Current jobs related to Senior Risk Assessment Specialist in Information Security - Columbus, Ohio - Northwest LLC


  • Columbus, Ohio, United States Chemical Abstracts Service Full time

    Job Summary:This role is responsible for designing, implementing, and maintaining an effective information security risk management program to identify, assess, and mitigate security risks. The ideal candidate will have a strong background in information security and risk management, with experience in conducting comprehensive risk assessments and developing...


  • Columbus, Ohio, United States Chemical Abstracts Service Full time

    Job SummaryWe are seeking a highly skilled Information Security Risk Manager to join our team at Chemical Abstracts Service. As a key member of our security team, you will be responsible for identifying, assessing, and mitigating security risks to our organization's information assets.Key ResponsibilitiesDesign, implement, and maintain an effective...


  • Columbus, Ohio, United States Sutton Bank Full time

    Job Title: Information Security Risk AnalystSutton Bank is seeking a highly skilled Information Security Risk Analyst to join our team. As a key member of our Information Security Office, you will be responsible for identifying, testing, and monitoring controls to ensure the security and integrity of our systems and data.Key Responsibilities:Analyze and...


  • Columbus, Ohio, United States State of Ohio Full time

    Job SummaryWe are seeking a highly skilled Information Technologist 1 to join our team at the State of Ohio. As an IT Risk Manager, you will be responsible for delivering, implementing, and supporting security software applications, evaluating the effectiveness and risk of IT processes, and performing network, server, endpoint, and application risk...


  • Columbus, Ohio, United States State of Ohio Full time

    Job Title: Information Technologist 1At the State of Ohio, we are seeking a highly skilled Information Technologist 1 to join our team. As an IT professional, you will play a critical role in ensuring the security and integrity of our systems and data.Key Responsibilities:Evaluate the effectiveness and risk of IT processes and procedures.Perform network,...


  • Columbus, Ohio, United States Northwest LLC Full time

    Job SummaryWe are seeking a highly skilled Information Security Risk Assessor Lead to join our team at Northwest LLC. As a key member of our Enterprise Risk Management team, you will be responsible for assessing, verifying, reviewing, and auditing technology controls and/or business process controls across the enterprise.Key ResponsibilitiesConduct risk...


  • Columbus, Ohio, United States Northwest Bank Full time

    Job SummaryWe are seeking a highly skilled Information Security Risk Assessor Lead to join our team at Northwest Bank. As a key member of our Enterprise Risk function, you will be responsible for assessing, verifying, reviewing, and auditing technology controls and/or business process controls across the enterprise.Key ResponsibilitiesExecute compliance...


  • Columbus, Ohio, United States Northwest Bank Full time

    Job SummaryWe are seeking a highly skilled Information Security Risk Assessor Lead to join our team at Northwest Bank. As a key member of our Enterprise Risk function, you will be responsible for assessing, verifying, reviewing, and auditing technology controls and/or business process controls across the enterprise.Key ResponsibilitiesExecute compliance...


  • Columbus, Ohio, United States State of Ohio Full time

    Job SummaryWe are seeking a highly skilled Information Technologist 1 to join our team at the State of Ohio. As an IT Risk Management Professional, you will play a critical role in ensuring the security and integrity of our systems and data.Key ResponsibilitiesEvaluate and implement security software applications, including firewalls, IDS/IPS, and SIEM...


  • Columbus, Ohio, United States KPMG Full time

    Business Title: Federal Cyber Risk Assessment SpecialistRequisition Number:Function: Business Support ServicesArea of Interest:State:OHCity: ColumbusDescription:KPMG is a leading provider of audit, tax, and advisory services. We are seeking a Federal Cyber Risk Assessment Specialist to join our Enterprise Security Services organization. This is a remote work...


  • Columbus, Ohio, United States Western Alliance Bank Full time

    Job Title: Enterprise Risk Management Senior Risk Analyst Job Summary: Western Alliance Bank is seeking a highly qualified and experienced Senior Risk Management Specialist to join our IT/IS and TPRM risk management team. The successful candidate will take on supporting IT/IS risk management functions, including reviewing first line controls for...


  • Columbus, Ohio, United States Abacus Technology Corporation Full time

    Job Title: Information Security AnalystAbacus Technology Corporation is seeking a highly skilled Information Security Analyst to join our team. As a key member of our cybersecurity team, you will be responsible for providing security and information assurance support for the 14th Flying Training Wing at Columbus AFB.Responsibilities:Assess and monitor...


  • Columbus, Ohio, United States Bread Financial Full time

    Job SummaryThe Senior Manager, Information Security will be responsible for leading a team of Information Security Vulnerability Management professionals. This position will oversee the overall Vulnerability Management program, including penetration testing, and ensure compliance to regulatory requirements. The Senior Manager will also be responsible for...


  • Columbus, Ohio, United States Western Alliance Bank Full time

    Job Title: Senior Risk Management AnalystLocation:Job Summary:Western Alliance Bank is seeking a highly qualified Senior Risk Management Analyst to join our IT/IS and TPRM risk management team. The successful candidate will take on supporting IT/IS risk management functions, including reviewing first line controls for completeness, assisting with targeted...


