City National Bank-posted 4 months ago
$101,231 - $172,355/Yr
Full-time • Senior
Jersey City, NJ
5,001-10,000 employees

The IT Risk Senior Analyst is a subject-area specialist with specialized training, methods and analytic techniques to create recommendations and directions for cyber risk mitigation in a complex technical environment. ITRM Security Senior Analyst will conduct fit for purpose review and challenges of internal IT controls to ensure consistency with internal policies and standards. Additionally, conduct process/risk/control (PRC) reviews to evaluate and overall control program effectiveness in mitigating risk. The ITRM Senior Analyst's goal is to create actionable information for IT and business leadership, and to provide objective assessment of cyber security controls for auditors, regulators and external parties. This requires routinely performing review and challenge reviews against 1LOD testing practices specific to T&I controls, authoring detailed reports and gathering metrics ensure stakeholders receive accurate and complete information. The ITRM Senior Analyst keeps abreast of external cyber security trends, technologies and cyber risk management approaches, and often works with other teams on cyber risk-related initiatives to provide subject-matter recommendations and guidance to achieve a posture within the bank's overall risk appetite. This is an advanced senior professional with wide range of experience who uses professional concepts and to resolve complex issues in creative and effective ways. Serves as an expert in own discipline or area of specialization, works on complex issues where analysis of situations or data requires an in-depth evaluation of variable factors.

  • Perform fit for purpose review and challenges specific to IT (T&I) controls tested by 1LOD Testing team against Governing Principles and applicable Policies and Standards.
  • Provide guidance to 1LOD colleagues to ensure testing practices meet internal standards.
  • Conduct Process/Risk and Control (PRC) reviews against IT control descriptions to ensure they meet requirements.
  • Support regulatory requirements and deliverables as needed.
  • Define analysis objectives, collect data from internal and external sources, and evaluate/analyze data to provide objective information on cyber risks for IT and business management with both summary and detailed reporting.
  • Participate in other projects and duties as needed or requested.
  • Bachelor's Degree or equivalent.
  • Minimum of 12 years’ experience in Information/Cyber Security field.
  • Minimum of 6 years' experience in cyber security operations, incident response, IT risk management or investigations.
  • Demonstrated experience analyzing IT control testing attributes and evidence to properly evaluate and conclude control effectiveness.
  • Prior IT Control Audit experience is strongly preferred.
  • Experience in banking/financial industry specific to technology is strongly preferred.
  • Demonstrated knowledge of financial regulation and control frameworks applicable to cyber security or IT risk.
  • Demonstrated experience with Industry or subject specific analysis or assessment frameworks is highly desired (FAIR, NIST CSF, etc.).
  • Demonstrated knowledge of cyber security landscape -- threats, trends, technologies.
  • Excellent communication and interpersonal skills, including a strong ability to create positive and professional business relationships with internal clients.
  • Strong commitment to working as a team and providing excellent customer service.
  • Comprehensive healthcare coverage, including Medical, Dental and Vision plans, available the first of the month following start date.
  • Generous 401(k) company matching contribution.
  • Career Development through Tuition Reimbursement and other internal upskilling and training resources.
  • Valued Time Away benefits including vacation, sick and volunteer time.
  • Specialized health and family planning benefits including fertility benefits, and cancer, diabetes and musculoskeletal support programs.
  • Career Mobility support from a dedicated recruitment team.
  • Colleague Resource Groups to support networking and community engagement.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service