Compliance Risk
3 weeks ago
The IT Risk and Compliance Analyst will carry out IT security assessment activities including IT risk assessments and security reviews for university departments, as well as evaluations of third-party technology solutions, to ensure alignment with university policies, standards, and external compliance regulations wherever applicable. Assessment activities may include a wide variety of tasks depending on the scope of the review and the IT capabilities within university departments (e.g. developing asset inventory, assessing endpoint and application security controls and configurations, examining procedures, etc.) The analyst will be expected to make contributions to the creation and maintenance of documentation/procedures in support of the IT Risk and Compliance program, and should identify opportunities for leveraging automation to support data consistency and process efficiencies within the program and as it relates to other university IT services. The analyst may provide training and outreach to the university community as needed and may also be called upon to coordinate updates for the IT Continuity of Operations plan and to assist units within the Division of Information Technology as they conduct disaster recovery planning or on other security-related initiatives as requested. The position is vital to the ongoing management of the audit processes and risk mitigation efforts designed to ensure accurate reporting and communication of Clients risk and compliance posture.
Risk Management:
- Organize and execute annual risk control self-assessments
- Establish and maintain open communication channels with stakeholders
- Assist in the identification of potential risks and treatment
- Become proficient in the operations of the ServiceNow IRM module
- Provide input and guidance to teams on risk mitigation
- Lead the effort in maintaining an accurate and comprehensive risk register
- Create, update, and maintain Tech's policies, procedures, and standards
- Assist in identification of appropriate IT General Controls (ITGC)
- Help develop and validate control metrics
- Lead internal audit processes for control validation
- Assist with achieving and maintaining compliance with industry/business requirements
Requirements
- Bachelor's degree in business, information technology, accounting, or a related field; or equivalent combination of education, training, and experience
- Demonstrated experience performing IT security reviews, risk assessments, or audits
- Strong understanding of key information security concepts and fundamentals
- Experience in creating awareness of security practices across multiple technical teams
- Knowledge of security frameworks and standards including NIST, PCI-DSS, ISO 27001, CIS Critical Security Controls, etc.
- Ability to effectively communicate across a broad range of campus audiences
- Exceptional organizational and time-management skills Preferred Qualifications
- Advanced degree in a related field
- Professional certification such as CISA, CISM, CRISC, or CISSP
- Experience performing security assessment of SaaS services
- Knowledgeable of relevant compliance regulations (e.g. FERPA, GLBA)
- Experience with GRC and Information security tools/technologies to collect and maintain security and risk information
- Experience with automation using common scripting tools (e.g. Python, PowerShell, Bash, etc.)
- Experience with GRC tools such as ServiceNow, OneTrust, Lockpath, etc. is beneficial
- Experience with data analysis and manipulation
- Experience managing IT security risk or compliance in a higher education setting
-
Senior Policy
1 day ago
Vienna, United States Navy Federal Credit Union Full timeOverviewTo monitor, research, analyze and interpret relevant federal and state laws and regulations to ensure credit union policies and practices comply with applicable legal and regulatory requirements. Experience in compliance risk assessment and issues management. Develop, implement, and manage compliance risk management processes to enhance effectiveness...
-
Senior Policy
4 weeks ago
Vienna, United States Navy Federal Credit Union Full timeOverviewTo monitor, research, analyze and interpret relevant federal and state laws and regulations to ensure credit union policies and practices comply with applicable legal and regulatory requirements. Experience in compliance risk assessment and issues management. Develop, implement, and manage compliance risk management processes to enhance effectiveness...
-
Senior Policy
2 weeks ago
Vienna, United States Navy Federal Credit Union Full timeOverview To monitor, research, analyze and interpret relevant federal and state laws and regulations to ensure credit union policies and practices comply with applicable legal and regulatory requirements. Experience in compliance risk assessment and issues management. Develop, implement, and manage compliance risk management processes to enhance...
-
Senior Policy
7 days ago
Vienna, United States Navy Federal Credit Union Full timeTo monitor, research, analyze and interpret relevant federal and state laws and regulations to ensure credit union policies and practices comply with applicable legal and regulatory requirements. Experience in compliance risk assessment and issues management. Develop, implement, and manage compliance risk management processes to enhance effectiveness and...
-
Senior Policy
7 days ago
Vienna, United States Navy Federal Credit Union Full timeTo monitor, research, analyze and interpret relevant federal and state laws and regulations to ensure credit union policies and practices comply with applicable legal and regulatory requirements. Experience in compliance risk assessment and issues ma Compliance Officer, Compliance, Officer, Policy, Risk, Senior, Banking, Business Services
-
Senior Policy
2 weeks ago
Vienna, VA, United States Navy Federal Credit Union Full timeTo monitor, research, analyze and interpret relevant federal and state laws and regulations to ensure credit union policies and practices comply with applicable legal and regulatory requirements. Experience in compliance risk assessment and issues management. Develop, implement, and manage compliance risk management processes to enhance effectiveness and...
-
Senior Policy
2 weeks ago
Vienna, VA, United States Navy Federal Credit Union Full timeOverview To monitor, research, analyze and interpret relevant federal and state laws and regulations to ensure credit union policies and practices comply with applicable legal and regulatory requirements. Experience in compliance risk assessment and issues management. Develop, implement, and manage compliance risk management processes to enhance...
