Third Party Cybersecurity Assurance

3 months ago


Chicago, United States Bank of America Full time

Description

:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.

One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We’re devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.

Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.

Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us

Position Summary

GIS Cyber Security Assurance (CSA) monitors remediation efforts to protect the confidentiality, integrity, availability of the line of businesses’ (LOB) information assets. This role is a senior manager position, leading the Global TPCA Remediation Governance team – governing remediation of third party vendor information security findings identified by GIS TPCA assessments. The team supports SPI Process 107047, Remediate Vulnerabilities and Findings, specifically the Third Party Vendor Remediation Control, including metrics cascaded to FLU/CF’s.

Key responsibilities:

Establishes and maintains trusted relationships across GTPP, FLU’s and GIS – engaging with Executives across the Bank, to drive remediation of findings

Function as SME for all questions/domains on third party assessments, providing technical expertise and TPCA Process guidance

Owns Process, Playbook and Procedural documentation

TPCA Remediation Governance Strategy

Lead, and participate in, calls across regions and functions demonstrating inclusivity and appreciation of diversity of ideas e.g. TPRGC, FLU Governance Routines, etc.

Manage metrics and reporting, including Board/Management level risk appetite metrics and cascaded SPI QA Metrics, to reduce impact and exposure to legal, financial, reputational, operational, and regulatory risks. 

Identify and help implement ways to improve the function/team with an aim to improve team metrics and ultimately reduce risk

Required to be available outside of core office hours, in case of emergencies

Supports GCOR/Audit/Regulatory responses

Required Qualifications:

Executive presentation and communication skills, including both written and verbal summaries

Strong leadership skills and qualities which enable you to work with various levels of management

Previous risk management experience with proven ability to effectively apply risk principles to business situations

Ability to deliver messages across a wide spectrum of individuals with varying degrees of technical understanding

Excellent influencing and problem resolution skills

Desired Qualifications:

Cybersecurity certification, or relevant degree

Management experience

Experience with relevant applications, including Continuous Monitoring, TRAM, ROCK, GIS Dashboard and GIS Cloudera Data Visualizations

Knowledge of relevant GTPP and GIS Policies and Standards

Risk Committee/Forum presentation experience

Understanding of the eight lines of business

This job will be open and accepting applications for a minimum of seven days from the date it was posted

Shift:

1st shift (United States of America)

Hours Per Week: 

40

  • Chicago, Illinois, United States Bank of America Full time

    Job SummaryBank of America is seeking a highly skilled Cybersecurity Assurance Specialist to join our team. As a key member of our Global Technology and Operations organization, you will play a critical role in ensuring the confidentiality, integrity, and availability of our line of business information assets.Key ResponsibilitiesEstablish and maintain...


  • Chicago, Illinois, United States Bank of America Full time

    About the RoleAt Bank of America, we are committed to creating a culture of responsible growth and excellence. As a GIS Cyber Security Assurance (CSA) professional, you will play a critical role in protecting the confidentiality, integrity, and availability of our line of business information assets.Key ResponsibilitiesLead the Global TPCA Remediation...


  • Chicago, Illinois, United States Northern Trust Full time

    About Northern TrustNorthern Trust is a globally recognized, award-winning financial institution with a rich history dating back to 1889. We provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity.Our MissionWe...


  • Chicago, Illinois, United States Harrison Street Full time

    Harrison Street Information Security Specialist Job DescriptionHarrison Street is a leading investment management firm exclusively focused on alternative real assets.Our team works closely with clients and business partners to drive the cybersecurity strategy, manage tactical cybersecurity initiatives, and complete day-to-day cybersecurity...


  • Chicago, Illinois, United States Harrison Street Full time

    Cybersecurity SpecialistAt Harrison Street, we are seeking a highly skilled Cybersecurity Specialist to join our team. As a Cybersecurity Specialist, you will play a critical role in supporting and assisting our multi-faceted cybersecurity program. Your responsibilities will include managing 3rd party vendor cybersecurity assessments, risk tracking, and...


  • Chicago, Illinois, United States Early Warning Services, LLC Full time

    Job Title: Senior Cybersecurity SpecialistEarly Warning Services, LLC is seeking a highly skilled Senior Cybersecurity Specialist to join our team. As a key member of our Offensive Security team, you will be responsible for identifying and documenting security vulnerabilities through approved penetration testing activities.Key Responsibilities:Lead internal...


  • Chicago, Illinois, United States Cook County Health and Hospitals Full time

    Job SummaryThe Third-Party Billing and Follow Up Representative plays a critical role in facilitating the billing and collection processes of outstanding accounts receivable. This position requires strong analytical and communication skills to ensure accurate and compliant coding, charging, and billing information.Key ResponsibilitiesFacilitate the billing...


