Why USAA?
Let's do something that really matters.
At USAA, we have an important mission: facilitating the financial security of millions of U.S. military members and their families. Not all of our employees served in our nation's military, but we all share in the mission to give back to those who did. We're working as one to build a great experience and make a real impact for our members.
We believe in our core values of honesty, integrity, loyalty and service. They're what guides everything we do - from how we treat our members to how we treat each other. Come be a part of what makes us so special!
The Opportunity
As a dedicated
Info Security Engineer Lead , you will conduct software and systems engineering to develop new capabilities, ensuring Information Security is integrated across the enterprise. Conducts comprehensive technology research to evaluate potential vulnerabilities in Enterprise systems. Identifies and manages existing and emerging risks that stem from business activities and ensures risks associated with business activities are effectively identified, measured, monitored, and controlled. Installs, configures, troubleshoots, and maintains hardware and software.
The candidate selected for this position will work with the Identity & Access Management (IAM) program operations team within Information Security. They will help lead a team that oversees IAM's separation of duties program which supports all areas of the Enterprise.
We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in one of the following locations: San Antonio, TX, Plano, TX. Relocation assistance is not available for this position.
What you'll do:- Responsible for ensuring that security requirements are adequately addressed in all aspects of a solution/application enablement and sustainment lifecycle.
- Design, develop, code, integrate, and test complex cross functional technical solutions with a focus on security, often collaborating with Engineers or Architects outside of team/department.
- Leads the team in code/design reviews and engineering efficiencies to ensure effective operations and accurate planning.
- Independently resolves complex production issues and leads troubleshooting of end-to-end solutions that span multiple applications and systems.
- Works with architecture to help define direction for cross functional or highly complex key technologies within a specific security domain.
- Drives community impact through active participation in internal and external training outlets, conferences, blog post, and participating in professional societies, advisory boards, and consortiums.
- Leverages Site Reliability Engineering practices in their domain.
- Ensures risks associated within their domain activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
- Influences and leads cross-functional efforts across the Enterprise as a subject matter expert in their domain.
- Monitors and troubleshoots highly complex systems, tools, and vendor integrations.
- Performs continuous research, analysis, and troubleshooting to identify, resolve, and report on highly complex security issues.
- Collaborates with Security Analysts, IT and Business Partners to tune, harden, and enhance Security solutions and technologies to keep up with the latest trends and threats.
- Provides mentorship and guidance to junior engineers, fosters a culture of continuous learning and professional growth, and ensures the team stays current with the latest security trends and technologies.
- Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
What you have:- Bachelor's degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
- 8 years of related experience in Security Engineering and/or Information Technology with a security focus to include experience leading driving enterprise technology projects or initiatives.
- 6 years of experience delivering technology solutions in all phases of a solution development lifecycle.
- Demonstrated experience leading and owning security strategies, solutions, and/or initiatives, with proven ability to drive these efforts to successful completion.
- Advanced experience with modern programming/scripting languages and frameworks.
- Experience designing, implementing, and leading security engineering activities utilizing modern DevSecOps practices.
- Demonstrated hands-on success with agile delivery methods and deep desire to be flexible while delivering value early and often.
- Demonstrated ability to address complex production issues by troubleshooting applications and systems.
- Experience working with platform engineering concepts on security best practices in infrastructure/policy as code, security architecture design patterns, security vendor integrations, and CI/CD pipelines with built in application security controls.
- Experience leading the implementation of event driven security architecture, methods, and controls.
- Experience with advising on security architecture, methods, and controls required to meet security, compliance, and audit requirements.
- Familiarity with cloud and emergent technologies such as: Public Cloud, Containerization, Security Data Lakes, ML/LLMs, GenAI, etc.
What sets you apart:- Experience and knowledge of Logical Access and Separation of Duty controls for large financial institutions.
- Experience in information system audits and Sarbanes-Oxley (SOX) assessments
- Experience with developing and maintaining a Process Risk and Control Inventory (PRCI) and executing a Risk and Control Self-Assessment (RCSA)
- Experience or familiarity with Enterprise tools such as ServiceNow and SailPoint
- Demonstrated experience communicating through multiple channels and mediums to stakeholders at all levels across all lines of defense.
- Professional certification; CISM, CISA or CISSP
- US military experience through military service or a military spouse/domestic partner optional
The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.
What we offer: Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location. The salary range for this position is: $138,230.00 - $264,200.00
. Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.
Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.
For more details on our outstanding benefits, please visit our benefits page on
Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.
USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.