Senior IT Risk Manager, Identity & Access Management jobs in United States
cer-icon
Apply on Employer Site
company-logo

Charles Schwab · 5 hours ago

Senior IT Risk Manager, Identity & Access Management

Charles Schwab is a company that empowers its employees to make an impact on their careers. The Senior IT Risk Manager, Identity & Access Management will be responsible for identifying, measuring, assessing, and reporting risks associated with identity lifecycle management and access to information resources, while also providing guidance to business partners on risk management practices.

Financial Services
badNo H1Bnote

Responsibilities

Conduct policy/standard oversight; collaborate with technology and business teams to assure risks and risk management requirements are understood; assess IAM processes for compliance with published standards, regulatory requirements, and best practices; perform risk assessments and testing where appropriate
Identify risks, examine control portfolios (and their underlying processes), and assess whether these are designed sufficiently to and are effectively reducing risk to levels within the firm’s risk appetite
Assist business partners through the risk response process by documenting gaps as issues, providing input to remediation plans and/or risk acceptances, and providing oversight for the management/lifecycle of these gaps
Maintain and evolve the measurement of RAMMs/KPIs/KRIs to monitor risk reduction
Assess the IAM risk management space, including roadmaps and projects, on a periodic basis to evolve strategy to adapt to emerging threats and capabilities
Collaborate with technology and business teams to ensure creation of IAM policies and standards reflecting the firm’s risk appetite and best practices to ensure robust risk management
Work with leadership, internal auditors, and regulators to articulate our IAM risk management framework, execution progress, and how these risks are managed at Schwab
Exemplify professionalism and a collaborative spirit in working with fellow risk management professionals and especially with our business partners to help them understand the benefit of identifying and managing risks to support business initiatives

Qualification

IdentityAccess ManagementIT Risk ManagementData AnalysisCISSP CertificationCISA CertificationCISM CertificationCRISC CertificationRisk Control FrameworksGRC ToolsCommunication SkillsInterpersonal SkillsProblem-Solving SkillsOrganizational SkillsTime Management Skills

Required

5+ years of experience in an Information Technology, Information Security, IT Risk Management, or Technology Audit field
Experience working within the identity and access management technology space and a working knowledge of aspects such as provisioning, entitlements, certification, privileged access management, authentication, and other technologies in this space
Experience with data analysis and reporting, with sharp analytical skills and strong attention to detail and accuracy
Ability to effectively communicate with technical and executive audiences; both oral and written is required with demonstrated presentation skills
Experience working with partners at all levels and across functional lines (audit, risk management, technology teams and business teams) to bring diverse points of view together
Ability to work independently and proactively, with minimal guidance
Ability to work on multiple projects simultaneously while prioritizing based on risk/business needs with effective organizational and time management skills
Strong interpersonal, analytical, problem-solving, influencing, prioritization and conflict resolution skills
Familiarity with audit and testing practices
Bachelor's degree

Preferred

CISSP, CISA, CISM, CRISC, or equivalent certification strongly preferred
3+ years of experience in a risk, supervision/controls, compliance, or audit function
2+ years of experience in financial services
Knowledge of risk control frameworks such as NIST, ISO as well as regulatory and industry requirements such as FFEIC, GLBA, PCI
Experience with GRC and Workflow tools such as IBM OpenPages or RSA Archer and Policy Tech or Policy Hub
Experience interfacing with auditors in support of audits

Company

Charles Schwab

company-logo
We have plans for every turn you take.