Job Details

IT Risk Assessor

JERSEY CITY-07310, NJ, US
07/03/2018

-


Required Skills

    CISA, analytical skills
Company

Infinity Consulting Solutions, Inc

Experience

-

Job Description

Infinity Consulting Solutions (ICS) is seeking a proficient in several Technology controls/resiliency and project management, could also include basic engineering, application development, infrastructure support experience.

- Knowledgeable in the following:

- Risk and Control Assessments

- Control Remediation

- Technology control domains including but not limited to policies and standards, risk and control assessments, access controls, regulatory compliance, technology resiliency, risk and control governance and metrics, incident management, secure systems development lifecycle, vulnerability management and data protection.

- At least 3 years IT Risk Management experience or equivalent

- Proficient working knowledge within the following risk domains/technologies:

- Database and application security

- System/Access administration

- Firewall technologies/Network architecture

- Business continuity and disaster recovery

- Secure Software/Code Development

- Vulnerability Management

- Cyber security

- Proficient oral, written and analytical skills

- Proficient risk assessment, interpretation and negotiation skills

- Recommended CISA,CISSP,CRISC or equivalent



Roles and Responsibilities:

As a Supplier Control Assessor within the Supplier Assurance Services (SAS) group, your day to day responsibilities will be to develop and execute risk assessments of the third party suppliers, following an established process.

This includes:

• Engage with multiple LOB Delivery Managers for suppliers to ensure compliance with all required assessments per the Banking policy and procedures.

• Drive all aspects of the risk assessment of suppliers, service providers.

• Assess completed questionnaire and supporting field work materials to ensure they are complete and meet Banking expectations.

• Lead the onsite assessment, providing the overall IT Risk expertise.

• Identify control breaks and vulnerabilities with a supplier.

• Document findings and work with the LOB Delivery Manager to resolve those findings through Action Plans (Client) and seek Risk Acceptance (RA) approvals

• Validate evidence from supplier, before Action Plans are closed,

• Escalate issues associated with suppliers as needed

• Identify opportunities for process improvements to deliver increasing operational efficiency in the processes

• Identify opportunities for improving supplier risk posture as well as Banking's SAS processes, including expanded monitoring, KRI tracking, etc.

• Assist with various SAS program initiatives working closely with the SAS Management Leads.



Risk Analyst
Information Technology

No Preference
Contract To Hire
Other
1

Candidate Requirements
-
-

Walkin Information
-
-
-

Recruiter Details
Doug Klares
1350 Broadway, Suite 2205, NEW YORK-10018, NY, US
-