Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Sr. Security Risk Analyst image - Rise Careers
Job details

Sr. Security Risk Analyst

Company Description

Zillion Technologies Inc. - (ZTI) is a global business consulting and technology solutions provider. Zillion delivers innovative business solutions that give clients a competitive edge.

Job Description

Job Title: Sr. Risk Analyst 

Location: Remote 

Position Description: 

Reporting to the Business Information Security Officer (BISO), the Senior Information Security Risk Analyst will lead specific information security risk management related activities that protect its clients while complying with applicable regulations and policies. The Senior Information Security Risk Analyst provides subject matter expertise and leadership to improve the organization’s security policies and security risk management processes by establishing a framework of controls so that the Bank can manage risk, meet regulatory compliance and maintain governance over all aspects of IT. The Senior Information Security Risk Analyst will have responsibilities to ensure that identifies risks and treats them in a timely manner while reporting the current level of exposure to known threats. The role includes implementation and maintenance of policies, as well as training and awareness plus vendor risk management responsibilities. The position requires experience of information security risk management in a regulated environment using industry standard risk and control frameworks. This role will work closely with Enterprise Risk Management (ERM) leaders.

 Position Accountabilities

  • Lead all audit prep and response across InfoSec and IT. Coordinate response to Internal Audit document requests, stage content and conduct reviews for completeness.
  • Support Controls, Policy, Standards and Procedures maturity program for InfoSec and IT to meet mandatory FFIEC, SOX requirements and a threat/risk-based controls program buildout.
  • Perform security risk analysis with the goal of identifying risk and elevating the company’s security posture.
  • Serve as a subject matter expert and trusted advisor as part of establishing relationships to support risk-based decision making across business, IT and the broader stakeholder community at the Bank.
  • Contribute to Information Security reports for Technology and Third-Party Risk Committee (TTRC), Cybersecurity Working Group (CSWG), and Operational Risk Committee as necessary.
  • Lead efforts to track and remediate risk when those risks are determined to have a threat to the Bank’s safety, soundness, or reputation. Track risks and issues and ensure their on-schedule remediation in alignment with the ERM issues management process.
  • Establish and maintain processes for managing security-related audits, control assessments, compliance checks and external assessments across Business, IT and Information Security. Ensure timely and complete responses to evidence requests and compile management responses and remediation plans as needed.
  • Emphasize the application of privacy, security, business resiliency and compliance frameworks including but not limited to, FFIEC (Federal Financial Institutions Examination Council), Sarbanes-Oxley (SOX), Gramm-Leach-Bliley Act (GLBA), Service Organization Controls (SOC) 2, PCI-DSS, and ITIL V3/4 processes.
  • Evaluate risk and controls by executing targeted testing of processes.
  • Develop and publish policy, standards and procedures for implementation based on the Bank’s risk appetite, industry best practice guidance and based on a detailed knowledge of the regulatory and stakeholder requirements.
  • Track and ensure all policies, standards and procedures are updated timely.
  • Collaborate with the ERM team to design and maintain a risk and controls matrix mapped to applicable regulatory and selected framework controls and in alignment with the agreed risk appetite.
  • Participate in the vendor risk assessment process and provide security risk assessment services and contract reviews to ensure that third parties meet the Bank’s information security control requirements.
  • Support cyber training and awareness program, Cyber Tabletop exercises, Red Team Exercises, penetration testing and ensure all findings are addressed timely via the risk issue management process.
  • Establish and lead a metrics program designed to track key risks and key performance indicators across the cyber security program and report them regularly to information security management and business leadership.
  • Lead the configuration, integration, and optimization of Governance, Risk, and Compliance (GRC) platforms such as RSA Archer, ServiceNow, and similar tools to support risk assessments, control monitoring, issue tracking, and regulatory reporting.

Organizational Relationship

This assignment reports to the Business Information Security Officer (BISO).

Qualifications

Education & Experience:

  • Between 6 - 10 years’ experience in one or more information security roles, including security risk analysis and control design, compliance and risk management, security control process assurance or audit of technology controls
  • Bachelor’s degree in information security, Computer Science, Management of Information Systems, or related field required. Master’s degree in a related field is an advantage.
  • Professional security risk management certification is required, such as a Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC) or other similar credentials.

