Why This Role Stands Out
Elevate your career in IT risk and controls within a reputable financial services organization, where you'll gain valuable experience with industry-leading frameworks. This hybrid role is perfect for meticulous analysts with a strong understanding of IT and information security who are eager to contribute to robust control environments. Apply now to join a dynamic team and develop your expertise in a growing field.
Quick Overview
Job Description
A financial services organization in Virginia is seeking an IT Risk & Controls Analyst to join their team in Vienna.
About the Opportunity:
Schedule: Monday to Friday
Hours: Standard business
Setting: Hybrid (3 days onsite)
Responsibilities:
Plan and scope IT and Information Security control assessments, including communications, risk and control matrices, scope documents, and supporting materials
Conduct walkthroughs with business partners to identify actual versus expected controls
Develop and execute testing strategies to evaluate control effectiveness
Document testing procedures, results, issues, and assessment conclusions
Prepare final assessment reports and present findings to leadership and other stakeholders
Qualifications:
Experience performing control testing, audit, risk assessments, or related functions
Experience with IT and/or Information Security risk assessments
Knowledge of financial services regulations, standards, and frameworks, including FFIEC, NIST, ISO, NCUA, and GLBA
Familiarity with NIST Cybersecurity Framework and 800 Series, ISO 27001/27002, SANS/CIS, and PCI DSS
Bachelor's degree in Business, Information Systems, or a related field, or equivalent work or military experience
Strong research, analytical, problem-solving, planning, and organizational skills
Strong written, verbal, interpersonal, and technical writing skills
Ability to clearly communicate assessment findings, conclusions, and recommendations to leadership
Experience working effectively with staff, management, business stakeholders, and third parties
Ability to build effective relationships through rapport, trust, diplomacy, and tact
Strong proficiency with word processing and spreadsheet applications
Desired Skills:
Information Security certification, such as CISSP, CISA, CCSP, or CRISC
Experience working within Audit, Enterprise Risk Management (ERM), or First Line of Defense functions
Experience working in an Agile environment
Similar jobs
- KT
IT Risk Analyst
NewKforce Technology Staffing
Lake Mary, FL🇺🇸Hybrid21 hours agoComplianceLESSRegulatory Reporting+2 - JT
IT Risk Analyst (Business/ Governance/ Vendor Related Risk) Local to Orlando, FL Only
NewJBS Technologies
Lake Mary, FL🇺🇸On-site21 hours agoAuditingPenetration TestingRisk Management - MC
Business Risk & Control Officer
NewMetropolitan Commercial Bank
New York🇺🇸7 hours agoComplianceContinuous ImprovementInternal Audit+3 - CO
Compliance and Risk Analyst IV
NewCollabera LLC
Dallas, TX🇺🇸$70 - $75/hrHybrid21 hours agoComplianceInternal AuditRisk Management+1 - T&
Commercial Construction Risk Manager
NewTurner & Townsend
Louisville, Kentucky🇺🇸On-site6 hours agoStakeholder ManagementSales - NA
Senior Manager, Enterprise Risk Management
NewNavan
Palo Alto🇺🇸$138k - $276k/yrYesterdayCPACRMCompliance+4