Sr. Information Security Risk Analyst

UMB Bank

Kansas City (MO)

Hybrid

USD 100,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401(k) matching
Paid Time Off
Comprehensive benefits package

Job summary

UMB Bank in Kansas City, MO is seeking a Sr. Information Security Risk Analyst to support the Information Security Program, drive risk-based decisions, and collaborate with enterprise technology and security teams.

The role emphasizes PCI-DSS compliance, risk assessment, and regulatory awareness, with a hybrid on-site/remote work arrangement. Qualifications include a MIS/CS degree or equivalent, 5+ years in information security risk management, and familiarity with COSO, COBIT, ISO, NIST, and

Qualifications

  • Bachelor’s degree in MIS, CS or related discipline or equivalent work experience.
  • At least 5 years of information security, security audit, or risk management experience.
  • Working knowledge of PCI-DSS and how organizations meet requirements.
  • Familiarity with COSO, COBIT, ISO, NIST, ITIL frameworks.

Responsibilities

  • Collaborate across teams to drive security initiatives.
  • Advise business units on information security risk and treatment options.
  • Collect performance metrics and provide actionable leadership recommendations.
  • Support PCI-DSS compliance activities with internal teams.
  • Maintain current knowledge of information security regulations and trends.
  • Assist in responding to audits and third-party assessments.
  • Ensure understanding and application of UMB Information Security Policies.

Skills

Information security risk management
Security auditing
Threat & risk assessment

Education

Bachelor’s degree in MIS/CS or related discipline

Tools

PCI-DSS framework
COSO
COBIT
ISO
NIST
ITIL

Job description

As part of UMB’s Corporate Information Security and Privacy (CISP) team, the mission is to identify threats, vulnerabilities, and risks and to help protect the people, information, and services within the organization. CISP works closely with all lines of business. This role will work especially close with UMB enterprise technology and information security teams to ensure data protection initiatives are present, usable and, understood within the organization.

As the Sr. Information Security Risk Analyst, you will be responsible for supporting UMB’s Information Security Program to ensure UMB is able to address rapidly changing threats, technologies, and business conditions. This is a subset of the overall responsibilities which involves other multiple initiatives as assigned by Corporate Risk leadership.

This role is hybrid (Mon through Thu on-site / Fri remote) located in our downtown Kansas City, MO headquarters.

How you will spend your time:
  • Collaborate and drive security initiatives, working with people across multiple teams and diverse functions.
  • Enable the business and other stakeholders to make risk-aware decisions by advising business units and technology leaders of the information security risks and proposing acceptable risk treatment options and alternatives.
  • Support the information security program efforts through the collection of performance indicators, metrics, and other evidence and communicating relevant, succinct, and actionable recommendations to leadership.
  • Support UMB’s PCI-DSS compliance and assessment activities while supporting our internal technology and business teams across the organization.
  • Proactively maintain a current and working understanding of information security best practices, the practical application of security concepts, relevant information security and technology regulations, threats, and industry trends.
  • Assist in responding to internal/external audits, including third-party security assessments, if applicable.
  • Maintain a current and working understanding of relevant information security and technology regulations and industry trends, including UMB Information Security Policies and the practical application of the Policies.
  • Manage multiple simultaneous workstreams supporting disparate stakeholders, providing appropriate and timely communication of issues, concerns, risks, and status.
We are excited to talk if you have:
  • Bachelor’s degree in Management Information Systems (MIS), Computer Science or a related discipline OR equivalent work experience.
  • At least 5 years of experience in information security, security audit, or information security risk management/compliance.
  • Working knowledge and practical application of the PCI-DSS compliance framework and how organizations meet those requirements.
  • Strong knowledge of risk and controls, including working knowledge of standards and frameworks such as COSO, COBIT, ISO, NIST, and ITIL.
  • Ability to thrive in an environment of change and manage multiple tasks and responsibilities simultaneously.
  • Understanding of and practical experience with information security risk assessments and information security audits.
Bonus Points if you have:
  • CISSP, CRISC, SEC+, PCI-DSS ISA/PCIP or applicable certifications/accreditation.
  • Strong understanding of information security regulatory requirements and best practices.
  • General understanding of banking and financial services processes, and the related risks to securing and managing data.

