Information Security Analyst
Your Journey Starts Here:
Santander is a global leader and innovator in the financial services industry. We believe that our employees are our greatest asset. Our focus is on fostering an enriching journey that empowers you to explore diverse career opportunities while nurturing your personal growth. We are committed to creating an environment where continuous learning and development are prioritized, enabling you to thrive both professionally and personally. Here, you will find ample opportunities to connect and collaborate with talented colleagues from around the world, sharing insights and driving innovation together. Join us at Santander, where you are supported by a culture of engagement and a commitment to your success.
An exciting journey awaits, if you are interested in exploring the possibilities We Want to Talk to You!
The Difference You Make :
The Sr. Specialist, Information Security develops and implements information security standards and procedures. Provides tactical information security advice and examining the ramifications of new technologies. Ensures that all information systems are functional and secure. Plans, implements, upgrades, or monitors security measures for the protection of computer networks and information. In addition, the incumbent ensures security controls are in place that will safeguard digital files and vital electronic infrastructure. They may respond to computer security breaches and viruses.
- Work closely with the New York Information Security and Santander US Identity and Access Services teams, and Business Owners to address any New York related IAM, PAM and Single Sign On (SSO) related issues including related regulatory requirements to mature the information security program.
- The submission, approval, creation, and removal of accounts, entitlements, application roles, and business roles follows documented processes and procedures with clearly defined roles and responsibilities.
- User Active Directory accounts unused for the previous 90 calendar days are reviewed for inactivity and, if confirmed to be inactive, disabled or removed.
- All certified access rights are documented and current. Technology Platform Owners identifies users whose access rights violate the Separation of Duty (“SoD”) rules and are reviewed with managers/supervisors. Any exceptions are documented, risk-assessed, and formally approved within 30 business days of the management review.
- The recertification process is performed as a formal review of information assets to confirm that all granted access rights entitlements remain valid, updated, and in full compliance with the Segregation of Duties (SoD) rules and Principle of Least Privilege.
- All assets are onboarded to the Privileged Access Management System (PAMS) such as CyberArk and a process is defined to periodically review and recertify the accounts including groups they belong to.
- Perform risk assessments and control gap analysis against Information Security Policies and Standards.
- Support coordination for closure of gaps identified with Standard Requirements and Cyber Risk Assessment methodology.
- Analysis, evidence gathering and documenting compliance with Federal Financial Institutions Examination Council (FFIEC) Cybersecurity Assessment Tool (CAT), NYDFS 23 NYCRR 500 cybersecurity or any other regulatory requirements.
What You Bring :
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
- Experience in information security, identity and access management, privileged access management, Single Sign On, Azure Active Directory integration, Cloud Framework, IT audit, or information technology risk management
- Knowledge of risk assessments and compliance of major regulatory initiatives (e.g., SOX, NYDFS)
- Knowledge with cyber security and information security program management and frameworks (e.g., NIST CSF, ISO/IEC 27000, etc.)
- Possess the ability to perform under pressure in a challenging environment.
- A hunger to learn and take on challenging opportunities contributing to the success of information security team.
- Possess a highly developed sense of personal accountability and follow-through with an ability to effectively prioritize multiple tasks and projects.
- Proven ability to work in team environment.
- Must take ownership, demonstrate a sense of urgency, and ensure accuracy and quality.
- Bilingual in Spanish is a plus.
It Would Be Nice For You To Have :
Established work history or equivalent demonstrated through a combination of work experience, training, military service, or education.
What Else You Need To Know :
The base pay range for this position is posted below and represents the annualized salary range. For hourly positions (non-exempt), the annual range is based on a 40-hour work week. The exact compensation may vary based on skills, experience, training, licensure and certifications and location.
Base Pay Range
Minimum:
$63,750.00 USDMaximum:
$105,000.00 USDLink to Santander Benefits:
Risk Culture:
We embrace a strong risk culture and all of our professionals at all levels are expected to take a proactive and responsible approach toward risk management.
EEO Statement:
At Santander, we value and respect differences in our workforce. We actively encourage everyone to apply. Santander is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, genetics, disability, age, veteran status or any other characteristic protected by law.
Working Conditions :Frequent minimal physical effort such as sitting, standing and walking is required for this role. Depending on location, occasional moving and lifting light equipment and/or furniture may be required .
Employer Rights:This job description does not list all of the job duties of the job. You may be asked by your supervisors or managers to perform other duties. You may be evaluated in part based upon your performance of the tasks listed in this job description. The employer has the right to revise this job description at any time. This job description is not a contract for employment and either you or the employer may terminate your employment at any time for any reason.
What To Do Next :
If this sounds like a role you are interested in, then please apply.
We are committed to providing an inclusive and accessible application process for all candidates. If you require any assistance or accommodation due to a disability or any other reason, please contact us at [email protected] to discuss your needs.
Primary Location: New York, NY, Liberty Street
Other Locations: New York-New York
Organization: Banco Santander S.A.
Recommended Jobs
Junior Drupal Developer
Job Title: Junior Drupal Developer Location: Albany NY (Hybrid) We are currently seeking candidates who meet the following qualification Qualification: Experience in developin…
Software Developer (Architecture, Technical Standards, Coding Standards, Multi-leveled Architecture, Angular, RESTful API, HTML5, Javascript, CI/CD, Git, SQL Server, Design Patterns) in Brooklyn, NY
Software Developer (Architecture, Technical Standards, Coding Standards, Multi-leveled Architecture, Angular, RESTful API, HTML5, Javascript, CI/CD, Git, SQL Server, Design Patterns) in Brooklyn, NY …
Creative Kids Fit Leader (Dancers, Yogis, CPTs, Actors)
About FitFUNd We are a new innovative startup and looking to grow our talent pool. Our pop-up nature allows our staff to have employment flexibility to work when and where they want. We are pop…
Senior Data Scientist
Who we are: First Street is the standard for Climate Risk Financial Modeling. We use transparent and peer-reviewed methodologies to calculate the past, present, and future climate risk for every pro…
Field Engineer
Field Engineers are the front-line to customers to implement their publishing technology needs. An ideal candidate has a technical mind with a creative eye, and an internal drive to push publishing te…
Senior Associate, Investor Relations
About Teneo Teneo is the global CEO advisory firm. We partner with our clients globally to do great things for a better future. Drawing upon our global team and expansive network of senior advisor…
Registered Nurse (RN)
Job Description Job Description Affirmed Home Care is Hiring Skilled RNs – Long Island Region Are you a dedicated Registered Nurse looking for meaningful, one-on-one care opportunities? Join…
Senior Java Developer
Job Title: Senior Java Developer Location: Remote Employment Type: Full-time About Us We are the operational infrastructure for digital assets, empowering regulated financial …
Founding Frontend Engineer (Growth Team)
About GPTZero GPTZero is on a mission to restore trust and transparency on the internet. As the leading AI detection platform, we empower educators, students, journalists, marketers, and writers t…
Cocktail Server (Part-Time), 42nd and Sky Bar Lounge - Hilton New York Times Square
The Hilton New York Times Square is looking for a part-time Cocktail Server, 42nd Sky Bar Lounge to join our team. Located at the heart of Times Square, this upscale hotel soars 44 stories above…