CrawlJobs Logo

Senior Lead Cloud & Ai Risk Information Security Analyst

United States, Chandler Employment contract 159000.00 - 254000.00 USD / Year · Job Posted June 30, 2026
Apply Position
Job Link Share

Job Description

Wells Fargo is a Senior Lead Cloud & AI Risk Information Security Analyst. This person will report to the Head of Cloud & AI Security Governance, Risk & Controls. This role will be responsible for executing Cloud & AI Security risk and controls identification, assessment, monitoring and governance activities to ensure cloud and AI implementations, adhere to the control framework and security requirements. In addition, support the continuous enhancement of the framework, ensuring its alignment to Wells Fargo policy and threat vectors and drive automation with the development team to ensure scalability, reliability and audit-readiness of the teams functions. Candidates for this role must be knowledgeable of industry standard frameworks, Risk Management principles, Cyber risk controls and analytics, and system/product development.

Job Responsibility

  • Evaluate cloud and AI cybersecurity risk and adherence to the control framework across all service (public, private, hybrid, multi-cloud) and deployment models (SaaS, PaaS. IaaS) to ensure cloud and AI workloads are secure prior to deployment
  • Identify, analyze and escalate risk across cybersecurity related functions and controls
  • Monitor, measure and report control adherence and the risk profile
  • Implement and manage post-deployment quality assurance of cybersecurity related processes, technologies and controls
  • Develop and monitor cloud security metrics, key risk indicators, key performance indicators to provide an aggregate risk view that informs decision-making
  • Evaluate control environments across the enterprise, platform and application layer, through root cause analysis and solution advice to ensure sustainable mitigation
  • Oversee and provide cloud expertise for audit, testing and regulatory examinations
  • Create and present cloud specific risk details in relevant risk committees and governance routines
  • Support the continuous enhancement and adoption of the Cloud Security Control Framework
  • Develop requirements for automation capabilities in support of Cloud & AI Security Risk & Control and support launch activities through testing, training and awareness
  • Engage with all levels of professionals and managers companywide and serve as an experienced advisor to leadership
  • Participate in external industry organizations related to cloud security risk and controls

Requirements

  • 7+ years of Information Technology in support of business services experience, or equivalent demonstrated through one or a combination of the following work experience, training, military experience, education
  • 5+ years of cloud cybersecurity, cyber risk management and controls experience
  • 5+ years of experience with related industry standards for cloud (i.e. NIST, CSA-CCM, FFIEC, CRI Institute, CIS Profile)

Nice to have

  • Cloud, Risk and Cybersecurity certification (e.g. CISA, CISM, CISSP, CRISC, CCSK)
  • Understanding of cybersecurity threats, trends and industry best practices and security tools
  • Finance sector security experience or other regulated 'critical infrastructure' industry (e.g. utilities, health care, government)
  • Ability to communicate confidentially, professionally, and effectively, in both written and verbal formats, with stakeholders and partners
  • Strong analytical skills and ability to solve complex problems with minimal direct oversight
  • Ability to handle multiple, high priority deliverables concurrently
  • Experience with standard Microsoft Office tools and products

What we offer

  • Health benefits
  • 401(k) Plan
  • Paid time off
  • Disability benefits
  • Life insurance, critical illness insurance, and accident insurance
  • Parental leave
  • Critical caregiving leave
  • Discounts and savings
  • Commuter benefits
  • Tuition reimbursement
  • Scholarships for dependent children
  • Adoption reimbursement

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Senior Lead Cloud & Ai Risk Information Security Analyst

