Tech Risk Advisory

4 weeks ago


Dallas, Texas, United States Goldman Sachs Full time
Tech Risk Advisory - Vendor Cyber Security Risk - Dallas - Vice PresidentGoldman Sachs

The Goldman Sachs Group, Inc. is a leading global investment banking, securities, and asset and wealth management firm that provides a wide range of financial services.

Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and infrastructure, developing software in support of our efforts, measuring cybersecurity risk, and designing and driving implementation of cybersecurity controls. The team has a global presence across the Americas, APAC, India, and EMEA.

Within Technology Risk, Advisory is the consultative and technology subject matter expertise arm, responsible for assessing new technology initiatives for risk, partnering with engineers to architect and design secure products and services, embedding implementation reviews as part of the SDLC and CI/CD pipeline via code analysis and penetration testing, and guiding technology innovation in terms of security and control across Goldman Sachs. The team plays a critical role in designing and assessing controls for our transition to building native public cloud applications.

Role

In this role, you will support Technology Risk Advisory in delivering best-in-class advisory support and technology solutions across the Information Security risk domains, including scalable uplifts of common core security solutions for use across Goldman Sachs, conducting cyber risk assessments, and driving risk reduction across the portfolio.

The ideal candidate should have a good understanding of regulations that govern this space, be well-versed in risk assessments, and have a demonstrated ability in helping counterparts manage risk.

RESPONSIBILITIES AND QUALIFICATIONS

Job Responsibilities: Support the Technology Risk Advisory function by helping to shape the Vendor Technology Risk strategy, leading a team that assesses threats, risks, and working with Business Units to manage risk portfolios.

As the Vendor Risk Program Vice President, you will be part of or oversee a team that is responsible for assessing and managing the portfolio vendor Information Security Risk across the firm. Your team will be responsible for all Vendor Technology Risk-related initiatives and assessments, including core deep-dive technical cybersecurity assessments and designs of a vendor's logical security controls, Cloud security assessments, Mobile security assessments, and/or Application security assessments.

Basic Qualifications:

  • Be well-versed in technical cybersecurity risk assessments, provide security measures/solution technical controls, and demonstrate the ability to help counterparts manage security risks.
  • Develop, evaluate, solution, and document security measures, controls, and guardrails to protect data, applications, APIs, implementation/configurations, network infrastructure, and systems (e.g., Security Engineer, Architect, Vulnerability Manager).
  • Design or implement security strategy, requirements, and engineer comprehensive cybersecurity architecture through threat modeling (OWASP Top 10, SANS Top 25, etc.), data flow analysis, etc.
  • Negotiate and review Information and Cyber Security contractual requirements.
  • Working knowledge of the regulatory landscape and its applicability to the vendor ecosystem.
  • Good understanding of Information Security controls, along with preferred and alternative implementations.
  • Working knowledge of new technology (e.g., Cloud computing, AI, ML, zero trust) and understanding of how to assess related security risks.
  • Working knowledge of the overall Procurement process and a clear understanding of Technology Risk's role in that process.
  • At least 5 - 7 years of relevant work experience.

Preferred Qualifications:

  • Proficient verbal and written communication skills.
  • Bachelor of Science in Computer Science, System/Computer Engineering, Cyber-Security, Information Security, Information Technology, or Risk Management is preferred.
  • Prior experience conducting IT/cyber security assessments (such as Control Reviews, Design Reviews, Configuration/Implementation Reviews).
  • One or more of the following Certificates: CISSP, CCSP, GSEC, CEH, CCNA, CCNP, Solution Architect, Security+, SSCP, or CASP+ are desired.

ABOUT GOLDMAN SACHS

At Goldman Sachs, we commit our people, capital, and ideas to help our clients, shareholders, and the communities we serve to grow. Founded in 1869, we are a leading global investment banking, securities, and investment management firm. Headquartered in New York, we maintain offices around the world.

We believe who you are makes you better at what you do. We're committed to fostering and advancing diversity and inclusion in our workplace and beyond by ensuring every individual within our firm has a number of opportunities to grow professionally and personally, from our training and development opportunities to benefits, wellness, and personal finance offerings and mindfulness programs. Learn more about our culture, benefits, and people at GS.com/careers.

We're committed to finding reasonable accommodations for candidates with special needs or disabilities during our recruiting process. Learn more: Disability Statement.

#J-18808-Ljbffr

  • Dallas, Texas, United States MorganFranklin Full time

    About the RoleWe are seeking a highly skilled IT Governance Expert to join our team. As a senior manager, you will lead IT risk advisory engagements from beginning to end, including planning, execution, reporting, and supervision of consultants.About MorganFranklinMorganFranklin is a leading provider of technology risk advisory services. Our team of experts...


  • Dallas, Texas, United States MorganFranklin Full time

    MorganFranklin seeks a skilled Senior Manager to lead our Technology Risk Advisory team. With a strong background in IT risk management, this individual will drive business growth and deliver exceptional results for our clients.Job DescriptionThe Senior Manager, Technology Risk Advisory will lead IT risk advisory engagements from planning to execution,...


  • Dallas, Texas, United States Hilltop Holdings Inc Full time

    Job DescriptionThe Senior Risk Advisory Analyst is responsible for assisting the Hilltop Holdings (HTH) Risk Advisory Director with executing, maintaining and enhancing a best in class risk management program. The Senior Risk Advisory Analyst is instrumental in the implementation and execution of risk oversight processes, which drive consistent risk...


