USAA Logo

USAA

Cloud Risk and Management Advisor - Mid Level

Posted 4 Days Ago
Be an Early Applicant
In-Office
Charlotte, NC, USA
85K-163K Annually
Senior level
In-Office
Charlotte, NC, USA
85K-163K Annually
Senior level
Assess, document, and mitigate cloud governance, risk, and compliance controls across public and private cloud environments. Partner with architecture, development, security, audit, and business teams to conduct risk assessments, support audits, validate remediations, implement governance frameworks, and integrate cloud controls into the SDLC. Communicate findings to stakeholders and governance committees and support regulatory and compliance initiatives.
The summary above was generated by AI

Why USAA?

At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families.

Embrace a fulfilling career at USAA, where our core values – honesty, integrity, loyalty and service – define how we treat each other and our members. Be part of what truly makes us special and impactful.

We are proud to support active-duty military spouses. USAA roles may offer remote or hybrid flexibility for active-duty military spouses consistent with applicable policy and business needs.

The Opportunity

We are seeking a Mid-Level Risk and Compliance professional with 6+ years of hands-on experience in Cloud Governance,  Risk and Controls. In this role, you will work closely with architecture, application development, security, audit, and business teams to identify, assess, and mitigate technology risks impacting USAA’s cloud environments while ensuring compliance with internal policies and industry regulations. The ideal candidate will have practical experience conducting risk assessments, evaluating cloud controls, maintaining governance frameworks, supporting audits, and integrating cloud control requirements throughout the software development lifecycle.

Theis includes having hands-on experience reviewing, assessing, and remediating security and compliance controls across public cloud (AWS, Azure, GCP) and private cloud (OpenShift) environments. It also involves the evaluation of cloud control frameworks, execution of control testing for identity and access management, network segmentation, data protection (encryption at rest/in transit), logging and monitoring, and configuration drift.

Suitable candidates will have worked with engineering and platform teams to translate technical findings into business impact, prioritize remediation based on risk, and validate closure of findings through retesting and evidence collection; and be comfortable translating technical risks into business impacts and providing recommendations that support both security objectives and organizational goals.

Lastly, the ideal candidate will possess a strong understanding of industry frameworks and standards such as Cloud Security Alliance’s CCM, NIST, ISO 27001, COBIT, OWASP, and SOC 2, along with experience supporting compliance and governance initiatives in a complex IT environment. Strong communication, documentation, stakeholder management, and analytical skills are essential for success in this role. Industry-recognized certifications, including PCCSP, CISSP, CISM, CRISC, CISA, Security+, or similar risk and security certifications, are highly valued. Candidates with experience in cloud security governance, DevSecOps practices, vulnerability management, and secure application development will be well-positioned to excel and contribute to the organization's overall risk management and technology strategy.

We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in one of the following locations: Charlotte, NC, or Tampa.

Relocation assistance is not available for this position.

What you'll do:

  • Partners with key stakeholders in the business to identify, assess, aggregate and document risk and compliance controls, including risks associated with new or modified products, services, distribution channels, regulations, and third-party operations.
  • Communicates results of risk and compliance work to governance committees, business process owners and various levels of leadership.
  • Contributes to the implementation of new risk and compliance policies, practices, appetites, and solutions to ensure holistic understanding and management of risks according to industry best practice.
  • Executes assigned risk or compliance activities in accordance with enterprise policies and procedures.
  • Maintains and expands knowledge of the competitive/regulatory landscape and the company's key challenges.
  • Reviews laws and regulations for business impact and makes proposals for awareness and action.
  • May coordinate and respond to regulatory requirements and requests and ensures the execution of examinations.
  • Performs work on risk and compliance processes that focus on enhancing strategies, tools, and methodologies to measure, monitor, and report risks.
  • Applies knowledge to assess data and produce analytical insights to understand business objectives, drive business decisions and influence solution strategies.
  • Actively contributes in cross-functional teams to identify, assess, aggregate, and mitigate current and emerging risk events.
  • Contributes to stress test plans for a line of business or the enterprise including the evaluation of results and framing of contingency plans in partnership with key business stakeholders.

