Simplify Logo

Full-Time

Senior Technology Risk Analyst

Confirmed live in the last 24 hours

FanDuel

FanDuel

1,001-5,000 employees

Sports betting and daily fantasy sports provider

Financial Services
Gaming
Entertainment

Compensation Overview

$126k - $155kAnnually

+ Short-term Incentive Compensation + Long-term Incentive Compensation + Cash Bonuses + Stock Program Participation

Senior

New York, NY, USA

Hybrid position requiring in-office presence.

Category
Cybersecurity
IT & Security
Required Skills
Communications
Management
JIRA
Requirements
  • Bachelor’s degree preferred in a technical field (e.g., Cybersecurity, Information Technology) or equivalent combination of education, training, and relevant experience
  • 5 years related experience in IT or information security governance, risk management and compliance (GRC) preferred, with experience building new / improved risk management capabilities that meet the needs of the business
  • Hands-on experience executing and managing cybersecurity assessments in a heavily regulated industry, including writing, documenting, and assessing risks/controls and drafting business process summaries for executives
  • Strong IT & security risk domain knowledge of technology and cybersecurity best practices, principles, tools, and industry control frameworks (e.g., GLI, NIST CSF, ISO, SOX, SOC2, PCI, CIS Critical Controls, COBIT, ITIL, CMMI)
  • Experience with data governance and privacy regulations and industry frameworks (e.g., GDPR, local state regulations, DAMA-DMBOK)
  • Practical knowledge of qualitative and quantitative risk management methodologies (e.g., NIST RMF / 800-37 / 800-30, OCTAVE, FAIR)
  • Ability to translate risk/control standards into functional business requirements
  • Strong written and verbal communication skills to articulate risk/control insights to both technical and non-technical stakeholders
  • Proficient working with Microsoft Office, GRC and project management tools (e.g., JIRA, ZenGRC)
  • Experience working as a consultant in the risk, compliance, or audit space is a plus
  • Relevant professional certifications such as CISA, CISSP, CISM, or CRISC are preferred
Responsibilities
  • Develop and maintain a robust risk management framework, ensuring alignment with FanDuel’s Enterprise Risk Management frameworks, and relevant industry best practices and regulatory requirements
  • Work closely with the Technology Controls team and the 2LOD Enterprise Risk team to maintain FanDuel’s technology & cyber risk and controls framework ensuring that it is adequately designed, adopted and operating effectively.
  • Work in lockstep with the 2LOD Enterprise Risk team to escalate risks to the enterprise risk register and report relevant metrics to senior leadership
  • Conduct comprehensive technology and cybersecurity risk assessments to identify potential threats and vulnerabilities with the company’s business critical assets (people, process, technology, and data), enabling teams to describe risk in both qualitative and quantitative terms and make informed decisions about risk treatment
  • Analyze and report relevant risk metrics to senior management, providing insights and recommendations for risk mitigation, utilizing qualitative and quantitative techniques to periodically measure the company’s technology & cyber risk posture
  • Provide expertise and contribute to establishment of risk appetite and related tolerances and metrics for Technology
  • Manage technology & cyber risk throughout the entire risk lifecycle:
  • Intake and maintain a first line risk register, ensuring accurate documentation and progress updates are captured to ensure risk profiles are kept up to date
  • Enable teams and leadership to make risk-based decisions and trade-offs impacting technology & cyber investment strategies and project prioritization
  • Document and monitor risk treatments to accept or remediate risks
  • Ad hoc meeting planning and support to report on findings, metrics, and recommend mitigations to technology, cyber and business leadership
  • Track and report progress on risk remediation efforts, providing timely updates to management and stakeholders
  • Stay abreast of evolving technology & cyber threats, news, and trends to enhance risk management strategies
  • Lead cross-functional discussions and workshops to enhance risk awareness and foster a proactive risk management culture, and support a path to continuous process improvement
  • Develop and deliver tailored training, awareness and communications as needed on relevant risk management practices for the technology & cyber community
  • Assist with special risk assessment and department initiatives, as assigned
  • Maintain procedures, playbooks, virtual webpages, and metrics dashboards
  • Mentor and guide junior team members, sharing expertise and promoting continuous professional development

FanDuel Group specializes in sports betting, daily fantasy sports, and online casino gaming, seamlessly integrating sports-tech to enhance consumer engagement with sports and leagues. This company is an excellent workplace for those passionate about combining technology with sports, offering a dynamic environment where innovation leads to the development of cutting-edge gaming experiences. With a broad customer base spanning all 50 states, the company's reach ensures a diverse and stimulating work culture.

Company Stage

M&A

Total Funding

$4.6B

Headquarters

New York City, New York

Founded

2009

Growth & Insights
Headcount

6 month growth

8%

1 year growth

16%

2 year growth

41%
Simplify Jobs

Simplify's Take

What believers are saying

  • FanDuel's expanding presence in new markets like North Carolina and Ontario offers significant growth opportunities.
  • The company's partnerships with sports teams and media channels can drive higher user engagement and brand loyalty.
  • Acquisitions like BeyondPlay can enhance FanDuel's technological capabilities, making it a more attractive platform for users.

What critics are saying

  • The competitive landscape in the online gaming and sports betting industry is intense, with major players like DraftKings and Bet365 posing significant threats.
  • Regulatory changes and legal challenges in different states and countries could impact FanDuel's operations and growth.

What makes FanDuel unique

  • FanDuel's strategic partnerships with major sports teams like the Carolina Panthers enhance its brand visibility and customer engagement, setting it apart from competitors.
  • The acquisition of BeyondPlay allows FanDuel to integrate innovative iGaming solutions, providing a more engaging user experience.
  • FanDuel's focus on regulatory compliance and strategic hires, such as the addition of E. Sequoyah Simermeyer, strengthens its position in the highly regulated online gaming market.

Benefits

From peer-to-peer learning to industry conferences, there are a number of ways to develop your career

From your head to your toes we’ve got you covered with our 100% health insurance coverage

We keep a well-stocked supply of snacks and refreshments to keep you going throughout the day

Flexible hours and vacation scheduling let you work when you’re at your best

We provide the latest tech and equipment, you get the job done