Senior Information Security Risk Analyst

2 weeks ago


Columbia, United States Farm Credit Full time

Senior Information Security Risk Analyst (Hybrid in Columbia, SC)

AgFirst's Senior Information Security Risk Analyst identifies, investigates, analyzes, and recommends information security guidance to ensure bank assets and processes maintain confidentiality, integrity, and availability while assessing against all applicable regulations, industry standards, and bank policies, directives, and standards. The Senior Analyst will perform comprehensive information security risk assessments that evaluate inherent risk, plan controls and safeguards, and ensure alignment of residual risk and risk appetite. The Senior Analyst will evaluate technology and business projects, and business requirements, and recommend security controls to ensure effective information security and compliance with enterprise standards. The Senior Analyst communicates information security risk issues and controls gaps through the governance, risk, and compliance f unction. If this opportunity is of interest to you, apply today

What you'll do

- Foster a culture of collaboration and responsible information security risk management through the definition and adherence to appropriate risk appetites, control frameworks, policies, and directives.
- Serves as an IS Governance, Risk, and Compliance expert for business line projects and participates in the development, implementation, and maintenance of information security for the bank.
- Assist with enterprise information security risk deliverables and collaborate with risk partners on information security priorities.
- Perform Information Security Risk Assessments; decompose complex risk issues and business line consensus on risk level and risk response to include acceptance and mitigation of risks, and establish and communicate residual levels.
- Identify and evaluate complex technology risks, internal controls that mitigate risks, and related opportunities for internal control improvement.
- Monitor information security trends internal and external to the bank and keep business lines informed about information security-related issues.

What you'll need

- A degree in Information Assurance, Information Systems, Risk Management, Auditing, Computer Science, or a related field or the equivalent in education and work experience
- Minimum of 8 years of experience in the Information Security field, with at least three years of information security risk management or operational risk, developing and executing information security risk assessments using industry-standard approaches, methodologies, and frameworks (NIST, Financial Services Regulations).
- CISSP, CISM, CISA, CRISC, or equivalent industry-recognized certification preferred.
- Possess strong/experienced application development or application security background; with solid knowledge of SDLC from design, testing, deployment to post-production and the different risk elements associated with each step.
- Expert knowledge of and demonstrable experience in application security, vulnerability testing, and development of risk appetite, as well as signifi cant experience evaluating cyber security controls
- Strong awareness and experience with industry risk analysis approaches (ISO, COBIT, COSO) as well as all industry regulations and standards (SOX, GLBA, FFIEC, OCC, HIPAA, PCI DSS, NIST, OWASP)



  • Columbia, United States Zencon Group Full time

    Job Description: SCOPE OF THE PROJECT: The Office of Inspector General, Office of the CISO is responsible for securing and monitoring the agency's critical applications and network for the SC Department of Social Services. The Department seeks a highly motivated individual who has the skills and experience needed to support this Office's mission in...


  • Columbia, United States Nimbus Consulting LLC Full time

    **About Nimbus**: Nimbus is a consulting firm and strategic information technology (IT) advisor with an objective approach to overcoming complex technical challenges and an understanding of unique challenges in working in the government space. Nimbus is focused on promoting efficient and cost-effective IT solutions for local, state, and federal governments...


  • Columbia, United States SPYROS I&T Consulting Full time

    Duties: Plan, implement, upgrade, or monitor security measures for the protection of computer networks and information. May ensure appropriate security controls are in place that will safeguard digital files and vital electronic infrastructure. May respond to computer security breaches and viruses. Ensures the rigorous application of cybersecurity...


  • Columbia, South Carolina, United States Jacobs Full time

    Your Impact: Jacobs is seeking an Information Systems Security Officer (ISSO) 2 for a prime contract that is based out of our Columbia, MD officeResponsibilities: Provide support for a program, organization, system, or enclave's information assurance program. Provide support for proposing, coordinating, implementing, and enforcing information systems...


  • Columbia, United States Jacobs Full time

    Your Impact:Jacobs is seeking a Information System Security Engineer - Senior for a prime contract that is based out of our Columbia, MD office. Responsibilities: The Information Systems Security Engineer – Senior, shall perform, or review, technical security assessments of computing environments to identify points of vulnerability, non-compliance with...

  • Security Analyst

    19 hours ago


    Columbia, United States DP Professionals Full time

    DPP is seeking a Security Analyst for an opportunity in Columbia, SC. Work arrangement: Onsite W2 position; 12 months Project scope: The Cloud CyberSecurity Specialist will help Applications Team build and manage a Secure Cloud Infrastructure by adhering to policy and industry best practices. Position description: The Security Analyst will report directly...


