
Risk Analyst – Pre-Assessment
Bank of America
full-time
Posted on:
Location Type: Office
Location: Denver • Colorado, Illinois • 🇺🇸 United States
Visit company websiteSalary
💰 $94,800 - $143,700 per year
Job Level
Junior
About the role
- Assist in assessment scope determination
- Meeting with Enterprise Vendor Managers and Third Party Subject Matter Experts (SME’s) to prepare for the assessment
- Documentation collection (e.g. TruSight or vendor provided policies/procedures)
- Preparation of assessment work-papers
- Ensure each third party is prepared for the assessment and gather understanding of third party security risk environment
- Interact regularly with Enterprise Vendor Managers and Third Parties
- Act as single point of contact to prepare the Third Party for the assessment and answer detailed risk questions
- Engage with the Third Parties security team to understand their control environment, control strength, and review information security policies/procedures for completeness
- Populate the assessment workpapers with detailed information for the third party assessors to document gaps and determine remediation approaches
Requirements
- 1 year of experience in Information Security or Risk Management
- Outstanding verbal and written communication skills
- Ambitious, disciplined, hardworking, resilient and willing to learn
- Risk management focused with a passion for excellence and positive team attitude
- Ability to think logically
- Highly organized and project management skills
- Strong time management skills
- Bachelor's degree in Information Technology, Information Security or related field (Desired)
- Strong analytical skills/problem solving/conceptual thinking (Desired)
- Ability to work with technical and non-technical business owners (Desired)
- Optional Certifications: CISSP (ISC2), CISA, CRISC, CISM (ISACA), CCIE (Cisco), TOGAF, CCTA (McAfee), CCFP (ISC2).
Benefits
- This role is currently benefits eligible.
- We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
Information SecurityRisk ManagementDocumentation collectionAssessment work-papers preparationControl environment analysisInformation security policies reviewGap analysisRemediation approaches
Soft skills
Verbal communicationWritten communicationOrganizational skillsProject managementTime managementAnalytical skillsProblem solvingConceptual thinkingLogical thinkingTeam attitude
Certifications
CISSPCISACRISCCISMCCIETOGAFCCTACCFP