Sr. Information Security Risk Analyst at UMB involved with data governance and security initiatives. Collaborating with teams to protect sensitive data while adapting to changing threats and technologies.
Responsibilities
Participate in activities associated with UMB’s information and data governance programs
Support the execution of a multi-year roadmap to enhance UMB’s data governance capabilities
Drive adherence to data protection policies and standards across the organization by monitoring and evaluating security practices
Assist with maintaining UMB’s information governance and data protection related policies and standards
Generate metrics and analytical reports on data security controls and practices to evaluate effectiveness
Partner with teams across the organization to develop and implement processes to protect sensitive and proprietary data
Partner with Information Technology teams to advise and assist with the configuration of data security settings, policies, and controls within systems, applications, and data stores
Conduct periodic risk and maturity assessments to evaluate existing controls and practices for design and performance effectiveness
Develop and assist with implementing retention, disposition and data minimization processes and practices across the organization
Lead special projects and other duties as assigned.
Requirements
Bachelor’s degree in Management Information Systems (MIS), Computer Science or a related discipline OR equivalent work experience
At least 5 years of experience in information security with a specific focus on information and data governance
Strong knowledge of risk and controls, including working knowledge of standards and frameworks such as COSO, COBIT, ISO, NIST, and ITIL
Ability to thrive in an environment of change and manage multiple tasks and responsibilities simultaneously
Understanding of and practical experience with information security risk assessments and information security audits
Bonus Points If: Information Governance Professional (IGP) and/or Certified Information Professional (CIP) certifications
Experience with Informatica data management platform
Industry recognized certification relevant to information security, such as CISSP, CRISC, SEC+, CISM or applicable certifications/accreditation
Strong understanding of information security regulatory requirements and best practices
General understanding of banking and financial services processes, and the related risks to securing and managing data.
Benefits
Paid Time Off
401(k) matching program
Annual incentive pay
Paid holidays
Comprehensive company sponsored benefit plan including medical, dental, vision, and other insurance coverage
Health savings, flexible spending, and dependent care accounts
Project Manager for Security Technology managing complex security projects in MENA region. Involving internal teams and external integrators ensuring project success and client satisfaction.
Cyber Security Manager at British American Tobacco strengthening cyber resilience across Western Europe. Responsible for managing security initiatives and collaborating with regional teams.
Stagiaire responsable de l’accompagnement à la mise en place d’un système SSE pour un bureau d’études en ingénierie. Impliqué dans la structuration, suivi et déploiement de systèmes SSE.
Graduate Cyber Technician contributing to Babcock Australasia's Defence Industry initiative. Join the 2027 Graduate Program and engage in personal and professional development.
Engineering Intern involved in real work and active projects at Babcock Australasia. Collaborating with experienced professionals to gain real - life experience in a supportive environment.
Senior Security Engineer establishing and maintaining cybersecurity measures for a financial services company. Responsible for leading security event responses, documentation of policies, and training.
Senior Corporate Security Investigator at Duke Energy conducting complex investigations in support of Ethics, HR, Legal, Nuclear, and Enterprise Security with field mobility.
AI Enterprise Security Architect focusing on AI Security architectural standards and integrating security measures into AI development lifecycle. Leading a global team in securing AI systems.
Cloud Security Engineer supporting and securing client environments across AWS and hybrid infrastructures. Collaborating with Cloud Operations to monitor, investigate, and remediate security events.
Account Cybersecurity Lead providing cybersecurity governance and oversight at Capgemini. Leading client relationships, security management systems, and risk compliance oversight.