Security Controls Mapping Lead

Bank of America

Town of Vermont (WI)

On-site

USD 85,000 - 115,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Bank of America is seeking an information security governance professional to interpret requirements, define must statements, and map controls with evidence. The role involves engaging process owners, evaluating coverage, and ensuring alignment with regulatory expectations.

The successful candidate will review technical procedures, challenge responses, and document defensible mapping decisions for technical and senior audiences. Strong communication and analytical skills are essential.

Qualifications

  • 3+ years of experience in information security, cybersecurity risk, technology risk, controls governance, policy governance, compliance, audit, or a related field within a regulated environment.
  • Knowledge of cybersecurity concepts and security domains such as identity and access management, network security, cloud security, application security, data protection, vulnerability management, monitoring, incident response, or configuration management.
  • Ability to understand how security processes and controls operate across systems, applications, infrastructure, data, users, and technologies, without needing to be an engineer in every domain.
  • Experience reviewing technical procedures, process flows, control descriptions, system documentation, and evidence artifacts to identify gaps or exclusions.
  • Strong analytical and communication skills, including questioning subject matter experts and documenting defensible mapping decisions for technical audiences.
  • Ability to validate data against requirements and supporting evidence rather than relying solely on owner conclusions.

Responsibilities

  • Interpret laws, rules, regulations, policies, and standards; break complex requirements into must statements; define outcome, scope, ownership, and evidence.
  • Identify and assess candidate processes and controls; develop coverage recommendations; determine coverage type (direct, supporting, partial, or insufficient).
  • Review technical processes and challenge owner responses to ensure activity, scope, ownership, dependencies, limitations, and evidence support the mapping.
  • Document clear mapping decisions and determine whether coverage should be accepted, clarified, treated as partial or a gap, or escalated through governance channels.
  • Use data and approved tools to support interpretation, coverage identification, review, reporting, and process improvement, while validating outputs and maintaining accountability.

Skills

Information security
Cybersecurity risk
Policy governance
Audit
Regulatory compliance
Communication skills
Analytical skills

Job description

Bank of America is seeking an information security governance professional to interpret requirements, define must statements, and map controls with evidence. The role involves engaging process owners, evaluating coverage, and ensuring alignment with regulatory expectations.

The successful candidate will review technical procedures, challenge responses, and document defensible mapping decisions for technical and senior audiences. Strong communication and analytical skills are essential.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

InfoSec Controls Mapping Lead
InfoSec Controls Mapping Lead

Bank of America • Addison (TX)

On-site
USD 78,000 - 136,000
InfoSec Controls Mapping & Governance Lead
InfoSec Controls Mapping & Governance Lead

Koitecc Solutions • Denver (CO), Northern (KY)

Hybrid
USD 78,000 - 136,000
Discretionary incentive plan
Benefits eligible
InfoSec Controls Mapping Lead
InfoSec Controls Mapping Lead

Bank of America • Washington

On-site
USD 78,000 - 136,000
Senior Information Security Controls Mapping Lead
Senior Information Security Controls Mapping Lead

Bank of America • Denver (CO)

On-site
USD 78,000 - 136,000
Discretionary incentive eligible
Benefits eligible
Paid time off
InfoSec Controls Mapping & Governance Lead
InfoSec Controls Mapping & Governance Lead

Hobbsnews • Addison (TX), Northern (KY)

Hybrid
USD 78,000 - 136,000
InfoSec Controls Mapping & Governance Lead
InfoSec Controls Mapping & Governance Lead

Bank of America • Chicago (IL)

On-site
USD 78,000 - 136,000
Benefits eligible
Paid time off
Senior Security Controls & Governance Lead
Senior Security Controls & Governance Lead

Bank of America • United States

On-site
USD 78,000 - 136,000
Discretionary incentive eligible
Benefits eligible
Controls Mapping Governance Lead - Global Information Security
Controls Mapping Governance Lead - Global Information Security

Bank of America • Town of Vermont (WI)

On-site
USD 85,000 - 115,000
Controls Mapping Governance Lead - Global Information Security
Controls Mapping Governance Lead - Global Information Security

Bank of America • Denver (CO)

On-site
USD 78,000 - 136,000
Discretionary incentive eligible
Benefits eligible
Paid time off
Controls Mapping Governance Lead - Global Information Security
Controls Mapping Governance Lead - Global Information Security

Bank of America • Chicago (IL)

On-site
USD 78,000 - 136,000
Benefits eligible
Paid time off