Information Security Manager
Wells FargoAbout the role
About this role:
Wells Fargo is seeking an Information Security Manager in Technology as part of Cybersecurity. Learn more about the career areas and lines of business at wellsfargojobs.com.
The Information Security Manager will join our team as a manager of the Cyber Threat Fusion Center in Chandler, AZ. The manager develops, maintains, and executes all components of the Wells Fargo security monitoring and response program. General duties include real and simulated cyber threats mitigation, proactive and reactive threat hunting, and escalation engagements with other information security teams. The position involves regular interactions with executive leadership and business-aligned security leaders.
In this role, you will:
- Manage and develop a team of individual contributors with low to moderate complexity and risk
- Provide support and drive strategic initiatives for the business
- Maintain an advanced awareness of bank security policies and government regulations pertaining to information security
- Identify security risks and solutions for networks and virtual private network applications, security tools, public key infrastructures, authentication and directory services, and access management services
- Address vulnerability detection, threat data, network intrusion, development, and implementation of vulnerability mitigation strategies
- Formulate and implement information security solutions and controls
- Make decisions and resolve issues regarding changes to information security policy, standards, and procedures as needed for systems, applications, and tools
- Recommend compliance and risk management requirements for supported area and work with other stakeholders to implement key risk initiatives
- Lead complex projects and initiatives impacting one or more business lines
- Collaborate and influence all levels of professionals including more experienced managers
- Lead team to achieve objectives
- Manage allocation of people and financial resources for Information Security Analysis
- Mentor and guide talent development of direct reports and assist in hiring talent
- Develop and maintain documentation on Cyber Security Operations, security alert process workflow, response playbooks, and other security workflow documentation
- Develop partnerships with Wells Fargo’s existing security teams across the lines of business to respond to threats and control remediation
- Provide subject matter expertise on actual or perceived events as well as reviewing emerging technologies and tools
- Review Security Operations Center reports, threat reports, audit reports, and regulatory changes to identify and initiate risk prioritization and remediation
- Manage and partner with security service providers for security tool and process enhancements to improve the security posture
Required Qualifications, US:
- 4+ years of Information Security Analysis experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- 3+ years of Incident Management System experience
- 2+ years of Leadership experience
Desired Qualifications:
- Experience managing large technology development efforts within a major line of business
- Ability to influence across all organizational levels, particularly senior management
- Experience with Security Information and Event Management (SIEM) products
- Knowledge and understanding of security analytics including incident response and a digital forensics discipline
- Knowledge and understanding of data security controls including malware protection, firewalls, intrusion detection systems, content filtering, Internet proxies, encryption controls, and log management solutions
- Knowledge and understanding of banking or financial services industry
- Experience with host and/or network log analysis as applied to incident response / threat hunting
- Knowledge of offensive security, with the ability to think like an adversary when hunting and responding to incidents
- Certifications in one or more of the following: Global Information Assurance Certification (GIAC), Offensive Security Certified Professional (OSCP), Offensive Security Wireless Professional (OSWP), Offensive Security Certified Expert (OSCE), Offensive Security Exploitation Expert (OSEE), or Offensive Security Web Expert (OSWE)
Job Expectations:
- Ability to travel up to 10% of the time
- This position is not eligible for Visa sponsorship
- This position offers a hybrid work schedule
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s