Senior Information Security Risk Analyst

2 months ago


Columbia, United States AgFirst Full time
Job Description

Senior Information Security Risk Analyst (Hybrid in Columbia, SC)

AgFirst's Senior Information Security Risk Analyst identifies, investigates, analyzes, and recommends information security guidance to ensure bank assets and processes maintain confidentiality, integrity, and availability while assessing against all applicable regulations, industry standards, and bank policies, directives, and standards. The Senior Analyst will perform comprehensive information security risk assessments that evaluate inherent risk, plan controls and safeguards, and ensure alignment of residual risk and risk appetite. The Senior Analyst will evaluate technology and business projects, and business requirements, and recommend security controls to ensure effective information security and compliance with enterprise standards. The Senior Analyst communicates information security risk issues and controls gaps through the governance, risk, and compliance function. If this opportunity is of interest to you, apply today

What you'll do
  • Foster a culture of collaboration and responsible information security risk management through the definition and adherence to appropriate risk appetites, control frameworks, policies, and directives.
  • Serves as an IS Governance, Risk, and Compliance expert for business line projects and participates in the development, implementation, and maintenance of information security for the bank.
  • Assist with enterprise information security risk deliverables and collaborate with risk partners on information security priorities.
  • Perform Information Security Risk Assessments; decompose complex risk issues and business line consensus on risk level and risk response to include acceptance and mitigation of risks, and establish and communicate residual levels.
  • Identify and evaluate complex technology risks, internal controls that mitigate risks, and related opportunities for internal control improvement.
  • Monitor information security trends internal and external to the bank and keep business lines informed about information security-related issues.
What you'll need
  • A degree in Information Assurance, Information Systems, Risk Management, Auditing, Computer Science, or a related field or the equivalent in education and work experience
  • Minimum of 8 years of experience in the Information Security field, with at least three years of information security risk management or operational risk, developing and executing information security risk assessments using industry-standard approaches, methodologies, and frameworks (NIST, Financial Services Regulations).
  • CISSP, CISM, CISA, CRISC, or equivalent industry-recognized certification preferred.
  • Possess strong/experienced application development or application security background; with solid knowledge of SDLC from design, testing, deployment to post-production and the different risk elements associated with each step.
  • Expert knowledge of and demonstrable experience in application security, vulnerability testing, and development of risk appetite, as well as significant experience evaluating cyber security controls
  • Strong awareness and experience with industry risk analysis approaches (ISO, COBIT, COSO) as well as all industry regulations and standards (SOX, GLBA, FFIEC, OCC, HIPAA, PCI DSS, NIST, OWASP)


About Us

AgFirst Farm Credit Bank provides financing, as well as technology and other value-added services, to association partners so they can lend to rural residents and agricultural operations of all sizes. We take pride in investing in our employees, our partners and our community.

Find out more on AgFirst.com, and follow us on LinkedIn

  • Columbia, South Carolina, United States BlueCross BlueShield of South Carolina Full time

    Job OverviewWhy consider a career with BlueCross BlueShield of South Carolina? For over seventy years, we have been a steadfast presence in the national landscape, deeply rooted in the South Carolina community. While business and political climates may shift, our strength remains unwavering. We proudly hold an A.M. Best rating of A+ (Superior),...


  • Columbia, South Carolina, United States Technical Source Full time

    Job Summary:Technical Source is seeking a highly skilled SOC Analyst I to join our IT Solutions team in Raleigh, NC. As a key member of our 24x7x365 Security Operations Center (SOC), you will play a critical role in ensuring the security and integrity of our clients' IT systems.Key Responsibilities:Alert Prioritization and Triage: Prioritize and triage...


  • Columbia, United States Hansen Talent Group Full time

    Job DescriptionJob DescriptionHansen Talent Group is hiring an IS Security Risk Analyst II to work with a large enterprise in Columbia, SC. This is a hybrid opportunity and will require 1-2 days onsite/week.This role is part of the Risk and Compliance team which ensures the enterprise is following all guidelines set in place. They raise awareness if we are...


  • Columbia, South Carolina, United States Focused HR Solutions Full time

    Position Overview:This role requires a dedicated professional to work on-site, focusing on the evaluation and enhancement of the organization's information security measures. The selected candidate will engage in a range of responsibilities aimed at safeguarding sensitive data and ensuring compliance with industry standards.Key Responsibilities:Conduct...


  • Columbia, United States Information Management Group Full time

    Description: The Information Systems Security Engineer shall perform, or review, technical security assessments of computing environments to identify points of vulnerability, non–compliance with established Information Assurance (IA) standards and regulations, and recommend mitigation strategies. Validates and verifies system security requirements...


  • Columbia, South Carolina, United States Jacobs Full time

    About the Role:We are seeking a highly skilled Senior Information Systems Security Engineer to join our team at Jacobs. This is a Hybrid position that supports our prime customer in a dynamic and fast-paced environment.Key Responsibilities:The Senior Information Systems Security Engineer will be responsible for:Conducting Technical Security Assessments:...


