS compliance framework and how organizations meet those requirements.
- You have at least 5 years of experience in information security, security audit, or information security risk management/compliance.
- You have a Bachelor’s degree in Management Information Systems (MIS), Computer Science or a related discipline OR equivalent work experience.
- You have strong knowledge of risk and controls, including …
This job isn't fresh anymore!
Search Fresh JobsJob Profile
Work visa sponsorship not available
Benefits/PerksAdoption Assistance Annual Incentive Annual incentive pay Collaborative environment Employee Assistance Program Fitness Reimbursement Hybrid work Paid holidays Paid Time Off Professional development Tuition reimbursement
Tasks- Communicate recommendations
- Manage compliance activities
Auditing Banking COBIT Communication Compliance COSO Data Protection Financial Services Information security ISO ITIL Leadership Metrics NIST PCI DSS Performance Indicators Risk assessments Risk Management Security Compliance
Experience5 years
EducationBachelor's degree Business Computer Science Equivalent Equivalent work experience Management Information Systems MIS Related discipline
Certifications TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9