8 matching positions

Senior Analyst, Security Operations Center

The Senior Analyst, Security Operations Center (SOC) is a technical leader respo...
Location
Location
United States , Charlotte
Salary
Salary:
Not provided
brightspeed.com Logo
Brightspeed
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Associate's degree in Computer Science, Information Systems, Engineering, Technology, or related field or equivalent experience/training
  • Experience managing cases/incidents
  • Ability to think analytically
  • Robust creativity and problem-solving skills
  • Knowledge of technical systems and terminology
  • Proficiency in threat management analysis and dissemination
  • Proficiency in scripting languages
  • Advanced written and verbal communication skills
Job Responsibility
Job Responsibility
  • Lead incident response efforts for high-severity and complex security events, serving as the primary technical coordinator during major incidents
  • Act as escalation point for junior analysts, providing technical guidance and decision support in real time
  • Oversee daily SOC operations, including shift management, workload distribution, and quality assurance of investigations
  • Conduct post-incident reviews and facilitate lessons-learned sessions to drive continuous improvement
  • Mentor and train junior analysts to elevate team capabilities and strengthen overall SOC maturity
  • Perform advanced threat analysis, including APT detection, multi-stage attack correlation, and deep analysis of threat actor tactics, techniques, and procedures (TTPs)
  • Lead proactive threat hunting initiatives across cloud, network, identity, and endpoint environments
  • Design and implement advanced detection rules, correlation logic, queries, and dashboards in SIEM and SOAR platforms
  • Develop custom automation playbooks to accelerate investigation, triage, and containment processes
  • Evaluate and recommend enhanced SOC technologies, detection techniques, and analytic capabilities
What we offer
What we offer
  • Competitive compensation
  • Comprehensive benefits
  • Medical, dental, vision, and life insurance
  • Employee assistance program
  • 401K plan with company match
  • Voluntary benefits
  • Fulltime
Read More
Arrow Right

Senior Technical Security Analyst

As a Technical Security Analyst on the Trust team, you'll be a part of a highly ...
Location
Location
Salary
Salary:
Not provided
shopify.com Logo
Shopify
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • an understanding of information security fundamentals, privacy and compliance standards
  • an understanding of cloud technologies, containerized environments and infrastructure as code
  • experience working with compliance teams or auditors and familiarity with compliance programs such as SOC, PCI, or SOX
  • experience building or maintaining controls and security safeguards for frameworks
  • experience using automation to simplify security and IT practices
  • familiarity with AI tooling, and how to integrate it to accelerate your workflows and augment your skills
  • ability to create and maintain trusted relationships
  • excellent communication skills, including technical breakdowns
  • passion for documenting strategy and approach
  • demonstrated impact in performing assessments
Job Responsibility
Job Responsibility
  • provide operational security guidance to ensure programs are running effectively, efficiently and without gaps
  • collaborate with cross functional teams and gather evidence for assessments, implementations, and use of new tools and workflows
  • automate and improve security workflows and tasks across the scope of our security programs
  • evaluate and instantiate the third parties, and build controls that balance security with speed
  • monitor Shopify’s current control stack and make recommendations to reduce security risk
  • lead and contribute to projects that build out and harden security at Shopify
  • contribute to the management and execution of cyclical controls within operational frameworks
  • collect evidence and samples to support audit activities and ensure compliance with relevant standards
  • supporting the development and implementation of new projects and initiatives, ensuring alignment with strategic goals
  • increase automation and reducing toil in existing controls, and finding new ways to protect Shopify against emerging risks
Read More
Arrow Right
New

