IT Risk Analyst

San Diego County Credit UnionSan Diego, CA
3d

About The Position

The position of IT Risk Analyst is responsible for participating in IT compliance and risk management initiatives. The candidate should demonstrate a basic understanding of IT risk, the ability to maintain quality service standards set by the organization, the desire to learn, and a willingness to work with organizations outside the department.

Requirements

  • Bachelor’s Degree in Computer Science; or coursework in IT, Security, or Risk Management.
  • 2 years’ experience in, IT Security, Vendor Management, or Risk Management.
  • Track record of producing quality deliverables under limited supervision.
  • Sufficient organizational skills to be able to prioritize concurrent projects effectively and meet deadlines and commitments.
  • Effective written skills, verbal communications, and positive interpersonal skills.
  • Basic level Microsoft Word, Excel, and PowerPoint skills.

Nice To Haves

  • Information security and/or risk certification(s) desirable.

Responsibilities

  • Under the guidance of the Chief IT Compliance and Risk Officer, schedule and participate in risk management meetings for branch risk assessments, vendor risk assessments, and application user access reviews as a representative of IT Compliance and Risk.
  • Perform branch risk assessments on a scheduled basis. Assessment activities shall include evaluating physical and logical security posture, conducting training for branch employees, and completion of a branch security risk report.
  • Perform vendor risk assessments as assigned. Work with vendors and business owners to gather documentation and develop vendor remediation plans.
  • Perform application user access reviews for critical applications. Work with business owners to develop remediation plans.
  • Participate in the peer review process for risk assessments. Work with IT Compliance and Risk team members to help ensure the accuracy of risk reports.
  • Acquire proficiency within the Quantivate GRC portal as it pertains to IT GRC risk assessments and risk register functionality.
  • Following prescribed SLAs, ensure timely completion of all tasks. Escalate non-compliance of SLAs to the Chief IT Compliance and Risk Officer.
  • Create metrics and reports to regularly report on the health of assigned activities
  • Assist in the design and presentation of security education and awareness training as required.
  • Ensure all assigned programs have documented procedures which are current and relevant for the program.
  • Participate in security and/or risk related committees as required.
  • Perform other duties as assigned.
  • Assist with IT compliance initiatives as assigned by the Chief IT Compliance and Risk Officer.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service