Lead IT Risk & Control

City National Bank
San Francisco, United States
$111.4K-$189.7K a year
Permanent
Full-time

Lead IT Risk & Control LEAD IT RISK & CONTROL

WHAT IS THE OPPORTUNITY?

The Lead IT Risk & Controls Analyst is a subject-area specialist with specialized training, methods and analytic techniques to create rmendations and directions for cyber risk mitigation in aplex technical environment.

Focus areas of security assessment by the Lead ITRC Security Analyst includes third party security and overall security program effectiveness in mitigating risk.

The ITRC Analyst's goal to create actionable information for IT and business leadership, and to provide objective assessment of cyber security risks for auditors, regulators and external parties.

This requires routinely authoring detailed reports and gathering metrics ensure stakeholders receive accurate andplete information.

The Lead ITRC tkeeps abreast of external cyber security trends, technologies and cyber risk management approaches, and often works with other teams on cyber risk-related initiatives to provide subject-matter rmendations and guidance to achieve a posture within the bank's overall risk appetite.

The Lead ITRC serves as an expert area of specialization. This role is a working lead that provides functional guidance and may coordinates or supervise the daily activities of individual contributors or working teams in areas of specialization.

Provides input on resources planning, procedures."

What you will do

Define analysis objectives, collect data from internal and external sources, and evaluate / analyze data to provide objective information on cyber risks for IT and business management with both summary and detailed reporting

  • Assess risk within subject specialty area to evaluate the design and effectiveness of security controls
  • Provide insight and guidance to IT software and hardware upgrades and other projects to ensure production environments meet and exceed minimum security standards and will effectively counter cyber threats
  • Partner with external partners, vendors, law enforcement, and intelligencemunity as applicable to fulfill reporting and information sharing requirements, and collecting information required forprehensive risk analysis and assessment
  • Work collaboratively with all Lines of Defense, coordinate and proactively identify, manage and monitor IT Risk.
  • Act as Subject Matter Expert for the activities performed to manage IT Risk
  • Execute IT Risk Assessment ( Risk Control Self Assessments) to identify and quantify the risks and their associated controls.
  • Execute GLBA, NYDFS, SWIFT and Fedlinepliance Assessment
  • Identify and Define Key Performance Indicators (KPIs) metrics and Key Risk Indicators (KRIs) to monitor all risks and ratings to Controls to measure the performance on the control operation.
  • Create new and maintain process and procedural documentation for various risk analysis and risk assessment activities;

Highlight industry-based methodologies, techniques or standards (FAIR, NIST, FFIEC, etc.) used as the basis for analysis efforts

  • Publish routine, accurate risk analysis and assessment reports as defined by organizational risk policies and procedures to applicable audiences for each subject area discipline
  • Participate in other security support projects and duties as needed or requested"
  • The role supports T&I in the creation of analytics & reporting to enhance senior management's ability to anticipate and manage risks effectively.
  • Manage the development and execution of first line risk management reporting including setting direction, goals and management awareness of risk and controls.
  • Develop and execute on end-to-end change management of processes to gather and analyze relevant information.
  • Leads the development and execution of processes to support the delivery of Risk Management reporting including the support of audience stakeholder groups.
  • Lead analysis and documentation of information to support risk drivers & metrics.

Must-Have*

  • Bachelor's Degree or equivalent
  • Minimum of 12 years experience in Information / Cyber Security field
  • Minimum of 7 years experience in cyber security operations, incident response, IT risk management or investigation
  • Minimum 3 years' experience managing or coordinating resources such as people or projects

Skills and Knowledge

  • Demonstrated experience analyzingplex cyber security data sets within subject area specialty
  • Demonstrated knowledge of cyber security landscape threats, trends, technologies
  • Demonstrated knowledge of financial regulation and control frameworks applicable to cyber security or IT risk
  • Excellentmunication and interpersonal skills. Including a strong ability to create positive and professional business relationships with internal clients.
  • Strongmitment to working as a team and providing excellent customer service.
  • Exposure to banking or equivalent highly controlled technology environment is preferred
  • Masters' degree in business,puter science or related field preferred
  • Security certifications (CISSP, GSEC, etc.) are highly desired.
  • Demonstrated experience with Industry or subject specific analysis or assessment frameworks is highly desired (FAIR, NIST CSF, etc.)
  • Experience in banking / financial industry is strongly preferred
  • Formalized training in cyber security analysis or assessment techniques

Starting base salary : $111,408 - $189,738 per year. Exactpensation may vary based on skills, experience, and location. This job is eligible for bonus and / ormissions.

