IT GRC Analyst II
Indexed description
Responsibilities:
20% Identify, document, and monitor technology risks present across both internal and external (vendor / cloud) environments
20% Quantify inherent and residual IT risk levels to enhance analytics, inform prioritizations, and for use in management reporting
20% Work with risk remediation owners to establish remediation plans with milestones and target dates, and monitor progress towards remediation, escalating as appropriate
20% Execute technology risk management processes and provide input to support continuous improvement of process and program design
10% Perform risk and controls assessments while aggregating reporting for Audit and/or Regulatory issues.
10% Partner with relevant stakeholders to establish clear and consistent IT risk reporting, metrics, KRIs, and KPIs to inform decision making
Required Relevant Experience: Minimum 5 years
Required Knowledge, Abilities, Skills:
- Teamwork, collaboration, self-driven and effective communication skills - both written and verbal.
- 5 years of IT Security and/or IT Risk Management experience working in a mid-to-large size company
- Risk and controls assessments
- Documenting and maintaining IT Policies / Standards
- IT Risk aggregation, reporting, KPI/KRIs
- Issues management
- Third party risk management
Desired Knowledge, Abilities, Skills:
- 5+ years working in a financial institution.
- Knowledge of modern enterprise and security architectures, their challenges, common approaches to overcome their challenges, and their inherent security strengths and weaknesses.
- Professional certifications such as: CISSP, CISA, CISM, GIAC, CGEIT, CRISC, OSCE, or other relevant industry certification
- Experience working within a DevOps environment
Disclaimer
State Employees' Credit Union reserves the right to fill this role at a higher/lower level based on business need.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search