Information Security Risk Analyst jobs in New York, NY

F
Director - Cyber & Information Security Risk
  • Flagstar Bank N.A
  • New York, NY FULL_TIME
  • Position Title

    Director - Cyber & Information Security Risk

    Location

    New York/1400 Broadway/114025

    Job Summary

    Pay range: 223- 280K

    JOB SUMMARY
    The Director of Cyber and Information Security Risk is a second line of defense role accountable to identify, measure, monitor, and manage the cybersecurity and information security risk profile of the Bank, ensuring risk exposure remains within the Bank’s risk appetite. Demonstrate independent, effective, outcome-based oversight and challenge for these risk domains through their own activity, in addition to leading a team in these activities. Accountable for successful regulatory engagement for these risk domains. Build strong stakeholder relationships including with CIO, CISO, and other senior executives across the first, second, and third line of defense.

    Pay Range: Local Minimum Wage - $0.00 - $0.00

    Job Responsibilities:

    JOB RESPONSIBILITIES

    • Provide independent, proactive oversight and challenge of cybersecurity and information security risk management at the Bank through execution of risk framework elements and embedded monitoring of key cyber/information security programs.
    • Assess and report cybersecurity and information security risk profile based on quantitative and qualitative risk measures and including assessment of effectiveness of planned remediation/mitigation of excess risk exposure.
    • Regulatory engagement, including regular supervisory meetings, exams, and sustainable remediation of findings.
    • Develop and maintain cybersecurity and information security risk management framework, second line of defense standards and guidelines, in alignment with the Bank’s Risk Governance Framework.
    • Talent management functions including: employment, performance evaluations, staff development/training, disciplinary actions, succession planning and ensuring all staff comply with compliance requirements. 
    • Uses independent judgement and discretion to make decisions (about the applicability risks and necessary controls).
    • Analyzes and resolves problems pertaining to (differing views of risks/controls and due diligence relating to third parties).

    ADDITIONAL ACCOUNTABILITIES

    • Leads special projects, and additional duties and responsibilities as required.
    • Consistently adheres to regulatory and compliance policies and standards linked to the job as listed and complete required compliance trainings.  Accountable to maintain compliance with applicable federal, state and local laws and regulations.

    JOB REQUIREMENTS

    Required Qualifications:

    • Education level required: Bachelor’s or Master’s degree in Computer Science, Information Technology, Cybersecurity or relevant field.
    • Minimum experience required: 15 Years in Information Technology, Information Security, Cybersecurity risk management or related role.
    • Proven experience in senior leadership position in relevant domain, including strategically influencing senior management and key stakeholders.
    • 8-10 years’ experience managing high performing teams.
    • 5 years’ experience of large bank regulatory oversight.

    Preferred Qualifications:

    • Industry certifications such as Certified Information Systems Security Professional (“CISSP”), Certified Information Security Manager (“CISM”), Certified Risk and Information Systems Control (“CRISC”) a plus but not required.
    • Expertise in Gramm-Leach-Bliley Act (GLBA) requirements and effective GLBA program execution.
    • Financial industry experience.

    Job Competencies:

    • Strong knowledge of cybersecurity frameworks, standards and regulations.
    • Expert knowledge in identification, measurement, monitoring and mitigating cyber and information security risks.
    • Demonstrated ability to provide outcome-based risk oversight and challenge to first line risk management.
    • Strong knowledge of non-financial risk frameworks.
    • Excellent verbal and written communication skills, and an ability to effectively translate technical issues for non-technical audiences.
    • Strong analytical, troubleshooting, and root cause determination skills. 
    • Strong ability to build consensus across diverse teams with competing agendas.  
    • Ability to supervise, train, and motivate staff.
    • Physical demands (ADA): No unusual physical exertion is involved.

    Flagstar is an Equal Opportunity Employer.  All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identify, or national origin. 

  • 21 Days Ago

A
Senior Information Security Analyst
  • Atlas Search
  • New York, NY FULL_TIME
  • This position is with a prestigious financial services firm that is a leading provider in the insurance industry, where you can make a tangible impact on global infrastructure and financial markets. T...
  • 4 Days Ago

W
Lead Information Security Analyst
  • Wells Fargo
  • NEW YORK, NY FULL_TIME
  • About this role:Wells Fargo is seeking a Lead Information Security Analyst in Technology as part of Cybersecurity. Learn more about the career areas and lines of business at wellsfargojobs.com.The Lea...
  • 1 Month Ago

A
Senior Information Security Analyst
  • Assured Guaranty
  • New York, NY FULL_TIME
  • Position Summary The goal of information security is to protect the confidentiality, integrity, and availability of information assets. The information security team is responsible for defining and im...
  • 1 Month Ago