What you have:

  • Bachelor's degree; OR 4 years of relevant education and/or experience.

Experiences that will support your success:

  • 6+ years relevant experience in risk, compliance, legal or audit within the financial services or insurance industry or specialized technical fields directly related to the role.
  • Extensive exposure to Cloud Native Application Platforms (CNAPP), such as Prisma, Orca, and Wiz
  • Risk and/or compliance experience in a highly matrixed environment.
  • Knowledge of compliance laws, regulations, and regulatory expectations.
  • Demonstrated ability to apply regulatory risk and compliance knowledge to consult and provide guidance.
  • Demonstrated ability to effectively challenge in business or team settings.
  • Ability to effectively work with internal and external partners in a highly collaborative environment.
  • Demonstrated critical thinking and knowledge of data analysis tools and techniques and decision-making abilities to effectively recommend data-driven solutions.
  • Proactively identifies potential concerns and effectively recommends solutions.
  • Advanced proficiency with Microsoft Office products including Word, Excel, and PowerPoint.

What sets you apart:

  • US military experience gained through military service or gained as a military spouse / domestic partner
  • Industry-recognized certifications, including PCCSP, CISSP, CISM, CRISC, CISA, Security+, or similar cloud controls certifications, are highly valued and demonstrate a strong commitment to security, governance, and risk management best practices.
  • Experience with cloud security governance and risk management across platforms such as Microsoft Azure, Amazon Web Services (AWS), or Google Cloud Platform (GCP).
  • Familiarity with DevSecOps methodologies, CI/CD security controls, secure code review practices, and vulnerability management processes.
  • Experience implementing or supporting Secure Software Development Lifecycle (SSDLC) practices within enterprise technology environments.
  • Knowledge of industry-standard frameworks and controls, including CSA CCM, NIST, ISO 27001, COBIT, OWASP, and SOC 2.
  • Experience working in highly regulated industries, such as financial services, healthcare, insurance, government, or technology organizations.
  • Strong ability to collaborate with cross-functional stakeholders, including engineering, security, audit, compliance, and business teams.

Compensation range: The salary range for this position is: $85,040.00 - $162,550.00.

USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.).

Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location.

 

Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.

The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.

 

Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.

 

For more details on our outstanding benefits, visit our benefits page on USAAjobs.com.

Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.

 

USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

USAA Charlotte, North Carolina, USA Office

200 West Boulevard, Charlotte, United States, 28203

Similar Jobs

An Hour Ago
Hybrid
Senior level
Senior level
Fintech • Financial Services
Lead and deliver complex infrastructure solutions for advisor-facing business applications, translate business needs into requirements, drive enterprise integration and desktop migration initiatives, ensure alignment with regulatory and enterprise standards, and collaborate across product, technology, and business teams to resolve issues and improve infrastructure.
4 Hours Ago
Easy Apply
Remote or Hybrid
USA
Easy Apply
140K-170K Annually
Senior level
140K-170K Annually
Senior level
Artificial Intelligence • Big Data • Logistics • Machine Learning • Software • Transportation
Sell FourKites SaaS supply chain and logistics solutions to new and existing Fortune 1000 accounts. Manage 15-25 accounts, exceed quota, develop strategic account plans, map solutions to customer SOPs, coordinate cross-functional GTM efforts, update Salesforce, and leverage internal AI tools to drive growth and expanded ARR.
Top Skills: Fourkites Ai ToolsLinkedin Sales NavigatorSaaSSalesforceZoominfo
5 Hours Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
101K-153K Annually
Senior level
101K-153K Annually
Senior level
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Drive pre-sales services for enterprise accounts by positioning and selling Samsara professional services, scoping and producing SOWs, owning services ARR attach quota, forecasting pipeline, and partnering with Sales, Sales Engineering, and Customer Success through implementation and executive engagement.
Top Skills: Salesforce (Sfdc)

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account