Wells Fargo Phoenix, AZ 85067
Important Note: During the application process, ensure your contact information (email and phone number) is up to date and upload your current resume when submitting your application for consideration. To participate in some selection activities you will need to respond to an invitation. The invitation can be sent by both email and text message. In order to receive text message invitations, your profile must include a mobile phone number designated as “Personal Cell” or “Cellular” in the contact information of your application.
At Wells Fargo, we are looking for talented people who will put our customers at the center of everything we do. We are seeking candidates who embrace diversity, equity and inclusion in a workplace where everyone feels valued and inspired.
Help us build a better Wells Fargo. It all begins with outstanding talent. It all begins with you.
Technology sets IT strategy; enhances the design, development, and operations of our systems; optimizes the Wells Fargo infrastructure; provides information security; and enables Wells Fargo global customers to have 24 hours a day, 7 days a week banking access through in-branch, online, ATMs, and other channels.
Our mission is to deliver stable, secure, scalable, and innovative services at speeds that delight and satisfy our customers and unleash the skills potential of our employees.
This is an excellent opportunity for an experienced, forward-looking red teamer to build a world-class red teaming capability at Wells Fargo. The successful Cyber Security Strategist will lead the enterprise’s efforts in adopting and maintaining a system-wide view of threat-driven risks, with the goal of working with senior management to control these risks. The following skills are relevant for this position:
+ Systems thinking
+ Systems Analysis
+ Game theory
+ War gaming
+ Intelligence analysis
+ Writing and presenting
+ Risk Assessment
+ Controls Effectiveness
This position will interact directly with the Offensive Security Research Team and indirectly with our defense teams including the Cyber Threat Fusion Center. The ideal candidate will have extensive experience in conducting research, utilizing attack methods, and evolving Tactics, Techniques, and Procedures (TTPs) for testing our defensive control effectiveness. The position will require regular interface with external entities including cyber threat intelligence organizations, financial industry contacts, and government agencies. Interaction with internal partners including legal, fraud, financial crimes, technology and line of business leaders and executives will be required.
+ Oversee the development of red teaming methods and activities within and across the enterprise, to include (but not limited to) the areas of business continuity, emergency management, supply chain security, information security, personnel security, operations security, and facilities security.
+ Work closely with our CTFC in a “purple team” capacity to trigger incidents and work with them on detection effectiveness.
+ Develop and manage a threat intelligence program to address threats relevant to the areas listed above.
+ Build and maintain a comprehensive model of relevant, feasible threats to the enterprise.
+ Educate senior management regarding the strengths, weaknesses, opportunities, and threats associated with strategic red teaming.
+ Provide regular threat/risk briefings to senior management regarding issues raised by the red team. Present findings within a context of overall risk to the enterprise. Adjust red team activities and agenda based on senior management input.
+ Work closely with existing infrastructure and security teams, both to receive input and to provide practical and actionable intelligence.
+ Act as an adversarial counterpoint to security strategy proposals.
+ Help build, hire, and retain top talent to shape a world-class red team. Taken as a whole, this team (or teams) should represent expertise across a complete range of the enterprise’s functions.
+ 10+ years of Information Security experience, including infrastructure, application development security and architecture
+ 5+ years of information security risk assessment experience
+ 5+ years of experience working with multiple security domains (network, application security, threat intelligence and data analytics)
+ 8+ years of Information Security reporting and analysis experience
+ 3 + years of cyber security incidents and events investigation experience
+ 5+ years of Incident Response Protocols and Tools experience
+ 5+ years of experience one or a combination of the following: reporting, analytics, or modeling in an information security environment, information technology environment, or a combination of both
+ Thorough understanding of security principles and their application in an enterprise IT environment
+ Experience with global regulatory requirements that may impact security (EU Privacy)
+ Knowledge and understanding of one or more standard security related frameworks (NIST-Cyber, CoBIT, ISO)
+ Strong analytical, critical thinking and problem solving skills
+ Ability to effectively communicate to both technical and non-technical audiences
+ One or more security certifications (CISSP, GIAC, CISM, CEH)
+ Expertise in rapid development and deployment of new security solutions
**Other Desired Qualifications**
+ At least 10 years of experience conducting red team assessments of high-consequence systems.
+ Cross-functional security experience in at least two of the areas listed above.
+ Thorough understanding of concepts and principles related to security, strategy, management, and intelligence analysis.
+ Ability to work productively with a variety of stakeholders (and their associated, sometimes conflicting) interests within the enterprise.
+ Ability to work with and against internal resistance, and, as necessary, build consensus for red teaming within the enterprise.
+ Ability to think and act both strategically and tactically, theoretically and pragmatically.
+ Ability to collaborate and share knowledge within a fast-moving, multifaceted enterprise environment.
+ Ability to travel up to 15% of the time
**NC-Charlotte:** 401 S Tryon St - Charlotte, NC
**NC-Charlotte:** 1525 W Wt Harris Blvd - Charlotte, NC
**NC-Winston Salem:** 809 W 4 1/2 St - Winston Salem, NC
**VA-Glen Allen:** 4340 Innslake Dr - Glen Allen, VA
**TX-San Antonio:** 4101 Wiseman Blvd - San Antonio, TX
**DC-Washington:** 1700 K Street NorthWest - Washington, DC
**NC-Raleigh:** 1100 Corporate Center Dr - Raleigh, NC
**AZ-Chandler:** 2600 S Price Rd - Chandler, AZ
**AZ-PHX-Central Phoenix:** 100 W Washington St - Phoenix, AZ
**AZ-PHX-Northwest Phoenix:** 2222 W Rose Garden Ln - Phoenix, AZ
**AZ-Tempe:** 1305 W 23rd St - Tempe, AZ
**TX-Plano:** 4975 Preston Park Blvd - Plano, TX
**TX-Irving:** 2975 Regent Blvd - Irving, TX
**MN-Minneapolis:** 600 S 4th St - Minneapolis, MN
**MN-Minneapolis:** 425 E Hennepin Ave - Minneapolis, MN
**MN-Saint Louis Park:** 600 Highway 169 S - Saint Louis Park, MN
**IA-Des Moines:** 800 Walnut St - Des Moines, IA
**MO-Saint Louis:** 1 N Jefferson Ave - Saint Louis, MO
**PA-Philadelphia:** 101 N Independence Mall E - Philadelphia, PA
**IL-Chicago:** 10 S Wacker Drive - Chicago, IL
**CA-SF-Financial District:** 333 Market St - San Francisco, CA
**MA-Boston:** 125 High Street - Boston, MA
**NY-New York:** 150 E 42nd St - New York, NY
All offers for employment with Wells Fargo are contingent upon the candidate having successfully completed a criminal background check. Wells Fargo will consider qualified candidates with criminal histories in a manner consistent with the requirements of applicable local, state and Federal law, including Section 19 of the Federal Deposit Insurance Act.
Relevant military experience is considered for veterans and transitioning service men and women.
Wells Fargo is an Affirmative Action and Equal Opportunity Employer, Minority/Female/Disabled/Veteran/Gender Identity/Sexual Orientation.
Visit https://www.wellsfargo.com/about/careers/benefits for benefits information.
**Company:** Wells Fargo
**Req Number:** 5603720-6
**Updated:** 2021-10-07 15:01:28.197 UTC