Senior Information Security Analyst Assurance

4 weeks ago


Elk Grove Village, United States First American Bank Full time

Job Description:

First American Bank was founded in Chicago, and over the years has expanded throughout Wisconsin and Florida. As the largest privately held bank in Illinois, we now have over 60 locations and assets of $5+ billion. We are a community bank at heart with international expertise, traditional values, and a forward-looking philosophy. Our employees have the experience and vision to meet the needs of savers, borrowers, and businesses in the 21st century. First American Bank can offer employees a level of visibility, career growth, and stability that is difficult to find in many larger corporations.

The Senior Information Security Analyst Assurance & Compliance is responsible for security assurance and compliance activities to achieve business goals by evaluating, deploying, and managing of security technologies. This individual is expected to have outstanding problem-solving skills, meticulous attention to detail, and a sound understanding of cybersecurity and the financial sector requirements. In addition, be fully aware of the enterprises security goals as established by the regulatory landscape, company policies, procedures, and guidelines and partner cross-functionally towards achieving and optimizing those objectives.

Duties & Responsibilities

  • Lead Information Security Assurance & Compliance including cross functional assessments of information resources, processes, tools.
  • Oversee application compliance cross functionally to ensure risks to the organization are identified and processed in accordance with the Information Security Risk Management Program.
  • Partner with key stakeholders in the Business Units, Technology, Compliance, Internal Audit, Legal and Third Parties to review and provide security guidance on current and new processes, maintain evidence and artifacts for internal and external audits.
  • Identify and analyze new and emerging requirements for policy impacts; develop and update policies, procedures, standards, and guidelines.
  • Serve as the primary point of security assurance and compliance management activities, including but not limited to, analyzing, quantifying, validating, testing, and tracking identified information security compliance and risks as well as reviewing, documenting, and tracking risk exception requests and facilitating risk management discussions with key stakeholders.
  • Manage and track cybersecurity audit engagements and due diligence activities. Utilize working knowledge of information security best practices to ensure sufficient IT controls are in place to meet our external audit and client requirements.
  • Process Information Security due diligence requests and ensure compliance to policies, procedures, and regulations both internally and for third parties.
  • Manage Information Security Awareness initiatives.
  • Evaluate and recommend improvements to the companys information systems control environment, risk management and Information Security audit processes to reduce duplicate audit requests in addition to minimizing Process Owner dependency to obtain control evidence.
  • Facilitate the ongoing management of Information Security Policies, Standards, Guidelines and Procedures and coordinate awareness cross functionally.
  • Analyze and measure compliance objectives and foster initiatives with established Information Security policies and procedures by examining IT records, reports, operating practices, and documentation.
  • Create and maintain dynamic dashboards and/or scorecard for visibility of Information Security Governance activities.
  • Provide security recommendations to other team members, management, and business stakeholders for solutions, enhancements to existing systems, and new security tools to help mitigate security vulnerabilities and automate repeatable tasks.
  • Maintain up-to-date detailed knowledge of the IT security industry including awareness of new or revised security solutions, improved security processes and the development of new attacks and threat vectors.
  • Assess system configurations of company solutions as per the established baselines, for those security systems solutions that are partially or wholly operated by the InfoSec team.
  • Identify security requirements, based upon need or as the result of a security issue that puts organizations systems at risk.
  • Participate in the monitoring all in-place security solutions for efficient and appropriate operations.
  • Aid in the design and execution of vulnerability assessments, penetration tests and security audits.
  • Participate in the identification of security breaches detected by security systems, and in the tracking, investigation, and resolution of these incidents.
  • Performs other related duties as assigned by management.

