Information Security Risk Oversight Professional
$111.61k - $131.3kU.S. Bank
At U.S. Bank, we're on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at-all from Day One.
Job Description
The Information Security Risk Oversight Professional serves as a key member of the Cybersecurity Risk Oversight team within the Second Line of Defense (2LoD). This role is accountable for providing independent oversight and credible challenge of the First Line Information Security program to ensure risks are appropriately identified, assessed, managed, monitored, and reported in alignment with regulatory requirements, industry standards, and internal risk appetite.
This position is intentionally designed for a senior, autonomous professional who can manage their own oversight portfolio, prioritize work based on material risk, and engage effectively with Information Security Services, Technology teams, and senior leadership.
Key Responsibilities
Provide independent oversight and credible challenge of the Information Security program across multiple security pillars, including governance, risk assessments, controls, metrics, and issue management.
Perform risk-based assessments of first line security practices, identifying gaps, weaknesses, thematic concerns, emerging risks, and control deficiencies.
Develop and articulate independent risk opinions supported by sound analysis, evidence, and professional judgment.
Evaluate alignment of first line activities with applicable laws, regulations, regulatory guidance, industry standards (e.g., NIST 800-53, FFIEC, PCI, NIST CSF 2.0, etc), and internal policies.
Monitor key risk indicators, security metrics, assessment results, and issue trends to identify systemic risks or areas requiring escalation.
Escalate material risks, control weaknesses, or ineffective risk management practices through appropriate governance and reporting channels.
Act as a subject matter expert on information security risk, providing insights and guidance to stakeholders while maintaining 2LoD independence.
Build and maintain strong, professional relationships with first line stakeholders while confidently challenging assumptions, conclusions, and risk positions when necessary.
Contribute to executive-level risk reporting by clearly summarizing risk posture, trends, and areas of concern in a concise and defensible manner.
Stay current on evolving cybersecurity threats, regulatory expectations, and industry best practices to continuously strengthen oversight effectiveness.
Basic Qualifications
Bachelor's degree, or equivalent work experience
Typically more than eight years of applicable experience
Preferred Skills/Experience
Strong foundational understanding of information security domains (e.g., vulnerability management, identity and access management, application security, cloud security, security governance, incident management).
Demonstrated ability to perform risk assessments and oversight activities with depth, critical thinking, and professional skepticism.
Experience operating in or with a Second Line of Defense, audit, or regulatory environment is strongly preferred.
Proven ability to work independently and autonomously, managing priorities and delivering high-quality work with limited direction.
Strong written and verbal communication skills, including the ability to translate technical risk into clear, executive-ready insights.
Ability to engage confidently with senior stakeholders while maintaining independence, objectivity, and professionalism.
Relevant certifications (e.g., CISSP, CISA, CRISC, CISM) are preferred but not required.
This role requires working from a U.S. Bank location three (3) or more days per week.
If there's anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to our disability accommodations for applicants ( .
Benefits:
Our approach to benefits and total rewards considers our team members' whole selves and what may be needed to thrive in and outside work. That's why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following:
Healthcare (medical, dental, vision)
Basic term and optional term life insurance
Short-term and long-term disability
Pregnancy disability and parental leave
401(k) and employer-funded retirement plan
Paid vacation (from two to five weeks depending on salary grade and tenure)
Up to 11 paid holiday opportunities
Adoption assistance
Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law
Review our full benefits available by employment status here ( .
U.S. Bank is an equal opportunity employer. We consider all qualified applicants without regard to race, religion, color, sex, national origin, age, sexual orientation, gender identity, disability or veteran status, and other factors protected under applicable law.
E-Verify
U.S. Bank participates in the U.S. Department of Homeland Security E-Verify program in all facilities located in the United States and certain U.S. territories. The E-Verify program is an Internet-based employment eligibility verification system operated by the U.S. Citizenship and Immigration Services. Learn more about the E-Verify program ( .
The salary range reflects figures based on the primary location, which is listed first. The actual range for the role may differ based on the location of the role. In addition to salary, U.S. Bank offers a comprehensive benefits package, including incentive and recognition programs, equity stock purchase 401(k) contribution and pension (all benefits are subject to eligibility requirements). Pay Range: $111,605.00 - $131,300.00
U.S. Bank will consider qualified applicants with arrest or conviction records for employment. U.S. Bank conducts background checks consistent with applicable local laws, including the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act as well as the San Francisco Fair Chance Ordinance. U.S. Bank is subject to, and conducts background checks consistent with the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA). In addition, certain positions may also be subject to the requirements of FINRA, NMLS registration, Reg Z, Reg G, OFAC, the NFA, the FCPA, the Bank Secrecy Act, the SAFE Act, and/or federal guidelines applicable to an agreement, such as those related to ethics, safety, or operational procedures.
