TIAA · Dallas, TX

Lead Info Security Analyst - Issue and Regulatory Support at TIAA — Dallas, TX

Full-timeDallas, TX$121,000–$121,000/yearPosted 2026-07-23Apply on Workday

Full job description

The Lead Information Security Analyst (Cybersecurity) is responsible for strengthening Global Cybersecurity and Fraud Management (GCFM) control programs by implementing and supporting assessment readiness activities, as well as monitoring, escalating, reporting, and influencing the prioritization of significant risks and control weaknesses.

The GCFM organization is responsible for keeping pace with the ever-changing cybersecurity and fraud management landscape, safeguarding the company's assets from threats and attacks, and managing information technology and security risks and incidents.

The Lead Information Security Analyst serves as the primary interaction point between GCFM Control and Control Program owners and line of defense partners, as well as external assessors and auditors.

Key Responsibilities and Duties

  • Relationship Management — Build and maintain effective relationships with key stakeholders across all three lines of defense and with internal and external business partners to successfully address current regulatory examinations, audits, and inquiries, and prepare for future ones.
  • Issue Management — Support the Holistic Issue Management enterprise program and provide appropriate governance and oversight for the GCFM Issue Portfolio. Ensure the execution of program requirements and support activities required to document and report on risk remediation activities.
  • Regulatory Support — Communicate the schedule of regulatory exams that impact IT, assess readiness, and provide support for interactions with regulators and assessors. Track information requests, perform preliminary reviews of artifacts prior to submission to legal and compliance partners, and schedule meetings with regulators as needed. Govern regulatory findings as they are documented and tracked as formal issues.
  • Assessment Readiness — Maintain and develop the GCFM evidence catalog to support ongoing assessment readiness.

Educational Requirements

  • University (Degree) Preferred

Work Experience

  • 5+ Years Required; 7+ Years Preferred

Physical Requirements

  • Physical Requirements: Sedentary Work

Career Level 8IC

Required Qualifications

  • 5 or more years of working experience in Cybersecurity/Information Security, IT/Technology Risk Management, IT/Technology Compliance, IT/Technology Audit, or Information Technology.
  • Experience with Cybersecurity/Information Security-related laws, regulations, and control frameworks, such as NIST CSF, and experience with control testing of technology risks, controls, policies, and standards.

Preferred Qualifications

  • Experience independently evaluating and/or performing risk and control assessments and audits across Cybersecurity/Information Security domains.
  • Professional certifications including CISSP, CISA, CRISC, CISM, and/or CCSP.

Related Skills

Accountability, Adaptability, Business Continuity Planning, Cloud Computing Security, Collaboration, Communication, Compliance, Consultative Communication, Cybersecurity, Detail-Oriented, General Risk Management, Network Security, Prioritizes Effectively

Anticipated Posting End Date:

2026-07-28

Base Pay Range: $121,000/yr - $149,000/yr

Company Overview

Our Culture of Impact

Benefits and Total Rewards

Equal Opportunity

Accessibility Support

Phone: (800) 842-2755

Email: accessibility.support@tiaa.org

Drug and Smoking Policy

Privacy Notices