To be considered for this position you must meet at least these basic qualifications

The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification.

It is not designed to contain or be interpreted as aprehensive inventory of all duties, responsibilities, and qualifications required of employees assigned to this job.

Benefits and Perks

At City National, we strive to be the best at whatever we do, including the benefits and perks we offer our colleagues. Get an inside look at our Benefits and Perks.

INCLUSION AND EQUAL OPPORTUNITY EMPLOYMENT

City National Bank is an equal opportunity employermitted to diversity and inclusion. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status or any other basis protected by law.'

ABOUT CITY NATIONAL

We start with a basic premise : Business is personal. Since day one we've always gone further than thepetition to help our clients, colleagues andmunity flourish.

City National Bank was founded in 1954 by entrepreneurs for entrepreneurs and that legacy of integrity,munity and unparalleled client relationships continues to drive phenomenal growth today.

City National is a subsidiary of Royal Bank of Canada, one of North America's leading diversified financial servicespanies. Job ID 8808

30+ days ago
Related jobs
City National Bank
San Francisco, California

The Lead ITRC tkeeps abreast of external cyber security trends, technologies and cyber risk management approaches, and often works with other teams on cyber risk-related initiatives to provide subject-matter rmendations and guidance to achieve a posture within the bank's overall risk appetite. Focus...

City National Bank
Work From Home, California, United States
Remote

What you will do "Define analysis objectives, collect data from internal and external sources, and evaluate/analyze data to provide objective information on cyber risks for IT and business management with both summary and detailed reporting Assess risk within subject specialty area to evaluate the d...

Allstate
San Francisco, California

You'll develop relationships with key stakeholders, lead and execute risk and return reviews to identify risk mitigation gaps and opportunities, and provide governance and monitoring oversight for technology, AI, and model risk. Partner with Business Unit CROs, leaders, model stewards and developers...

Federal Reserve System
San Francisco, California

The Independent Risk Management and Controls pillar of the G&C program, which includes the Information Technology and Cybersecurity (IT) Team, facilitates consistent assessments of how well IT, cybersecurity and related risks are identified, measured, monitored, and controlled at each firm. In this ...

Promoted
University of California - San Francisco
San Francisco, California

The Accounting Services Analyst manages the accounting services team. Thorough knowledge of financial processes, policies and procedures such as fund balance accounting, general ledger,etc,. Thorough knowledge of financial data management and reporting systems, such as MyReports, General Ledger Veri...

Promoted
Scale AI, Inc.
San Francisco, California

We are building the Finance team to help make data-driven and financially sound decisions for Scale.The Finance team is responsible for improving strategic, financial, and operational decisions by partnering with the leadership team in making critical decisions across Scale.The Finance team is respo...

Promoted
ACCO Engineered Systems
San Leandro, California

During the life of a project, the Project Manager manages and supervises employees assigned to the project. The Senior Project Manager is expected develop and maintain a client base, manage HVAC/plumbing sales, and manage the field labor for each project. The Project Manager utilizes and coordinates...

Promoted
HashiCorp
San Francisco, California

The Manager of Marketing Operations will play a pivotal role in managing our marketing technology stack and automation processes. Our Marketing Operations team plays a critical role in HashiCorp's marketing strategies and the execution of successful campaigns. This role will involve overseeing the u...

Promoted
Carrier
San Leandro, California

Execute all major functions required for project management, including project initiation, project planning, project execution, project monitoring, and project close-out. The Project Manager helps oversee and communicate project progression from inception to completion, including design, permits, ma...

Promoted
Visa
San Francisco, California

The Senior Financial Analyst will help produce insights and recommendations for Corporate FP&A leadership, support the coordination of global forecast and budget cycles, and analyze performance against these plans. This role is within the Corporate FP&A Revenue Team and supports the reporting, plann...