Senior Software Engineer
Role responsibilities
The role focuses on identifying, assessing, and monitoring technology risks across the enterprise to ensure alignment with risk appetite. Key duties include leading RCSAs, managing the technology risk register, and evaluating critical vendors and AI use cases.
Requirements
Candidates need over 10 years of experience in technology risk, audit, or cyber GRC, with proficiency in frameworks like NIST and COBIT. Strong documentation skills and experience with GRC tools or professional certifications like CRISC or CISA are highly valued.
Key skills
Technology Risk Management, Risk and Control Self-Assessments (RCSA), Vendor Risk Management, GRC Tools, NIST CSF, COSO ERM, COBIT, SOC 2 Analysis, Regulatory Compliance, AI Risk Governance, KRI/KPI Definition, Control Design, Cyber GRC, Audit and Compliance, Risk Register Maintenance, Stakeholder Management
Keywords
Technology Risk, Cyber GRC, NIST CSF, COSO ERM, COBIT, SOX, CCPA, CPRA, PCI, NY-DFS, GDPR, DORA, MAS, APRA, BaFin, Workiva, AuditBoard, ServiceNow, Drata, Vanta, CRISC, CISA, CISM, CISSP, ISO 27001, SOC 2, AI Governance, Risk Register, RCSA, Insurance