  • Columbus, Ohio, United States iboss Full time

    Job Title: IT Governance, Risk, and Compliance SpecialistAbout ibossiboss is a cloud security company that enables the modern workforce to connect securely and directly to all applications from wherever they work. Our cloud architecture delivers security capabilities such as SWG, malware defense, RBI, CASB, and data loss prevention to all connections via the...


  • Columbus, Ohio, United States iboss Full time

    Job Title: IT Governance, Risk, and Compliance SpecialistAbout ibossiboss is a cloud security company that enables the modern workforce to connect securely and directly to all applications from wherever they work. Our cloud architecture delivers security capabilities such as SWG, malware defense, RBI, CASB, and data loss prevention to all connections via the...


  • Columbus, Ohio, United States United Software Group Full time

    Job SummaryUnited Software Group is seeking a highly skilled Information Security Specialist to join our team. As an Information Security Specialist, you will be responsible for ensuring the security and integrity of our company's information systems and data.Key Responsibilities⁠ ⁠Testing and analyzing assets for potential security threats.⁠ ...


  • Columbus, Ohio, United States TEKsystems Full time

    Job OverviewTEKsystems is supporting a Fortune 500 company in Columbus, OH with a Security Analyst opening. The ideal candidate will have 2-5 years of IT experience and at least 2 years of Information Security exposure.Key responsibilities include performing Third-Party Information Risk Assessments. Proficiency in Python, APIs, and/or scripting is a plus,...


  • Columbus, Ohio, United States State of Ohio Full time

    Job Title: Information Technologist 1Job Summary:We are seeking a highly skilled Information Technologist 1 to join our team. The successful candidate will be responsible for delivering, implementing, and supporting security software applications, evaluating effectiveness and risk of IT processes, and performing network, server, endpoint, and application...


  • Columbus, Ohio, United States VRK IT Vision Inc Full time

    Job OverviewVRK IT Vision Inc is seeking a highly skilled Risk Management Specialist to join our team. As a Risk Management Specialist, you will be responsible for performing risk assessments of IT systems in development, engaging with project/segment teams, and serving as the Risk voice.Key ResponsibilitiesPerform risk assessments of IT systems in...

Senior Risk Assessment Specialist in Information Security

2 months ago


Columbus, Ohio, United States Northwest LLC Full time


The Lead Information Security Risk Assessor plays a crucial role in evaluating, validating, and auditing technology and business process controls across the organization in accordance with regulatory standards.

This position entails conducting comprehensive risk assessments that involve scrutinizing IT and business systems and processes.

Moreover, the Lead Assessor will support the evaluation of risks associated with third-party and fourth-party vendors, assess control weaknesses, and recommend remediation strategies aligned with organizational policies and regulatory mandates.


Key Responsibilities

  • Conduct compliance evaluations; facilitate remediation planning, track exposures, and communicate risks in line with regulatory frameworks.
  • Provide insights into security architecture and design by collaborating with the Enterprise Risk function to manage technology-related risks.
  • Offer technical support to the Vendor Management Team in conducting security assessments, audits, and verification activities for third and fourth-party vendors, making recommendations to mitigate identified risks.
  • Implement adaptive security measures based on investigative findings and threat monitoring, ensuring that changes in the production environment comply with regulatory standards.
  • Evaluate systems of varying complexity to gather, review, and interpret evidence to confirm effective control execution, focusing on regulatory compliance.
  • Lead assessment interviews and tests to uncover technology control gaps that may pose risks to the organization.
  • Assist management with IT audits and compliance requirements as necessary.
  • Develop risk assessments, mitigation strategies, and performance reports in collaboration with IT and other business partners.
  • Act as a liaison between Enterprise Risk and Information Technology/Information Security to enhance the identification of operational risks, emphasizing continuous control monitoring and emerging cybersecurity threats.

Additional Responsibilities

  • Ensure adherence to Northwest LLC's policies and procedures, as well as Federal and State regulations.
  • Utilize Microsoft Office and department-specific software to enhance efficiency.
  • Collaborate effectively as part of a team.
  • Operate on-site equipment as required.

Safety and Health Responsibilities

  • Follow safety and loss prevention protocols.
  • Perform tasks safely and report any injuries to a supervisor.
  • Be prepared for emergency situations.

Qualifications
To excel in this role, candidates must meet the following requirements:

Education
A Technical Degree in Information/Cyber Security or Risk Management, or an Associate's or Bachelor's Degree in the same fields.

Work Experience

  • 6 years of direct experience as a PCI Assessor.
  • 6 years of general IT functional experience.

General Knowledge, Skills, and Abilities

  • Ability to build effective working relationships and contribute to problem-solving and decision-making.
  • Strong communication skills, both oral and written, tailored to the audience.
  • Active listening skills to facilitate understanding and information sharing.
  • Capability to set personal goals, track progress, and utilize resources efficiently.
  • Sound judgment and decision-making abilities in complex situations.

Additional Skills and Knowledge
Expertise in assessing system security requirements through business analysis, conducting security and vulnerability assessments, and understanding architecture/platform security.
Proficiency in performing risk assessments and testing data processing systems to ensure security measures are effective.
Subject Matter Expert in relevant regulatory frameworks and best practices for security architecture.
Ability to develop and maintain a global policy governance framework.

Licenses and Certifications
Certification in Information Security (e.g., Security +, CISSP, CISA) is required upon hire.

Northwest LLC is an Equal Opportunity Employer, committed to diversity and inclusion in the workplace.