Applicants must have legal authority to work in the United States. Work Visa sponsorship is not available for this position.

Targeted compensation for this opening

($100,000 – 120,000)

Compensation Ranges:

US Employees in California, Washington DC, New Jersey, and New York:

$83,810 - $131,550

US Employees in Colorado, Connecticut, Delaware, Illinois, Massachusetts, Maryland, Minnesota, Pennsylvania, Rhode Island, Texas, Washington, and Wisconsin:

$76,520 - $120,210

US Employees in all other states not listed above:

$69,230 - $109,120

The posted compensation range on this listing represents UMB’s good faith and reasonable estimate based on its budget and what it expects to be the starting pay for this role, but the actual compensation may vary by geographic location, experience level, and other job-related factors. Please see the description of benefits included with this job posting for additional information.

UMB offers competitive and varied benefits to eligible associates, such as Paid Time Off; a 401(k) matching program; annual incentive pay; paid holidays; a comprehensive company sponsored benefit plan including medical, dental, vision, and other insurance coverage; health savings, flexible spending, and dependent care accounts; adoption assistance; an employee assistance program; fitness reimbursement; tuition reimbursement; an associate wellbeing program; an associate emergency fund; and various associate banking benefits. Benefit offerings and eligibility requirements vary.

Are you ready to be part of something more?
You’re more than a means to an end—a way to help us meet the bottom line. UMB isn’t comprised of workers, but of people who care about their work, one another, and their community. Expect more than the status quo. At UMB, you can expect more heart. You’ll be valued for exactly who you are and encouraged to support causes you care about. Expect more trust. We want you to do the right thing, no matter what. And, expect more opportunities. UMBers are known for having multiple careers here and having their voices heard.

UMB and its affiliates are committed to inclusion and diversity and provide employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex (including gender, pregnancy, sexual orientation, and gender identity), national origin, age, disability, military service, veteran status, genetic information, or any other status protected by applicable federal, state, or local law. If you need accommodation for any part of the employment process because of a disability, please send an e-mail to talentacquisition@umb.com to let us know the nature of your request.

If you are a California resident, please visit Privacy Notice for California Job Candidates to understand how we collect and use your personal information when you apply for employment with UMB.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Information Security Analyst
Sr. Information Security Analyst

UMB Bank • Kansas City (MO)

Hybrid
USD 98,000 - 145,000
Health insurance
401(k) matching
Paid time off
Sr. Information Security Analyst
Sr. Information Security Analyst

UMB Financial Corporation • Kansas City (MO)

Hybrid
USD 98,000 - 145,000
Paid Time Off
401(k) matching program
Annual incentive pay
+4
Senior IT Auditor
Senior IT Auditor

UMB Bank • Kansas City (MO)

Hybrid
USD 82,000 - 120,000
Senior IT Auditor
Senior IT Auditor

UMB Financial Corporation • Kansas City (MO)

Hybrid
USD 82,000 - 120,000
Paid Time Off
401(k) matching
Annual incentive pay
+5
Sr. Project Manager
Sr. Project Manager

UMB Bank • Kansas City (MO)

Hybrid
USD 118,000 - 173,000
Full-Stack Developer (C# / .NET / Angular JS)
Full-Stack Developer (C# / .NET / Angular JS)

UMB Bank • Kansas City (MO)

Hybrid
USD 98,000 - 145,000
401(k) matching
Paid time off
Annual incentive pay
+4
Senior Securities Services Corporate Actions Ops Analyst
Senior Securities Services Corporate Actions Ops Analyst

UMB Financial Corporation • Foulk Woods (DE)

Hybrid
USD 68,000 - 100,000
401(k) matching
Health insurance
Paid time off
AI Governance & Security Architect
AI Governance & Security Architect

UMB Financial • Kansas City (MO)

Hybrid
USD 150,000 - 170,000
Paid Time Off
401(k) matching program
Annual incentive pay
+3
Cloud Engineer
Cloud Engineer

UMB Bank • Kansas City (MO)

Hybrid
USD 130,000 - 140,000
Paid Time Off
401(k) matching
Annual incentive pay
+1
Cloud Engineer
Cloud Engineer

UMB Bank • Kansas City (MO)

Hybrid
USD 83,000 - 179,000
Paid Time Off
401(k) matching program
Health insurance coverage
+1