Technology & Security Risk Analyst
Confirmed live in the last 24 hours
Locations
Greenwich, CT, USA
Experience Level
Entry
Junior
Mid
Senior
Expert
Desired Skills
Management
Requirements
- Minimum 5 years of experience in technology and IS risk management in financial services industry
- Applied knowledge and hands-on experience in relevant technology and IS domains is strongly desirable (e.g., software development, change management, identity and access management, technology operations, cybersecurity, data protection and privacy and/or cloud technologies)
- Experience in developing, deploying and maintaining technology and IS risk management frameworks, policies, processes and guidance
- Understanding of technology and IS risk management frameworks and industry standards (e.g., COBIT, ISO, NIST, ITIL, etc.)
- Knowledge of US regulatory requirements and other regulatory obligations related to data privacy and data protection within the financial services sector
- Demonstrable experience in conducting technology and IS risk assessments
- Highly diligent individual - results driven and hard working - ability to execute risk assessments to a high degree of quality; professionally skeptical
- Strong interpersonal skills, excellent work ethic, highly credible and influential presenter (verbal and written); strong communicator and influencer; team player
- Superior analytical abilities and decision-making skills; ability to exercise independent judgment
- Strong MS Office skills
- Bachelor's degree in Computer Science, Information Security or a related field
- Relevant professional certifications preferred (CISA, CISM, CRISC, CISSP, etc.)
Responsibilities
- Support the Head of Technology & Cyber Risk in executing all aspects of the Technology and IS Risk Management Framework in the US, and work with the global ERM teams to manage the technology and IS risk profile in their locations
- Partner with risk owners in technology and security to execute the RCSA program, ensuring results are documented appropriately, are actionable and are defensible to third party review
- Conduct Targeted Risk Assessments on priority areas to identify opportunities for control enhancement and risk mitigation
- Participate in firmwide projects to identify, assess and manage technology and IS risks related to delivery of the IB business model
- Build and monitor KRIs for technology and IS, escalating changes to the risk profile to risk owners including breaches of risk appetite limits, and identifying remedial strategies to bring exposures within tolerance
- Conduct root cause analysis on events/incidents and agree control enhancements with control owners
- Conduct analysis on the technology architecture - risks and controls - at the request of the Head of Technology & Cyber Risk or the Chief Risk Officer
- Perform credible challenge reviews of risk assessments completed by the first line of defense technology and security functions
- Partner with technology leads and SMEs to ensure the effectiveness of the Business Continuity and Disaster Recovery programs
Multinational brokerage firm
Company Overview
IBKR is on a mission to transform how millions of people trade around the globe. The company operates the largest electronic trading platform in the US by number of daily active users.
Benefits
- Competitive Pay with discretionary bonus packages which include company stock grants
- Comprehensive Health Plans that include extensive Vision, Dental and Prescription coverage
- Daily Lunch Allowance
- 401K Retirement Savings Plan (generous company match)
- Wellness Incentives
- Flexible Spending Accounts
- Paid Personal Time and Sick Leave