Demo

INFORMATION SECURITY / CLOUD RISK MANAGEMENT, SR ASSOCIATE

Santander Holdings USA Inc
TX Full Time
POSTED ON 3/9/2025
AVAILABLE BEFORE 6/9/2025

Information Security / Cloud Risk Management, Sr Associate

Dallas, United States of America

The Senior Associate, Cloud Security & Risk Management within the Technology and Information Risk Management organization reports to the Director - Emerging Technology Risk and is responsible for ongoing oversight, assessment, management and reporting of technology and cybersecurity risks associated with the adoption and implementation of Cloud, across all operating entities. This role is established in the second line of defense and requires collaboration across IT, CISO, Data Office, Operational Risk, Internal Audit, and other relevant functional stakeholders within the organization in the management of Emerging Technology risks. An excellent understanding of the evolving regulatory landscape in the US and EU are vital for success in this role.

The Sr Associate Cloud Security & Risk Management monitors activities to minimize the company’s exposure to technology and information risk associated with the adoption and deployment of Cloud technologies. The day-to-day focus may vary depending on the requirements of the overall second line of defense program priorities directed by the Head of Technology Risk and may include : planned or ad-hoc technical risk reviews / identification, technical review of cloud security architectures, review and challenge activities of IT or Business initiatives, Risk reporting, remediation, development as well as review and challenge of technical risk framework and methodologies.

Essential Functions / Responsibility Statements :

  • Establish themselves as the second line of defense subject matter expert on Security risk management in Cloud technology.
  • Identify and assess technology and cybersecurity risks associated with the adoption and deployment of Cloud.
  • Participate in the independent and ongoing risk oversight of key technology components of the firm’s digital transformation initiatives.
  • Perform review and challenge of first line of defense risk management processes, data, and outcomes (e.g., risk assessments, control evaluations, risk metrics, mitigation plans, risk acceptances, etc.) and communicate risk opinions at various levels of management.
  • Participate in evaluation of new products / Business changes / projects and assess related emerging technology risks and impact to the technology risk profile.
  • Participate in the evaluation and management of risks related to third-party suppliers involved in technology projects related to the deployment of emerging technology or where emerging technologies introduced by third parties are a key component of the business activities.
  • Analyze risk data from various sources (e.g., external events, control deficiencies, risk register etc.) to identify and measure levels of risk, concentration, trends, and patterns.
  • Support process for constructive engagement across the Lines of Defense regarding differences or conflicts in risk appetite, risk metric determination or evaluation, issue severity or other areas of dispute.
  • Advises on remediation of regulatory findings, correction of any inconsistencies and monitors resolution.
  • Prepare information to enable governance committees / working groups in the management oversight of Cloud risks.
  • Initiate timely escalations to the Technology Risk leadership team.
  • Work across the lines of defense to recommend strategies that effectively treat risks within the risk appetite.

Qualifications : To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and / or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Education :

  • Bachelor's Degree in a technical discipline or equivalent work experience : Computer Science, Information Technology, Information Systems, Information Security. Req
  • Master's Degree in related technical disciplines. Pref
  • Professional Certifications in Cloud Security. Req.
  • Professional Certifications in one or more Emerging technology areas. Pref
  • Work Experience :

  • Overall professional experience of 5 years or more in Information Security implementation with a Cloud context. Implementation and configurations (hands-on experience) in a Cloud environment is a must.
  • In-depth knowledge of Information Security and knowledge of Cloud computing platforms such as AWS (Pref) / IBM / GCP / Azure
  • Practitioner experience in Cloud Security Risks with expertise in securing cloud environments (AWS pref) and understanding Cloud service models (IaaS, PaaS, SaaS)
  • Cloud Networking standards and best practices
  • Experience within a highly regulated environment such as the financial services industry.
  • Experience performing Cloud assurance activities.
  • Technical Skills :

