DescriptionJoin our team to play a pivotal role in mitigating tech risks and upholding operational excellence driving innovation in risk management.
As a Tech Risk & Controls Lead in the Corporate Sector Control Testing you will be responsible for identifying and mitigating compliance and operational risks in line with the firms standards. You will also provide subject matter expertise and technical guidance to technologyaligned process owners ensuring that implemented controls are operating effectively and in compliance with regulatory legal and industry standards. By partnering with various stakeholders including Product Owners Business Control Managers and Regulators you will contribute to the reporting of a comprehensive view of technology risk posture and its impact on the business. Your advanced knowledge of risk management principles practices and theories will enable you to drive innovative solutions and effectively manage a diverse team in a dynamic and evolving risk landscape.
Job responsibilities
- Lead and manage control evaluations and endtoend substantive testing activities including planning fieldwork and reporting.
- Lead comprehensive control evaluations and substantive testing to independently assess the design and effectiveness of controls within the Commercial and Investment Banking. Ensure compliance with internal policies procedures and external laws rules and regulations while identifying necessary remediation actions. This includes developing and executing testing procedures meticulously documenting results drawing informed conclusions making actionable recommendations and distributing detailed compliance testing review reports.
- Foster collaboration with Compliance and Operational Risk Officers on various engagements. This includes developing detailed test scripts facilitating issue discussions participating in business meetings and drafting comprehensive final reports to ensure alignment and clarity.
- Utilize advanced critical thinking skills to apply substantive testing techniques thoroughly evaluating the effectiveness of highrisk business processes and identifying potential areas for improvement.
- Proactively assess and monitor risks ensuring adherence to firm standards regulatory requirements and industry best practices. Implement strategies to mitigate identified risks effectively.
- Collaborate with crossfunctional teams and stakeholders to support the design and effectiveness of controls. Drive initiatives that enhance the business control environment through recommended updates to the Compliance and Operational Risk Evaluation (CORE) application.
- Develop and execute robust control test scripts aimed at identifying control weaknesses determining root causes and recommending practical solutions to enhance operational efficiency and control effectiveness.
- Document test steps and results in a comprehensive and organized manner ensuring sufficient support and justification for testing conclusions. Maintain a high standard of documentation to facilitate transparency and accountability.
- Lead meetings with business owners at various management levels delivering testing results and supporting sustainable control enhancements. Identify and capitalize on opportunities to strengthen controls and improve operational efficiency.
Required qualifications capabilities and skills
- 5 years of experience or equivalent expertise in technology risk management information security or related field emphasizing risk identification assessment and mitigation
- Demonstrated ability to analyze complex issues develop and implement effective risk mitigation strategies and communicate insights and recommendations clearly to senior stakeholders
- Proficient knowledge and expertise in data security risk assessment & reporting control evaluation design and governance with a proven record of implementing effective risk mitigation strategies. Ability to stay updated with evolving regulatory landscapes and adapt strategies accordingly
- Exceptional ability to develop and communicate wellfounded recommendations based on regulatory guidance and standards ensuring alignment with organizational goals and compliance requirements
- Highly organized and detailoriented with a proven track record of managing multiple priorities and delivering results in a fastpaced environment
- Strong analytical and communication skills with the ability to convey complex information in a clear and concise manner to diverse audiences
- Familiarity with risk management frameworks industry standards and financial industry regulatory requirements
- Demonstrated ability to influence executivelevel strategic decisionmaking and translating technology insights into business strategies for senior executives
Preferred qualifications capabilities and skills
- CISM CRISC CISSP CISA CCEP CRCM CRCMP GRCP or other industryrecognized risk and risk certifications
- Background in auditing and the ability to understand internal controls
- Proficiency in MS (Microsoft Suite) Office Microsoft Word Excel Access and PowerPoint
- Knowledge of data analytical tools such as Tableau Alteryx or Python