Qualifications

  • High school diploma or equivalent required. A degree in Information Technology/Computer Information Systems or related field preferred.
  • CISSP, CISA, CISM, CEH, Security+ and / or similar certifications is a plus.
  • Minimum eight years of experience supporting Information Security governance, risk & compliance programs to meet regulatory or compliance requirements. Background in Information Security, IT Risk Management, or IT Audit required.
  • Strong understanding of security and control frameworks, such as FFIEC, NIST, COBIT, ITIL, ISO control framework.
  • Experience with security program assessment, development, and management practices; including working with industry standards and frameworks (particularly the NIST Cybersecurity Framework, 800-53, NIST CSF. CIS Top 20, FFIEC Cybersecurity Assessment tool), GLBA preferred.
  • Proven experience in proactively identifying potential Information Security controls risks, issues and opportunities through analytical thinking and offering sustainable recommendations that address root cause rather than symptoms.
  • Strong understanding of information security standards, best practices for securing computer systems within applicable laws and regulations.
  • Experience with Governance Risk & Compliance (GRC) tools and policy/procedure development.
  • Experience working in a highly regulated industry (financial services or health care) desired.
  • Familiarity with software development process and practice and banking technologies and applications a plus.
  • High level of personal integrity, and the ability to professionally handle confidential matters while exuding appropriate level of judgment and maturity.
  • Ability to blend exceptional attention to detail with an ability to retain strategic direction within a rapidly evolving entrepreneurial business culture. Ability to conduct research into security issues and products as required.
  • Strong team player yet self-motivated and able to make progress independently.
  • Highly organized with proven analytical and problem-solving abilities with ability to effectively prioritize and execute tasks in a high-pressure environment.
  • Must be professional, comfortable speaking with external and internal contacts with a demonstrated ability to effectively tailor the message appropriately to the audience and situation.
  • Demonstrated ability to convey thoughts and ideas effectively and succinctly via written formats, including emails, letters, and electronic platforms. Maintain professional standards relating to spelling and grammar.
  • Maintain good working relationships with internal partners by exhibiting exemplary interpersonal skills, adopting a constructive, solutions-focused approach.
  • Use sound professional judgment to balance the interests of the organization and customer, understanding and using available resources to mitigate risks.
  • High proficiency with Microsoft 0365 products and applications, including the ability to effectively prepare or review documents, procedures, and reports.
  • Experience with administration and architecture for one or more infrastructure technologies (networking, Windows OS, Linux OS, Active Directory, PKI, etc.) required.
  • Working technical knowledge of several of the infrastructure technologies preferred (such as Active Directory, Server 2016 & 2019, Azure, 0365, and various AV products, Vulnerability Management).
  • In-depth technical knowledge of and experience with one or more common security products and toolset (firewalls; intrusion prevention systems; web-security content management; authentication services; SEIM; etc. required).
  • Working technical knowledge of wider a cross-section of the common security products and toolsets.
  • Demonstrated ability to learn new systems and applications, as well as the ability to understand, adapt and adjust responsibilities/workflows because of system upgrades.
  • Occasional travel to other First American Bank locations, Bank functions and training facilities may be required.
  • This position is remote but does require occasional travel to various locations throughout the Bank's market.
  • Typical hours are Monday through Friday 8:00 a.m. to 5:00 p.m. Additional hours may be required depending upon business need.
  • Punctuality is required to maintain First American Banks customer service standards.


  • Elk Grove Village, United States LHH Full time

    Candidates that live in the Chicago area will be contacted for this role.If you are interested in this Senior Financial Analyst job in the Chicago area or other accounting and finance opportunities then please forward your resume to Marla.Lampert@LHH.comThis manufacturing company is driven by their commitment to their employees and they believe that each...


  • Elk Grove Village, United States LHH Full time

    Candidates that live in the Chicago area will be contacted for this role.If you are interested in this Senior Financial Analyst job in the Chicago area or other accounting and finance opportunities then please forward your resume to Marla.Lampert@LHH.comThis manufacturing company is driven by their commitment to their employees and they believe that each...


  • Greenwood Village, United States York Space Systems LLC Full time

    York Space Systems was founded to radically improve spacecraft affordability and reliability, transforming, and enabling next generation space mission operations worldwide. Today, it is one of the most innovative aerospace companies, specializing in both end-to-end customer solutions and the rapid production of spacecraft platforms. York’s complete Space...


  • Greenwood Village, United States York Space Systems LLC Full time

    York Space Systems was founded to radically improve spacecraft affordability and reliability, transforming, and enabling next generation space mission operations worldwide. Today, it is one of the most innovative aerospace companies, specializing in both end-to-end customer solutions and the rapid production of spacecraft platforms. York’s complete Space...


  • Greenwood Village, United States York Space Systems LLC Full time

    York Space Systems was founded to radically improve spacecraft affordability and reliability, transforming, and enabling next generation space mission operations worldwide. Today, it is one of the most innovative aerospace companies, specializing in both end-to-end customer solutions and the rapid production of spacecraft platforms. York’s complete Space...


  • Greenwood Village, United States York Space Systems LLC Full time

    York Space Systems was founded to radically improve spacecraft affordability and reliability, transforming, and enabling next generation space mission operations worldwide. Today, it is one of the most innovative aerospace companies, specializing in both end-to-end customer solutions and the rapid production of spacecraft platforms. York’s complete Space...


