远程工作雷达

信息安全总监

Senior Director of Information Security

开发工程限定地区(需当地身份)
公司Common Securitization Solutions
薪资$236,500 - $267,750/年
工作地点United States
地域资格限定地区(需当地身份)
时区要求日间重叠约 9 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

概述
公司
美国金融科技(U.S. FinTech)正在寻找一位经验丰富的信息安全高级总监加入我们的专业团队。这是一份全职远程职位。
U.S. FinTech 构建并运营全球最大、最先进的抵押贷款证券化平台,支持房利美(Fannie Mae)和房地美(Freddie Mac)的统一抵押贷款支持证券(UMBS)。
支持市场上70%的抵押贷款支持证券,U.S. FinTech 提供一流的单户发行、债券管理、披露和税务服务。我们为客户提供广泛的产品组合,并提供完整的生命周期管理。
我们市场领先的基于云的端到端平台以惊人的规模执行交易,增强了二级抵押贷款市场的流动性,这是全球最大、最重要的金融市场之一。我们独特的证券化方法结合了金融服务领域的顶尖人才与领先技术专家的知识、灵活性和创新能力。
职责
职位信息
信息安全高级总监将负责网络安全架构、网络安全工程和业务架构的整体设计,确保组织在内部和外部都符合网络安全政策。该职位将为整体安全愿景和战略做出贡献。重点是提高 U.S. FinTech 网络安全工具生态系统内的运营效率和可靠性,同时继续让团队在日益云原生的环境中工作,因为我们完全基于云。该职位将负责跨所有部门的网络安全架构和工程功能的日常管理和执行。该职位将与 IT 专业人士以及业务领导者进行沟通,评估和管理网络风险,分享安全愿景,并通过信息共享和协作推动企业安全水平的提升。这是信息安全部门所有职能领域的继任者角色。
主要职责

  • 与业务各领域的领导者合作,识别机会和风险,并制定支持 U.S. FinTech 的解决方案,U.S. FinTech 是一家 SaaS 公司,是美国抵押贷款金融行业的关键支柱。
  • 与 2
查看英文原文

OVERVIEW
The Company
U.S. Financial Technology (U.S. FinTech) is seeking an experienced Senior Director of Information Security to join our team of talented professionals. This is a full-time remote opportunity.
U.S. FinTech built and operates the largest and most advanced mortgage securitization platform in the world, supporting the Uniform Mortgage-Backed Security (UMBS) of Fannie Mae and Freddie Mac.
Supporting 70% of the mortgage-backed securities in the market, U.S. FinTech provides best-in-class single-family issuance, bond administration, disclosure, and tax services. We support a broad portfolio of products for our clients with full lifecycle management.
Our market-leading, cloud-based, end-to-end platform executes transactions on an extraordinary scale which has bolstered liquidity in the secondary mortgage market, one of the largest and most important financial markets in the world. Our unique approach to securitization combines the best minds in financial services with the know-how, flexibility, and innovation of leading technologists.
RESPONSIBILITIES
Job Information
The Senior Director of Information Security will lead the overall design of cyber security architecture, cyber security engineering and business architecture to ensure that the organization is compliant to cyber security policies both internally and externally. This position will contribute to the overall security vision and strategy.  The focus will be on improving operational efficiencies and reliability within U.S. FinTech’s Cyber Security tools ecosystem while continuing the teams to work in an increasingly cloud native environment as we are completely cloud based.  This position will lead day-to-day management and execution of Cyber security architecture and engineering functions across all divisions.  This position will interface with IT professionals as well as leaders of the business to assess and manage cyber risk, share the security vision, and solicit involvement in achieving higher levels of enterprise security through information sharing and collaboration.  This is a successor type role for all across InfoSec's functional areas.
Key Job Functions

