yoinka

Cloud Risk and Management Advisor - Mid Level

USAA

Tampa CrosstownMid
Sign in to applyVerified 2h ago
Location
Tampa Crosstown
Work model
On-Site
Level
Mid
Posted
1d ago

Skills

AWSAzureCybersecurityGCPOpenShiftREST

About this role

Why USAA? At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families. Embrace a fulfilling career at USAA, where our core values – honesty, integrity, loyalty and service – define how we treat each other and our members. Be part of what truly makes us special and impactful. We are proud to support active-duty military spouses. USAA roles may offer remote or hybrid flexibility for active-duty military spouses consistent with applicable policy and business needs.

The Opportunity

We are seeking a Mid-Level Risk and Compliance professional with 6+ years of hands-on experience in Cloud Governance,  Risk and Controls . In this role, you will work closely with architecture, application development, security, audit, and business teams to identify, assess, and mitigate technology risks impacting USAA’s cloud environments while ensuring compliance with internal policies and industry regulations. The ideal candidate will have practical experience conducting risk assessments, evaluating cloud controls, maintaining governance frameworks, supporting audits, and integrating cloud control requirements throughout the software development lifecycle. Theis includes having hands-on experience reviewing, assessing, and remediating security and compliance controls across public cloud (AWS, Azure, GCP) and private cloud (OpenShift) environments. It also involves the evaluation of cloud control frameworks, execution of control testing for identity and access management, network segmentation, data protection (encryption at rest/in transit), logging and monitoring, and configuration drift. Suitable candidates will have worked with engineering and platform teams to translate technical findings into business impact, prioritize remediation based on risk, and validate closure of findings through retesting and evidence collection; and be comfortable translating technical risks into business impacts and providing recommendations that support both security objectives and organizational goals. Lastly, the ideal candidate will possess a strong understanding of industry frameworks and standards such as Cloud Security Alliance’s CCM, NIST, ISO 27001, COBIT, OWASP, and SOC 2, along with experience supporting compliance and governance initiatives in a complex IT environment. Strong communication, documentation, stakeholder management, and analytical skills are essential for success in this role. Industry-recognized certifications, including PCCSP, CISSP, CISM, CRISC, CISA, Security+, or similar risk and security certifications, are highly valued. Candidates with experience in cloud security governance, DevSecOps practices, vulnerability management, and secure application development will be well-positioned to excel and contribute to the organization's overall risk management and technology strategy. We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in one of the following locations: Charlotte, NC, or Tampa. Relocation assistance is not available for this position.

What you'll do

Partners with key stakeholders in the business to identify, assess, aggregate and document risk and compliance controls, including risks associated with new or modified products, services, distribution channels, regulations, and third-party operations. Communicates results of risk and compliance work to governance committees, business process owners and various levels of leadership. Contributes to the implementation of new risk and compliance policies, practices, appetites, and solutions to ensure holistic understanding and management of risks according to industry best practice. Executes assigned risk or compliance activities in accordance with enterprise policies and procedures. Maintains and expands knowledge of the

Cloud Risk and Management Advisor - Mid Level at USAA — Tampa Crosstown | Yoinka