  • Elk Grove, United States City of Elk Grove California Full time

    The City of Elk Grove is currently accepting applications for REAL-TIME INFORMATION CENTER ANALYST - The City of Elk Grove is looking for a Real-Time Information Center Analyst. The ideal candidate will have some real-time crime center experience or Analyst, Information, Communications, Operations, Processing, Intelligence, Technology


  • Maple Grove, MN, United States Data Recognition Corporation Full time

    Information Security Compliance Analyst Data Recognition Corporation-Maple Grove, Minnesota This position is part of the Data Recognition Corporation (DRC) Information Security Team that has an important role in the defining and enabling the secure operation of the DRC environment. This position has responsibility for contributing to various risk and...


  • Elk Grove Village, United States AstroNova Full time

    Company Overview: Astro Machine, a subsidiary of AstroNova Inc is a dynamic and innovative data visualization company committed to delivering high-quality products and services to our customers. We are currently seeking a dedicated and experienced Quality Assurance Manager to join our team and play a key role in ensuring that our products and processes meet...


  • Elk Grove Village, Illinois, United States First American Bank Full time

    Job Description: First American Bank was founded in Chicago, and over the years has expanded throughout Wisconsin and Florida. As the largest privately held bank in Illinois, we now have over 60 locations and assets of $5+ billion. We are a community bank at heart with international expertise, traditional values, and a forward-looking philosophy. Our...


  • Elk Grove Village, United States First American Bank Full time

    Job Description: First American Bank was founded in Chicago, and over the years has expanded throughout Wisconsin and Florida. As the largest privately held bank in Illinois, we now have over 60 locations and assets of $5+ billion. We are a community bank at heart with international expertise, traditional values, and a forward-looking philosophy. Our...

  • Business Analyst

    2 weeks ago


    Elk Grove Village, Illinois, United States Global Technical Talent Full time

    Business Analyst Contract Duration 6+ MonthsJob Description:Requirements Gathering: The Business Analyst collaborates with stakeholders, including business users, project managers, and developers, to gather and document detailed business requirements. Conduct interviews, workshops, and brainstorming sessions to elicit requirements, ensuring a comprehensive...


  • Greenwood Village, United States York Space Systems LLC Full time

    Position: Information Systems Security Officer Location: Greenwood Village, CO Job Id: 441 # of Openings: 1 York Space Systems was founded to radically improve spacecraft affordability and reliability, transforming, and enabling next generation space mission operations worldwide. Today, it is one of the most innovative aerospace companies, specializing in...


  • Elk Grove Village, United States Astronova Full time

    Company Overview: Astro Machine, a subsidiary of AstroNova Inc is a dynamic and innovative data visualization company committed to delivering high-quality products and services to our customers. We are currently seeking a dedicated and experienced Quality Assurance Manager to join our team and play a key role in ensuring that our products and processes meet...


  • Elk Grove Village, Illinois, United States AstroNova Full time

    Company Overview: Astro Machine, a subsidiary of AstroNova Inc is a dynamic and innovative data visualization company committed to delivering high-quality products and services to our customers. We are currently seeking a dedicated and experienced Quality Assurance Manager to join our team and play a key role in ensuring that our products and processes meet...


  • Elk Grove Village, United States AstroNova, Inc. Full time

    Job DescriptionJob DescriptionCompany Overview: Astro Machine, a subsidiary of AstroNova Inc is a dynamic and innovative data visualization company committed to delivering high-quality products and services to our customers. We are currently seeking a dedicated and experienced Quality Assurance Manager to join our team and play a key role in ensuring that...


  • Elk Grove Village, United States Speed Express Full time

    **Position Overview**: As a QA Representative for Exception Package Processing at SpeedX, you will play a vital role in maintaining the integrity and efficiency of our logistics operations. Working closely with both our operations team and customer service department, you will be responsible for reviewing and resolving exception packages, ensuring timely...


  • Cañada Village, United States gTANGIBLE Corporation Full time

    Job DescriptionJob DescriptiongTANGIBLE Corporation (gTC), www.gtangible.com, is a S corporation and a registered Government contractor that provides services and solutions in:National Security ProgramsProfessional, Administrative, and Management SupportMission and Warfighter SupportWe are a Service Disabled Veteran Owned Small Business (SDVOSB) and the...


  • Elk Grove Village, United States Speed Express Full time

    **Position Overview**: As a QA Representative for Exception Package Processing at SpeedX, you will play a vital role in maintaining the integrity and efficiency of our logistics operations. Working closely with both our operations team and customer service department, you will be responsible for reviewing and resolving exception packages, ensuring timely...

  • Compensation Analyst

    3 weeks ago


    Elk Grove Village, United States LaSalle Network Full time

    Are you excited about crafting and overseeing inventive compensation programs? Do you thrive in a fast-paced, dynamic environment where your expertise can truly shine? If so, we'd love to hear from you! LaSalle Network has teamed up with a leading organization in the Northwest Suburbs, and they're in need of a skilled Compensation Analyst. As a Compensation...