Cyber Security Engineer
Apply NowJubil ID: 426
Company: ManTech
Location: Tampa, FL
Description:
DescriptionEnvestnet is seeking a Director
Information Security - YOD to join our Yodlee department. This is a remote role with occasional travel to our Raleigh
NC office.Envestnet is transforming the way financial advice is delivered through its connected technology
advanced insights
and asset management solutions – backed by industry-leading service and support. Since 1999
Envestnet has
Qualifications:
Required Skills and Experiences:
Progressive experience in information security with a combination of risk management
information security
and IT-related responsibilities with regulated financial institutions and/or fintech companies
or equivalent experience in regulatory organizations or consulting services with a concentration in IS/IT disciplines within banking/fintech
15+ years of experience in a senior leadership role with increasing levels of responsibilities
Experience with information security frameworks
Knowledge of NIST
ISO
SOC 2
PCI
and/or Cobit
Familiarity with Cyber Security Assessment Tool
Benefits:
Competitive Compensation/Total Reward Packages that include:
Health Benefits
Responsibilities:
Deliver the industry-leading wealth management platform
powered by advanced data and insights
Leverage our scale and efficiencies to serve our clients’ needs comprehensively
Enable financial advisors to deliver more holistic advice – reflecting a more complete view of their clients’ financial lives
and in a more connected environment
The Director of Information Security Risk is a senior leader who reports to the Principal Director of Information Security
He works closely with other leaders and business partners to protect the confidentiality
integrity
and availability of customers’ information and financial assets and identify and manage technology risk in the organization
The InfoSec Risk Director will manage the implementation
monitoring
and governance of Yodlee’s Cybersecurity information security and risk framework
This position will deliver information security and risk conscious culture and information security programs
that are regularly tested and reported and meet regulatory expectations for the enterprise
In partnership with senior leaders from IT
GRC
and business stakeholders
lead the development
maintenance
and publication of up-to-date information security policies
procedures
standards
controls
and guidelines based on the NIST 800.53 revision 5 framework and ISO 27001
or equivalent
Oversee the training and dissemination of such policies
procedures
standards
controls
and guidelines to the enterprise
Assist with regulatory audits and external and/or internal cybersecurity assessments and ensure they are successfully prepared for and delivered per calendar year for all business units
