Expoint - all jobs in one place

מציאת משרת הייטק בחברות הטובות ביותר מעולם לא הייתה קלה יותר

Limitless High-tech career opportunities - Expoint

Bank Of America Application Control Specialist - Global Information Security 
United States, Illinois, Chicago 
999450894

19.07.2024

Job Description:

This role is responsible for completing and tracking compliance deliverables to ensure applications adhere to applicable policies and standards as well as local laws, rules and regulations (LRR). Key responsibilities include completing administrative and non-technical tasks related to compliance deliverables and infrastructure requests for the applications they support. They support vendors, development teams and technology managers to ensure technical security, risk, and other compliance activities are completed on-time and per requirements. These individuals partner closely with control functions, risk management and Global Information Security (GIS) and are familiar with the applicable policies, standards, LRRs, contacts and procedures so that the compliance deliverables are completed effectively and efficiently.

Primary Interactions:

· Product Owner

· Feature Lead

· Development Team

· Technology Manager

· Senior Technology Manager

· Enterprise Control Partners

Key Responsibilities:

  • Ensure that risk, security, and other compliance deliverables are completed on time and per requirements for the applications they support.
  • Complete administrative and non-technical tasks related to compliance deliverables (for example, access reviews, assessments, questionnaires, procedural requirements, and so on).
  • Assist with audit exams and risk assessments for the applications.
  • Track and support the technical security and risk activities performed by the development teams (for example, remediation of non-permitted technology or security vulnerabilities, technical recovery planning, disaster recovery exercises, and so on).
  • Maintain data about the application in AppHQ and other systems of record.
  • Work closely with vendors for vendor applications to ensure the application meets bank requirements.
  • Assist with ad hoc inquiries and questions about the application.
  • Interface with technology infrastructure teams for infrastructure requirements like requests for additional storage.
  • Works with appropriate teams to ensure alerts, monitoring, dashboards, and processes are established appropriately for new projects and initiatives.

Qualifications:

  • 7+ yrs of professional work experience
  • Experience with the delivery of complex technology projects or solutions
  • Experience working with a technology delivery team
  • Experience with application security, vulnerability remediation, threat modeling
  • Experience partnering with production support
  • Experience working with or in TI to deliver hardware solutions
  • Highly effective relationship and communication skills
  • Ability to work independently, manage and prioritize multiple projects/requests.

Desired skills:

  • Good understanding and experience of OpenID Connect (OIDC), OAuth, SAML and other authentication protocols and standards

  • Experience handling security Audits, working with internal and external auditors

  • Experience in hands-on development and/or technical support

  • Knowledge of and experience with enterprise policies, programs, procedures, and systems
  • Experience with DevOps, SecDevOps
1st shift (United States of America)