Dec 06, 2019
Job Description Important Note: During the application process, ensure your contact information (email and phone number) is up to date and upload your current resume prior to submitting your application for consideration. To participate in some selection activities you will need to respond to an invitation. The invitation can be sent by both email and text message. In order to receive text message invitations, your profile must include a mobile phone number designated as "Personal Cell" or "Cellular" in the contact information of your application. At Wells Fargo, we want to satisfy our customers' financial needs and help them succeed financially. We're looking for talented people who will put our customers at the center of everything we do. Join our diverse and inclusive team where you'll feel valued and inspired to contribute your unique skills and experience. Help us build a better Wells Fargo. It all begins with outstanding talent. It all begins with you. Wells Fargo Technology sets IT strategy; enhances the design, development, and operations of our systems; optimizes the Wells Fargo infrastructure footprint; provides information security; and enables continuous banking access through in-store, online, ATM, and other channels to Wells Fargo's more than 70 million global customers. Wells Fargo & Company (NYSE: WFC) is a nationwide, diversified financial services company with $1.7 trillion in assets. Founded in 1852, Wells Fargo provides banking, insurance, investments, mortgage, and consumer and commercial finance through more than 9,000 locations, more than 12,500 ATMs, online (wellsfargo.com), and mobile devices. Wells Fargo has more than 265,000 team members in 36 countries across our approximately 90 businesses. Information and Cyber Security (ICS), the Enterprise Functions and Technology, Group Information Security Leader (G-ISL) organization has an open Operational Risk Consultant (ORC) 4 position. The position will be responsible for helping to provide general support to teams supporting information security policy compliance. Preferred location is Charlotte, NC; Minneapolis, MN; or Phoenix, AZ; however other locations will be considered. The Operational Risk Consultant 4 will work closely with the each of the G-ISL team, and team members across Wells Fargo technology and business risk partners and would be expected to possess the ability to: Demonstrate extensive knowledge of Information Security Policy Exception Management (ISPEM) process Provide ISPEM review and consulting support to LOB partners and perform detailed ISPEM request evaluation for program adherence evaluation Review and understand project requirements and information security risk implications and effectively communicate those requirements and risks Operate and interact on multiple levels within the organization Demonstrate functional understand and experience relating to information security policy management Demonstrate leadership qualities, vision and tact Ability to review (down to the detail level) and identify opportunities to improve, or tactfully recommend a course to resolve Demonstrated ability to think independently and bring insightful challenge to the risk management status quo Solid relationship management, collaboration and influence skills, especially with difficult topics when partnering with senior management including the willingness and ability to question decisions and escalate issues Proven ability to work effectively across matrixed teams Understand and act on audit and exam requirements *Open to all Wells Fargo Major Hub Locations.** Required Qualifications 6+ years of experience in compliance, operational risk management (includes audit, legal, credit risk, market risk, or the management of a process or business with accountability for compliance or operational risk), or a combination of both; or 6+ years of IT systems security, business process management or financial services industry experience, of which 3+ years must include direct experience in compliance, operational risk management, or a combination of both 2+ years of information security experience Desired Qualifications Advanced Microsoft Office skills Excellent verbal, written, and interpersonal communication skills Strong analytical skills with high attention to detail and accuracy Ability to interact with all levels of an organization Experience working with the Info Security Policy Exception Management Process Knowledge and understanding of Wells Fargo risk platforms, such as Security Planning & Assessment of Risks/Controls (SPARC), Configuration Management Database (CMDB), Information Services Application Inventory (ISAI), Vendor Management System of Record (VSMOR), Third Party Information Management Systems (TRIMS), Control Review Assessment System Plus (CRAS+), or Centralized Issue and Corrective Action Tracking (CICAT) Exposure to Wells Fargo Information Security Management System (Policyworks) 2+ years of experience performing risk assessments Experience managing projects in a large enterprise environment Knowledge and understanding of operational risk management in the financial services industry Experience working with internal and external auditors and examiners Knowledge and understanding of information security policies and control standards governing network security products/tools Experience reviewing testing strategies and methodologies; evaluating the adequacy and effectiveness of policies, procedures, processes, initiatives, products and internal controls; and identifying issues resulting from internal and/or external compliance examinations Ability to develop operational reporting and performing complex data analysis Ability to prioritize work, meet deadlines, achieve goals, and work under pressure in a dynamic and complex environment Experience testing policy and procedures/control testing Certified Information Systems Security Professional (CISSP) Ability to work effectively in a team environment and across all organizational levels, where flexibility, collaboration, and adaptability are important Other Desired Qualifications Knowledge and understanding of the Information Security Risk Domains and related metrics Knowledge and understanding of the Control Executive teams within Enterprise Functions Knowledge and understanding of cyber security defense and monitoring processes and programs Knowledge and understanding of project management standards, processes and tools Job Expectations Ability to travel up to 10% of the time Disclaimer All offers for employment with Wells Fargo are contingent upon the candidate having successfully completed a criminal background check. Wells Fargo will consider qualified candidates with criminal histories in a manner consistent with the requirements of applicable local, state and Federal law, including Section 19 of the Federal Deposit Insurance Act. Relevant military experience is considered for veterans and transitioning service men and women. Wells Fargo is an Affirmative Action and Equal Opportunity Employer, Minority/Female/Disabled/Veteran/Gender Identity/Sexual Orientation.
Shoreview, MN 55126, USA