About the Role
Wells Fargo is seeking a Senior Information Security Analyst (Individual Contributor) in the area of Cyber Security for the Third Party Cyber Security team. The role activities include intake, assessing, testing, monitoring, and reporting on the adequacy, efficiency, and effectiveness of information security related controls for third party.
Key Responsibilities
Work and collaborate with third party service providers to assess information security risk in IT infrastructures, applications, and information security programs of varying sizes and complexities.
Execute remote security assessments via questionnaires, as needed, and complete associated reports, and security plans.
Review/analyze third party attestation and certification artifacts (SOC2, SIG, PCI DSS, Etc.) shared by third parties to identify the information security risks
Document assessment results and write assessment report(s) for key stakeholders in conjunction with the Wells Fargo Information Security Risk Assessment Program.
Provide subject matter expertise in the Third Party information security program and provide timely solutions to identified problems
Work independently as the Third Party Assessment lead. Collaborate with the senior leader - Third Party Assessment management; US and internal stakeholders
Analyze the data related to information security findings and present meaningful views to relevant stakeholders on the trends and patterns of control gaps.
Manage different intake request scenarios to close the assessments within the stipulated timeframe.
Required Qualifications:
4+ years of Information Security Analysis experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
Desired Qualifications
4+ years of experience working in Information Security Governance Risk and Compliance
4+ years of experience working in Third Party Information Security Assessment or Cyber Security Assessments
Bachel