Information Security Mainframe Security Engineering Team Manager

Denver, CO Full Time
POSTED ON 3/27/2024

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.

One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. Were devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.

Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.

Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!

Job Description:
This job is responsible for leading a key function driving enterprise-wide information security policies, procedures, and standards in support the policy governance lifecycle. Key responsibilities include applying knowledge of laws, rules, regulations, and information security concepts (e.g., NIST, COBIT, ISO) to establish and maintain policies. Job expectations include providing oversight and alignment of processes, and, controls to requirements, identifying gaps in coverage, and, reporting on adherence to the Information Security Policy.

LOB Overview:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the banks Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects and responds to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements

Role Description:

The Mainframe Security Engineering team manager directs and controls the activities of security engineers in the development, implementation, communication, monitoring and maintenance of the information security policies and procedures. This role is responsible for the development and implementation of security standards, procedures, and guidelines. This individual provides state of the art technical expertise and support to client, IT management, and staff in assessing risk and the implementation of appropriate security procedures and products. Oversees execution of security controls to prevent hackers from infiltrating company information or jeopardizing e-commerce programs. Researches attempted efforts to compromise security protocols and effectively communicate these risks and all other types of risk to management and key stakeholders.

  • Responsible for overall aspects of securing the Bank's Mainframe environments with the goal of eliminating risks in these operational environments.

  • Drives remediation of findings identified from security assessments and coaches other teammates remediation best practices.

  • Proposes and leads forward thinking solutions; builds reusable secure-by-design frameworks (e.g., input validation, output encoding, logging, authorization).

  • Oversees security engineering and operational teams and providing necessary service & support to run the Mainframe security platforms.

  • Works day-to-day on incidents primarily by providing direction to team members and aligned stakeholders,

  • Ensures compliance with Change Management, Incident Management, and Problem management for various security technologies such as RACF, ACF2, DB2, CICS, Storage, zOS, zOS Network & Security and zOS Performance.

  • Partners with vendors on major projects, software upgrades, BAU tasks, and meeting SLAs.

  • Acts as a key resource and spokesperson with risk partners during assessments, examinations and audits.

  • Drives Mainframe Modernization and work in close partnership with the CTO Mainframe team to provide SME security leadership.

  • Directs technology team within the Access Management Monitoring and Controls organization to research, engineer, develop, implement, communicate, monitor, and maintain the information security (authentication, perimeter security, security & compliance tools, etc), & directory technology systems (software & hardware) and security policies / procedures.

  • Utilizes in-depth technical / project knowledge and business requirements to design / direct secure solutions to meet customer / client needs while protecting the Bank's assets. Serves as organization spokesperson with other technology or business groups. Exercises independent judgment in directing staff to achieve results. Works independently with directions / goals from the Information Security Technology Executive. Typically 7-10 years of experience, including people management responsibility.

  • Provides technical expertise throughout the software lifecycle including design, implementation and delivery.

  • Leverage expertise Advanced experience with web application development, database, unix/linux environments, distributed and parallel systems, information retrieval, networking, large scale software development, security software development to execute large and small projects aimed at growing our business and/or evolving the Banks security posture

Role Qualifications- Required Skills:

  • 10 Years of experience in RACF, ACF2 and zOS systems

  • 10 Years of working knowledge of Mainframe infrastructure and related concepts

  • 5 years of experience managing vendor relationships

  • In-depth understanding of security integration points of z/OS, DB/2, IMS, CICS and other mainframe subsystems and how they are defined and managed with ACF2/RACF security servers.

  • Extensive experience with Audit processes, action planning, evidence tracking and interaction with risk partners

  • Understanding cloud , virtualization, APIs, and modern software languages

Desired Skills:

  • Strong technical background and ability to learn new technologies quickly

  • Ability to identify, analyze and address problems to resolve issues whenever possible in a way that minimizes negative impact and risk to the organization

  • Ability to work independently on initiatives with little oversight. Motivated and willing to learn.

  • Strong analytical skills / problem solving / conceptual thinking

  • Ability to be comfortable delivering messages across a wide spectrum of individuals having varying degrees of technical understanding

  • Strong leadership skills and qualities which enable you to work with peers and various levels of managements

  • Excellent interpersonal and communication skills

  • Ability to question processes for the purpose of improving them

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

Enterprise Job Description: This job is responsible for leading a key function driving enterprise-wide information security policies, procedures, and standards in support the policy governance lifecycle. Key responsibilities include applying knowledge of laws, rules, regulations, and information security concepts (e.g., NIST, COBIT, ISO) to establish and maintain policies. Job expectations include providing oversight and alignment of processes, and, controls to requirements, identifying gaps in coverage, and, reporting on adherence to the Information Security Policy.

Shift:

1st shift (United States of America)

Hours Per Week:

40

 

Salary.com Estimation for Information Security Mainframe Security Engineering Team Manager in Denver, CO
$147,105 to $188,339
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

Sign up to receive alerts about other jobs that are on the Information Security Mainframe Security Engineering Team Manager career path.

Click the checkbox next to the jobs that you are interested in.

Income Estimation: 
$144,251 - $184,373
Income Estimation: 
$198,395 - $243,643
Income Estimation: 
$208,102 - $261,253
Income Estimation: 
$184,136 - $234,228
Income Estimation: 
$144,757 - $185,645
Income Estimation: 
$158,512 - $229,648
Income Estimation: 
$133,179 - $164,597

Sign up to receive alerts about other jobs with skills like those required for the Information Security Mainframe Security Engineering Team Manager.

Click the checkbox next to the jobs that you are interested in.

  • Cloud Computing Skill

    • Income Estimation: $128,805 - $154,286
    • Income Estimation: $130,880 - $170,859
  • Distributed Computing Skill

    • Income Estimation: $123,270 - $157,316
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Hispanic Technology Executive Council

Hispanic Technology Executive Council
Hired Organization Address Wilmington, DE Full Time
The Process Review Manager will report into the Business Control Head team for Branded Cards. The role will lead efforts...
Hispanic Technology Executive Council
Hired Organization Address Wilmington, DE Full Time
Marketing and Franchise Development in the U.S. Consumer Bank is focused on deploying best-in-class marketing campaigns ...
Hispanic Technology Executive Council
Hired Organization Address Wilmington, DE Full Time
Communications, Reporting & Analysis (CRA) is part of Citis COO Controls organization, which supports the Enterprise by ...
Hispanic Technology Executive Council
Hired Organization Address Wilmington, DE Full Time
Marketing and Franchise Development in the U.S. Consumer Bank is focused on deploying best-in-class marketing campaigns ...

Not the job you're looking for? Here are some other Information Security Mainframe Security Engineering Team Manager jobs in the Denver, CO area that may be a better fit.

Sr. Business Development Manager with Security Clearance - Now Hiring

Information Technology Engineering Corporation, Englewood, CO

Armed Security Officer

Precision Security Team LLC, Denver, CO