Senior Associate, Operational Risk Management, IT and Security

OCC•Chicago, IL
•$98,100 - $142,050•Hybrid

About The Position

This role will provide critical support to the Director of Operational Risk to evaluate IT and Security risks by assisting with risk assessments and applying aspects of the risk management framework across the process, risk, and control universe. Additionally, this role will help with the risk assessment program activities, coordinate with other functions (e.g. IT, Security, TPRM, Legal, Compliance, and Internal Audit) and facilitate appropriate Corporate Risk governance to ensure alignment to OCC strategy and short-term objectives.

Requirements

  • Advanced understanding of IT risk and Security risk, specifically relating to cybersecurity (e.g., blue team, red team, threat & vulnerability management), disaster recovery, database management, network engineering, storage management, software development, and mainframe technologies.
  • Intermediate understanding of Operational risk.
  • Familiarity with the evolving cybersecurity landscape impacting central clearing counterparties (CCPs).
  • Ability to act as a trusted advisor and provide effective challenge.
  • Creative, independent thinker, with a willingness to develop and drive new ideas.
  • Excellent written, verbal and presentation skills.
  • Must be team-oriented and be able to collaborate effectively in department and cross-departmental efforts.
  • Ability to work under pressure and with tight deadlines.
  • Proficient in Microsoft Word, Excel, Access, and PowerPoint.
  • Experience with eGRC systems (e.g., Archer).
  • Experience with data analytic techniques and tools (e.g., Tableau, SQL).
  • Bachelor’s Degree in Information Systems, Computer Science, Cybersecurity (or equivalent) preferred.
  • 3+ years of experience in enterprise risk, cybersecurity, IT audit, technology risk, security risk, or risk consultancy, specifically with focus on assessing IT and Security risk.

Nice To Haves

  • Familiarity with Financial Market Utilities; securities and derivatives markets.
  • Ability to work in a highly regulated environment, including with the SEC, CFTC, and Federal Reserve; Familiarity with the Covered Clearing Agency regulations.
  • Understanding of cloud technologies, including experience supporting migration to a cloud platform.
  • Understanding of tools supporting capacity management, network architecture, threat assessment, code review, and software development.
  • Consulting experience.
  • Certification such as: CISSP, Security+, CSX-P, CET, CISA or CISM.

Responsibilities

  • Collaborate with IT, Security, TPRM, Legal, Compliance, and Internal Audit to ensure that Corporate Risk contributes to strengthening the overall effective management of IT and Security risk across the organization.
  • Lead OCC’s risk identification and assessment process for IT/Security risks and verify the consistency and reliability of the associated technology frameworks (e.g., NIST, COBIT, ISO) and systems supporting clearing and settlement activities.
  • Drive adherence to methodologies, guidance, and standards applicable to risk identification and assessment frameworks.
  • Maintain risk inventories, taxonomies, and other elements supporting IT/Security risk management and compliance activities.
  • Lead and execute the IT and Security risk assessment process, while aligning to the risk and control universe, and regulatory requirements and expectations.
  • Generate reports of Archer data for various stakeholders, including regulators.
  • Help automate IT & Security risk oversight through use of data analytics processes.
  • Communicate results of risk assessments to governance committees, business owners, and various levels of leadership.
  • Collaborate on the enhancement and maintenance of Corporate Risk program methodologies, policies, procedures, and job aides, including the development of new program activities.
  • Track and update ORMC team internal findings, external exam issues, and business area self-identified issues resulting from Enterprise Risk Assessment.

Benefits

  • A highly collaborative and supportive environment developed to encourage work-life balance and employee wellness.
  • A hybrid work environment, up to 2 days per week of remote work
  • Tuition Reimbursement to support your continued education
  • Student Loan Repayment Assistance
  • Technology Stipend allowing you to use the device of your choice to connect to our network while working remotely
  • Generous PTO and Parental leave
  • 401k Employer Match
  • Competitive health benefits including medical, dental and vision
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service