  • Columbia, United States iNovex Information Systems Full time

    Job Brief perform, review, technical security assessments, identify points of vulnerability, non-compliance Information Assurance (IA) standards and regulations, and recommend mitigation strategies Job Description We're searching for talented individuals who provide intelligence, engineering, and mission management expertise for the Government. This...


  • Columbia, South Carolina, United States apexanalytix Full time

    Company OverviewAt apexanalytix, we pride ourselves on being lifelong innovators. Since our inception nearly four decades ago, we have consistently achieved growth and profitability while delivering premier procure-to-pay solutions globally. Our unique blend of established company stability and start-up agility makes apexanalytix a distinctive workplace.Our...


  • Columbia, United States Information Resource group, Inc. Full time

    Job DescriptionJob DescriptionRole: Information Security Technical Writer-W2 OnlyLocation: Columbia, SCDuration: One Year contract with possibility of extensions.Job Description:Information Security Technical Writer to assist with these tasks and to ensure that documentation is properly vetted to meet the needs of both the business areas and security...

  • Security Analyst

    2 weeks ago


    Columbia, United States C2 Essentials Full time

    The Security Analyst will oversee, evaluate, and support the documentation, validation, and accreditation processes necessary to assure that IT systems meet the organization's security requirements: Respond to crisis or urgent situations within the system to mitigate immediate and potential threats. Use mitigation, preparedness, and response and recovery...


  • Columbia, South Carolina, United States TEKsystems Full time

    Job OverviewPosition Summary:The role of the Security Operations Center (SOC) Analyst III is pivotal in safeguarding the integrity of our systems and networks. This position involves active engagement in monitoring security alerts, conducting proactive threat assessments, and addressing vulnerabilities within the organization.Key Responsibilities:1....

  • 85 Security Analyst

    1 month ago


    Columbia, United States Focused HR Solutions Remote Work Freelance Full time $60 - $80

    This job is 100% on-site in Columbia, SCOur direct client has an opening for a Security Analyst 10965-1This position is up to 12 months, with the option of extension, and is in Columbia, SCCorp to Corps are NOT allowed for this client. W2 Only.DAILY DUTIES / RESPONSIBILITIES:The Security Analyst is primarily responsible for assessing and evaluating the...


  • Columbia, Maryland, United States iNovex Information Systems Full time

    Job OverviewSpecializing in forensic analysis, network security, and vulnerability assessment.Position SummaryWe are looking for exceptional professionals who bring intelligence, analytical skills, and programming knowledge to support government initiatives.This program aims to enhance the effectiveness and efficiency of critical missions both domestically...


  • Columbia, Maryland, United States Global Atlantic Financial Group Full time

    Company OverviewGlobal Atlantic Financial Group is a prominent player in the U.S. life insurance and annuity sector, catering to the requirements of both individuals and institutions. As a wholly-owned subsidiary of KKR, a leading global investment firm, we provide alternative asset management across various strategies and capital market solutions.Team...


  • Columbia, United States Information Management Group Full time

    Information Systems Security Engineer (ISSE) with TS/SCI Full Scope Poly Job Locations: US-MD-Columbia Job ID: 2024-5628 # of Openings: 1 Category: Technical Services & Operations Opportunity The Information Systems Security Engineer shall perform, or review, technical security assessments of computing environments to identify points of vulnerability,...


  • Columbia, United States SPYROS I&T Consulting Full time

    Duties: Plan, implement, upgrade, or monitor security measures for the protection of computer networks and information. May ensure appropriate security controls are in place that will safeguard digital files and vital electronic infrastructure. May respond to computer security breaches and viruses. Ensures the rigorous application of cybersecurity...


  • Columbia, South Carolina, United States Praxis Engineering Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Expert to join our team at Praxis Engineering. As an Information Systems Security Engineer, you will be responsible for safeguarding digital landscapes and ensuring compliance with stringent Information Assurance (IA) standards and regulations.Key ResponsibilitiesConduct technical security assessments...


  • Columbia, Maryland, United States Global Atlantic Financial Group Full time

    Company Overview:Global Atlantic Financial Group stands as a prominent entity in the U.S. life insurance and annuity sector, catering to the diverse needs of both individuals and institutions.As a wholly-owned subsidiary of KKR, a renowned global investment firm, we provide alternative asset management across various strategies and capital market...


  • Columbia, United States Sentar Full time

    Information System Security Engineer (ISSE), SeniorSentar - Columbia, MDSentar is dedicated to developing the critical talent that the connected world demands to create solutions to address the convergence of cybersecurity, intelligence, analytics, and systems engineering. We invite you to join the small business team where you can build, innovate, and...


  • Columbia, South Carolina, United States Praxis Engineering Full time

    Exciting Opportunity for a Cybersecurity Risk Specialist: Information Systems Security EngineerBecome a vital member of our team at Praxis Engineering as an Information Systems Security Engineer (ISSE). Engage with a collaborative group of engineers dedicated to developing innovative cyber solutions. In this role, you will be responsible for protecting...