Information Security Manager – Configuration Management

U.S. Bank

Minneapolis (MN)

On-site

USD 133,000 - 157,000

Full time

11 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Healthcare
401(k)
Paid vacation
Parental leave
Sick leave
Disability insurance

Job summary

U.S. Bank is seeking an experienced Information Security Manager to lead Configuration Implementation, maturing secure configuration across infrastructure, cloud services, OS, apps, and platforms.

You will guide a growing team, translate security expectations into technical controls, and partner with engineering to prevent drift and meet compliance. This role demands strategic leadership with hands-on delivery.

Qualifications

  • Five+ years of progressive leadership in technical security, infrastructure security, cloud security, configuration engineering, security architecture, or security technology management.
  • Experience leading technical security, infrastructure, cloud, or configuration management teams.
  • Strong understanding of secure configuration management, security baselines, and technical security controls.
  • Experience defining, implementing, or maintaining secure configuration standards across enterprise technology environments.
  • Experience working across cloud, infrastructure, operating systems, applications, or security platforms.
  • Demonstrated ability to partner with engineering teams and influence technical strategy and implementation.
  • Experience building or maturing security programs, processes, operating models, or governance frameworks.
  • Knowledge of security risk management, regulatory requirements, and compliance obligations.
  • Strong stakeholder management, relationship-building, problem-solving, and communication skills.
  • Ability to balance strategic program leadership with tactical execution.
  • Security certifications such as CISSP, ITIL 4, AWS Solutions Architect Professional, or Azure Solutions Architect Expert.

Responsibilities

  • Lead and develop a team of security configuration analysts and implementation resources.
  • Build and execute the strategy and roadmap for the Configuration Implementation function.
  • Define and standardize secure configuration requirements across infrastructure, cloud services, OS, applications, and security platforms.
  • Develop and maintain secure configuration standards, technical controls, and implementation guidance.
  • Translate security and compliance requirements into actionable technical configuration controls.
  • Oversee configuration monitoring and scanning to identify drift and gaps.
  • Partner with cloud, infrastructure, platform, application, and security engineering teams to implement secure configurations.
  • Influence engineering practices to embed security requirements earlier in development and deployment.
  • Collaborate with technology SMEs to identify configuration risks and controls.
  • Establish governance, metrics, and success criteria for secure configuration management.
  • Prioritize remediation with security, engineering, risk and compliance teams.
  • Support regulatory, compliance, and audit obligations through configuration management.
  • Build relationships with engineering leaders and business partners.
  • Develop technical talent and foster accountability, collaboration, urgency, and continuous improvement.

Skills

Leadership experience
Security program governance
Secure configuration management
Cloud security
Security architecture
Stakeholder management
Security certifications

Education

Security certification

Tools

Terraform
Ansible
GitLab
Checkov
Chef
Artifactory
Azure Policy
AWS SCPs
Tenable.io
Microsoft Defender for Cloud

Job description

At U.S. Bank, we’re on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at—all from Day One.

Job Description

This position is not eligible for visa sponsorship.

Location expectations:
This role requires working from a U.S. Bank location three (3) or more days per week.

U.S. Bank is seeking an experienced Information Security Manager to lead its Configuration Implementation function within Information Security Services. This leader will be responsible for building and maturing secure configuration management capabilities across the bank’s infrastructure, cloud services, operating systems, applications, and technology platforms. The ideal candidate will bring strong technical security leadership, experience establishing secure configuration standards, and the ability to influence engineering teams across a complex enterprise environment.

This person will lead a growing team of security analysts and implementation resources responsible for defining, implementing, and monitoring secure configuration requirements. They will develop the strategy and operating model for the function, translate security expectations into actionable technical controls, and partner with engineering and technology teams to ensure security requirements are implemented and maintained. This leader will balance long-term program development with tactical execution while helping the organization proactively identify configuration risk, prevent configuration drift, and meet regulatory and compliance obligations.

Main Responsibilities:
  • Lead and develop a team of security configuration analysts and implementation resources.
  • Build and execute the strategy and roadmap for the Configuration Implementation function.
  • Define and standardize secure configuration requirements across infrastructure, cloud services, operating systems, applications, and security platforms.
  • Develop and maintain secure configuration standards, technical controls, and implementation guidance.
  • Translate security and compliance requirements into actionable technical configuration controls.
  • Oversee configuration monitoring and scanning capabilities used to identify configuration drift, control gaps, and compliance issues.
  • Partner with cloud, infrastructure, platform, application, and security engineering teams to implement and maintain secure configurations.
  • Influence engineering practices to embed security requirements earlier in development and deployment processes.
  • Collaborate with technology subject matter experts to identify configuration risks and determine appropriate security controls.
  • Establish processes, governance, performance measures, and success criteria for the secure configuration management program.
  • Prioritize remediation efforts in partnership with security, engineering, business, risk, and compliance stakeholders.
  • Support regulatory, compliance, and audit obligations through effective technical configuration management practices.
  • Build strong relationships with engineering leaders, technology teams, security stakeholders, and business partners.
  • Develop technical talent and create a culture of accountability, collaboration, urgency, and continuous improvement.
Must Have Skills:
  • Five or more years of progressive leadership experience within technical security, infrastructure security, cloud security, configuration engineering, security architecture, or security technology management.
  • Experience leading technical security, infrastructure, cloud, or configuration management teams.
  • Strong understanding of secure configuration management, security baselines, and technical security controls.
  • Experience defining, implementing, or maintaining secure configuration standards across enterprise technology environments.
  • Experience working across cloud, infrastructure, operating systems, applications, or security platforms.
  • Demonstrated ability to partner with engineering teams and influence technical strategy and implementation.
  • Experience building or maturing security programs, processes, operating models, or governance frameworks.
  • Knowledge of security risk management, regulatory requirements, and compliance obligations.
  • Strong stakeholder management, relationship-building, problem-solving, and communication skills.
  • Ability to balance strategic program leadership with tactical execution.
  • Relevant security, cloud, infrastructure, or service management certification, such as CISSP, ITIL 4, AWS Solutions Architect Professional, Azure Solutions Architect Expert, or a comparable certification.
Nice to Have Skills:
  • Enterprise secure configuration management program experience.
  • Cloud security engineering or infrastructure security experience.
  • Infrastructure automation or policy-as-code experience.
  • CI/CD or DevSecOps security integration experience.
  • Experience with Terraform, Ansible, GitLab, Checkov, Chef, or Artifactory.
  • Experience with Azure Policy or AWS Service Control Policies.
  • Experience with Tenable.io, Wiz, Microsoft Defender for Cloud, AWS security tooling, or comparable platforms.
  • Experience establishing configuration monitoring, compliance scanning, or drift-detection capabilities.
  • Experience leading a newly formed or rapidly growing technical security team.

