As a Tech Risk Assurance Lead in the Corporate Sector - Cybersecurity & Tech Controls - Data Risk Pillar team, you will lead expert technical risk assurance and control oversight to ensure the firm's products and lines of business achieve their objectives while effectively managing risk. Utilizing your background in technology risk management, you will work with cross-functional teams to identify, assess, and mitigate emerging risks and vulnerabilities. Your tactical and strategic decision-making will significantly impact the firm's operations, financial management, and public image. You will play a crucial role in fostering a robust risk culture and catalyzing continuous improvement, contributing to the development and implementation of comprehensive risk management policies, standards, and controls.
Job responsibilities
- Lead comprehensive risk assessments to identify potential threats and vulnerabilities in the Firm's processes, systems, and operations, developing risk mitigation strategies
- Proactively monitor key risk indicators, analyze control metrics, and offer insights on risk management effectiveness to senior management, driving continuous improvement initiatives, and advise business stakeholders on risk management, controls development and adherence to mitigate risks
- Develop and execute comprehensive project plans and timelines to ensure on-time delivery of technology solutions
- Collaborate with cross-functional teams and business stakeholders to define the program scope, objectives, and deliverables to ensure alignment with overall business goals
- Champion the adoption of agile methodologies and technical solutions, fostering a culture of continuous learning and innovation within the team
- Utilize advanced analytical reasoning to assess program performance, identify areas for improvement, and implement data-driven optimizations to enhance efficiency and effectiveness
- Engage with regulators, clients, and stakeholders on risk-related issues, provide necessary oversight, ensuring compliance with laws, regulations, and internal policies
Required qualifications, capabilities, and skills
- 5+ years of experience or equivalent expertise in technology risk management, information security, or a related field, with a focus on risk assessment and control evaluation
- Demonstrated expertise in regulatory compliance, risk management frameworks, and industry best practices (e.g., NIST, ISO, FFIEC, GDPR)
- Proficiency in data security, risk management & controls, security governance, and analytical thinking, with a track record of implementing effective risk mitigation strategies
- Proven track record of effectively managing resources, budgets, and high-performing teams in a fast-paced, agile environment
- Demonstrate proficiency in applying analytical reasoning and problem-solving techniques to break down business, technical, or operational objectives into manageable tasks and activities
- Advanced knowledge of data analytics and data literacy
Preferred qualifications, capabilities, and skills
- Certified Risk and Information Systems and Controls (CRISC) certification
- Practical public cloud knowledge
- Strong background with Project Management, and Program Management
- Experience with hands on technical responsibilities
- Experience with JIRA