Information Security Analyst Senior
USAAAbout the role
Why USAA?
Let’s do something that really matters.At USAA, we have an important mission: facilitating the financial security of millions of U.S. military members and their families. Not all of our employees served in our nation’s military, but we all share in the mission to give back to those who did. We’re working as one to build a great experience and make a real impact for our members.
We believe in our core values of honesty, integrity, loyalty, and service. They’re what guides everything we do from how we treat our members to how we treat each other. Come be a part of what makes us so special!
The Opportunity
The Cyber Threat Enterprise Capabilities (CTEC) Team is seeking a dedicated Information Security Analyst Senior that will work in a team responsible for front-line management of model risk in the cybersecurity domain. This role involves collaborating across the 3 Lines of Defense (Specifically: Cyber Threat Operations Center, Information Technology, Compliance, Risk and Audit), relationship-building, technical analysis, solutioning and technical writing which needs an individual with demonstrated skills and experience in cybersecurity with a focus on model risk management. The position provides centralized model life-cycle management for all Cyber Threat Operations Center (CTOC) technology solutions that contain custom and vendor models. The position will define data science life-cycle management requirements; conduct rapid and through research of custom and vendor solutions; develop and/or analyze model features; lead development and integration, testing and validation of models; designing and operating model risk performance tools; operational and model risk compliance technical writing; vendor and stakeholder communications.
We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based out of the San Antonio; TX, Plano; TX , Phoenix; AZ,. Relocation assistance is not available for this position.
Investigates, analyzes, and responds to security anomalies and events (e.g. suspicious behavior, attacks, and security breaches) within USAA’s environments using a variety of cyber defense tools to detect and respond to threats. Conducts vulnerability, security configuration, and/or penetration testing assessments of systems and networks. Identifies cyber threats, analyzes operational impacts, and communicates to appropriate stakeholders. Stays current with latest information security threats, exploits, trends, and intelligence.
What you'll do:
Leads peers and team members in the execution of the Information Security domain activities while anticipating efforts that will impact their team.
Researches and analyzes the latest information security vulnerabilities, threats, exploits, trends and intelligence. Shares intelligence with peer teams.
Conducts advanced vulnerability management, security configuration assessments, and/or penetration testing operations and manages the resulting findings.
Develops analysts through training and knowledge sharing activities.
Monitors internal and external networks, systems, and applications for advanced security anomalies and events (e.g. suspicious behavior, attacks, and security breaches). Trains analysts in incident detection and response.
Responds to cyber incidents, performing detailed analysis using complex security tools to determine root cause and impact by using a broad range of demonstrated experience (e.g. forensics, networking, servers, coding, etc.) to determine a malicious actor's tactics, techniques, and procedures. Trains new analysts in incident detection and response.
Utilizes discoveries from the incident response process to make significant and/or complex improvements to the existing detection capabilities, operational processes and security controls.
Prepares and delivers written and/or verbal briefs with recommendations to senior leadership on latest threats, alerts, incidents, and improvements.
Provides insight on issues and serves as a mentor and coach to peers and team members for assigned area of responsibility.
Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
What you have:
Bachelor’s degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
6 years of related experience in Information Security, Cybersecurity and/or In
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s