IT Vulnerability Management Liaison

Full Time
Winchester, VA
Posted
Job description

YOUR LIFE'S MISSION: POSSIBLE

You have goals, dreams, hobbies and things you’re passionate about.


What’s Important to You Is Important to Us

We’re looking for people who not only want to do meaningful, challenging work, keep their skills sharp and move ahead, but who also take time for the things that matter to them—friends, family and passions. And we're looking for team members who are passionate about our mission—making a difference in military members' and their families' lives. Together, we can make it happen.


Don’t take our word for it.

  • Military Times 2022 Best for Vets Employers
  • Yello and WayUp Top 100 Internship Programs
  • Forbes® 2022 The Best Employers for New Grads
  • Fortune Best Workplaces for Women
  • Fortune 100 Best Companies to Work For®
  • Fortune Best Place to Work for Financial and Insurance Services
  • Computerworld® Best Places to Work in IT
  • Ripplematch Campus Forward Award – Excellence in Early Career Hiring

Basic Purpose

Serve as liaison between the technologies groups and ISD Risk and Vulunerability Division, supporting the quality of our technology using established risk and control frameworks. Work with senior leadership across department lines reducing risks within the organization by ensuring compliance with appropriate directives and organizational standards. This includes reducing vulnerabilities, responding to audit findings, and adhering to life cycle management practices for software and hardware. Responsibilities will also include aiding in strategy development, solution delivery, service management, and relationship building.

Responsibilities

  • Collaborate with SMEs to identify all regulatory processes and requirements to develop vulnerability management and compliance plans, internal controls and risk, utilizing established business procedures to lead process innovation, improvement activities and enhance service delivery
  • Serve as POC for division compliance audits, assisting with audit engagement and collaborating with respective teams to ensure timely completion and all established processes are followed (i.e., determination of the risk rating, prioritization, and coordination with the appropriate risk teams)
  • Lead the development of immediate corrective actions with appropriate teams for remediation resulting from identified findings, adhering to business function policies, standards and directives; monitor, test, and report on processes and findings
  • Manage vulnerabilities including assessing applicability, submit false positive reporting, submit requests for reassignments
  • Collaborate with ISD Vulnerability Management and reporting senior leadership to develop, implement and maintain reports capturing key business trends, highlights, lowlights and metrics as compliance programs are conducted
  • Perform root cause analysis of identified vulnerabilities and work through remediation with necessary stakeholders
  • Collaboate with teams and division leadership to ensure remediation activities meet SLAs; ensure all identified vulnerabilities exceeding established SLAs have remediation plans
  • Ensure current delivery meets with contractual and good industry practice standards, support project-based activities regarding life cycle, product/system selection, and maintainability of assets
  • Lead collaboration with technical teams to drive requirements, evaluations, implementations and troubleshooting of vulnerability capabilities and to mitigate the security control deficiencies and scanned vulnerabilities of their assigned IT systems
  • Develop and implement communications and change management strategies in conjunction with Communiations division to successfully drive vulnerability management and compliance policies and best practices into the development process
  • Identify or create technical documentation for systems that may not exist and provide correct access and procedural documentation for granting access; document engineering processes and practices in support of vulnerability management and cyber security operations
  • Collaborate with Asset Management Teams, Operational teams, and Audit teams in identifying trends of technical, contractual, and good industry practice non–compliance; implementing and supporting necessary change as part of continual improvement and risk reduction
  • Perform other duties as assigned

Qualifications

  • Bachelor's Degree in a related field, or the equivalent combination of training, education and/or experience
  • Working knowledge of operational and regulatory risk management concepts and practices
  • Working knowledge of compliance, laws and regulations relating to Information Systems, including NCUA, CFPB regulations
  • Signifiant experience working in an operations environment, driving improvements resulting in measurable business impact
  • Significant experience with metrics-based projects and utilizing metrics to gauge success
  • Experience leading multi-organizational initiatives and driving team accountability to achieve impactful goals
  • Advanced skill leading with diplomacy and tact while maintaining appropriate assertiveness and persistence
  • Experience in thought-leadership, initiative taking, decision-making and creative problem-solving
  • Advanced skill to influence, negotiate and & persuade to reach agreeable exchange & positive outcomes
  • Experience working with all levels of staff, management, stakeholders, vendors
  • Experience in project/program management processes and methodologies
  • Advanced relationship building, negotiation and facilitation skills
  • Advanced analytical/quantitative, reconciliation and deductive reasoning skills
  • Advanced skill presenting findings, conclusions, alternatives, and information clearly and concisely
  • Significant experience managing multiple priorities independently and/or in a team environment
  • Excellent interpersonal, verbal, and written communication skills
  • Advanced knowledge and skills with PCs and related software applications (word processing, spreadsheet and presentation)

Desired

  • Advanced knowledge of Navy Federal’s functions, philosophy, operations and organizational objectives

Hours: Monday - Friday, 8:00AM - 4:30PM

Location: 820 Follin Lane, Vienna, VA 22180 | 5550 Heritage Oaks Dr. Pensacola, FL 32526 | 141 Security Dr. Winchester, VA 22602

Navy Federal is now hybrid! Our standard enterprise requirement for a hybrid schedule is to report on-site 4-16 days each month. The number of days reporting on-site will ultimately be determined by the employee's leadership and business unit needs. You will learn more throughout the hiring and on boarding process.

Salary Range: $98,500 - $168,400 annually

Navy Federal Credit Union assesses market data to establish salary ranges that enable us to remain competitive. You are paid within the salary range, based on your experience, location and market position.

Posting End Date: 4/20/23

Job postings are subject to close early or extend out longer than the anticipated closing date at the hiring team’s discretion based on qualified applicant volume.

#LI-Hybrid

Equal Employment Opportunity

Navy Federal values, celebrates, and enacts diversity in the workplace. Navy Federal takes affirmative action to employ and advance in employment qualified individuals with disabilities, disabled veterans, Armed Forces service medal veterans, recently separated veterans, and other protected veterans. EOE/AA/M/F/Veteran/Disability

Disclaimer

Navy Federal reserves the right to fill this role at a higher/lower grade level based on business need. An assessment may be required to compete for this position.

Bank Secrecy Act

Remains cognizant of and adheres to Navy Federal policies and procedures, and regulations pertaining to the Bank Secrecy Act.

Employee Referrals

This position is eligible for the TalentQuest employee referral program. If an employee referred you for this job, please apply using the system-generated link that was sent to you.

apartamentosquality.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, apartamentosquality.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, apartamentosquality.com is the ideal place to find your next job.

Intrested in this job?