This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Wells Fargo is a Senior Lead Cloud & AI Risk Information Security Analyst. This person will report to the Head of Cloud & AI Security Governance, Risk & Controls. This role will be responsible for executing Cloud & AI Security risk and controls identification, assessment, monitoring and governance activities to ensure cloud and AI implementations, adhere to the control framework and security requirements. In addition, support the continuous enhancement of the framework, ensuring its alignment to Wells Fargo policy and threat vectors and drive automation with the development team to ensure scalability, reliability and audit-readiness of the teams functions. Candidates for this role must be knowledgeable of industry standard frameworks, Risk Management principles, Cyber risk controls and analytics, and system/product development.
Job Responsibility
Evaluate cloud and AI cybersecurity risk and adherence to the control framework across all service (public, private, hybrid, multi-cloud) and deployment models (SaaS, PaaS. IaaS) to ensure cloud and AI workloads are secure prior to deployment
Identify, analyze and escalate risk across cybersecurity related functions and controls
Monitor, measure and report control adherence and the risk profile
Implement and manage post-deployment quality assurance of cybersecurity related processes, technologies and controls
Develop and monitor cloud security metrics, key risk indicators, key performance indicators to provide an aggregate risk view that informs decision-making
Evaluate control environments across the enterprise, platform and application layer, through root cause analysis and solution advice to ensure sustainable mitigation
Oversee and provide cloud expertise for audit, testing and regulatory examinations
Create and present cloud specific risk details in relevant risk committees and governance routines
Support the continuous enhancement and adoption of the Cloud Security Control Framework
Develop requirements for automation capabilities in support of Cloud & AI Security Risk & Control and support launch activities through testing, training and awareness
Engage with all levels of professionals and managers companywide and serve as an experienced advisor to leadership
Participate in external industry organizations related to cloud security risk and controls
Requirements
7+ years of Information Technology in support of business services experience, or equivalent demonstrated through one or a combination of the following work experience, training, military experience, education
5+ years of cloud cybersecurity, cyber risk management and controls experience
5+ years of experience with related industry standards for cloud (i.e. NIST, CSA-CCM, FFIEC, CRI Institute, CIS Profile)