Wells Fargo | Company Overview

Wells Fargo & Company is one of the largest multinational financial services firms in the world and a cornerstone of the U.S. banking system. Headquartered in San Francisco, it ranks within the Fortune 50 and is consistently among the “Big Four” banks in the United States by total assets. With operations in more than 30 countries and tens of millions of customers worldwide, Wells Fargo plays a critical role in consumer banking, commercial lending, and capital markets, maintaining a global presence while remaining deeply embedded in the American financial landscape.

 


Professional Experience

 

Hunter Storm | Information Security Consultant

Security Consultant / Information Security Engineer / Operational Risk Consultant

Provided internal consulting services on complex information security projects in alignment with regulatory (PCI, FFIEC, HIPAA, etc.) and legal issuances, information security policies, and standards. Identified and assessed risks to the enterprise based upon environment and data classification to NIST standards. Assessed site reviews, code reviews, and penetration test results to incorporate into written security risk assessments / gap analysis for internal and external applications, infrastructure, and third-party vendors. Maintained awareness of bank security policies and government regulations pertaining to information security. Recommended mitigating controls based on federal regulations, accepted bank policies, and industry best practices. Conducted formal information security training and provided mentoring for senior risk professionals. Created detailed training document, resulting in tripling new hire productivity. Collaborated with legal, architecture, and executives to develop cost-effective security solutions.

  • Streamlined risk assessment process time 80% by building automated process and checklists.
  • Created Security Plans for almost all of the business verticals within the Wells Fargo enterprise, including: Technology Operations Group (TOG), Internet Services Group (ISG), Home and Consumer Finance Group (HCFG), Human Resources (HR), Wells Fargo Auto (WFA), Wells Fargo Bank (WFB), WBR, Trust, Business Banking Group (BBG), Business Direct (BD), Community Banking (CB), Retail Banking, Wholesale Banking, Reliable Financial, Strong Financial, Audit, etc.
  • Developed the first enterprise security plan templates and disclaimer verbiage prior to implementation of SPARC system, as well as after. Provided these to management and teammates, where they became the basis for the templates used in the SPARC system today.
  • Evaluated systems and worked with ISOs and SMEs to write Security Plans for most LOBs within the Wells Fargo enterprise, including: TOG, ISG, HCFG, WFA, WFB, WBR, Trust, BBG, Business Direct, Community Banking, Retail, Wholesale, Reliable, Strong, Audit, and more.
  • Identified and assessed risks to the enterprise based upon environment and data classification, then documented the risk assessments in written security plans. Assessments included evaluations of physical locations (site review findings, CISE, etc.), code review findings, vendors, encryption, infrastructure (hardware, firewalls, network, etc.), internally and externally developed applications (custom and commercially available), data, legal hold, and more.

 


Discover More from Hunter Storm