Lead Information Security & Privacy Advisor- Risk & Controls
USAAAbout the role
Why USAA?
At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families.
Embrace a fulfilling career at USAA, where our core values – honesty, integrity, loyalty and service – define how we treat each other and our members. Be part of what truly makes us special and impactful.
The Opportunity
As a dedicated Lead Information Security & Privacy Advisor- Risk & Controls, you will provide critical support and hands-on expertise in managing Information Security and Privacy risks and controls across various technology initiatives. This role is pivotal in identifying and assessing risks, driving remediation efforts for audit and exam findings, managing security-related issues, and conducting rigorous control testing and validation. The ideal candidate will be highly technical, with a proven ability to translate complex risk landscapes into actionable plans, deliver timely results, and expertly navigate through uncertainties and evolving threat environments. This individual will partner closely with engineering, product, and other business units to ensure robust security controls are implemented and maintained, fostering a proactive risk management culture.
Promotes risk-awareness and the overall effectiveness of risk and compliance management programs, risk analytics and operations in the business. This role will partner and collaborate with Compliance and Risk Management, as well as Business Operations, IT, Audit Services, and Regulators to support risk and compliance-based initiatives. Responsible for supporting business leader adherence to the established risk framework and ongoing supervision of business controls; including, risk and control self-assessments, identification and evaluation of control effectiveness, identifying control failures, facilitating risk and compliance remediation, internal and external audits and regulatory exams, and monitoring of the first line of defense to minimize risk exposures and strengthen the overall control environment. Manages risk assessment data and uses critical thinking to identify key data-driven insights tied to first line of defense.
We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in one of the following locations: San Antonio; TX, Plano; TX, Phoenix; AZ, Charlotte; NC, Tampa; FL, Colorado Springs; CO. Relocation assistance is not available for this position.
What you'll do:
Directs and oversees multiple initiatives in support of risk and/or regulatory compliance related initiatives including but not limited to: oversight of procedures/process, accurate regulatory reporting and filing, document governance, risk control self-assessments, procedure governance, control design, new product controls, CoSA Third Party Governance, or quality governance.
Applies a holistic understanding of risk and regulatory compliance to includes business strategies and solutions.
Responsible for first line of defense data analysis, report preparation and trend analysis, utilizing business intelligence tools.
Designs solutions for unanswered business questions and anticipates future business needs.
Directs, organizes and oversees action plans designed to enhance governance practices in alignment with risk and compliance frameworks.
Influences and develops innovative solutions to mitigate risk and prevent risk exposures which result in significant business impacts.
Manages the most complex projects involving cross-functional areas within the first line of defense.
Defines and outlines new approaches to problem resolution and leads project team from concept through implementation.
Advises senior management on the status of their control environment related to risk identification and control weaknesses.
Identifies critical areas to monitor and escalates issues and findings to appropriate stakeholders.
Serves as a primary resource to cross functional team members and advises on risk mitigation opportunities.
Stays informed of changes to the regulatory environment to ensure proper compliance with processes and requirements are followed.
Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
What you have:
Bachelor’s degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s