Knowledge & Skills:

  • Proven experience configuring, managing, and optimizing RSA Archer solutions, with a strong understanding of GRC frameworks and integration of risk data across multiple business units.
  • Proficient in GRC platforms including RSA Archer, ServiceNow, and other risk management tools. Experienced in automating workflows, building dashboards, and supporting enterprise risk and compliance programs.
  • Demonstrated deep background (preferred 4+ years) in risk treatment, controls selection and information security controls process design.
  • Demonstrated knowledge of IT infrastructure, cloud (SaaS, IaaS) and application security technology and related controls and products is required.
  • Direct hands-on experience with information security policies, standards, and industry leading practices in a regulated financial services environment is essential.
  • Demonstrated experience working directly with internal audit and regulator teams to satisfy audit requests, present evidence and provide management responses to findings that are identified during the audit or assessment.
  • Demonstrated experience with security processes and technology solutions that align with controls for FFIEC, SOX Section 404, ISO 27001/2, Center for Internet Security (CIS) Critical Security Controls (CSC), or National Institute of Standards and Technology (NIST) 800-53 guidelines is preferred.
  • Experience applying the FFIEC Cybersecurity Assessment Tool (CAT) Tool in a banking environment is preferred.
  • Track record of delivering security governance, risk and compliance projects under tight deadlines.

o   Capable of working with diverse teams and promoting a positive enterprise-wide security culture.

o   Demonstrated project management, multitasking and organizational skills.

o   Detail-oriented, with excellent written and verbal communication skills, interpersonal and collaborative skills

o   Self-driven and able to work in an agile team within a large enterprise organization, as well as independently.

o   High level of personal integrity, high degree of initiative, dependability and ability to work with limited supervision.

Additional Information

Thanks & Regards, 

Praveen Kumar,

Sr. Recruiter

Zillion Technologies Inc

E-mail: praveen(at)zilliontechnologies(dot)com 

Phone: 571-814-3745 

Average salary estimate

$115000 / YEARLY (est.)
min
max
$90000K
$140000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Photo of the Rise User
Posted 4 days ago

Senior Technical IAM Analyst needed to design and operate identity and access management controls for a leading financial institution, working remotely with a global consulting firm.

Photo of the Rise User

Motivational speaker opportunity with ProSidian to deliver keynote engagements focused on personal growth and success for education sector clients in Texas and the broader South Central region.

Photo of the Rise User

Become a key player at Walker Consultants as a Curb Management, Mobility, and Parking Consultant, driving innovative transportation solutions in the San Francisco Bay Area.

Join Booz Allen as a Legislative and Communications Action Officer to enhance strategies for Navy and Defense clients through expert policy analysis and public affairs support.

Photo of the Rise User
Inclusive & Diverse
Mission Driven
Rise from Within
Diversity of Opinions
Work/Life Harmony
Empathetic
Feedback Forward
Take Risks
Collaboration over Competition
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Conferences Stipend
Paid Time-Off
Maternity Leave
Equity

Become a key player at ServiceNow, where you'll leverage your expertise in Finance & Supply Chain Solutions as a Sr. Technical Consultant, guiding organizations through transformative workflows.

Photo of the Rise User
Posted 9 days ago

Join Numeric Computer Systems as an Application Consultant focused on Route Trade Systems, delivering expert solutions for our clients in the food and beverage industry.

Photo of the Rise User
Posted 2 days ago

Experienced leader wanted to drive strategic consulting engagements and build executive-level client relationships at Kyndryl, a global technology services firm.

Photo of the Rise User
Posted 10 days ago

Become a pivotal force at Fifth Third Bank as a Senior Channel Success Analyst, where you will enhance systems and support strategic business initiatives.

CRB Hybrid Madison, WI, USA
Posted 8 days ago

Elevate your career as an EHS Manager II with CRB, where you'll implement critical safety programs in the life sciences and food sectors.

Photo of the Rise User

Join ProSidian as a Geotechnical Report Writer, contributing to impactful engineering solutions for public and private clients in the energy and sustainability sectors.

Photo of the Rise User
Posted 3 hours ago

Serve as a compelling Sustainability Keynote Speaker for ProSidian, delivering expert insights on technology and innovation to education sector audiences in Texas and beyond.

Photo of the Rise User

Join PointClickCare as a Technical Services Consultant to provide technical support and consulting services in the healthcare technology sector.

TabaPay Hybrid Palo Alto, California, United States
Posted 7 days ago

Join TabaPay as a Policy Project Writer Consultant and contribute to transforming governance policies in a dynamic Fintech company.

Zillion Technologies Inc. - (ZTI) is a global business consulting and technology solutions provider, with onsite and offshore support spanning across continents. Zillion creates value for clients by delivering industry-specific solutions, strategi...

17 jobs
MATCH
Calculating your matching score...
FUNDING
DEPARTMENTS
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
June 24, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!