  • Dallas, Texas, United States CrossCountry Consulting Full time

    About the RoleThe ideal candidate for this Risk Advisory Director position will have 10-15+ years of experience advising public companies on financial, compliance, technology, strategic, operational, and/or enterprise-wide risk.Expert knowledge of key risk domain standards and frameworks.Proven record of building and developing strong client relationships...


  • Dallas, Texas, United States CrossCountry Consulting Full time

    From the beginning, our goal was to establish an advisory firm that stands apart from the rest - one that is grounded in our Core Values and dedicated to creating a positive experience not just for our clients, but for our people too. We firmly believe in the strength of collaboration, enthusiasm, generosity, and perseverance as the driving forces behind our...


  • Dallas, Texas, United States CrossCountry Consulting Full time

    From the beginning, our goal was to establish an advisory firm that stands apart from the rest - one that is grounded in our Core Values and dedicated to creating a positive experience not just for our clients, but for our people too. We firmly believe in the strength of collaboration, enthusiasm, generosity, and perseverance as the driving forces behind our...


  • Dallas, Texas, United States The Goldman Sachs Group, Inc Full time

    Job DescriptionWHO WE ARELed by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and infrastructure, developing software in support of our...

  • IT Risk Tech Lead

    22 hours ago


    Dallas, Texas, United States Freddie Mac Full time

    JOB DESCRIPTION At Freddie Mac, you will do important work to build a better housing finance system and you'll be part of a team helping to make homeownership and rental housing more accessible and affordable across the nation. Position Overview: The Risk Assurance team is part of the 1st Line within the Enterprise Operations & Technology Division...


  • Dallas, Texas, United States SysMind Tech Full time

    **Job Description**At SysMind Tech, we are seeking a highly skilled Risk Management Specialist to join our team. As a Risk & Control Tester, you will play a critical role in assessing the effectiveness of internal controls, processes, and procedures to mitigate risks and ensure compliance with regulatory requirements.You will work closely with...


  • Dallas, Texas, United States Jobleads-US Full time

    CrossCountry Consulting is a leading advisory firm dedicated to creating a positive experience for our clients and people. Our commitment to our people has earned us numerous awards, including Inc5000's Fastest Growing Companies and Glassdoor's Best Places to Work.We believe in the strength of collaboration, enthusiasm, generosity, and perseverance as...


  • Dallas, Texas, United States Goldman Sachs Full time

    Tech Risk – Advisory – Vendor Risk – Associate WHO WE ARE Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and...


  • Dallas, Texas, United States CrossCountry Full time

    Company OverviewThe role is part of a rapidly growing risk advisory practice that provides solutions spanning accounting and risk, technology-enabled transformation, and transactions. We partner with our clients to solve today's challenges and deliver present and future value.Job DescriptionThis position will serve as a trusted partner to our clients,...


  • Dallas, Texas, United States Goldman Sachs Full time

    Tech Risk – Advisory – Security Architecture – VP WHO WE ARE Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and...


  • Dallas, Texas, United States CrossCountry Consulting Full time

    About UsAt CrossCountry Consulting, we pride ourselves on being a forward-thinking advisory firm that sets the standard for excellence. Our commitment to our people and clients has earned us numerous accolades, including recognition as one of the Fastest Growing Companies by Inc5000 and a Best Place to Work by Glassdoor.We foster an environment of...


  • Dallas, Texas, United States Tetra Tech, Inc. Full time

    Tetra Tech is adding a Mid-level Hazard Mitigation Planner to our Emergency Management Risk & Resilience team based in a Remote capacity.This position requires a highly motivated individual with a strong understanding of community resilience, climate adaptation, hazard mitigation, risk assessment, nature-based solutions, social equity, decision support...


  • Dallas, Texas, United States Goldman Sachs Full time

    Tech Risk – TRE – Software Engineer – Vice President WHO WE ARE Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and...


  • Dallas, Texas, United States CrossCountry Full time

    We are looking for a highly skilled Strategic Advisory Partner to join our Business Transformation practice at CrossCountry Consulting. As a key member of our leadership team, you will serve as a trusted advisor to our clients, providing strategic guidance on transaction planning, risks, and issue mitigation.The successful candidate will have a deep...


  • Dallas, Texas, United States Kroll Full time

    Company OverviewKroll is a global leader in risk and financial advisory solutions, blending trusted expertise with cutting-edge technology to navigate industry complexities.We foster a collaborative environment that empowers our employees to propel their careers.


  • Dallas, Texas, United States Futran Tech Solutions Pvt. Ltd. Full time

    **Job Overview**Futran Tech Solutions Pvt. Ltd. is a leading technology services and consulting company focused on building innovative solutions that address clients' most complex digital transformation needs.We help clients realize their boldest ambitions and build future-ready, sustainable businesses.This role will play a key part in our continued success...

  • Cloud Advisory

    3 weeks ago


    Dallas, Texas, United States ClifyX Full time

    As a Director for Cloud Advisory, you will work closely with our sales team, clients, and technical experts to develop hybrid cloud roadmaps and strategies for clients, conduct comprehensive cloud assessments, distributed cloud architecture design and create implementation plan and roadmap design and propose tailored large-scale security solutions that...