IAM Separation of Duties Program - San Antonio, United States - USAA

    USAA
    USAA San Antonio, United States

    3 weeks ago

    Default job background
    Full time Administrative
    Description

    Why USAA?

    Let's do something that really matters.

    At USAA, we have an important mission: facilitating the financial security of millions of U.S. military members and their families. Not all of our employees served in our nation's military, but we all share in the mission to give back to those who did. We're working as one to build a great experience and make a real impact for our members.

    We believe in our core values of honesty, integrity, loyalty and service. They're what guides everything we do – from how we treat our members to how we treat each other. Come be a part of what makes us so special

    The Opportunity

    As a dedicated Info Security Engineer I, you Conduct software and systems engineering to develop new capabilities, ensuring Information Security is integrated across the enterprise. Conducts comprehensive technology research to evaluate potential vulnerabilities in Enterprise systems. Identifies and manages existing and emerging risks that stem from business activities and ensures risks associated with business activities are effectively identified, measured, monitored, and controlled. Installs, configures, troubleshoots, and maintains hardware and software.

    The candidate selected for this position will work with the Identity & Access Management (IAM) program operations team within Information Security. They will serve as a key member of the team that oversees IAM's separation of duties program which supports all areas of the Enterprise.

    We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in one of the following locations: San Antonio, TX or Plano, TX. Relocation assistance is not available for this position.

    What you'll do:

    • Responsible for ensuring that security requirements are adequately addressed in all aspects of a solution/application enablement and sustainment lifecycle.
    • Design, develop, code, integrate, and test complex cross functional technical solutions with a focus on security, often collaborating with Engineers or Architects within the team/department.
    • Supports code/design reviews and engineering efficiencies to ensure effective operations and accurate planning.
    • Supports the resolution of production issues and troubleshooting of end-to-end solutions that span multiple applications and systems.
    • Works with architecture to help define directions for cross functional or highly complex key technologies within a specific security domain.
    • Drives community impact through active participation in internal training outlets.
    • Leverages Site Reliability Engineering practices in their domain.
    • Ensures risks associated within their domain activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
    • Monitors and troubleshoots highly complex systems, tools, and vendor integrations.
    • Supports continuous research, analysis, and troubleshooting to identify, resolve, and report on highly complex security issues.
    • Collaborates with Security Analysts, IT and Business Partners to tune, harden, and enhance Security solutions and technologies to keep up with the latest trends and threats.
    • Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.

    What you have:

    • Bachelor's degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
    • 4 years of related experience in Security Engineering and/or Information Technology with a security focus to include experience leading driving enterprise technology projects or initiatives.
    • 2 years of experience delivering technology solutions in all phases of a solution development lifecycle.
    • Working experience with modern programming/scripting languages and frameworks.
    • Experience implementing security engineering activities utilizing modern DevSecOps practices.
    • Demonstrated hands-on success with agile delivery methods and deep desire to be flexible while delivering value early and often.
    • Demonstrated ability to support complex production issues by troubleshooting applications and systems.
    • Experience working with platform engineering concepts on security best practices in infrastructure/policy as code, security architecture design patterns, security vendor integrations, and CI/CD pipelines with built in application security controls.
    • Experience implementing event driven security architecture, methods, and controls.
    • Experience with implementing security architecture, methods, and controls required to meet security, compliance, and audit requirements.
    • Familiarity with cloud and emergent technologies such as: Public Cloud, Containerization, Security Data Lakes, ML/LLMs, GenAI,

    What sets you apart:

    • Experience and/or knowledge of Logical Access and Separation of Duty controls for large financial institutions.
    • Experience in information system audits and Sarbanes-Oxley (SOX) assessments
    • Familiarity with a Process Risk and Control Inventory (PRCI) and the Risk and Control Self-Assessment (RCSA) process
    • Experience or familiarity with Enterprise tools such as ServiceNow and SailPoint
    • Demonstrated experience communicating through multiple channels and mediums to stakeholders at all levels across all lines of defense
    • US military experience through military service or a military spouse/domestic partner [optional]

    The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.

    What we offer:

    Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location. The salary range for this position is: $109, $208,580.00.

    Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.

    Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.

    For more details on our outstanding benefits, please visit our benefits page on

    Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.

    USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

    By applying, you consent to your information being transmitted by beBee to the Employer, as data controller, through the Employer's data processor SonicJobs.
    See USAA Privacy Policy at and SonicJobs Privacy Policy at and Terms of Use at