Job Directory Infrastructure Remediation Analyst

Infrastructure Remediation Analyst
Chicago, IL

Companies like
are looking for tech talent like you.

On Hired, employers apply to you with up-front salaries.
Sign up to start matching for free.

About

Job Description

Job Description:

Are you passionate about working with the best information security team in the world? Bank of America is hiring top talent to join our team.

The Business Information Security Officer (BISO) function within Global Information Security is responsible for information security control enforcement, cybersecurity awareness, and enablement across all lines of business, enterprise functions, technology, and operations teams. The BISO team also leads cybersecurity external engagement.Standard Job Description

This position will be a member of the GIS Enterprise Infrastructure Remediation Governance team. In this role, you will help implement, manage, and monitor infrastructure remediation efforts to protect the confidentiality, integrity, and availability of the line of businesses' (LOB) information assets. You will partner with LOB points of contact, technology points of contact, and application teams to track and/or develop remediation plans for identified vulnerabilities. You will present key findings, progress, and all hurdles and issues to GIS and LOB leadership on a regular basis and be responsible for influencing the stakeholders to prioritize/execute risk management issues and drive remediation efforts. The Information Security LOB Specialist will carry out these responsibilities in collaboration with IT, business technology groups, risk partners and GIS teams across their respective LOB. Key responsibilities: • Analyze findings from security monitoring systems such as Qualys Scanning, Network Configuration Compliance, and Security Compliance, to identify and direct a respond to all potential security incidents and data breaches. • Review all current and existing vulnerabilities for active and acceptable remediation plans. These plans may be reviewed with LOB point of contacts, Application Owners, Data Owners / Custodians or System Administrators. Verify that remediation plans are implemented per remediation plan and GIS guidelines. Review and identify any potential gaps that may result in possible audit issues. • Drive remediation of end-user device type vulnerabilities. • Assist in improving the governance of end-user remediation and act as the subject matter expert of end-user remediation governance. • Review all vulnerability scan results to identify all security risks and report on findings to appropriate partners. • Respond to relevant requests received from stakeholders, or representatives of stakeholders, for investigation of potential reporting issues. • Provide all necessary reports and presentations on the status of remediation efforts and all gaps and potential obstacles or issues to management and technical staff. • Performs other related duties incidental to the work described herein and all special assignments as needed or assigned. Required Skills: • 4+ years of experience in information security and/or project management roles • Good communication skills, and the ability to understand and translate cyber security threats from a technical perspective to business-line understanding and execution; ability to communicate risks and propose counter measures to senior technology executives • Well-developed analytic, qualitative, and quantitative reasoning skills and demonstrated creative problem solving abilities with complementary skills for log analytics and diagnosis skills utilizing regular expression and/or scripting • Ability to work independently on initiatives with little oversight. Motivated and willing to learn • Broad technical background utilizing security technologies, such as Server and workstation Operating Systems, Network Security, Vulnerability Scanning Engines, and Compliance Management solutions • Strong PC skills including Microsoft Office applications • Proven project management Skills Desired Skills: • Bachelors and/or Master's degree in Computer Science, Information Technology or related field • Strong analytical skills/problem solving/conceptual thinking • Ability to effectively communicate with Technical and Non-Technical business owners • Assist with internal efficiencies projects and development

This position will be a member of the GIS Enterprise Infrastructure Remediation Governance team. In this role, you will help implement, manage, and monitor infrastructure remediation efforts to protect the confidentiality, integrity, and availability of the line of businesses' (LOB) information assets. You will partner with LOB points of contact, technology points of contact, and application teams to track and/or develop remediation plans for identified vulnerabilities.

You will present key findings, progress, and all hurdles and issues to GIS and LOB leadership on a regular basis and be responsible for influencing the stakeholders to prioritize/execute risk management issues and drive remediation efforts. The Information Security LOB Specialist will carry out these responsibilities in collaboration with IT, business technology groups, risk partners and GIS teams across their respective LOB.Responsibilities• Analyze findings from security monitoring systems such as Qualys Scanning, Network Configuration Compliance, and Security Compliance, to identify and direct a respond to all potential security incidents and data breaches.

* Review all current and existing vulnerabilities for active and acceptable remediation plans. These plans may be reviewed with LOB point of contacts, Application Owners, Data Owners / Custodians or System Administrators. Verify that remediation plans are implemented per remediation plan and GIS guidelines. Review and identify any potential gaps that may result in possible audit issues.
* Drive remediation of end-user device type vulnerabilities.
* Assist in improving the governance of end-user remediation and act as the subject matter expert of end-user remediation governance.
* Review all vulnerability scan results to identify all security risks and report on findings to appropriate partners.
* Respond to relevant requests received from stakeholders, or representatives of stakeholders, for investigation of potential reporting issues.
* Provide all necessary reports and presentations on the status of remediation efforts and all gaps and potential obstacles or issues to management and technical staff.
* Performs other related duties incidental to the work described herein and all special assignments as needed or assigned.Required Skills and Experience• 4+ years of experience in information security and/or project management roles
* Good communication skills, and the ability to understand and translate cyber security threats from a technical perspective to business-line understanding and execution; ability to communicate risks and propose counter measures to senior technology executives
* Well-developed analytic, qualitative, and quantitative reasoning skills and demonstrated creative problem solving abilities with complementary skills for log analytics and diagnosis skills utilizing regular expression and/or scripting
* Ability to work independently on initiatives with little oversight. Motivated and willing to learn
* Broad technical background utilizing security technologies, such as Server and workstation Operating Systems, Network Security, Vulnerability Scanning Engines, and Compliance Management solutions
* Strong PC skills including Microsoft Office applications
* Proven project management skillsDesired Skills and Experience• Bachelors and/or Master's degree in Computer Science, Information Technology or related field
* Strong analytical skills/problem solving/conceptual thinking
* Ability to effectively communicate with Technical and Non-Technical business owners
* Assist with internal efficiencies projects and development

Posting Date: 05/22/2019

Location: Chicago, IL, 135 S LA SALLE ST (IL4135), - United States

Travel: No

Full / Part-time: Full time

Hours Per Week: 40

Shift: 1st shift

Let your dream job find you.

Sign up to start matching with top companies. It’s fast and free.