Senior Information Security Analyst II - OppFi Chicago, Illinois, United States Bookmark Share Print 58 0 0

Listing Description

As a leading financial technology platform, OppFi powers banks to bring credit access to  millions of everyday consumers who are locked out of mainstream financial options. We go beyond our mission - to help people rebuild financial health - and go further to ensure we keep the customer at the center of everything we do. We are creating a Customer-obsessed culture, with the capital “C”. 


And it starts with our team here. We are a team of caring, innovative, and inclusive individuals who thrive in being immersed in diverse talents, expertise, perspectives and backgrounds. Our employees approach every new challenge with an unparalleled ability to see what could be rather than settle for what is. We welcome individuals who want to make a difference in the financial system through creating and building simple, transparent products that facilitate credit access, enable savings, and build wealth.


A few other fun facts about us. OppFi is an Inc. 5000 company for six straight years, a Deloitte's Technology Fast 500™, the seventh fastest-growing Chicagoland company by Crain's Chicago Business, and was named on Built In's 2022 Best Places to Work in Chicago.


What you get to do:



  • Manage the process and tools for Information Security & Risk Management, and process IT due-diligence requests and ensure compliance to policies, procedures and regulations.

  • Work with partners in IT, Compliance, Internal Audit, and Legal to review and provide security guidance on current and new processes, maintain evidence and artifacts for all audits.

  • Identify and analyze new requirements for policy impacts; develop and update policies, procedures and guidelines.

  • Be the primary point of security risk management activities, including analyzing, quantifying, and tracking identified information security risks and reviewing and documenting risk exception requests.

  • Manage risk related to vendor risk through RFI engagement, contract review and the administration of an RCSA framework.

  • Organize and track cybersecurity audit engagements and due diligence activities.

  • Use working knowledge of information security best practices to ensure IT controls are in place to meet our external audit and client requirements.

  • Recommend improvements to our information systems control environment, risk management and IT audit processes to reduce duplicate audit requests in addition to minimizing Process Owner dependency to obtain control evidence.

  • Work with the Technology Process Owners to create, modify, validate, and decommission policies/procedures.

  • Ensure compliance with established IT policies and procedures by examining IT records, reports, operating practices, and documentation.

  • Create dynamic dashboards and scorecards for visibility of Information Security Governance activities.


What you will bring to the team:



  • Experience with security and control frameworks, such as FFIEC, NIST, COBIT, ITIL, and ISO control framework

  • Background in Information Security, IT Risk Management, or IT Audit

  • 8+ years of experience supporting Information Technology compliance programs to meet regulatory or compliance requirements

  • Experience identifying potential IT controls risks and opportunities through and offering sustainable recommendations that address cause rather than symptoms

  • Experience with information security standards, best practices for securing computer systems within applicable laws and regulations

  • Experience with Governance Risk & Compliance (GRC) tools and procedure development

  • Experience working in a regulated industry (financial services or health care)


 


Reports to: Director, Application Security & IT GRC


Job Level: Lead


The minimum salary for this role is $115,000. The total compensation package includes eligibility for performance-based bonuses as well as a 1-time equity grant based on level.


The actual offer, reflecting the total compensation package and benefits, will be at the company’s sole discretion, and determined by a myriad of factors including, but not limited to, years of experience, depth of experience, and other relevant business considerations.


  


Total Rewards and Benefits


OppFi offers a flexible remote environment, 401(k) matching program, and flexible paid vacation. Other benefits include medical benefits, dental and vision coverage, and tuition reimbursement. To support your wellness & growth, we provide monthly meditation and yoga classes and access to all LinkedIn Learning courses. We also offer Fringe, which is a lifestyle benefits platform that lets you decide how you want to spend your rewards from dozens of vendors like Uber, Doordash, and Urban Sitter. Dress code is casual. 


 


EEOC Statement: 


OppFi is an equal opportunity employer and does not discriminate based on any actual or perceived legally recognized protected bases under local, state, or federal law or regulations. Our goal as a company is to build an equitable workplace that actively works to dismantle systems of oppression in our processes, procedures, and interactions. We aim to help our employees thrive where they work and beyond. Check out our Culture page here.


OppFi is committed to the full inclusion of all qualified individuals. As part of this commitment, OppFi will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact our People team at recruiting@oppfi.com


Pursuant to the requirements of the California Consumer Privacy Act, OppFi is providing the "OppFi California Employee Privacy Policy", which details the categories of personal information collected and your rights under the policy. If you are a California resident, please review the policy here: https://www.oppfi.com/careers/


 


Listing Details

  • Citizenship: Not Provided
  • Incentives: Not Provided

 

  • Education: Not Provided
  • Travel: Not Provided
  • Telework: Not Provided



About Us

NinjaJobs is a community-run job platform developed by information security professionals. Our unique approach of focusing strictly on cybersecurity positions allows us to personalize the user experience.

Our Contacts

1765 Greensboro Station Pl.
Suite 900
Tysons Corner Va 22102

(703) 594-7765