Jobs and Careers
FE

Sr./IT Security Analyst

Federal Reserve System
San Francisco, United Statesfull_timeVerifiedPosted 29 May 2024
💰 $181,600/yr($97,600/yr$181,600/yr)

About the role

Company

Federal Reserve Bank of San Francisco

We are the Federal Reserve Bank of San Francisco—public servants with a mission to advance the nation’s monetary, financial, and payment systems to build a stronger economy for all Americans. We are a community-engaged bank, and are committed to understanding and serving the vibrant, expansive communities of the Twelfth District. That means we seek and appreciate new perspectives. We respect people for what they do and for who they are. We build opportunities to learn and grow. When you join the SF Fed, you become part of a diverse team united in its purpose to promote an economy that works for everyone.

The Federal Reserve Bank of San Francisco is looking for a Sr./IT Security Analyst to join our Information Security team.

What we are looking for:
Our ideal candidate has a strong security approach, a background in Information Security Risk Management, and is confident providing cyber security advice to leaders all the way to the executive level. You should have the ability to partner with business partners to find solutions, be comfortable presenting to groups of varying sizes, have strong customer service and relationship building skills, and be able to build trust and influence with technical and non-technical partners. Overall, the ability to proactively drive solutions, effectively collaborate across many disciplines and businesses, and a strong commitment to supporting the mission of the Federal Reserve are a must.

What you will do:
In this role, you will perform at an advisory level and demonstrate your experience in Information Security Risk Management and Information Security to develop positive working relationships and collaborate with various District organizations to advise on all efforts related to “Security Assurance for the Federal Reserve” (SAFR) for internal technologies and external service providers.

You will work with the other members of the Risk Management and Assessment Function of the Information Security team to perform risk assessments, communicate and document information security risk, evaluate security controls, and assess the quality of security control documentation. You will work with business partners to collect relevant information for both on-premises systems and third-party systems. You will provide risk guidance to ensure that senior leadership understands the key risks in the systems they own and how accepted risk compares with the risk appetite of the organization.

We empower our people to balance their life and work responsibilities. That’s why we offer a flexible hybrid work model that allows you to collaborate with office colleagues on some days, and work from home on others.

Essential responsibilities:

The ideal candidate for this role will have the ability to blend and apply their technical, organizational, business, and cyber security abilities, to:

  • Support 12th District risk strategies, identify risks in Bank processes and technologies, and lead improvement initiatives to manage risk.
  • Serve as a domain expert on security policy in the 12th District and influence policy development at the Federal Reserve System level.
  • Support and advise partners on compliance with Bank and FRS security controls, policies, and procedures.
  • Establish and foster long-term relationships with partners and contacts in assigned business areas.
  • Drive education of process/control owners, so they better understand the controls framework and their operational responsibilities.
  • Evaluate and advise application development teams on Secure Cloud Development and Operations practices.
  • Understand technical implementation details necessary to assess security risk in Cloud and on-prem environments and recommend security control improvements or identify mitigating controls.
  • Perform complex analysis of security issues and advise business partners on solutions.
  • Partner with developers and business areas to understand their technical and business requirements and help enable them to do their work securely.
  • Evaluate external service providers to identify and communicate associated risks and identify shared security responsibility between the vendor and the Federal Reserve.
  • Prepare assessment reports to document assessment scope, procedures, findings, and recommendations; interpret the significance of assessment findings, conclude on findings, and make practical recommendations for remediation.
  • Communicate security risk and implications to partners at all levels, including executives.
  • Collaborate and influence work multi-functionally; navigate ambiguity while leading multiple projects simultaneously in a fast-paced, results-driven environment, accepting accountability of the process and delivering on commitments.

Requirements:

    Apply for this role

    Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

    Apply Now →Generate Application Kit

    Free account required — sign up in 30s

    Company

    Federal Reserve System

    View company profile →