  • Cloud Security Architecture
  • Hybrid network interconnectivity with on-premises data centers and cloud resources
  • Cloud security standards and best practices, including secure access, PAM, hybrid credential management, SSO, federated IAM, etc.
  • Encryption / Tokenization
  • Identity and Privilege Access Management
  • Security Monitoring / Incident response
  • Vulnerability Management
  • Back up and Disaster Recovery
  • Familiarity with microservices security principles and best practices
  • Experience with containerization technologies such as Docker and Kubernetes, including security Kubernetes clusters and containerized workloads.
  • Secure Application Development / DevSecOps / Containerization
  • Software-as-a-Service Platforms
  • Competencies and Abilities :

  • Demonstrated expertise and track record in Cloud security implementation, risk management, and ability to perform at an advanced level of competence.
  • Strong risk, process, and control validation and / or assessment skills.
  • Advanced knowledge of technical risk management best practices and how to implement them.
  • A keen sense of attention to details with a passion for impeccable documentation while having the ability to multi-task and adapt / adjust to multiple demands and competing priorities.
  • A team player who can coordinate and drive consensus among different teams and stakeholders having varying view points.
  • Ability to convey a sense of urgency and drive issues / projects to closure.
  • Excellent written and oral communication skills.
  • Excellent analytical, organizational and project management skills.
  • EEO Statement :   At Santander, we value and respect differences in our workforce.  We actively encourage everyone to apply.

    Santander is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, genetics, disability, age, veteran status or any other characteristic protected by law.

    Working Conditions : Frequent Minimal physical effort such as sitting, standing, and walking. Occasional moving and lifting equipment and furniture is required to support onsite and offsite meeting setup and teardown. Physically capable of lifting up to fifty pounds, able to bend, kneel, climb ladders.

    Employer Rights : This job description does not list all of the job duties of the job. You may be asked by your supervisors or managers to perform other duties. You may be evaluated in part based upon your performance of the tasks listed in this job description. The employer has the right to revise this job description at any time. This job description is not a contract for employment and either you or the employer may terminate at any time for any reason.

    Primary Location :   Dallas, TX, Dallas

    Other Locations :   Texas-Dallas,Massachusetts-Quincy,New Jersey-Florham Park,Florida-Coconut Grove

    Organization :   Santander Holdings USA, Inc.

    Salary : $93,750 - $165,000 / year

    Salary : $93,750 - $165,000

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a INFORMATION SECURITY / CLOUD RISK MANAGEMENT, SR ASSOCIATE?

    Sign up to receive alerts about other jobs on the INFORMATION SECURITY / CLOUD RISK MANAGEMENT, SR ASSOCIATE career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $220,784 - $286,649
    Income Estimation: 
    $123,246 - $161,441
    Income Estimation: 
    $152,549 - $188,894
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Santander Holdings USA Inc

    Santander Holdings USA Inc
    Hired Organization Address NJ Full Time
    Information Security / Cloud Risk Management, Sr Associate Dallas, United States of America The Senior Associate, Cloud ...
    Santander Holdings USA Inc
    Hired Organization Address NJ Full Time
    Senior Associate, Workout Trenton, United States of America The Commercial Real Estate Workout Senior Associate Leverage...
    Santander Holdings USA Inc
    Hired Organization Address Boston, MA Full Time
    US Control Room Officer - Vice President, Corporate & Investment Banking (CIB) at Santander Holdings USA Inc summary : T...
    Santander Holdings USA Inc
    Hired Organization Address PA Full Time
    Commercial & Wholesale Operations Analyst Wyomissing, United States of America Essential Functions / Responsibilities : ...

    Not the job you're looking for? Here are some other INFORMATION SECURITY / CLOUD RISK MANAGEMENT, SR ASSOCIATE jobs in the TX area that may be a better fit.

    Cloud Security & Risk Management Sr Associate

    Santander Holdings USA Inc, Florham Park, NJ

    AI Assistant is available now!

    Feel free to start your new journey!