Senior Risk Analyst

MicrosoftWashington, DC
8dHybrid

About The Position

Microsoft Cloud Operations and Innovation (CO&I) is the team behind the cloud. Within CO&I, the Global Project Controls (GPC) team is responsible for delivering core datacenter infrastructure for Microsoft’s cloud business. The MS portfolio consists of complex, multi-disciplinary, large scale, multi-year datacenter construction and lease projects. We are looking for a passionate individual to help fill the critical role of Senior Risk Analyst. In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day. “Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.” This role is located either in one of our hub locations - Atlanta, Redmond, Phoenix, Washington DC, San Antonio Relocation support will be provided, and successful candidates must relocate or reside within 50 miles of the hub office location. This role is eligible for hybrid work, up to 50% work in the office.

Requirements

  • Bachelor's Degree AND 6+ years experience in risk management, privacy, security, compliance, government intelligence, operations, and/or finance OR 8+ years experience in risk management, privacy, security, compliance, government intelligence, operations, and/or finance OR equivalent experience.
  • Ability to meet Microsoft, customer and/or government security screening requirements are required for this role.
  • Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.

Nice To Haves

  • Master's Degree in Risk Management, Engineering, Government Intelligence, Security, or Information Technology, or related field AND 8+ years experience in risk management in the context of operations, engineering, information technology, business analyst, consulting, auditing, privacy, security, compliance, government intelligence, and/or finance OR Bachelor's Degree in Risk Management, Engineering, Government Intelligence, Security, Cybersecurity, or Information Technology, or related field AND 12+ years experience in risk management in the context of operations, engineering, information technology, business analyst, consulting, auditing, privacy, security, compliance, government intelligence, and/or finance OR equivalent experience.
  • Membership with a relevant risk domain area association including: International Association of Privacy Professionals (IAPP), International Information System Security Certification Consortium (ISC)2, and Information Systems Audit and Control Association (ISACA), Certified Internal Auditor (CIA), Society for Corporate Compliance and Ethics (SCCE), Disaster Recovery Institute (DRI), Certified Business Continuity Professional (CBCB), Committee of Sponsoring Organizations of the Treadway Commission (COSO), and Institute of Internal Auditors (IIA).

Responsibilities

  • Attends and advises during scheduled owner/architect/contractor and other project meetings.
  • Lead risk planning activities for projects, including scheduling and coordinating workshops with stakeholders and develop appropriate risk treatment plans
  • Contributes to fostering a knowledge sharing culture by actively participating in the risk knowledge networks and collaborative forums.
  • Assists in the review of risk governance to ensure a particular risk area is receiving the appropriate amount of attention with minimal guidance. Identifies and escalates any concerns of related to risks being monitored.
  • Analyze project schedules, costs, and engineering documentation to identify potential risks and gaps.
  • Knowledge of statistical methods (e.g., probability distributions, correlation analysis) for assessing uncertainty in cost and schedule forecasts.
  • Application of Monte Carlo simulations to predict project outcomes under uncertainty.
  • Ability to integrate cost and schedule data to perform risk modeling and identify potential impacts on project baselines.
  • Use technical insights to identify causes of risks and recommend solutions to project teams.
  • Promote a culture of risk management and governance by educating teams on new processes and driving adherence.
  • Collaborate with stakeholders to streamline processes, improve efficiencies, and ensure alignment with organizational goals.
  • Execute the risk management lifecycle, including data collection, analytics, and workshop facilitation, to identify and evaluate project risks.
  • Maintain and update the risk register, ensuring risks, mitigation actions, and trigger events are accurately documented and regularly reviewed.
  • Develop and implement mitigation plans in collaboration with stakeholders, ensuring accountability and progress tracking.
  • Periodically re-evaluate risks and opportunities to assess relevance, priority, and the effectiveness of treatment plans.
  • Present risk assessment findings to stakeholders, ensuring awareness, gaining approval, and driving informed decision-making.
  • Collaborate with accountability owners to ensure alignment on mitigation plans and track their execution.
  • Partner with internal teams to communicate updated risk processes, enhancing adherence to governance standards.
  • Leads selection and application of appropriate quantitative risk methodologies and modeling frameworks for highly complex projects, ensuring alignment with current industry practices and portfolio objectives.
  • Identifies, validates, and curates critical datasets required for robust risk modeling, ensuring data quality, relevance, and traceability.
  • Designs, builds, and sustains advanced analytical models that surface risk prioritization, root causes, and mitigation effectiveness across cost, schedule, and scope dimensions.
  • Integrates quantitative risk analysis outputs into portfolio-level reporting, enabling clear visibility of exposure, trends, and concentration of risk across regions and programs.
  • Coaches and guides teams in interpreting model outputs, translating quantitative results into actionable insights for resource prioritization, mitigation planning, and executive decision-making.
  • Provides technical leadership on risk modeling for the most complex and high-value projects, advising on required inputs, model assumptions, and appropriate application of results to support informed trade-off decisions.
  • Identify and prioritize issues in collaboration with cross-functional teams to develop and implement resolution / recovery plans, ensuring alignment with timelines and project goals.
  • Proactive communication with stakeholders, escalation of critical issues, and continuous improvement through lessons learned and process enhancements to prevent and mitigate project disruptions effectively.
  • Assists with the monitoring of vendor and/or contractor performance, ensuring compliance with QRA process and reporting
  • Review vendor performance relative to risk, cost and schedule models (with cost and schedule management team) and clarifies those reports in presentations to the delivery and executive teams.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service