Cyber Risk Management Analyst Sr

Flagstar BankNew York, NY
$90,597 - $150,440Onsite

About The Position

As a key member of the second line of defense Technology, Cyber, Third Party Risk Management & Resilience Risk Management team, the Cyber Risk Management Analyst Sr will support the Cyber Risk team to fulfill the Bank’s Second Line of Defense (“2LoD”) mandate to identify, measure, monitor, and manage the Cybersecurity/Information Security (“Cyber”) risk profile of the Bank, ensuring risk exposure remains within the Bank’s established risk appetite. The candidate will be expected to demonstrate independent, effective, outcome-based oversight and challenge for the risk domains within the First Line of Defense (“1LoD”) CISO and Information Security team, IT Risk, IT Infrastructure and Architecture teams, as well as IT business technology teams.

Requirements

  • Undergraduate Degree (4 years or equivalent) in Computer Science, Information Technology, Cybersecurity or relevant field.
  • 6+ Years in an information technology, cybersecurity, risk, audit, and/or compliance role.
  • Excellent knowledge of core IS and cybersecurity controls (e.g. IAM, DLP, vulnerability management, security threat detection and response, networks, cloud technologies, etc.).
  • Strong knowledge of IT and Cyber risk management concepts and applicable interagency regulatory guidance (e.g. FFIEC guidelines).
  • Ability to provide outcome based risk oversight and challenge to first line risk management.
  • Knowledge of non-financial risk frameworks.
  • Strong analytical skills with the ability to interpret data, draw conclusions, and formulate recommendations.
  • Strong verbal and written communications skills
  • Ability to utilize advanced Excel functionality, create engaging and informative PowerPoint presentations, and work effectively in Word.
  • Detail oriented with strong organizational skills, able to thrive in a fast-paced environment with multiple competing priorities at times.
  • Demonstrates a strong ability to build and maintain effective relationships with stakeholders by communicating clearly, engaging in proactive collaboration, and leveraging cross functional insights.
  • Aligns relationship building efforts with enterprise goals to accelerate performance and drive strategic results.
  • Builds trusted client relationships, whether internal or external, by identifying needs and delivering tailored solutions to enhance the overall client experience.
  • Fosters or supports a positive work culture and productive work environment, displaying importance of effective relationships with customers and stakeholders.

Nice To Haves

  • 2-3 years in a related function at a financial institution preferred.
  • Applicable information security, enterprise risk, and/or compliance certifications and/or experience.
  • Working knowledge of a GRC Risk Tool.

Responsibilities

  • Provides independent, proactive oversight and challenge of Cyber risk management at the Bank through execution of risk framework elements including RCSA, control assessment, issue management, incident reviews, targeted deep dives, key risk indicators and through embedded monitoring of Cyber programs.
  • Provides feedback to IT Risk, CISO, and other IT teams on risks, controls, testing, root cause analysis, remediation and reporting.
  • Assesses and report Cyber risk profile based on quantitative and qualitative risk measures and including assessment of effectiveness of planned remediation/mitigation of excess risk exposure and compliance with key regulatory requirements.
  • Uses independent judgement and discretion to make decisions.
  • Analyzes and resolves problems.
  • Performs special projects, and additional duties and responsibilities as required.
  • Consistently adheres to regulatory and compliance policies and standards linked to the job as listed and complete required compliance trainings.
  • Accountable to maintain compliance with applicable federal, state and local laws and regulations.

Benefits

  • medical, dental, vision, life, and disability insurance, as well as a comprehensive leave program.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service