  • Partner with leaders across the business to identify opportunities and risks and develop solutions that support U.S. FinTech, a SaaS company serving as the critical backbone of the US mortgage finance industry.
  • Refine, design, and implement company-wide cyber security architecture and engineering in partnership with 2nd and 3rd lines of defense.
  • Develop cyber security patterns to enable developers to design and build applications with appropriate security controls.
  • Manage external assessment activities and synthesize information into senior level presentations.
  • Serves as a subject matter expert to internal business, technology, and security teams. Proactively advises on a range of cyber risk management activities and information security industry best practices.
  • Acts as an ambassador and senior technical advisor for enterprise cyber security while engaging with other senior technical leaders throughout the organization.
  • Develop and refine standards in partnership with Engineering, Infrastructure, Application Development, Data.
  • Maintain vigilance about current threat vectors and expertise of the ecosystem of cloud security-related tools.
  • Prototype new security tools and technologies based on organizational strategy and evolving threats while looking for opportunities to optimize, consolidate and manage out tools that no longer meet company needs.
  • Engage in ongoing communication with peers in the Infrastructure and Application Support groups as well as the business group to ensure understanding of security goals, to solicit feedback and foster cooperation.
  • Oversee deployment, integration, and initial configuration of all new cyber security solutions and enhancements to existing information security solutions in accordance with Information security policies, standards, and operational procedures.
  • Lead initiatives designed to share knowledge across cyber security, technology, and business teams. Identifies, recommends, coordinates, and delivers timely knowledge to support teams regarding technologies, processes, or tools.
  • Create and maintain a set of metrics to document and measure the performance and effectiveness of the Information Security program; responsible for communicating metrics to IT Leadership Team.
  • Lead the organization's identity and access management program, including identity lifecycle management, access governance, privileged access, and authentication controls.

QUALIFICATIONS
Education

  • Bachelor’s degree or higher in related discipline. Advanced degrees (MS, PhD) strongly preferred.
  • Industry Certification required, e.g. CISSP, CISA, CISM or equivalent designation.

Minimum Experience

  • A minimum of 12 years of experience building and leading global cybersecurity programs.
  • A minimum of 5 of years leading Security Architecture and Engineering Teams.
  • Applicants must be authorized to work in the US without requiring employer sponsorship currently or in the future. U.S. FinTech does not offer sponsorship for this position.

Specialized Knowledge & Skills

  • Strong working knowledge of Cyber Security Architectural and Engineering principles supporting Cyber Defense, Compliance, Perimeter Security, Data Protection, Application Security, Operating System Security, Virtual Infrastructure, Storage Protection.
  • Strong understanding of modern authentication and identity protocols, including SAML, OAuth 2.0, OpenID Connect. (OIDC), FIDO2/WebAuthn, and Multi factor authentication (MFA).
  • Working knowledge of physical security.
  • Experience adopting Zero Trust.
  • Strong working knowledge of DevSecOps.
  • Strong working knowledge of AWS and tools to support the Cloud.
  • Strong working knowledge of Private Cloud, Public Cloud, and/or Hybrid Cloud.
  • Self-starter; adaptable to change; motivated to set personal and program goals and proactively track performance against goals.
  • Experience working with Risk, Security or Audit frameworks (i.e., COBIT, COSO, ISO 27001/2, NIST 800-53, NIST CSF,  AICPA, BITS).
  • Serve as subject matter expert for InfoSec and IT Security related topics with experience in technical control testing aligned to NIST 800-53, FISMA, and SOC.
  • Possesses strong analytical skills capable of identifying, evaluating and mitigating significant risks within an enterprise.
  • Demonstrated experience using and managing Risk Management tools is desired.
  • Strong working experience with Microsoft Office Suite and GRC tools.
  • Secondary mortgage market or equivalent financial services experience is an advantage.
  • Ability to document and explain risks and vulnerabilities to both business and technical stakeholders.
  • Ability to influence peers and management; ability to team cross-functionally and form relationships to achieve objectives.
  • Strong oral and written communication skills and ability to work well with others and in a collaborative, complex and fast paced environment.

Pay Range $236,500 to $267,750
U.S. FinTech's pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) a candidate’s qualifications, skills, competencies, and experience, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law. U.S. FinTech offers a competitive total compensation package, which includes a performance bonus, 401k match, healthcare coverage, PTO, and a broad range of other benefits.
Employment
As a condition of employment with U.S. Financial Technology, any successful job applicant will be required to successfully complete a background investigation, which may also include a credit check for positions in some areas of our business.
U.S. Financial Technology is an Equal Opportunity Employer.
#
Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

← 返回全部职位