Senior Analyst, People Technology & Reporting

Leads the configuration, support, and optimization of Workday Learning, Performa...
Location
Location
United States
Salary
Salary:
79846.00 - 105000.00 USD / Year
siriusxm.com Logo
SiriusXM
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Typically requires 3+ years and a Bachelor's degree
  • or equivalate work experience
  • Hands-on experience supporting and improving Workday in a People Technology / HRIS environment, with a strong focus on Learning Management, Performance & Talent Management, and Recruiting technology support
  • Functional knowledge of Workday Learning and Talent modules, including configuration, business processes, reporting, and end-user support
  • Experience supporting recruiting operations and recruiting technology platforms, including applicant tracking systems, integrations, reporting, and process optimization
  • Solid Workday HCM fundamentals including worker, job, position, organizational structures, business process configuration, validations, condition rules, and security concepts
  • Strong requirements gathering and stakeholder management skills
  • able to translate business requirements into practical, scalable, and compliant system solutions
  • Proven troubleshooting ability across configuration, business processes, reporting, integrations, and security
  • strong testing discipline including test planning, execution, validation, and documentation
Job Responsibility
Job Responsibility
  • Leads the configuration, support, and optimization of Workday Learning, Performance & Talent Management processes, ensuring accurate, scalable execution and a seamless employee and candidate experience
  • Translates People + Culture strategy into effective system solutions and standardized processes
  • Drives data integrity, reporting, and operational efficiency across learning, talent, recruiting, and workforce skills data, reducing risk and manual effort while enabling timely, informed decision-making
  • Strengthens People Technology & Reporting capabilities through improved controls, process standardization, scalable delivery, and support of SiriusXM’s evolution toward a skills-based organization
  • Own day-to-day configuration and support for Workday Learning, Performance & Talent Management, and Recruiting-related processes, ensuring accuracy, scalability, and a strong end-user experience
  • Configure and maintain Learning and Talent components, including learning content structures, enrollment rules, performance and talent review processes, succession planning, business processes, condition rules, validations, notifications, and approval routing
  • Partner with Learning & Development, Talent Management, Talent Acquisition, HRBPs, and business stakeholders to translate business requirements into Workday configuration and repeatable operational processes
  • Serve as the primary functional lead for Workday Learning Management, including content management, learning campaigns, assignments, reporting, compliance tracking, and learner experience optimization
  • Support Talent Management processes including goal management, performance reviews, talent assessments, succession planning, career development, skills tracking, and talent calibration activities
  • Partner with Talent Acquisition to support recruiting operations, candidate lifecycle processes, integrations, vendor management, reporting, and system enhancements across the recruiting technology ecosystem
  • Fulltime
Read More
Arrow Right

Apps Dev Tech Sr Lead Analyst Java SVP

Apps Dev Tech Sr Lead Analyst Java SVP at Citi. Own and drive end-to-end migrati...
Location
Location
India , Chennai, Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's or Master's degree in Computer Science, Information Technology, Engineering, or a related technical discipline
  • 12–16 years of progressive software engineering experience, with at least 5 years in a senior technical leadership role (Tech Lead, Staff Engineer, principle)
  • Demonstrated experience leading or significantly contributing to at least one large-scale Mainframe modernisation or legacy platform migration programme
  • Prior experience in financial services, banking, or a similarly regulated industry strongly preferred
  • Java 17/21 (Expert), Python, COBOL / JCL (reading & assessment level)
  • Spring Boot, Spring Cloud, Spring Security, Spring Data JPA, Project Reactor / WebFlux
  • OpenShift, Kubernetes, Docker, Helm
  • Tekton, Harness, Jenkins, Git (Bitbucket / GitHub), Artifactory, SonarQube
  • Oracle, MongoDB, PostgreSQL, MS SQL Server, Redis, DB2/z
  • Apache Kafka, IBM MQ
Job Responsibility
Job Responsibility
  • Own and drive end-to-end migration of legacy Mainframe workloads (COBOL, JCL, CICS, IMS, DB2/z) to modern Java-based microservices deployed on enterprise container platforms (OpenShift / Kubernetes)
  • Conduct application assessments to identify migration candidates, define target-state architectures, and produce sequenced migration roadmaps with risk registers and rollback plans
  • Establish reusable migration patterns, tooling, and runbooks to accelerate successive migration waves
  • Leverage AI-assisted code translation tools (e.g., autonomous AI coding agents such as Devin) to automate COBOL-to-Java conversion at scale, with human-in-the-loop review gates
  • Validate functional parity post-migration through automated testing strategies (unit, integration, regression, performance)
  • Identify and quantify cost-reduction opportunities across MIPS consumption, software licensing, infrastructure footprint, and operational overhead
  • Build and maintain a technology cost model
  • track savings realisation against committed targets on a monthly cadence
  • Drive rationalisation of redundant systems, decommission end-of-life platforms, and consolidate tooling to reduce Total Cost of Ownership (TCO)
  • Partner with Finance and Vendor Management to renegotiate contracts and optimise spend through right-sizing, reserved capacity, and FinOps practices
  • Fulltime
Read More
Arrow Right