V
Information Security Analyst
  • vhr_wachtelllipton
  • New York, NY FULL_TIME
  • Summary: The Information Security Analyst will be responsible for monitoring Firm security systems and assisting in the coordination effort to remediate alerts and respond to incidents. Key responsibi...
  • 2 Months Ago

D
Security Operations Analyst
  • Division of Information Technology - NYC Department of Health and Mental Hygiene
  • Long Island, NY FULL_TIME
  • The New York City Department of Health and Mental Hygiene (DOHMH) is the nation's leading public health agency protecting and promoting health of all New Yorkers. Our 7,000-plus team members bring an ...
  • 3 Days Ago

Filters

Clear All

  • Filter Jobs by companies
  • More

0 Information Security Risk Analyst jobs found in New York, NY area

A
Information Security Analyst- International Bank
  • Alpha Global Search LLC
  • New York, NY
  • International Bank is seeking an Information Security Analyst who will perform duties related to 3rd Party Risk Manageme...
  • 12/14/2024 12:00:00 AM

W
Cybersecurity - Management Consultant - Analyst/Consultant Position
  • Wavestone
  • New York, NY
  • Company Description Wavestone is a global consulting powerhouse dedicated to empowering businesses to navigate today's d...
  • 12/14/2024 12:00:00 AM

O
Security Operations Center Analyst
  • Oakridge Staffing
  • New York, NY
  • Oakridge has been engaged to identify a Senior SOC Analyst of a solid, yet newly forming Security team of a local hedge ...
  • 12/14/2024 12:00:00 AM

S
Associate Director, Software Engineering
  • S&P Global, Inc.
  • New York, NY
  • About the Role: Grade Level (for internal use): 12 About the Role: The Team: S&P Global Ratings' data services group is ...
  • 12/14/2024 12:00:00 AM

O
Analyst, Budget Project Management
  • Omnicom Media Group US
  • New York, NY
  • Omnicom Media Group (OMG), the media services division of Omnicom Group Inc. (NYSE: OMC) - delivers transformational exp...
  • 12/14/2024 12:00:00 AM

C
Data Analyst, Bureau of Tuberculosis Control
  • City of New York
  • New York, NY
  • Job Description Established in 1805, the New York City Department of Health and Mental Hygiene (the NYC Health Departmen...
  • 12/13/2024 12:00:00 AM

C
GenTax Application Developer
  • City of New York
  • New York, NY
  • Job Description IMPORTANT NOTE: CANDIDATES WITH A PERMANENT COMPUTER SPECIALIST (SOFTWARE) OR COMPARABLE CIVIL SERVICE T...
  • 12/13/2024 12:00:00 AM

S
Sr. Information Architect - Ratings Data Technology Lead (Hybrid)
  • S&P Global, Inc.
  • New York, NY
  • About the Role: Grade Level (for internal use): 11 About the Role: The Team: You will be senior contributor and part of ...
  • 12/11/2024 12:00:00 AM

The City of New York, usually called either New York City (NYC) or simply New York (NY), is the most populous city in the United States. With an estimated 2017 population of 8,622,698 distributed over a land area of about 302.6 square miles (784 km2), New York is also the most densely populated major city in the United States. Located at the southern tip of the state of New York, the city is the center of the New York metropolitan area, the largest metropolitan area in the world by urban landmass and one of the world's most populous megacities, with an estimated 20,320,876 people in its 2017 M...
Source: Wikipedia (as of 04/11/2019). Read more from Wikipedia
Income Estimation for Information Security Risk Analyst jobs
$96,044 to $122,771
New York, New York area prices
were up 1.6% from a year ago

Information Security Risk Analyst in Carmel, IN
Assists in providing internal security consulting and advisory services to internal business and IT stakeholders regarding information security requirements, security policy/standards, security architecture, and ongoing maintenance of the information security risk management program, including policies, procedures, technical systems, compliance, and risk assessment activity.
May 12, 2023
Information Security Risk Analyst
Demonstrated personal tendency to speak freely, question tradition looking beyond how things have always been done to how things could be done more effectively, intuitively, securely and efficiently.
March 18, 2023
Requires demonstrable knowledge of security principles to a diverse range of risk scenarios to coordinate acceptable solutions between business needs, technology operations, and information security best practices.
March 28, 2023
Support and develop oversight routines to ensure effective management of risk to the security of information in all data storage and processing areas, including vendor, physical, network, systems and personnel handling environments.
April 11, 2023
Develop system documentation for information system authorization, security management, and continuous monitoring of both networked and standalone classified systems.
May 17, 2023
Provide expertise and support in customer hosted environments to ensure control activities are designed and implemented appropriately to protect the security, confidentiality, privacy, integrity and availability of data in compliance with organization policies and standards.
May 18, 2023