Applicants must be able to comply with U.S. Bank policies and procedures including the Code of Ethics and Business Conduct and related workplace conduct and safety policies.
Posting may be closed earlier due to high volume of applicants.
$90.4k - $168.2k
...seeking a Sr. Associate, Security Governance, Risk and Compliance (Audit) to... ...knowledge of risk, compliance, information security and privacy to... ...Act with integrity, professionalism, and personal responsibility... ...Company Accounting Oversight Board (PCAOB), SOC 1/2/3,...RiskH1bLocal areaRemote work$176.4k - $298.32k
...What Information Security and Risk contributes to Cardinal Health Information Technology oversees... ...compliance, resilience, and third-party oversight strategy. This individual will... ...Systems, or related field) preferred ~ Professional certifications such as CISSP, CISM,...RiskContract workTemporary workLocal areaImmediate startFlexible hours$119.77k - $140.9k
...AI Technology Risk Manager At U.S. Bank, we're on a journey... ...Risk/Compliance/Audit (RCA) professionals, and RCA Managers to create,... ...identifying gaps and informing solutions to minimize losses... ...Ensure awareness and manage the oversight of the AI risk management processes...RiskTemporary workWork experience placementWork at officeLocal area3 days per week$152.7k - $294k
...preserve trust. As part of EY Information Security, this role is focused on... ...organization of nearly 900 professionals who collaborate to ensure EY... ..., proactively manage risk, and respond rapidly to incidents... ...delivery, including oversight of compliance execution across...RiskSummer holidayLocal areaFlexible hours$91.7k - $169.6k
...internal position title is Risk Management Senior... ...discrimination, privacy and information leakage, security vulnerabilities, third-party... ..., and actionable for both oversight and discoverability needs.... ...designed to enhance your professional growth, well-being and work...RiskRemote workFlexible hours$130.9k - $154k
...primarily on global IT and security related audits. This... ..., products and information security globally at Coinbase... ..., IT governance, risk management or application... ..., maintenance and oversight risks and controls.... ...Nice to haves: Professional Internal Audit / IT /...RiskLocal area$201.37k - $236.9k
...governance, compliance, risk management, and... ...strategic direction for IT & security audit as a senior... ...APAC) as they relate to information technology, cybersecurity... ...planning, fieldwork oversight, reporting, and issue... ...quality. ~ Relevant professional certifications (e.g.,...RiskWork at officeLocal area$128.1k - $239.6k
...fueled by vast amounts of information. Data is more valuable... ...in EY Information Security has a critical role to... ...Information Security professionals enable EY to work securely... ...Security we blend risk strategy, digital identity... ...governance and oversight, ensuring data protection...RiskWork experience placementSummer holidayLocal areaFlexible hours- ...motivated, technical Cybersecurity professional with experience in... ...Cybersecurity Consultant for Enhanced Information Solutions (EIS), you will... ...Systems Certification (Security+, CISM, CISSP, etc.) Certification... ..., Vulnerability Management, Risk Management, and/or Patch...RiskLive inLocal area
$152.7k - $294k
...and drive the development of long-term information security program strategies that support the... ...initiatives, resulting in consistent risk reduction and improved security posture... ...Industry Knowledge: Familiarity with professional services businesses, such as consulting...RiskSummer holidayFlexible hoursShift work$46 - $65.71 per hour
...Job Summary Our client is seeking an Information Security Architect to join their team! This position... ...business partners on IT findings, risks, and control weaknesses. Validate findings... ...python, JSON and SQL. Experience with professional standards including CCM, NIST CSF,...RiskHourly payWork at office$128.1k - $239.6k
...working world. The EY Global Information Security team is looking for new... ...helping manage security risk using the latest technologies... ...industry-specific experience and professional services knowledge. This... ...it is not just an audit or oversight role, but one that requires...RiskWork experience placementSummer holidayLocal areaFlexible hours- ...Solutions Architect, Security Sirius Computer Solutions... ...-brand provider of information technology solutions... ...products, managed and professional services. This role... ...greatest areas of security risk and proposing... ...Consulting - Provide project oversight on significant client...RiskWork experience placementFor subcontractor
$160k - $175k
...VP - IT Infrastructure & Security Department: Information Technology - Data & Reporting... ...Identity Protection & risk-based access Integrate... ...leadership and direct oversight for the Network & Systems... ...and wellness support ~ Professional development: tuition reimbursement...RiskFull timeRemote workMonday to Friday$96.56k - $124.96k
...Join Dorsey's Information Security team as a GRC Information Security Systems... ...initiatives across audits, risk, governance, and compliance... ...currently hired business professionals, New Hired business... ...Authorization Services Compliance Oversight process. - Execute post-project...RiskContract workTemporary workCurrently hiringWork at officeWorldwideFlexible hours$99.93k - $176.35k
