Principal Technology Risk Analyst evaluating technology, financial, reputational risks and managing compliance programs in Corporate Services for Fidelity Investments.
Responsibilities
Help evaluate risks (technology, financial, reputational, and regulatory) and enhance/manage core program activities.
Define and execute the technology risk strategy and program.
Work with Technology, Operations and Risk teams to holistically manage risk.
Perform proactive risk and control assessments, monitor technology controls, document, and oversee remediation plans.
Provide appropriate risk and controls consulting on key CST initiatives and Emerging Technologies activities.
Engage with Corporate Services Technology teams and Senior leadership, Internal Audit and External Audit teams.
Assess various information technology risks that the business faces and implement action plans, policy and procedural changes for risk avoidance and mitigation.
Develop data analysis and apply innovative automated tools to provide management with proper context of potential exposure and loss of business due to control weaknesses.
Provide technical assistance on risk-related systems issues and monitoring controls related to application security, CI/CD programs, regulatory requirements and serve as a liaison for technology risk management.
Assist with conducting Cloud, SaaS risk assessments and readiness reviews for applications using AI/ML technologies.
Manage IT Controls program activities, this includes managing the Controls Inventory in GRC/OpenPages and control documentation and performing IT Controls Testing to meet internal assurance and external audit requirements.
Requirements
7+ years’ experience in information technology risk, cyber security, controls, or audit roles.
BA/BS/MS in in computer science, technology, cybersecurity, or a related field of study preferred.
Expert knowledge of cloud security, containerization, API, DevOps, secure software development, application security, databases, and operating systems.
Demonstrated technical abilities in multiple areas (e.g., technology infrastructure and application controls, cyber security, access management, network and cloud, resiliency, etc.).
Experience performing Technology risk assessments, control assessments, IT Audits or implementing Cybersecurity controls for large scale financial service organizations.
Understanding of artificial intelligence, machine learning, LLM, data science, and Robotic Process Automation (RPA) tools.
Preferred hands-on skills with various Programming/Scripting Languages (Python, PowerShell, Java, etc.), audit testing tools, and automation.
Ability to work simultaneously on multiple tasks and lead team priorities and workload.
Advisory role focusing on risk management and transformation projects at PwC. Collaborating with teams to implement governance, management strategies and lead complex programmes.
Data Governance Engineer shaping mission data governance by leading modernization efforts for national security clients. Collaborating with stakeholders to implement data management strategies.
Senior Data Governance Engineer at Booz Allen leading modernization efforts for mission data governance. Collaborating with stakeholders to implement data strategies supporting national security efforts.
Technology Coordinator at Evertec managing change processes and daily IT application operations. Requires fluency in English and strong governance experience in a hybrid role.
Manager overseeing regulatory compliance management as an SME for TD's Business Banking. Leading a team and managing governance and control programs for effective risk management.
Sustainability & Risk Intern assisting with ESG regulatory compliance and sustainability data management. Engaging with cross - functional teams in Amsterdam to promote supply chain resilience.
Head of Risk leading Wallee Group’s Risk function in a fast - growing payment company. Driving risk management aligned with business goals and regulatory compliance.
Data Quality Risk Supervisor conducting independent assessments of data quality risk frameworks at the Group. Collaborating with various stakeholders within a hybrid work environment.
Model Risk Manager overseeing model risk throughout the lifecycle while ensuring regulatory compliance. Collaborating across departments to manage risks and enhance decision - making in financial services.