Join our team to innovate in risk mitigation, leveraging your skills in a fast-paced, impactful environment.
As a Tech Risk & Controls Associate in Cloud Foundational Services (CFS) function, you will be a part of a team that supports the implementation of risk identification and assessment, mitigation strategies, controls and action plans for the firm. You will support process owners by testing the controls and assessing the risks based on an established risk assessment framework , and respond to internal and external audit and help with the controls management. As a valued member of the team, you will have the opportunity to learn and grow in a dynamic and fast-paced environment, making a tangible impact on technology risk and controls at the firm.
Job responsibilities
Contribute to building a Risk Assessment framework for CFSPerform control reviews and risk assessment for the processes owned by CFSProactively identify risks and periodic reporting of the sameSupport process owners in managing operational risk and provides transparency to stakeholdersAssist in monitoring technology risks, ensuring compliance with firm standards, regulatory requirements, and industry best practicesMonitor and evaluate the effectiveness of implemented controls, contribute to the recommendations for improvements and addressing gaps in risk managementCommunicate risk-related findings and updates to relevant stakeholders, ensuring alignment with organizational objectives and risk appetiteRequired qualifications, capabilities, and skills
Formal experience or equivalent expertise in technology risk management, information security, or a related fieldProficient in risk identification, assessment, and control evaluation, with a strong understanding of industry standardsDemonstrated ability to analyze complex issues, develop risk mitigation strategies, and communicate effectively with stakeholdersExposure to risk management frameworks, regulations, and industry best practicesPreferred qualifications, capabilities, and skills
CISM, CRISC, CISSP, or other industry-recognized risk certifications