Manager - Information Risk
Location: Mettawa, IL Employment Type: Full Time, Employee Pay Rate: 103k + bonus Manager - Information Risk To help us continue driving our business forward, we’re in search of an Manager – Information Risk to work for our client in Mettawa, IL (northshore). Mgr Info Risk 103K + Bonus elig. Need someone organized and versatile with background in IT Audit, SOX and project management, but this is NOT a PM role. This person will work with the PMO. This is a NEW position for this growing team. Location: Mettawa, IL (northshore, right off I-94) Department:Security & Fraud Risk Reports To:Director Information Risk I. Summary of Position This position manages application access management programs, services and investments that protect the confidentiality, integrity and availability of information assets, working with all HSBC North America lines of business, internal and external auditors and Federal regulators. Solicits and obtains executive approval for development, documentation and implementation of new information processing systems features. Maintains and supports existing application systems. II. Principal Accountabilities 1. Manage the application access management infrastructure to include North America business leadership, in the design and implementation of a comprehensive process to effectively manage application access management for HNAH. Manage the management and updating of business processes for application access management, ensuring compliance with appropriate standards and policies to protect Company information assets. 2. Serve as business stakeholder with Technology Services on select North American and Group application access management initiatives. Manage relationships to ensure business needs are met with the appropriate level of prioritization and balance of effort requirements with risk exposure. Work with other areas of the Company to progress the information risk program. 3. Create and implement application access management policy, procedures, standards and guidelines that ensure the safety of information systems assets and confidential customer, consumer, employee and corporate data. Design and implement appropriate application access management security controls to meet Company security objectives and standards while allowing business flexibility. Provide guidance and assistance on the Business Information Risk Officer program to ensure adherence to application access programs and associated policies, standards and processes. 4. Lead the resolution of information risk-related incidents and problems related to application access management. Identify application access management risks and vulnerabilities and solutions to address them. 5. Manage monitoring and reporting activities for the Information Risk function, including identification of key data, appropriate reporting mechanisms and proper report management process. Manage the production of executive reports on assigned application access projects to keep management informed of project status, major issues, scope and resource changes and milestone achievements or misses. 6. Remain current on developments affecting information risk; ensure appropriate communications of these developments. 7. Promote an environment that supports diversity and reflects the HSBC brand. 8. Implement Group policy locally: maintain HSBC internal control standards, including the timely implementation of internal and external audit points together with any issues raised by external regulators; ensure employees apply compliance, operational risk controls in accordance with HSBC or regulatory standards and policies; and optimize relations with regulators by addressing any issues. Emphasize and model human resources and other HSBC policies in order to create an ethical, safe and supportive work environment. 9. Complete other responsibilities, as assigned. III. Knowledge, Skills & Abilities This position requires an individual with:1. Minimum of seven years proven and progressive information risk and/or security experience or equivalent, including experience working with diverse information risk products or equivalent. 2. Bachelors degree in information systems, business, related field or equivalent experience. 3. Strong organizational, analytical, decision-making, communications, interpersonal, project management, problem-solving and lateral thinking skills. 4. Understanding and working knowledge of current information risk and protection trends and best practices. 5. Successful track record in developing and implementing large scale, corporate-wide programs. 6. Proficiency with personal computers as well as pertinent mainframe systems and software packages. 7. Ability to sell the concept of security as a business integrated element contributing to overall Group profitability. 8. Ability to build an effective team working on security issues in cross-cultural environments. EOE M/F/D/V Please forward your resume to jacquelynhertzler@technisource.com No sponsorship available at this timeMust be available to begin immediately Contact: PLEASE E-MAIL RESUMES TO: Apply by Email
|