Cybersecurity & Technology Risk Compliance Analyst (DTC1JP00003425) Tampa or Coppell, TX
Cybersecurity & Technology Risk Compliance Analyst (DTC1JP00003425) Tampa or Coppell, TX
CISA, CISM, CISSP, CRISC or equivalent certification, cybersecurity and technology risk management, Compliance Analyst
If you post this job on a job board, please do not use company name or salary.
Experience level: Mid-senior
Experience required: 6 Years
Education level: Bachelor’s degree
Job function: Information Technology
Industry: Financial Services
Pay rate : $57 per hour
Total position: 1
Visa sponsorship eligibility: No
Need Candidates only from Financial Services Industry ~!
Job Locations : Tampa, FL Or Coppell, TX (Coppell is preference)
Job Summary/Basic Function
Cybersecurity & Technology Risk Management Compliance Analyst ensures DTCC is complying with several cybersecurity regulatory requirements, cybersecurity industry standards, frameworks, and best practices. Additional staffing is required to assist with the identification, development and ongoing mapping of internal cybersecurity and technology policies, procedures, and controls that demonstrate compliance with cybersecurity regulatory requirements and work with stakeholders to address gaps and inconsistencies. This function provides transparency into the cybersecurity laws and regulations that govern DTCC policies and facilitates mapping of those requirements to controls. In addition, the function monitors and organizes existing controls and their alignment in the enterprise GRC tool. The ideal candidate has done related work for at least five years and has a thorough knowledge of technology controls (IT and cyber) including how they are executed in today’s IT threat landscape. The incumbent should have a strong understanding of testing cyber security methodologies, frameworks, and regulations in the financial services sector.
Principal Responsibilities:
• Perform mapping of regulatory requirements to policies, procedures, industry standards, frameworks, and existing controls
• Review policies and procedures that demonstrate compliance with regulatory requirements and work to address gaps and inconsistencies.
• Continue to develop and maintain a comprehensive library of applicable cybersecurity laws and regulations, as well as requirements and resulting controls.
• Monitor regulatory trends, guidance and new regulations which impact cybersecurity and require enhancements to the existing control framework.
• Prepare reports on the status of the program to appropriate governance structure(s) and senior management.
• Support the facilitation of impact assessments to evaluate new or changing regulations and readiness for compliance.
• Evaluate new initiatives and business ventures to identify and evaluate compliance requirements and readiness.
• Develop action plans for development and enhancement of cybersecurity controls and provide ongoing support and monitoring of the implementation of those controls.
• Evaluate policies and procedures to identify and address any compliance gaps or inconsistencies within the control framework and alignment with applicable regulations.
• Understand cyber and IT best practices including knowledge of frameworks, guidelines, and regulations (i.e., NIST Cybersecurity Framework, FFIEC, NYSDFS)
• Ensure cybersecurity and technology risk management meets all industry regulations, standards, and compliance requirements.
Qualifications
• 5+ years’ experience; prior experience in risk management, legal, compliance or auditing preferred
• Bachelor's degree preferred; advanced degree and/or certification a plus
• College Degree in Business Management / Computer Science [or related field preferred]
• CISA, CISM, CISSP, CRISC or equivalent certification
Specific Qualifications
• Proficient in PowerPoint, Excel and Word
• Knowledge of financial services laws and regulations, particularly in the securities markets
• Experience working at or with financial services regulators (e.g. SEC, FRB, NYSDFS, CFTC, ESMA, etc.) is highly desirable
• Previous audit experience preferred.
• Familiarity with ISO/IEC 27001/27002:2013, NIST Cybersecurity Framework, NIST Special Publication (SP) 800-53 or other cyber, technology, financial services guidelines, frameworks and regulations is required.
• Expert writing skills to support thorough documentation and communication of information security principles.
• Intermediate level experience with Microsoft Excel. Has ability to create metrics
• Understand the concepts of information technology risk and the different elements required that mitigate risk.
• Knowledge of basic compliance principles and standards, including industry best practices and compliance controls
• Proven knowledge of technical infrastructure, networks, databases and systems and how they affect an organization's cybersecurity and technology risk
• Ability to work efficiently and independently with minimal supervision (i.e., self-motivated, proactive, and willing to stretch to meet important deadlines).
Recommended Jobs
Production
Production Position open in Blum, Tx. Schedules for all shifts available: ~2nd shift 2pm-10:30pm, $17.50 ~3rd shift 10pm-6:30am, $18.00 Job Description : YOU WILL BE PRODUCING THE SHAPE CHA…
General Ledger Accountant
Job Description Job Description ABOUT US: Ethos Risk Services is a leading insurance claims investigation and medical management company committed to providing better data that translates into…
Customer Service Attendant (PT) - Events
Job Description Job Description PRIMARY DUTY: This position is responsible for providing service to guests, vendors and customers above and beyond their expectations. The CSA is responsible fo…
Supply Chain Manager
Supply Chain Manager positions offered by Safran USA, Inc. (Irving, TX). Manages global supplier performance from business initiation to mass production. This includes but is not limited to obtain, i…
Part-time sitter wanted near TCU to care for two boys
Pay: $17 - $33 per hour Start Date: In 5-7 Days Location: Fort Worth, TX Job Description Part-time sitter wanted to care for two boys. Must be reliable and responsible. Duties include c…
Customer Service Representative
Job ID#: 25176 Customer Service Representative – Collections Location: Houston, TX Employment Type: [Full-Time / Temp-to-Hire / Contract] Pay: $17 We are seeking a Customer Service R…
Frac Specialist
R00131942 ChampionX has an immediate opening for a Frac Operational Specialist in Odessa, TX . If you are a dedicated DOT driving professional with a proven track record of success in customer …
System Administrator 2
Linux, Red Hat Linux, and any flavor of Linux such as: Rocky, Amazon This group in Texas is considered as the Linux Center of Excellence & Automation to provide secure STE/STN Linux hardened images …