Washington, District of Columbia
22 hours ago
Third Party Information Security Consultant (Assessor exp. required)

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates’ physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.

Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

Responsibilities:

This role is responsible for data analysis, reporting, and automation of third-party data reports within the Specialized Subcategory Cyber Assurance Program (SSCA). Key responsibilities include analyzing and interpreting wide sets of data, developing solutions and program improvements, and automating reporting to help drive efficiency within SSCA. This role will require collaborating with management and stakeholders within the SSCA program, including analysts, program managers, and governance leads within SSCA.

Review third party data with an information security lens

Identify root causes and proactively identify risk and thematic trends in the vendor population

Collaborate with partners in the SSCA program to build action plans to remediate any identified gaps

Effective communication with stakeholders, both spoken and written

Collaborate with stakeholders to identify solutions based on data analytics

Design Dynamic Dashboards and automated reporting with Tableau and Alteryx

Required Qualifications:

3+ years as a Third Party Information Security Assessor

Previous audit, assessment, threat intelligence or OSINT experience

Previous data analysis experience

Proactive in Problem Solving

Process Innovator

Metrics and reporting experience

Collaboration skills

Strong verbal and written communication skills across multiple levels of the organization

Self-starting, organized, and requiring minimal management oversight

Previous experience with Tableau

Ability to work on complex components of large reporting platforms.

Desired Qualifications:

Python/SQL language proficiency

Microsoft Office skills including Excel and PowerPoint

Knowledgeable of various Security Frameworks (NIST, ISO 27001, SOC 2 Type II, PCI, etc.,)

Proficiency in Alteryx

Shift:

1st shift (United States of America)

Hours Per Week: 

40

Confirmar seu email: Enviar Email