SOC Lead - Cyber Security Operations

We are seeking an experienced SOC Lead to head Vodafone’s Security Operations Ce...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years in security operations, including at least 4+ years in a SOC leadership or senior incident response role
  • Proven leader of 24x7 SOC teams, with a strong track record of improving MTTT/MTTR, triage quality, and operational performance
  • Technical authority in incident response, capable of leading complex investigations and making sound decisions under pressure
  • Highly experienced with SIEM platforms such as Splunk, Microsoft Sentinel, Google SecOps, ArcSight, or QRadar, and familiar with EDR/NDR technologies
  • Skilled in driving SOC automation, SOAR, and AI-enabled capabilities, with a clear understanding of governance and responsible use
  • Knowledgeable across network, endpoint, and cloud security, with a strong grasp of attacker techniques and the MITRE ATT&CK framework
  • Analytical decision-maker who balances risk, speed, and business impact in ambiguous situations
  • Passionate about developing people and building sustainable SOC capability for the future
  • Educated to degree level in Cyber Security, Computer Science, Information Technology, or a related discipline (or equivalent practical experience)
  • Holder of relevant certifications such as GIAC, CISSP, or vendor-specific SOC certifications
Job Responsibility
Job Responsibility
  • Lead and manage 24x7 SOC operations, ensuring consistent, high-quality alert monitoring, triage, and incident response across all markets
  • Own and drive SOC service performance against key KPIs including MTTT, MTTR, triage quality, and SLA adherence, delivering measurable improvements in detection quality, response speed, and efficiency
  • Oversee the full alert lifecycle, ensuring accurate investigation, containment, escalation, and high-quality incident reporting
  • Continuously enhance detection capabilities by improving SIEM use cases, alert logic, and playbooks, reducing false positives and increasing coverage across priority threat scenarios
  • Drive the adoption of automation, SOAR, and AI-assisted capabilities to improve speed, consistency, and scalability, with appropriate governance and human oversight
  • Lead SOC transformation initiatives focused on reducing alert fatigue, streamlining workflows, and improving analyst productivity
  • Build, coach, and develop a high-performing SOC team through structured capability development, performance management, and knowledge sharing
  • Act as the final escalation point for complex or high-risk incidents, applying expert judgement to validate and close cases
  • Deliver clear, data-driven SOC performance and incident reporting to senior leadership
  • Foster a culture of continuous improvement through post-incident reviews, detection retrospectives, and operational learning
What we offer
What we offer
  • The opportunity to lead a globally impactful SOC function within a recognised Cyber Defence Centre of Excellence
  • Exposure to large-scale, complex cyber defence operations across multiple international markets
  • The chance to shape and influence the future of SOC operations through automation and AI-driven transformation
  • A collaborative, inclusive environment that supports professional growth and continuous learning
  • The ability to work with advanced security technologies and experienced cyber defence professionals
  • Fulltime
Read More
Arrow Right

Senior Network Defense Analyst

Assurit is currently seeking an experienced Senior Network Defense Analyst to su...
Location
Location
United States , Linthicum
Salary
Salary:
Not provided
assurit.com Logo
Assurit
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Must have and maintain an Active Top Secret/SCI clearance
  • Master’s degree with at least 10 years of experience
  • Minimum of 8 years of experience in cybersecurity, with a focus on network defense and threat analysis
  • Strong analytical skills with the ability to analyze large datasets and identify patterns of malicious activity
  • Possesses deep understanding of cloud security architecture, including secure infrastructure design, access controls, data protection, and threat detection
  • Experience with performing cybersecurity analysis including incident response and management, forensic media analysis, malware analysis, reverse-engineering, cyber threat intelligence analysis, and security engineering
  • Comprehensive understanding of network and application protocols, cyber vulnerabilities and exploitation techniques, and cyber threat methodologies and tactics
  • Analyze and interpret diverse network data (Netflow, PCAP, custom logs) to identify threats and support investigations. Utilize virtual and physical sensors to strengthen defensive cyber posture
  • Demonstrated experience in AI & ML technologies, with practical experience applying them to cybersecurity challenges
  • Experience conducting all-source intelligence research and producing intelligence assessments
Job Responsibility
Job Responsibility
  • Proactively safeguard networks by analyzing network appliance data, identifying and prioritizing threats before they strike, and recommending effective mitigation strategies
  • Serve as a technical lead in cyber intelligence and all-source intelligence research, focusing on network operations
  • Analyze data from deployed network appliances, security events, and artifacts by leveraging AI and ML algorithms for anomaly detection and pattern recognition
  • Develop presentations, papers, and recommendations summarizing threat assessments and proposing effective countermeasures
  • Leverage classified data, open-source research, and net flow analysis, combined with AI and ML, to produce intelligence assessments, technical information papers, and cyber threat profiles of current events, enabling predictive analysis and proactive risk management
  • Craft data-driven reports and briefings for government leaders, leveraging AI and ML-generated insights and recommendations to inform critical decision-making
What we offer
What we offer
  • medical and dental coverage
  • paid time off
  • Fulltime
Read More
Arrow Right

