About the role
- Participates in projects and assessments as a security consultant or advisor on risk.
- Researches general and industry specific security trends.
- Analyzes, defines security policies and information security standards.
- Provides detail to project teams regarding security requirements.
- Creates and presents risk reports, policies, results and deliverables.
- Performs penetration and vulnerability testing, including the delivery & explanation of results.
- Evaluates, documents and communicates vulnerability ratings and mitigation guidelines.
How does this role make an impact?
- Participates in projects and assessments on risk.
- Analyzes and defines security policies and standards.
- Monitors, alerts and responds to security events.
- Performs computer forensic and investigative activities; and penetration and vulnerability testing.
- Defines and administers identity & access roles and workflows.
Do you have what we're looking for?
- Typically requires 7+ years of relevant experience or a combination of related experience, education and training.
- Experience performing information security risk assessments, including documenting risks, evaluating control gaps, and communicating mitigation recommendations to business and technology stakeholders.
- Experience supporting third‑party risk management activities, such as vendor due diligence, ongoing monitoring, contract/security reviews, and assessment of supplier control environments.
- Working knowledge of cybersecurity governance, risk, and compliance practices, including the development or maintenance of security policies, standards, procedures, and control documentation.
- Familiarity with common security and regulatory frameworks, such as NIST CSF, NIST 800-53, ISO 27001, CIS Controls, PCI DSS, GLBA, HIPAA, or FFIEC guidance.
- Experience using governance, risk, and compliance platforms or risk assessment tools to manage assessment workflows, document evidence, track risks, and report status.
- Ability to translate technical security findings into clear business risk language for project teams, leadership, auditors, and non‑technical stakeholders.
- Experience consulting on technology projects to identify security requirements, assess risk, and recommend practical control improvements.
- Experience supporting audit, compliance, or regulatory exam activities, including evidence gathering, control mapping, management responses, and remediation tracking.
- Strong written and verbal communication skills, with experience creating risk reports, assessment summaries, policies, standards, or executive‑level deliverables.
- Professional security, risk, privacy, or audit certifications such as CISSP, CISM, CRISC, CISA, Security+, CEH, or similar.
- Experience assessing risks related to artificial intelligence, cloud services, SaaS platforms, data protection, or other emerging technologies.
- Demonstrated ability to work independently, manage multiple priorities, and collaborate across technology, business, legal, compliance, and vendor management teams.
Base Pay Range
Base Pay Range: $94,400-$129,800
Incentive Pay: In addition to base salary, this position is eligible for a Short‑Term Incentive plan.
Why work with us?
Our employees and representatives serve nearly one million households with our diverse range of personal and business insurance products as well as retirement and investment services. We build relationships and work together to create a stronger, more secure future for our clients and our communities. We’re a big company, yet small enough you can make an impact and won’t get lost in the shuffle. You’ll have the opportunity to learn and grow throughout your career, either within this role or by exploring other areas of our business.
Benefits
- Insurance benefits (medical, dental, vision, disability, and life), 401(k) with company match.
- Paid time off, parental leave, paid company holidays and paid time off to volunteer in your community.
- Tuition assistance and industry education certificates and designations.
- Employee resource groups to connect with your peers.
COUNTRY Financial is committed to providing equal opportunity in all areas of employment, and in providing employees with a work environment free of discrimination and harassment.
Employment decisions are made without regard to race, color, religion, age, gender, sexual orientation, veteran status, national origin, disability, or any other status protected by applicable laws or regulations.
COUNTRY is headquartered in Bloomington, IL and offers hybrid, onsite and remote opportunities. If you're based at our Bloomington, IL corporate office, you'll enjoy a hybrid work schedule - three days in the office and two days working remotely.
For roles posted as remote, candidates who live more than 50 miles from Bloomington, IL may qualify for a fully remote arrangement.
From the moment you’re hired, we invest in you. We know job satisfaction fuels your contribution, so we offer competitive benefits and make investments that help you achieve your professional goals.