If there’s anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to our disability accommodations for applicants.

Benefits:

Our approach to benefits and total rewards considers our team members’ whole selves and what may be needed to thrive in and outside work. That’s why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following:

  • Healthcare (medical, dental, vision)
  • Basic term and optional term life insurance
  • Short-term and long-term disability
  • Pregnancy disability and parental leave
  • 401(k) and employer-funded retirement plan
  • Paid vacation (from two to five weeks depending on salary grade and tenure)
  • Up to 11 paid holiday opportunities
  • Adoption assistance
  • Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law

Review our full benefits available by employment status here.

U.S. Bank is an equal opportunity employer. We consider all qualified applicants without regard to race, religion, color, sex, national origin, age, sexual orientation, gender identity, disability or veteran status, and other factors protected under applicable law.

E-Verify

U.S. Bank participates in the U.S. Department of Homeland Security E-Verify program in all facilities located in the United States and certain U.S. territories. The E-Verify program is an Internet-based employment eligibility verification system operated by the U.S. Citizenship and Immigration Services. Learn more about the E-Verify program.

The salary range reflects figures based on the primary location, which is listed first. The actual range for the role may differ based on the location of the role. In addition to salary, U.S. Bank offers a comprehensive benefits package, including incentive and recognition programs, equity stock purchase 401(k) contribution and pension (all benefits are subject to eligibility requirements). Pay Range: $133,365.00 - $156,900.00

U.S. Bank will consider qualified applicants with arrest or conviction records for employment. U.S. Bank conducts background checks consistent with applicable local laws, including the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act as well as the San Francisco Fair Chance Ordinance. U.S. Bank is subject to, and conducts background checks consistent with the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA). In addition, certain positions may also be subject to the requirements of FINRA, NMLS registration, Reg Z, Reg G, OFAC, the NFA, the FCPA, the Bank Secrecy Act, the SAFE Act, and/or federal guidelines applicable to an agreement, such as those related to ethics, safety, or operational procedures.

Applicants must be able to comply with U.S. Bank policies and procedures including the Code of Ethics and Business Conduct and related workplace conduct and safety policies.

Posting may be closed earlier due to high volume of applicants.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Manager – Configuration Management
Information Security Manager – Configuration Management

U.S. Bank • Cincinnati (OH)

Hybrid
USD 133,000 - 157,000
Healthcare (medical, dental, vision)
Life insurance
Disability insurance
+4
Information Security Manager – Configuration Management
Information Security Manager – Configuration Management

Relha LLC • Minneapolis (MN), Northern (KY)

Hybrid
USD 133,000 - 157,000
Basic term life insurance
Disability insurance
Parental leave
+5
Director of Security Configuration Automation & Engineering
Director of Security Configuration Automation & Engineering

U.S. Bank • Englewood (CO)

On-site
USD 150,000 - 176,000
Healthcare (medical, dental, vision)
401(k) and employer-funded retirement
Paid vacation
+3
Senior Info Security Engineer
Senior Info Security Engineer

Us Bank • Minneapolis (MN)

On-site
USD 155,000
Healthcare (medical, dental, vision)
401(k) and employer-funded retirement plan
Paid vacation
+2
Director of Security Configuration Automation & Engineering
Director of Security Configuration Automation & Engineering

U.S. Bank • Minneapolis (MN), Northern (KY)

On-site
USD 150,000 - 176,000
Healthcare (medical, dental, vision)
401(k) and employer-funded retirement
Paid vacation
+3
Senior Systems Engineer
Senior Systems Engineer

U.S. Bank • Hopkins (MN)

On-site
USD 119,000 - 141,000
Healthcare (medical, dental, vision)
401(k) and employer-funded retirement plan
Paid vacation and holidays
Senior Software Engineer Java
Senior Software Engineer Java

Relha LLC • Hopkins (MN)

On-site
USD 120,000 - 141,000
401(k) plan
Paid vacation and holidays
Parental leave
Lead Software Engineer (Java, Spring boot, Microservices)
Lead Software Engineer (Java, Spring boot, Microservices)

Relha LLC • Cincinnati (OH), Northern (KY)

Hybrid
USD 127,000 - 149,000
Life insurance
Disability insurance
Pregnancy and parental leave
+4
Lead Software Engineer (Java, Spring Boot, React & Cloud)
Lead Software Engineer (Java, Spring Boot, React & Cloud)

Relha LLC • Irving (TX)

Hybrid
USD 133,000 - 157,000
Life insurance
Paid vacation
11 paid holidays
+2
Senior Software Engineer (Data & Integration)
Senior Software Engineer (Data & Integration)

U.S. Bank • Atlanta (GA)

On-site
USD 120,000 - 141,000
Healthcare
401(k) Plan
Paid vacation
+1