  • Chicago, United States Collabera Full time

    Must Have: Third Party Assessment experience Great communication and the curiosity/willingness to learn. Purely looking for On-site Assessors (highly technical) DLP (Data Loss Prevention) IPS (Intrusion Prevention System) EDR (Endpoint Detection Response) Encryption Cryptography Network security Change management. Application and access...


  • Chicago, Illinois, United States Global Enterprise Services, LLC Full time

    Job Summary:The Cybersecurity Assurance Specialist will be responsible for ensuring the conformance of Information Assurance/Cybersecurity (IA/CS) programs. This includes performing analysis and audits to identify vulnerabilities and non-compliance issues, as well as implementing security controls and countermeasures to mitigate these risks.Key...


  • Chicago, Illinois, United States Cook County Health and Hospitals Full time

    Job SummaryThe Third-Party Billing and Follow Up Representative plays a critical role in facilitating the billing and collection processes of outstanding accounts receivable. This position requires strong analytical and problem-solving skills to ensure accurate and compliant coding, charging, and billing information.Key ResponsibilitiesFacilitate the billing...


  • North Chicago, Illinois, United States Global Enterprise Services, LLC Full time

    Job SummaryGlobal Enterprise Services, LLC is seeking a highly skilled Cybersecurity Assurance Specialist to join our team. The ideal candidate will have a strong background in information assurance and cybersecurity, with experience in analyzing and auditing conformance to IA/CS programs.Key Responsibilities:Perform analysis and audits on conformance of...


  • Chicago, United States EPITEC Full time

    POSITION:Third-Party Management Reporting SpecialistJOB TYPE:W2, 3 month contract; possibility of extension/convertingLOCATION:Chicago, IL, HybridQualifications:• Proven experience in SharePoint development, including document libraries, lists, and knowledge of SharePoint Online and 2019.• Proficiency in Nintex, specifically in creating flows within...


  • Chicago, Illinois, United States United Airlines Full time

    About the RoleUnited Airlines is seeking a highly skilled Senior Analyst to join our Cybersecurity and Digital Risk (CDR) team. As a key member of our team, you will play a critical role in protecting our airline and its customers by identifying, analyzing, remediating, and reporting on vulnerabilities.Key ResponsibilitiesSupport the entire vulnerability...

  • Cybersecurity Analyst

    2 weeks ago


    Chicago, Illinois, United States Vi Living Full time

    Job SummaryVi Living is seeking a highly skilled Cybersecurity Analyst to join our team. As a key member of our IT security team, you will be responsible for securing our organization's IT infrastructure, maintaining, documenting, and optimizing security solutions, and collaborating with our third-party Security Operations Center (SOC) to ensure...


  • Chicago, Illinois, United States Baily International Inc Full time

    Job Title: Quality SupervisorJob Summary:Baily International Inc is seeking a highly experienced Quality Supervisor to oversee and manage the entire quality assurance and food safety program for our noodle and egg roll skin manufacturing facility.Key Responsibilities:Implement and maintain quality assurance programs, including HACCP, GMP, and food safety...


  • Chicago, Illinois, United States Baily International Inc Full time

    Job Title: Quality SupervisorJob Summary:The Quality Supervisor will oversee and manage the entire quality assurance and food safety program for our noodle and egg roll skin manufacturing facility.This role is critical in shaping the food safety culture of the facility and requires a candidate with strong leadership, organizational, and interpersonal...


  • Chicago, United States PRI Technology Full time

    We need a Cybersecurity Engineer with Network background.Full-time/Permanent role with bonus and benefits! - NO 3rd party resumes, No sponsorship.Must be comfortable with hybrid remote - 2-3 days onsite in Chicago, IL.This role is responsible for protecting the company's systems and data by designing, implementing, and maintaining optimal cybersecurity...


  • chicago, United States PRI Technology Full time

    We need a Cybersecurity Engineer with Network background.Full-time/Permanent role with bonus and benefits! - NO 3rd party resumes, No sponsorship.Must be comfortable with hybrid remote - 2-3 days onsite in Chicago, IL.This role is responsible for protecting the company's systems and data by designing, implementing, and maintaining optimal cybersecurity...


  • chicago, United States PRI Technology Full time

    We need a Cybersecurity Engineer with Network background.Full-time/Permanent role with bonus and benefits! - NO 3rd party resumes, No sponsorship.Must be comfortable with hybrid remote - 2-3 days onsite in Chicago, IL.This role is responsible for protecting the company's systems and data by designing, implementing, and maintaining optimal cybersecurity...


  • Chicago, United States PRI Technology Full time

    We need a Cybersecurity Engineer with Network background.Full-time/Permanent role with bonus and benefits! - NO 3rd party resumes, No sponsorship.Must be comfortable with hybrid remote - 2-3 days onsite in Chicago, IL.This role is responsible for protecting the company's systems and data by designing, implementing, and maintaining optimal cybersecurity...