Senior Java Developer (Credit Risk domain)

The Applications Development Senior Programmer Analyst is an intermediate level ...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8-11 years of relevant experience
  • Experience in systems analysis and programming of software applications
  • Experience in managing and implementing successful projects
  • Working knowledge of consulting/project management techniques/methods
  • Ability to work under pressure and manage deadlines or unexpected changes in expectations or requirements
  • Bachelor’s degree/University degree or equivalent experience
  • 8 to 11 years of strong experience in Java/J2EE, Spring, Hibernate, (and with Spark Preferable) with expertise in design, development, performance tuning, troubleshooting and deployment
  • Good understanding of WebSphere, and Linux or Unix operating systems
  • Should be well versed with designing and architecting solutions with latest tech advancements
  • Familiar with standard SDLC and Agile processes
Job Responsibility
Job Responsibility
  • Conduct tasks related to feasibility studies, time and cost estimates, IT planning, risk technology, applications development, model development, and establish and implement new or revised applications systems and programs to meet specific business needs or user areas
  • Monitor and control all phases of development process and analysis, design, construction, testing, and implementation as well as provide user and operational support on applications to business users
  • Utilize in-depth specialty knowledge of applications development to analyze complex problems/issues, provide evaluation of business process, system process, and industry standards, and make evaluative judgement
  • Recommend and develop security measures in post implementation analysis of business usage to ensure successful system design and functionality
  • Consult with users/clients and other technology groups on issues, recommend advanced programming solutions, and install and assist customer exposure systems
  • Ensure essential procedures are followed and help define operating standards and processes
  • Serve as advisor or coach to new or lower level analysts
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency
  • Develop Java and J2EE software applications that comply with written and verbally agreed specifications, to agreed timescales and quality criteria
  • Keep applications lean, resilient, robust, self-healing, and scalable
  • Fulltime
Read More
Arrow Right

Senior Java Developer (Credit Risk domain)

The Applications Development Senior Programmer Analyst is an intermediate level ...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8-11 years of relevant experience
  • Experience in systems analysis and programming of software applications
  • Experience in managing and implementing successful projects
  • Working knowledge of consulting/project management techniques/methods
  • Ability to work under pressure and manage deadlines or unexpected changes in expectations or requirements
  • Bachelor’s degree/University degree or equivalent experience
  • 8 to 11 years of strong experience in Java/J2EE, Spring, Hibernate, (and with Spark Preferable) with expertise in design, development, performance tuning, troubleshooting and deployment
  • Good understanding of WebSphere, and Linux or Unix operating systems
  • Should be well versed with designing and architecting solutions with latest tech advancements
  • Familiar with standard SDLC and Agile processes
Job Responsibility
Job Responsibility
  • Conduct tasks related to feasibility studies, time and cost estimates, IT planning, risk technology, applications development, model development, and establish and implement new or revised applications systems and programs to meet specific business needs or user areas
  • Monitor and control all phases of development process and analysis, design, construction, testing, and implementation as well as provide user and operational support on applications to business users
  • Utilize in-depth specialty knowledge of applications development to analyze complex problems/issues, provide evaluation of business process, system process, and industry standards, and make evaluative judgement
  • Recommend and develop security measures in post implementation analysis of business usage to ensure successful system design and functionality
  • Consult with users/clients and other technology groups on issues, recommend advanced programming solutions, and install and assist customer exposure systems
  • Ensure essential procedures are followed and help define operating standards and processes
  • Serve as advisor or coach to new or lower level analysts
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency
  • Keep applications lean, resilient, robust, self-healing, and scalable
  • Taking ownership of all applications in the assigned sub-domain within Risk Technology
  • Fulltime
Read More
Arrow Right