Perform security and technology risk assessments for business-initiated projects to identify risks and support adoption of appropriate controls. Evaluate system designs to ensure security requirements are incorporated, including review of control implementation and identification of control gaps. Advise engineering teams on risk considerations and support integration of security controls throughout the system development lifecycle. Assess risks across application and infrastructure environments, including cloud platforms, web services, and distributed systems, and recommend mitigation actions. Conduct risk reviews of third-party integrations to ensure compliance with firm standards and required control frameworks. Support execution of business-as-usual (BAU) and strategic initiatives aimed at reducing operational and technology risk exposure. Perform control testing activities, including Risk and Control Self Assessments (RCSA) and SOX evaluations, and validate supporting evidence to assess control effectiveness. Conduct resiliency validation reviews by analyzing evidence related to system recovery and operational continuity.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level