Tech Risk Advisory
4 weeks ago
The Goldman Sachs Group, Inc. is a leading global investment banking, securities, and asset and wealth management firm that provides a wide range of financial services.
Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and infrastructure, developing software in support of our efforts, measuring cybersecurity risk, and designing and driving implementation of cybersecurity controls. The team has a global presence across the Americas, APAC, India, and EMEA.
Within Technology Risk, Advisory is the consultative and technology subject matter expertise arm, responsible for assessing new technology initiatives for risk, partnering with engineers to architect and design secure products and services, embedding implementation reviews as part of the SDLC and CI/CD pipeline via code analysis and penetration testing, and guiding technology innovation in terms of security and control across Goldman Sachs. The team plays a critical role in designing and assessing controls for our transition to building native public cloud applications.
Role
In this role, you will support Technology Risk Advisory in delivering best-in-class advisory support and technology solutions across the Information Security risk domains, including scalable uplifts of common core security solutions for use across Goldman Sachs, conducting cyber risk assessments, and driving risk reduction across the portfolio.
The ideal candidate should have a good understanding of regulations that govern this space, be well-versed in risk assessments, and have a demonstrated ability in helping counterparts manage risk.
RESPONSIBILITIES AND QUALIFICATIONS
Job Responsibilities: Support the Technology Risk Advisory function by helping to shape the Vendor Technology Risk strategy, leading a team that assesses threats, risks, and working with Business Units to manage risk portfolios.
As the Vendor Risk Program Vice President, you will be part of or oversee a team that is responsible for assessing and managing the portfolio vendor Information Security Risk across the firm. Your team will be responsible for all Vendor Technology Risk-related initiatives and assessments, including core deep-dive technical cybersecurity assessments and designs of a vendor's logical security controls, Cloud security assessments, Mobile security assessments, and/or Application security assessments.
Basic Qualifications:
- Be well-versed in technical cybersecurity risk assessments, provide security measures/solution technical controls, and demonstrate the ability to help counterparts manage security risks.
- Develop, evaluate, solution, and document security measures, controls, and guardrails to protect data, applications, APIs, implementation/configurations, network infrastructure, and systems (e.g., Security Engineer, Architect, Vulnerability Manager).
- Design or implement security strategy, requirements, and engineer comprehensive cybersecurity architecture through threat modeling (OWASP Top 10, SANS Top 25, etc.), data flow analysis, etc.
- Negotiate and review Information and Cyber Security contractual requirements.
- Working knowledge of the regulatory landscape and its applicability to the vendor ecosystem.
- Good understanding of Information Security controls, along with preferred and alternative implementations.
- Working knowledge of new technology (e.g., Cloud computing, AI, ML, zero trust) and understanding of how to assess related security risks.
- Working knowledge of the overall Procurement process and a clear understanding of Technology Risk's role in that process.
- At least 5 - 7 years of relevant work experience.
Preferred Qualifications:
- Proficient verbal and written communication skills.
- Bachelor of Science in Computer Science, System/Computer Engineering, Cyber-Security, Information Security, Information Technology, or Risk Management is preferred.
- Prior experience conducting IT/cyber security assessments (such as Control Reviews, Design Reviews, Configuration/Implementation Reviews).
- One or more of the following Certificates: CISSP, CCSP, GSEC, CEH, CCNA, CCNP, Solution Architect, Security+, SSCP, or CASP+ are desired.
ABOUT GOLDMAN SACHS
At Goldman Sachs, we commit our people, capital, and ideas to help our clients, shareholders, and the communities we serve to grow. Founded in 1869, we are a leading global investment banking, securities, and investment management firm. Headquartered in New York, we maintain offices around the world.
We believe who you are makes you better at what you do. We're committed to fostering and advancing diversity and inclusion in our workplace and beyond by ensuring every individual within our firm has a number of opportunities to grow professionally and personally, from our training and development opportunities to benefits, wellness, and personal finance offerings and mindfulness programs. Learn more about our culture, benefits, and people at GS.com/careers.
We're committed to finding reasonable accommodations for candidates with special needs or disabilities during our recruiting process. Learn more: Disability Statement.
#J-18808-Ljbffr-
Risk Advisory Professional
4 days ago
Dallas, Texas, United States MorganFranklin Full timeAbout the RoleWe are seeking a highly skilled IT Governance Expert to join our team. As a senior manager, you will lead IT risk advisory engagements from beginning to end, including planning, execution, reporting, and supervision of consultants.About MorganFranklinMorganFranklin is a leading provider of technology risk advisory services. Our team of experts...
-
IT Risk Advisory Senior Manager
4 days ago
Dallas, Texas, United States MorganFranklin Full timeMorganFranklin seeks a skilled Senior Manager to lead our Technology Risk Advisory team. With a strong background in IT risk management, this individual will drive business growth and deliver exceptional results for our clients.Job DescriptionThe Senior Manager, Technology Risk Advisory will lead IT risk advisory engagements from planning to execution,...
-
Risk Advisory Analyst, Sr
6 days ago
Dallas, Texas, United States Hilltop Holdings Inc Full timeJob DescriptionThe Senior Risk Advisory Analyst is responsible for assisting the Hilltop Holdings (HTH) Risk Advisory Director with executing, maintaining and enhancing a best in class risk management program. The Senior Risk Advisory Analyst is instrumental in the implementation and execution of risk oversight processes, which drive consistent risk...
