Job Title:
Security Risk & Compliance Analyst Treasury Technology
Line of Business: Treasury Technology Risk & Governance
Duration: 6-month renewable contract (expected up to 18 months)
About the Role:
Bank of Americas Treasury Technology organization is seeking a Security Risk & Compliance Analyst to join its Application Risk Management team. This group plays a critical role in managing the governance security and compliance posture of applications within the Global Treasury Services (GTS) data platform interfacing with over 500 developers and critical financial applications.
The analyst will help maintain the risk and control environment ensuring alignment with the banks Global Information Security (GIS) standards while supporting remediation access control and regulatory requirements.
Key Responsibilities:
-
Drive and execute security risk compliance and governance activities across Treasury Technology applications.
-
Coordinate vulnerability remediation efforts with internal development teams and stakeholders.
-
Maintain access control procedures and review entitlements across environments and databases.
-
Act as a liaison between security/compliance teams and application development teams to ensure standards are met.
-
Monitor applications for compliance against enterprise security policies.
-
Facilitate meetings and lead discussions around risk access governance and vulnerability management.
-
Support documentation evidence collection and reporting for internal/external audits and regulatory reviews.
Must-Have Skills:
-
3 5 years of experience in application security IT risk management or cybersecurity in the financial sector.
-
Hands-on experience with vulnerability remediation compliance tracking and access control.
-
Familiarity with security policies governance frameworks and risk assessments.
-
Strong knowledge of Unix/Linux environments SQL and ETL tools (Hadoop Informatica).
-
Excellent written and verbal communication skills with experience preparing risk documentation and leading stakeholder meetings.
-
Experience with JIRA for tracking security and remediation tasks.
Nice to Have:
deal Candidate Background:
-
Prior roles such as Security Analyst Risk Analyst or Cybersecurity Infrastructure Analyst.
-
Proven track record in managing or supporting application security programs in high-stakes regulated environments.
-
Comfortable operating as a self-starter and capable of independently driving initiatives with minimal supervision.
Interview Sample Questions:
-
How have you used JIRA in past roles specifically for vulnerability or compliance tracking
-
Have you led meetings with unfamiliar stakeholders to resolve technical or risk-related issues
-
Describe your experience with software vulnerabilities and remediation processes.
-
Do you prefer team-based work or more independent heads-down roles
-
Share a time you improved a flawed process or introduced a better compliance solution.