dual controls, edits and validation checks, workflows, thresholds, etc.), IT processes (e.g., IT asset management, third-party risk management, data flows/interfaces, risk management, data governance and management, governance, IT operations), IT infrastructure (e.g., Windows and Linux operating systems, databases, networking), project and initiatives utilizing information technology control frameworks, such as NIST CSF, ITIL, COBIT, and FFIEC, or other relevant regulatory guidance (e.g., NYSDFS 500, GLBA, etc.), where applicable. Certification specific to the information technology industry such as, Certified Information Systems Security Professional (CISSP), Certified in Risk and Information Systems Control (CRISC), Certified Information Privacy Professional (CIPP), Certified in the Governance of Enterprise IT (CGEIT), Certified Information Security Manager (CISM), Certified Internal Auditor (CIA).