-
Risk Advisory Director
3 days ago
Dallas, Texas, United States CrossCountry Consulting Full timeAbout the RoleThe ideal candidate for this Risk Advisory Director position will have 10-15+ years of experience advising public companies on financial, compliance, technology, strategic, operational, and/or enterprise-wide risk.Expert knowledge of key risk domain standards and frameworks.Proven record of building and developing strong client relationships...
-
Director - Risk Advisory (copy)
5 days ago
Dallas, Texas, United States CrossCountry Consulting Full timeFrom the beginning, our goal was to establish an advisory firm that stands apart from the rest - one that is grounded in our Core Values and dedicated to creating a positive experience not just for our clients, but for our people too. We firmly believe in the strength of collaboration, enthusiasm, generosity, and perseverance as the driving forces behind our...
-
Director - Risk Advisory (copy)
15 hours ago
Dallas, Texas, United States CrossCountry Consulting Full timeFrom the beginning, our goal was to establish an advisory firm that stands apart from the rest - one that is grounded in our Core Values and dedicated to creating a positive experience not just for our clients, but for our people too. We firmly believe in the strength of collaboration, enthusiasm, generosity, and perseverance as the driving forces behind our...
-
Tech Risk Engineering
7 days ago
Dallas, Texas, United States The Goldman Sachs Group, Inc Full timeJob DescriptionWHO WE ARELed by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and infrastructure, developing software in support of our...
-
IT Risk Tech Lead
22 hours ago
Dallas, Texas, United States Freddie Mac Full timeJOB DESCRIPTION At Freddie Mac, you will do important work to build a better housing finance system and you'll be part of a team helping to make homeownership and rental housing more accessible and affordable across the nation. Position Overview: The Risk Assurance team is part of the 1st Line within the Enterprise Operations & Technology Division...
-
Risk Management Specialist
2 days ago
Dallas, Texas, United States SysMind Tech Full time**Job Description**At SysMind Tech, we are seeking a highly skilled Risk Management Specialist to join our team. As a Risk & Control Tester, you will play a critical role in assessing the effectiveness of internal controls, processes, and procedures to mitigate risks and ensure compliance with regulatory requirements.You will work closely with...
-
Director of IT Advisory Services
10 hours ago
Dallas, Texas, United States Jobleads-US Full timeCrossCountry Consulting is a leading advisory firm dedicated to creating a positive experience for our clients and people. Our commitment to our people has earned us numerous awards, including Inc5000's Fastest Growing Companies and Glassdoor's Best Places to Work.We believe in the strength of collaboration, enthusiasm, generosity, and perseverance as...
-
Dallas, Texas, United States Goldman Sachs Full timeTech Risk – Advisory – Vendor Risk – Associate WHO WE ARE Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and...
-
Director of Strategic Advisory
33 minutes ago
Dallas, Texas, United States CrossCountry Full timeCompany OverviewThe role is part of a rapidly growing risk advisory practice that provides solutions spanning accounting and risk, technology-enabled transformation, and transactions. We partner with our clients to solve today's challenges and deliver present and future value.Job DescriptionThis position will serve as a trusted partner to our clients,...
-
Dallas, Texas, United States Goldman Sachs Full timeTech Risk – Advisory – Security Architecture – VP WHO WE ARE Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and...
-
Senior Advisory Professional
7 days ago
Dallas, Texas, United States CrossCountry Consulting Full timeAbout UsAt CrossCountry Consulting, we pride ourselves on being a forward-thinking advisory firm that sets the standard for excellence. Our commitment to our people and clients has earned us numerous accolades, including recognition as one of the Fastest Growing Companies by Inc5000 and a Best Place to Work by Glassdoor.We foster an environment of...
-
Disaster Risk Reduction Professional
10 hours ago
Dallas, Texas, United States Tetra Tech, Inc. Full timeTetra Tech is adding a Mid-level Hazard Mitigation Planner to our Emergency Management Risk & Resilience team based in a Remote capacity.This position requires a highly motivated individual with a strong understanding of community resilience, climate adaptation, hazard mitigation, risk assessment, nature-based solutions, social equity, decision support...
-
Dallas, Texas, United States Goldman Sachs Full timeTech Risk – TRE – Software Engineer – Vice President WHO WE ARE Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and...
-
Strategic Advisory Partner
11 hours ago
Dallas, Texas, United States CrossCountry Full timeWe are looking for a highly skilled Strategic Advisory Partner to join our Business Transformation practice at CrossCountry Consulting. As a key member of our leadership team, you will serve as a trusted advisor to our clients, providing strategic guidance on transaction planning, risks, and issue mitigation.The successful candidate will have a deep...
-
Strategic Advisory Leader
12 hours ago
Dallas, Texas, United States Kroll Full timeCompany OverviewKroll is a global leader in risk and financial advisory solutions, blending trusted expertise with cutting-edge technology to navigate industry complexities.We foster a collaborative environment that empowers our employees to propel their careers.
-
Risk Management Specialist
5 days ago
Dallas, Texas, United States Futran Tech Solutions Pvt. Ltd. Full time**Job Overview**Futran Tech Solutions Pvt. Ltd. is a leading technology services and consulting company focused on building innovative solutions that address clients' most complex digital transformation needs.We help clients realize their boldest ambitions and build future-ready, sustainable businesses.This role will play a key part in our continued success...
-
Cloud Advisory
3 weeks ago
Dallas, Texas, United States ClifyX Full timeAs a Director for Cloud Advisory, you will work closely with our sales team, clients, and technical experts to develop hybrid cloud roadmaps and strategies for clients, conduct comprehensive cloud assessments, distributed cloud architecture design and create implementation plan and roadmap design and propose tailored large-scale security solutions that...