UMB
Sr. Information Security Risk Analyst
Kansas City MO · Senior
No sponsorship$100k-$120kDetected 30 days ago
CybersecurityComplianceCommunicationCISSP
About the role
- This role will work especially close with UMB enterprise technology and information security teams to ensure data protection initiatives are present, usable and, understood within the organization.
- Information Security Risk Analyst, you will be responsible for supporting UMB's Information Security Program to ensure UMB is able to address rapidly changing threats, technologies, and business conditions.
Responsibilities
- Collaborate and drive security initiatives, working with people across multiple teams and diverse functions.
- Support the information security program efforts through the collection of performance indicators, metrics, and other evidence and communicating relevant, succinct, and actionable recommendations to leadership.
- Support UMB's PCI-DSS compliance and assessment activities while supporting our internal technology and business teams across the organization.
- Proactively maintain a current and working understanding of information security best practices, the practical application of security concepts, relevant information security and technology regulations, threats, and industry trends.
- Maintain a current and working understanding of relevant information security and technology regulations and industry trends, including UMB Information Security Policies and the practical application of the Policies.
- Manage multiple simultaneous workstreams supporting disparate stakeholders, providing appropriate and timely communication of issues, concerns, risks, and status.
- You'll be valued for exactly who you are and encouraged to support causes you care about.
Requirements
- Bachelor's degree in Management Information Systems (MIS), Computer Science or a related discipline OR equivalent work experience.
- At least 5 years of experience in information security, security audit, or information security risk management/compliance.
- Strong knowledge of risk and controls, including working knowledge of standards and frameworks such as COSO, COBIT, ISO, NIST, and ITIL.
- Understanding of and practical experience with information security risk assessments and information security audits.
Nice to have
- CISSP, CRISC, SEC+, PCI-DSS ISA/PCIP or applicable certifications/accreditation.
- General understanding of banking and financial services processes, and the related risks to securing and managing data.
- Strong understanding of information security regulatory requirements and best practices.
Skills
- CISP works closely with all lines of business.
- This is a subset of the overall responsibilities which involves other multiple initiatives as assigned by Corporate Risk leadership.
Compensation
- The posted salary range reflects the broadest standard range for this role, including all locations.
- The anticipated compensation for this specific position is $100,000 - 120,000.
Benefits
- Please see the description of benefits included with this job posting for additional information.
- Benefit offerings and eligibility requirements vary.
Company info
- Are you ready to be part of something more?
Equal opportunity
- If you need accommodation for any part of the employment process because of a disability, please send an e-mail to talentacquisition@umb.com to let us know the nature of your request.
Visa & Work Authorization
- Work Visa sponsorship is not available for this position.
This listing is sourced directly from UMB's careers page and normalized into a canonical job model.