In this role, you will:
- Participate in less complex development and design of methodologies and standards for review activities companywide in alignment with the risk management framework
- Ensure effective and appropriate testing, validation, and documentation of review activities for risk programs, risks, and controls according to standards and other applicable policies within Independent Testing
- Support and implement less complex initiatives with low to moderate risk and exercise independent judgment to guide risk reporting, escalation, and resolution
- Present recommendations for resolving more complex situations and exercise independent judgment while developing expertise in risk management framework and the risk and control environment
- Collaborate and consult with colleagues, internal partners and management
Required Qualifications
- 2+ years of Independent Testing experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
Desired Qualifications
- 2+ years of relevant experience in risk management (includes control testing, compliance, technology risk, operational risk, internal audit, business process management)
- Knowledge and understanding of financial services industry, including compliance, risk management, and/or audit operations
- Specialized knowledge or prior regulatory compliance testing or review experience
- Experience reviewing testing strategies and methodologies; evaluating the adequacy and effectiveness of policies, procedures, processes, initiatives, products and internal controls; and identifying issues
- Experience creating, executing, and documenting compliance, control, and business process testing
- Intermediate Microsoft Office (Word, Excel, Outlook, and PowerPoint)
- Ability to take on a high level of responsibility, initiative, and accountability
- Strong oral and written communication skills
- Demonstrated success with influencing business units to identify, formulate and implement processes/procedures to mitigate risk
- Demonstrated negotiation skills, especially with difficult topics when partnering with lines of business and other key stakeholders. This includes the willingness and ability to question decisions, understand direction and escalate issues where necessary
- One or more of the following certifications:
- Certified Information Security Auditor (CISA)
- Certified Information Security Manager (CISM)
Job Expectations:
- Executes review activities in an effective manner, including leading high risk and/or complex technology engagements in a matrixed environment, and communicates identified risks to management and other interested parties.
- Completes review activities on an accelerated schedule, raising schedule delays as needed while looking for opportunities to remediate schedule issues.
- Leads and supports efforts to challenge risks in processes and evaluate and/or test controls designed to mitigate those risks, including evaluation of control design and operating effectiveness, if applicable.
- Escalates any potential issues discovered during the completion of review activities. Identifies potential corrective actions and follows through on reporting, escalation, and resolution.
- Completes all testing and documentation under limited supervision and appropriately retains all work papers (testing schedule, templates, work-papers, deferrals, deviations, etc.).
- Provides consultation and subject matter expertise including evaluating severity of control deficiencies and related remediation efforts, if applicable.
- Documents test results and any issues identified while also providing recommendations to management, including identifying compensating controls and residual risk to issues identified.
- Builds relationships and collaborates with key stakeholders.
27 Feb 2025
Wells Fargo Recruitment and Hiring Requirements:
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.