Lead Operational Risk Officer
Location: Bengaluru, India, Serilingampalle, India
Job ID: R-170998
Corporate Risk helps all Wells Fargo businesses identify and manage risk. The team focuses on several key risk types, including credit, financial crimes, information security, interest rate, liquidity, market, model, operational, regulatory compliance, reputation, strategic, and technology risk.
The group provides leadership, enhances communications, assists with problem identification and solutions, and shares best practices. In addition, the group provides an enterprise-wide view of risk, assists management and our Board of Directors in identifying and monitoring risks that may affect multiple lines of business, and takes appropriate action when business activities exceed the risk tolerance of the company.
Our team members are the Wells Fargo brand and the foundation of our brand’s success. See top traits we’re looking for and see if you have the right mix.
About this role:
Wells Fargo is seeking a Lead Operational Risk Officer...
In this role, you will:
This role will be part of the broader Information Security Domain Oversight team within the Information and Information Security Risk Management oversight group with a focus on Application Security, DLP, Cloud Security, Vulnerability, Cyber Security, infrastructure and Identity and Access Management (IAM) Domain. The Information Security Domain Oversight function oversees the Front Line’s information security controls and independently credibly challenges IS Domain risk decisions. The team reviews the execution of requirements by Information Security Domains (ISDs) to provide and maintain a consolidated view of effectiveness and sustainability for senior management while ensuring alignment to the Risk Management Framework. Specifically, they evaluate the ISDs on information security risks and controls across the enterprise to which the ISDs are held accountable, including policy, policy design monitoring, control design, execution, and assurance.
Supporting and monitoring an oversight program over on Application Security, DLP, Vulnerability, Cyber, infrastructure and Identity and Access Management (IAM) Domain. Provide their independent assessment, and/or collaborate with other Technology Oversight teams, over topics including the Enterprise Application Security Program, Secure Coding, and Application Security Policy Governance and support, provisioning, de-provisioning and IAM certification. Oversee areas such as Application Security domain capabilities including, but not limited to, Secure Development, Application Security Testing (pre and postproduction), non-adherence Consequence Enforcement, and Web Application Firewall Compliance. Work closely with the broader second line Technology and Information Security Oversight group to help develop a complete picture of enterprise oversight of various information security domains. Be a technical SME in helping design and oversee on Application Security, DLP, Vulnerability, Cyber, infrastructure and Identity and Access Management (IAM) Domain and will cover aspects including risk, governance, and maturity.
Develop detailed understanding of business strategy, the customer base, products and services and other relevant industry issues, frameworks, and emerging risks. Be a driver in execution of the work function and will serve as an independent risk contact for business and risk partners and staff.
10+ years of overall experience. 7+ years of Information security domain experience 5+ years of in IT risk management (includes operational risk, audit, IT systems security, IT business process management) 3+ years in one or a combination of the following: Systems and Infrastructure Security, Application Security, Cryptography, security risk management, DLP, Vulnerability and Patch Management, IAM, Insider Risk.
Knowledge and understanding of platform technologies including network, distributed systems, desktop computing, voice, and threat management technologies Knowledge of national and international regulations relating to information classification, protection, and loss Understanding of various risk pathways leading to loss of electronic and physical information Cloud Security knowledge Industry recognised certifications such as CISSP/CISM/CISA. Advanced Microsoft Office skills
Other Skills / Experience
Excellent verbal, written, and interpersonal communication skills Strong analytical skills with high attention to detail and accuracy Ability to develop independent risk opinion and put forth in writing/graphically (Research & analytic skills, critical thinking, clear and concise opinion) Demonstrated experience in working across geography and in Matrix organisations. Strong relationship development skills
We Value Diversity
At Wells Fargo, we believe in diversity, equity and inclusion in the workplace; accordingly, we welcome applications for employment from all qualified candidates, regardless of race, color, gender, national origin, religion, age, sexual orientation, gender identity, gender expression, genetic information, individuals with disabilities, pregnancy, marital status, status as a protected veteran or any other status protected by applicable law.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit’s risk appetite and all risk and compliance program requirements.
Candidates applying to job openings posted in US: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Candidates applying to job openings posted in Canada: Applications for employment are encouraged from all qualified candidates, including women, persons with disabilities, aboriginal peoples and visible minorities. Accommodation for applicants with disabilities is available upon request in connection with the recruitment process.
Wells Fargo wants to help you get more out of life and take care of things outside the office to make life a little easier. We provide:
Medical, Dental and Vision
Employer Matching 401(k)
Maternity and Paternity Leave
Paid Time Off
I feel proud in the work that I do as I protect the bank from unnecessary risk. I have a large and diverse team operating in eight countries and doing testing work for 40 countries within which the bank operates. This gives me a unique opportunity whereby every single day there's something new that I learned. And both of these things give me immense professional satisfaction in the work that I do.– Rahim, Director Enterprise Testing and Head of International Testing & Validation