Home

IT Risk Analyst @Charlotte, NC & Detroit, MI - Hybrid at Detroit, Michigan, USA
Email: [email protected]
Hi Vendors
,

Please find
the below job description fo
r IT Risk Analyst 
and share your best suited
consultants profiles with

Resume

Work Authorization

Current Location

Job Title: IT Risk Analyst

Location: Charlotte, NC 28202

Hybrid: Mandatory 3 days onsite (i.e., Tuesday-Thursday)

Need Banking or Finance domain experience.

Client is preferring locals

In this role,
individuals are expected to:

Execute and perform
test of design and test of effectiveness of Technology, Information Security,
and data controls.

Identify gaps in
the operational effectiveness and compliance with Policies, Standards,
regulatory requirements, and industry best practices.

Develop and present
reports and action plans to business partners and senior management resulting
from testing.

Evaluate
Technology, Cyber Security, and Data Management processes and systems for
opportunities to improve compliance with Internal Policies/Standard
requirements, alignment to regulatory expectations, process improvement and
risk management.

Design, coordinate
and oversee testing procedures to verify the security of systems, networks, and
applications, and manage the remediation of risks.

Identify process
improvement opportunities and develop subsequent plans of action to resolve
gaps with minimal management intervention.

Qualifications:

Completed at least an undergraduate degree in Information Systems,
Information Technology, Cybersecurity, or Computer Science

2-4 years of experience in performing audits for Technology or
Cybersecurity, Audit, Compliance, and/or Risk Management

Perform audits for IT/IS controls which includes evaluate the
design and operating effectiveness of the control structure and compliance
with internal Policies and Standards, as well as industry guidance

Knowledge and understanding of Technology and Cybersecurity
industry frameworks and guidance (i.e., NIST, FFIEC, ISO 27001/27002)

General understanding of fundamental technology and cyber security
principles (e.g., Identity and Access Management, Vulnerability
Management, Capacity Management, SDLC, Data Classifications, etc.)

Ability to exercise judgement, make conclusions and influence a
technology risk mindset with stakeholders

Ability to function in a matrix organization and cross-functional
team

Ability to interact and influence personnel at all levels across
the organization including associated to mid-level leadership

Attention to detail and maintain relevant risk industry knowledge

Critical thinking, problem solving and analytical skills

Demonstrated ability to effectively synthesize and communicate
ideas and insights across the organization, including with executive
leadership

Develop and maintain strong working relationships with internal
Technology, risk, compliance and audit partners

Document test results and provide support for an informed,
objective opinion of the risk exposure

Communicate testing results, observations, and recommendations
verbally and in writing

Engage directly with Business Line to understand business
offerings, processes and procedures

Work effectively with peers and leaders while maintaining
independence necessary to fulfill Technology review and testing
responsibilities

Escalate and report technology and operational risks concerns as
necessary

Proficient use of Microsoft Office products: Word, Excel,
PowerPoint, and SharePoint

Identify emerging technology risks and lead the dialog among
stakeholders

Proficient written and verbal communication

Monitor and drive Information Technologys adherence to enterprise
policies

Review management action plans to assess effectiveness of proposed
remediation and appropriateness of the timeline

Strong detail orientation with ability to research, compile, and
report on data

Understanding of different types of systems (e.g., applications,
servers, virtual servers, APIs, SaaS, Cloud computing)

Meeting
notes:

Performing the
audit

Testing design

ITRA Background

Audit Function

Industry
Framework 

Fundamental
Principles

test of designing
and effectiveness

IAM
Management 

Vulnerability
Management

Financial
Experience is helpful

Charlotte or
Detroit (Charlotte Preference)

certification will
be great -CRISC, CISA, CISSP 

Thanks & Regards
,

Siva Krishna D

Sr. US
IT Recruiter

Lucid

Technologies
Inc

E
:
[email protected]

--

Keywords: rlang information technology North Carolina
IT Risk Analyst @Charlotte, NC & Detroit, MI - Hybrid
[email protected]
[email protected]
View all
Tue Jun 11 00:35:00 UTC 2024

To remove this job post send "job_kill 1468071" as subject from [email protected] to [email protected]. Do not write anything extra in the subject line as this is a automatic system which will not work otherwise.


Your reply to [email protected] -
To       

Subject   
Message -

Your email id:

Captcha Image:
Captcha Code:


Pages not loading, taking too much time to load, server timeout or unavailable, or any other issues please contact admin at [email protected]
Time Taken: 40

Location: ,