Search jobs > Seattle, WA > It compliance analyst

IT Risk and Compliance Analyst

WaFd Bank
Seattle, WA, US
$80K a year
Full-time

USD $80,000.00 / Yr.

USD $100,000.00 / Yr.

Job Summary

We are seeking an experienced IT Risk and Compliance Analyst to join our team at WaFd Bank. In this role, you will support the organization’s IT risk management and compliance programs.

This includes identifying, assessing, and mitigating risks to the IT environment and ensuring compliance with relevant regulations, standards, and policies.

The role also involves collaborating with various stakeholders to implement and maintain a robust IT governance framework.

Along with the key functions listed below, this position will be expected to uphold the value WaFd Bank places on simply being nice when servicing our colleagues and clients.

ROLE AND RESPONSIBILITIES

Risk Management :

  • Develop, support, and maintain an IT risk management framework, including policies, procedures, and control mechanisms, to identify, assess, mitigate, and monitor IT risks across the organization.
  • Conduct regular risk assessments, gap analyses, and control testing to evaluate the effectiveness of IT controls and identify potential threats to the IT environment and areas for improvement.
  • Collaborate with IT, business units, and other stakeholders to implement risk mitigation strategies and remediation plans for identified control deficiencies.
  • Provide support with third-party risk management activities and administration, including compliance documentation collection, contract reviews, contract negotiation, and technology cost analysis.
  • Monitor and report on the effectiveness of risk management activities.
  • Design, build, and maintain key risk and performance indicators to help measure the department’s effectiveness in managing technology risk and service delivery.

Compliance :

Ensure IT processes adhere to and maintain compliance with relevant laws, regulations, and industry standards (e.g., FFIEC, GLBA, SOX, etc.

data privacy regulations (e.g., CCPA), and cybersecurity frameworks (e.g., NIST).

  • Stay current with changes in relevant laws, regulations, and industry best practices and ensure the organization remains compliant.
  • Perform regular compliance reviews and assessments.
  • Help coordinate with internal and external auditors, providing necessary documentation and helping IT control owners address audit findings.
  • Facilitate the reviews of IT Audit Management Responses with the IT Leadership team.
  • Develop and maintain IT compliance documentation, including policies, procedures, and guidelines.
  • Adherence to bank policies and procedures designed to comply with Federal regulations, including but not limited to the Bank Secrecy Act, USA Patriot Act and OFAC regulations.

To that end, ensure timely and accurate preparation of Currency Transaction Reports, Suspicious Activity Reports and other recordkeeping requirements.

Governance :

  • Assist in the development and maintenance of the IT governance framework.
  • Monitor adherence to IT governance policies and procedures and report non-compliance.
  • Develop and deliver training programs to educate employees on IT risk management and compliance practice

Incident Management :

  • Assist in the investigation and review of IT incidents and problems.
  • Coordinate with stakeholders to implement corrective actions and preventive measures.
  • Conduct Post Incident Reviews and follow up on remediation activities and reporting.

Internal Controls :

  • Evaluate and enhance internal controls over IT systems and processes.
  • Work with internal and external auditors during audits and reviews.
  • Ensure that IT controls are effectively designed and operating as intended.

Reporting and Documentation :

  • Prepare and present risk and compliance reports to senior management and relevant committees, providing insights and recommendations for continuous improvement.
  • Maintain detailed records of risk assessments, compliance audits, and incident investigations.
  • Provide documentation and support for external audits and regulatory inquiries.

Qualifications

Requirements :

  • Strong understanding of IT systems, controls, security practices, relevant laws, regulations, and industry standards.
  • Excellent analytical and problem-solving skills, with the ability to identify, assess, and mitigate risks effectively.
  • Strong communication and interpersonal skills, with the ability to collaborate with various stakeholders and present complex information clearly.
  • Proven project management and organizational skills, with the ability to manage multiple priorities and meet deadlines.
  • Proficiency in risk management tools and technologies (e.g., GRC software, data analytics tools).

Qualifications and Education Requirements

  • Relevant professional certifications (e.g., Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP)) are preferred.
  • Minimum of 3-5 years of experience in IT risk management, IT compliance, or a related field, preferably in the financial services industry.
  • Strong understanding of IT risk management frameworks.
  • Knowledge of regulatory requirements and industry standards relevant to IT risk and compliance.
  • Excellent communication and interpersonal skills, with the ability to effectively interact with stakeholders at all levels of the organization

Benefits

At WaFd Bank you get all of these great benefits!

  • Paid time off for vacation, sick days and holidays
  • Health insurance
  • Stock options
  • Bonus programs
  • Generous 7% 401(k) employer matching*
  • Paid Parental Leave
  • Life and AD&D insurance
  • Long-term disability
  • Tuition Reimbursement
  • Employee assistance programs
  • Pre-tax health and dependent-care spending plans
  • 30+ days ago
Related jobs
Promoted
VirtualVocations
Seattle, Washington

A company is looking for an IT Risk & Support Assessment Consultant. ...

WaFd Bank
Seattle, Washington

This includes identifying, assessing, and mitigating risks to the IT environment and ensuring compliance with relevant regulations, standards, and policies. Develop, support, and maintain an IT risk management framework, including policies, procedures, and control mechanisms, to identify, assess, mi...

Promoted
VirtualVocations
Seattle, Washington

A company is looking for a Compliance and Data Analyst I to ensure regulatory adherence and support data analysis for compliance-related tasks. ...

Bristol Myers Squibb
Bothell, Washington

The IT Quality & Compliance Manager will partner with Quality, Business Owners, and Technical Owners to create and manage Quality Systems deliverables for electronic systems and applications throughout their lifecycle to ensure regulatory and procedural compliance, supporting the site’s right to ope...

Promoted
VirtualVocations
Seattle, Washington

A company is looking for an Actuary in Risk and Compliance. ...

Cambia Health Solutions
Renton, Washington
Remote

Ability to coordinate activities with all levels of staff within the Plan and external agencies through clear and concise verbal and written communication skills, including tactful and persuasive negotiation skills. As a member of the Benefit Contracts Compliance team, our Benefit Contract Analysts ...

Amazon.com Services LLC
Seattle, Washington

We aim to achieve this through, (1) leveraging LLM generated seller education that is dynamic and tailored to proactive education and compliance enablement, integrated with AI-guided real-time support services; and (2) disincentivizing bad actors through civil and legal actions deterring them from u...

Federal Reserve System
Seattle, Washington

The Independent Risk Management and Controls pillar of the G&C program, which includes the Information Technology and Cybersecurity (IT) Team, facilitates consistent assessments of how well IT, cybersecurity and related risks are identified, measured, monitored, and controlled at each firm. Analyze ...

Amazon.com Services LLC
Bellevue, Washington

To help fulfill this mission, the analytics and reporting team aims to influence auditing and business decisions by delivering sophisticated risk monitoring models, analytical tools and frameworks. As a Business Intelligence Engineer (BIE) on the team, you will work closely with our business and aud...

Amazon.com Services LLC
Seattle, Washington

Partner with Private Brand and Global Product Compliance Teams to facilitate product safety investigations and downstream escalations, analyze and identify root cause and ensure that effective controls are developed and maintained across the organization. Risk Managers work cross-functionally to ass...