IT Risk & Control Senior Analyst
WHAT IS THE OPPORTUNITY
The IT Risk Senior Analyst is a subject-area specialist with specialized training methods and analytic techniques to create recommendations and directions for cyber risk mitigation in a complex technical environment. Focus areas of security assessment by the ITRC Security Senior Analyst includes third party security and overall security program effectiveness in mitigating risk. The ITRC Analysts goal to create actionable information for IT and business leadership and to provide objective assessment of cyber security risks for auditors regulators and external parties. This requires routinely authoring detailed reports and gathering metrics ensure stakeholders receive accurate and complete information. The ITRC Senior Anlayst keeps abreast of external cyber security trends technologies and cyber risk management approaches and often works with other teams on cyber risk-related initiatives to provide subject-matter recommendations and guidance to achieve a posture within the banks overall risk appetite. This is an advanced senior professional with wide ranging experience uses professional concepts and to resolve complex issues in creative and effective ways. Serves as an expert in own discipline or area of specialization. Works on complex issues where analysis of situations or data requires an in-depth evaluation of variable factors.
WHAT WILL YOU DO
Define analysis objectives, collect data from internal and external sources, and evaluate/analyze data to provide objective information on cyber risks for IT and business management with both summary and detailed reporting.
Assess risk within subject specialty area to evaluate the design and effectiveness of security controls.
Provide insight and guidance to IT software and hardware upgrades and other projects to ensure production environments meet and exceed minimum security standards and will effectively counter cyber threats.
Partner with external partners, vendors, law enforcement, and intelligence community as applicable to fulfill reporting and information sharing requirements and collecting information required for comprehensive risk analysis and assessment.
Create new and maintain process and procedural documentation for various risk analysis and risk assessment activities.
Highlight industry-based methodologies, techniques, or standards (FAIR, NIST, FFIEC, etc.) used as the basis for analysis efforts.
Publish routine accurate risk analysis and assessment reports as defined by organizational risk policies and procedures to applicable audiences for each subject area discipline.
Participate in other security support projects and duties as needed or requested.
REQUIREMENTS
Required Qualifications:
Additional Qualifications:
WHATS IN IT FOR YOU
Compensation: Starting base salary $90,000 - $160,000 per year. Exact compensation may vary based on skills, experience, and location. This job is eligible for bonus and/or commissions.
Benefits and Perks:
ABOUT US
Since day one, weve always gone further than the competition to help our clients, colleagues, and communities flourish. City National Bank was founded in 1954 by entrepreneurs for entrepreneurs, and that legacy of integrity, community, and unparalleled client relationships continues today. City National is a subsidiary of Royal Bank of Canada, one of North Americas leading diversified financial services companies. To learn more about City National and our dynamic company culture, visit us at About Us.
INCLUSION AND EQUAL OPPORTUNITY EMPLOYMENT
City National Bank fosters an inclusive environment where all forms of diversity are valued and leveraged to make us a better company and employer. We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sexual orientation, gender identity, national origin, disability, veteran status, or other basis protected by law.
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Represents basic qualifications for the position. To be considered for this position, you must at least meet the required qualifications. Careers.cnb.com accepts applications on an ongoing basis until filled.
Unless otherwise indicated as fully remote, reporting into a designated City National location is an essential function of the job.