...BSA AML Governance & Partner Oversight leader family provides... ...expectations, and the Bank's risk appetite through effective governance... ...Support in the team members professional and personal. Catch team... ...trends, and translate information into clear recommendations and...RiskFull timeContract work- ...Description U.S. Bank is seeking a Senior Information Security Specialist with demonstrated... .... Provides implementation support for risk assessment and data security procedures... ...Certified Information System Security Professional Ansible/Salt/Chef orchestration tools...RiskTemporary workWork experience placementLocal area
- ...Ernst & Young Oman seeks an Assistant Director in Information Security focused on compliance and risk management. You will enhance business processes by... ...cybersecurity, proven leadership abilities, and relevant professional certifications. Join us in shaping a better working...Risk
$87.7k - $164k
...Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider... ...‑based reports Proven integrity and judgement within a professional environment Ability to appropriately balance work/personal...RiskSummer holidayLocal areaFlexible hours$124k - $280k
...identify vulnerabilities, develop secure systems, and provide... ...potential security breaches, conduct risk assessments and vulnerability... .... Model and reinforce professional and technical standards (e.g.... ...Computer Science, Cybersecurity, Information Security, Information...RiskFull timeH1b- ...infrastructure, cyber security and technology governance... ...management, professional development and succession... ...solutioning. Cybersecurity & Risk Management Implement... ...solutions. Financial Oversight Develop and manage the... ...Bachelor's degree in Information Technology, Computer Science...Risk
- ...multi-workstream initiatives across our Information Security portfolio. This role requires a... ...identifying, managing, and escalating risks, issues, and dependencies ~ Strong... ...benefits package Opportunities for professional development and growth Inclusive...RiskWork experience placementImmediate startFlexible hours
$88k - $158k
...that Target operates smoothly, securely and reliably from the inside... ...experienced Cybersecurity professionals that serve a critical... ...organization, critically think through risks and controls, assess... ...controls and actions to reduce information security risks Advise on...RiskTemporary workWork experience placementFlexible hours$170k - $183k
...with more than 550 investment professionals sharing global perspectives... ...Investment Consultancy & Oversight and Multi-Manager Solutions... ...delivery of performance reports, risk metrics, and strategy... ...status, veteran status, genetic information, citizenship, disability status...RiskFull timeH1bWork at officeWork from homeVisa sponsorship1 day per week$95k - $105k
...governance and compliance program. Works closely with Information Security, Legal, Risk Management, and business stakeholders to help ensure AI... ...a related field preferred. Three (3) plus years of professional work experience in compliance, risk management, audit coordination...RiskWork experience placementRemote workWork from home- ...Responsibilities: - Determines security requirements by assessing... ...requirements, researching information security standards, conducting... ...vulnerability analyses and risk assessments, studying... ...training, or work experience - Professional security certification such...RiskMinimum wageContract workTemporary workWork experience placementRemote work
$57k - $113k
...Huntington Bancshares, Inc. is seeking a Senior Risk Analyst in Oak Knoll, Minnesota. The role involves identifying and mitigating risks across the merchant services portfolio, providing oversight through transaction monitoring and data analysis. Ideal candidates will...Risk- ...between business partners and Information Technology to advance Bell... ...Enterprise Data & Reporting, IT, Risk, Operations, and multiple... ...solutions are accurate, scalable, secure, and aligned with Bell Bank's... ...while providing responsive, professional support. Bell Bank...Risk
$78k - $156k
...based in Bogotá, Colombia. The Product Security Testing Analyst will be responsible for identifying and evaluating information security risks relevant to existing and future... ...provide guidance to lower-level security professionals • Participate in company-wide product...RiskFor contractors$77k - $202k
...identify vulnerabilities, develop secure systems, and provide proactive... ...security breaches, conduct risk assessments and vulnerability... ...development areas. Interpret data to inform insights and recommendations. Uphold and reinforce professional and technical standards (e.g....RiskFull timeH1b
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Risk Oversight Professional. Be the first to apply!
- security officer nights Minneapolis, MN
- part time overnight security officer Minneapolis, MN
- contractor program security officer Minneapolis, MN
- part-time security guard Minneapolis, MN
- overnight security guard Minneapolis, MN
- overnight hospital security officer Minneapolis, MN
- security officer retail store Minneapolis, MN
- security officer hiring event Minneapolis, MN
- hiring security guard Minneapolis, MN
- armed security officer Minneapolis, MN

