Job Details

Technology Controls Analyst - 3rd Party Risk

WILMINGTON-19804, DE, US
08/01/2019

-


Required Skills

    Oracle, SQL Server
Company

Infinity Consulting Solutions, Inc

Experience

3 to 5 Year(s)

Job Description

3RD PARTY RISK ASSESSMENT ANALYST

6+ MONTH CONTRACT; POTENTIAL TO HIRE

Wilmington, DE

Infinity Consulting Solutions (ICS) is currently seeking multiple talented Technology Control Leads for several openings with one of our clients in the Wilmington, DE.

Description:

As a Supplier Assurance Services (SAS) Supplier Control Assessment (SCA) Lead, this position is responsible for performing technical risk and control assessments of supplier environments, including infrastructure/application stacks and other technologies to ensure compliance with Company Corporate
Policies & Standards and to validate that technical risks are managed and security controls are implemented.

The SCA team will partner with Cybersecurity & Technology Controls and Lines of Business (LOBs) to focus on performing assessment of supplier’s control environments.

The Team is also responsible for assessing action plans and risk acceptances across business lines where technology standards’ compliance cannot be achieved. This includes:

Identifying opportunities to improve third party risk posture, developing creative solutions for mitigating risks.

Liaising with Company and supplier’s senior managers to communicate and influence best risk practices.
Driving compliance to adhere to best risk management practices throughout the organizations.
As a SCA Lead within this group, your day to day responsibilities will be to develop and execute firm-wide risk assessment processes, products or programs, with focus on consistency.

This includes:
Engage with multiple LOB Delivery Managers for firm-wide suppliers to ensure compliance with all required assessments per the Company policy and procedures.

Drive all aspects of the control assessment of suppliers.
Assess completed questionnaire and supporting field work materials to ensure they are complete and meet Company expectations.

Lead the onsite assessment, providing the overall IT Risk expertise.
Identify control breaks and vulnerabilities with a supplier.

Document findings and work with the LOB Delivery Manager to resolve those findings through action plans (Client) or seek risk acceptance (RA) approvals.

Validate evidence from supplier, before action plans are closed.

Escalate issues associated with suppliers as needed.

Identify opportunities for process improvements to deliver increasing operational efficiency in the processes.

Identify opportunities for improving supplier posture as well as Company’s supplier management processes, including expanded monitoring, KRI tracking, etc.

Assist with various SAS program initiatives working closely with the SAS Leads.

Support internal education and best practices sharing with peers and colleagues, as well as third party education & awareness, as needed

Qualifications:

3-5 years of experience in Business Information Technology within a large enterprise level environment.

3-5 years of experience Risk Management, Technology Audit function or Information Security Risk

3-5 years of work experience in one or more areas of infrastructure (e.g. UNIX, Windows), databases (e.g.
DB2, Oracle, SQL Server) and networks is required.
Complete understanding of IT control policies.

Experience debating issues with senior decision makers and pushing back when necessary.

Strong written and verbal presentation skills at the senior management level across various business groups

CISSP, CISM/CISA or CRISC certification is a plus.


Technology Director of Operations
Information Technology

No Preference
Contract To Hire
Other
2

Candidate Requirements
-
Bachelors

Walkin Information
-
7/17/2019
-

Recruiter Details
Doug Klares
1350 Broadway, Suite 2205, NEW YORK-10018, NY
-