Company

Rit SolutionsSee more

addressAddressSouthfield, MI
type Form of workContractor
CategoryInformation Technology

Job description

Position Summary
The Sr Technology Risk Engineer is responsible for the delivery of the program elements of all
first line of defense risk activities directly or indirectly impacting Information Technology and
Information Security within Flagstar. The Sr Information Technology Risk Engineer will leverage
experience in business and technical acumen environment to execute the technical program activities
in the areas of audit, technology, compliance, risk management and security. The position will be
responsible for delivery of an Information Technology Risk program with clear, defined operational
policy, standards and procedures related to Information Technology and Security.
Job Responsibilities:
• Design/execute specific Information Technology and Security risk program elements to mitigate
enterprise IT and security risks throughout the Bank. Be a role model to more junior members of the
team.
• Design/engineer/execute the implementation of the components of the Information Technology Risk
Program to include external compliance, internal audit, security, vendor management, operational
risk, quality assurance and quality controls for technology and information security.
• Design/engineer/execute internal and external compliance technology audits and regulatory exams,
representing Information Technology throughout the lifecycle of the audit. (planning through
remediation strategy)
• Execute the first line of defense Risk Management functions for IT meeting the Enterprise Risk
Management (ERM) program elements, processes, and compliance requirements. Execute the Risk
Controls Self-Assessment process for Information Technology and Information Security.
• Execute Awareness and Training for Risk Program elements to enhance awareness and training
appropriate for Flagstar's needs to ensure that risk responsibilities are understood and carried
out throughout the enterprise.
• Design and execute implementation of Governance, Risk, and Control frameworks and systems based
on recognized best practices such as COBIT, ISO, NIST, GLBA, SOX, FFIEC, etc.
• Ensures compliance with applicable federal, state, and local laws and regulations. Completes all
required compliance training. Maintains knowledge of and adhere to Flagstar's internal compliance
policies and procedures. Takes responsibility to keep up to date with changing regulations and
policies.
Job Requirements:
• Bachelor's Degree in a related field is strongly desired.
Certified Information Systems Security Professional (CISSP), Certified Information Security
Manager, (CISM), Certified Information Systems Auditor (CISA), or Certified in Risk and Information
Systems Control (CRISC).

6+ years of experience working in technology audit, Information Security, or Information
Technology required.
• 2+ years of SOX IT control execution or testing or IT auditing experience or IT risk.
• Three+ years of Information Security or IT experience.
• Demonstrated experience in Risk and Control Self Assessments, Audits, for technology or
information security.
• Demonstrated ability to audit general IT controls including related infrastructure (Active
Directory
), operating systems (UNIX, Linux, Windows), databases (Oracle DB and MS SQL DB), and
applications (Oracle, PeopleSoft, Salesforce, etc.).
• Design and perform root cause analysis, control gap assessments, and process improvement
projects using technical and problem solving and critical thinking skills to quickly identify
internal control deficiencies, evaluate their risk implications, and draw the appropriate
conclusions.
• Understand Industry standard frameworks for technology, such as COBIT, ISO, NIST, SANS, and
others to design Governance, Risk and Control frameworks, and systems for technology and
information security.
• Design and develop internal control documentation including narratives, process and data flows,
and other supporting work papers.
• Moderate to in-depth understanding of business environment and risks associated with the
financial services industry, IT environments, and information dataflow.
• Understand IT audit principles and audit procedures, and determining and evaluating the severity
of potential issues identified during testing, and to provide guidance to more junior team members.
• Understand IT organization business processes and systems (IT Security, data management,
architectural and planning, technology life cycle management, regulatory concerns).
• Participate in multiple projects concurrently, works under pressure well.
• Strong verbal and written communication skills with comfort around presenting new ideas and
presentations to senior management.
• Demonstrated track record of meeting time commitments.
• Demonstrated track record of working effectively across functional and organizational
lines.
Demonstrated knowledge of risk management tools.
• Ability to work in teams, and/or as an individual contributor.
Refer code: 8705987. Rit Solutions - The previous day - 2024-03-24 03:50

Rit Solutions

Southfield, MI
Jobs feed

Non-invasive Cardiologist Needed Near Rotterdam, New York

Healthcare United

New York, NY

Experience the Epitome of Suburban Living | Outpatient Internal Medicine

J.d. Hawkins & Associates

Maryland, United States

Bucket Operator (Driver License Required) - ATE

Asplundh Tree Expert, Llc - 636

Greenfield, TN

RNG HAZMAT Driver (GA/NC)

Sapphire Gas Solutions Llc

Trenton, TN

Rheumatology Opening Near Logansport, Indiana

Healthcare United

Logansport, IN

Certified Surgical Tech CVOR

Hca Florida Oak Hill Hospital

Brooksville, FL

Rheumatology Opening Near Milton, New York

Healthcare United

New York, NY

Share jobs with friends

Related jobs

Senior Technology Risk Engineer -

Senior Manufacturing Engineer - Transmission/Drive unit assembly

General Motors

Warren, MI

20 hours ago - seen

Electronic Medical Record Clinical Systems Analyst Senior

Mclaren

Grand Blanc, MI

23 hours ago - seen

Senior General Engineer (12 Month Register) - DIRECT HIRE

Internal Revenue Service

Detroit, MI

yesterday - seen

Senior Data Engineer

Apexon

Detroit, MI

2 days ago - seen

Senior Data Infrastructure Engineer

Stryker

Portage, MI

2 days ago - seen

Senior Manufacturing Engineer

Magna

Auburn Hills, MI

2 days ago - seen

Senior Braking Sub-System Lead Engineer (SSLE)

General Motors

Milford, MI

2 days ago - seen

Senior Buyer – Branded Audio/Infotainment Information Systems

General Motors

Warren, MI

2 days ago - seen

Senior Value Chain Engineer

General Motors

Warren, MI

2 days ago - seen

Senior Manager, International Communications

General Motors

Warren, MI

3 days ago - seen

Senior Systems Engineer – Safety

General Motors

Warren, MI

5 days ago - seen

Senior Analyst

General Motors

Warren, MI

5 days ago - seen

Senior Community Leader

General Motors

Warren, MI

5 days ago - seen

Instructional Designer/Trainer - Senior - JLL101 (1284470)

Abacus Service Corporation

Auburn Hills, MI

5 days ago - seen

Senior Applications Engineer

Synopsys

Detroit, MI

6 days ago - seen

Senior Customer Solutions Advocate (Collections) - (Grand Rapids, MI) - Full Time

Fifth Third Bank

United States, Michigan, Grand Rapids

Grand Rapids, MI

6 days ago - seen

Senior Financial Analyst, Continuous Improvement

Magna

Troy, MI

6 days ago - seen

Senior Hardware Engineer - Energy

Kostal Group

Troy, MI

6 days ago - seen