  • Columbia, United States C2 Essentials Full time

    The Security Compliance Junior Analyst will apply guidance provided in all relevant National Institute of Standards and Technology (NIST) Special Publications in the delivery of IT security services: • Support the development of security documentation in accordance with FISMA and FedRAMP requirements including Security Policies and Procedures, System...


  • Columbia, United States C2 Essentials Full time

    The Security Compliance Junior Analyst will apply guidance provided in all relevant National Institute of Standards and Technology (NIST) Special Publications in the delivery of IT security services: • Support the development of security documentation in accordance with FISMA and FedRAMP requirements including Security Policies and Procedures, System...


  • Columbia, United States Jacobs Full time

    Your Impact:Jacobs is seeking a Senior Information Systems Security Officer (ISSE).  This is a Hybrid position and supports our prime customer in Columbia, Maryland.   Description: The Senior Information Systems Security Engineer will perform, or review: Technical security assessments of computing environments to identify points of vulnerability,...

  • Security Analyst

    3 days ago


    Columbia, United States Rose International Full time

    Date Posted: 05/15/2024 Hiring Organization: Rose International Position Number: 464134 Job Title: Security Analyst - Consultant Job Location: Columbia, SC, USA, 29202 Work Model: Onsite Employment Type: Temporary Estimated Duration (In months): 13 Min Hourly Rate ($): 70.00 Max Hourly Rate ($): 72.00 Must Have Skills/Attributes: AWS,...


  • Columbia, United States Independent Software Full time

    Job Description Job Description What you will be doing: Independent Software is seeking an Information Systems Security Engineer, Mid-Level to perform, or review, technical security assessments of computing environments to identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations and recommend...


  • Columbia, United States Independent Software Full time

    What you will be doing: As an Information Systems Security Engineer, Mid-Level you will perform, or review, technical security assessments of computing environments to identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations and recommend mitigation strategies. Validates and verifies system...


  • Columbia, United States Independent Software Full time

    Job DescriptionJob DescriptionWhat you will be doing: As an Information Systems Security Engineer, Mid-Level you will perform, or review, technical security assessments of computing environments to identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations and recommend mitigation strategies....

  • Senior Analyst

    3 weeks ago


    West Columbia, United States Catalyze Full time

    We are looking for a positive, flexible self-starter to join our team as a Senior Analyst. This is an exciting opportunity to play a leading role in delivering our analysis capability as an integral part of a small, agile and growing business. Our team of analysts, consultants and Defence SMEs work closely with our customers to deliver high-impact services...


  • Columbia, United States Talent Driven Consulting LLC Full time

    Role: Information Systems Security Engineer (ISSE)Position Location: Columbia, MD, United States (San Antonio, TX and Augusta, GA are also possible) About the Role:We're seeking an Information Systems Security Engineer (ISSE) to join our team. As an ISSE, you'll be responsible for system and network designs spanning multiple enclaves, including those with...


  • Columbia, United States Talent Driven Consulting LLC Full time

    Role: Information Systems Security Engineer (ISSE) Position Location: Columbia, MD, United States (San Antonio, TX and Augusta, GA are also possible) About the Role: We're seeking an Information Systems Security Engineer (ISSE) to join our team. As an ISSE, you'll be responsible for system and network designs spanning multiple enclaves, including those with...


  • Columbia, United States Talent Driven Consulting LLC Full time

    Role: Information Systems Security Engineer (ISSE)Position Location: Columbia, MD, United States (San Antonio, TX and Augusta, GA are also possible) About the Role:We're seeking an Information Systems Security Engineer (ISSE) to join our team. As an ISSE, you'll be responsible for system and network designs spanning multiple enclaves, including those with...


  • Columbia, United States Talent Driven Consulting LLC Full time

    Role: Information Systems Security Engineer (ISSE)Position Location: Columbia, MD, United States (San Antonio, TX and Augusta, GA are also possible) About the Role:We're seeking an Information Systems Security Engineer (ISSE) to join our team. As an ISSE, you'll be responsible for system and network designs spanning multiple enclaves, including those with...


  • Columbia, United States Talent Driven Consulting LLC Full time

    Role: Information Systems Security Engineer (ISSE)Position Location: Columbia, MD, United States (San Antonio, TX and Augusta, GA are also possible) About the Role:We're seeking an Information Systems Security Engineer (ISSE) to join our team. As an ISSE, you'll be responsible for system and network designs spanning multiple enclaves, including those with...


  • Columbia, United States Talent Driven Consulting LLC Full time

    Role: Information Systems Security Engineer (ISSE) Position Location: Columbia, MD, United States (San Antonio, TX and Augusta, GA are also possible) Read the overview of this opportunity to understand what skills, including and relevant soft skills and software package proficiencies, are required. About the Role: We're seeking an Information Systems...