-
Vienna, United States Navy Federal Credit Union Full timeOverviewTo design, develop, and implement third party operational risk and compliance frameworks, to effectively identify, assess, monitor and measure risk involving people, processes, systems and external events. Provide subject matter expertise and guidance regarding exams, internal audits, compliance with audit expectations, and third party exams. Support...
-
Vienna, Virginia, United States Navy Federal Credit Union Full timeOverview To design, develop, and implement third party operational risk and compliance frameworks, to effectively identify, assess, monitor and measure risk involving people, processes, systems and external events. Provide subject matter expertise and guidance regarding exams, internal audits, compliance with audit expectations, and third party exams....
-
Vienna, United States Navy Federal Credit Union Full timeOverview To design, develop, and implement third party operational risk and compliance frameworks, to effectively identify, assess, monitor and measure risk involving people, processes, systems and external events. Provide subject matter expertise and guidance regarding exams, internal audits, compliance with audit expectations, and third party exams....
-
Vienna, VA, United States Navy Federal Credit Union Full timeOverview To design, develop, and implement third party operational risk and compliance frameworks, to effectively identify, assess, monitor and measure risk involving people, processes, systems and external events. Provide subject matter expertise and guidance regarding exams, internal audits, compliance with audit expectations, and third party exams....
-
Operational Risk Analyst
5 days ago
Vienna, United States Navy Federal Credit Union Full timeDescription:To review, analyze, and report on Client’s risk, quality, service, and controls, to improve operational efficiency and effectiveness, mitigate risk and remediate operational and regulatory vulnerabilities. Conduct risk assessments to ensure compliance with federal and state regulatory requirements, industry standards, and Client's operating...
-
Operational Risk Analyst
5 days ago
Vienna, United States Idexcel Full timeJob Title: Operational Risk AnalystLocation: Vienna, VA/Pensacola, FL/Hybrid model (2 days onsite in a week)Duration: Long TermTop 3 Required Skills:Technical analysis, Data analysis, CommunicationTop 3 Desired Skills:Risk assessment, Critical thinking, Data analysisDescription:To review, analyze, and report on Client’s risk, quality, service, and...
-
Operational Risk Analyst
3 days ago
Vienna, United States Idexcel Full timeJob Title: Operational Risk AnalystLocation: Vienna, VA/Pensacola, FL/Hybrid model (2 days onsite in a week)Duration: Long TermTop 3 Required Skills:Technical analysis, Data analysis, CommunicationTop 3 Desired Skills:Risk assessment, Critical thinking, Data analysisDescription:To review, analyze, and report on Client’s risk, quality, service, and...
-
Operational Risk Analyst
3 weeks ago
Vienna, United States Seneca Resources Full timeOne of our top clients is hiring an Operational Risk Analyst:Location: Hybrid in Vienna, Virginia - 2 days/week onsiteWork Authorization: US Citizens, Green Card Holders, TN Visa, Green Card EAD's.Description: Maintain and update Operational Risk procedural manuals, job aides, and tools. Assist in overseeing the most complex and highly specialized risk...
-
Operational Risk Analyst
3 weeks ago
Vienna, United States Seneca Resources Full timeOne of our top clients is hiring an Operational Risk Analyst: Location: Hybrid in Vienna, Virginia - 2 days/week onsite Work Authorization: US Citizens, Green Card Holders, TN Visa, Green Card EAD's. Description: Maintain and update Operational Risk procedural manuals, job aides, and tools. Assist in overseeing the most complex and highly specialized...
-
Operational Risk Analyst
3 weeks ago
Vienna, United States Seneca Resources Full timeOne of our top clients is hiring an Operational Risk Analyst:Location: Hybrid in Vienna, Virginia - 2 days/week onsiteWork Authorization: US Citizens, Green Card Holders, TN Visa, Green Card EAD's.Description: Maintain and update Operational Risk procedural manuals, job aides, and tools. Assist in overseeing the most complex and highly specialized risk...
-
Junior Operational Risk Analyst I
2 days ago
Vienna, United States System One Holdings, LLC Full timeJunior Operational Risk Analyst I Location: Hybrid working reporting Vienna, VA or Pensacola, FL In-office requirement: 2x a week or 8x a month Pay Rate: Open to Both C2C and W2 options Position Type: Multiyear Contract Summary To review, analyze, and report on the organization's risk, quality, service, and controls, to improve operational efficiency and...
-
Assistant VP Quality Risk Management
2 weeks ago
Vienna, VA, United States Navy Federal Credit Union Full timeThe Assistant Vice President for ETS Risk Governance and Reporting is a direct report to the Vice President of Risk for Navy Federal’s Information Technology Department. The position supports the broader Enterprise Technology Services (ETS) Risk mission to effectively manage risks, compliance and facilitate informed decision making by building an agile...
-
Operational Risk Analyst( LOCALS ONLY )
5 days ago
Vienna, VA, United States Zillion Technologies Inc Full timeTHIS IS A DIRECT BANKING CLIENT REQUIREMENT ! Operational Risk Analyst Location : Remote and Onsite ( Once a week ) --- Vienna, VA // Pensacola, FL Technical analysis, Data analysis, Communication risk assessment, critical thinking, data analysis To review, analyze, and report on risk, quality, service, and controls, to improve operational...