Risk Management AnalystJourney Level
Resource Requirements
Mandatory
- An Associates degree in Risk Management Management Information Systems (MIS) Cybersecurity or a related field.
- At least 5 years of professional experience as an internal/external IT (Information Technology) auditor risk management analyst conducting audits/risk assessments of regulatory compliance business and financial data privacy information technology and cyber/physical security controls.
- Internal/external IT auditing and/or risk management analysis conducting audits/risk assessments of regulatory compliance business and financial operations data privacy information technology and cyber/physical security controls.
- Governance Risk and Compliance (GRC) framework and software utilization.
- Following Enterprise Risk Management (ERM) plans policies procedures and standards.
- Risk management audit and compliance consultations and training.
- Independent audit report analysis to identify report and track related findings anomalies or problems to key stakeholders.
- Evaluation of information technology general computing controls to determine level of regulatory compliance.
- Preparation of deliverables to meet regulatory requirements.
Desired
- Audit/risk management experience in a Health Exchange or its partners.
- MARSe IRS 1075 and NIST 80053 regulatory audit/risk management experience.
- Advanced experience implementing administering and using GRC software tools.
- Prior BigFour audit firm work experience.
- Professional certifications such as CIA COSOERM CISA CISSP.
- Experience with the following Software and Services:
- ZenGRC
- Jira
- Confluence
- SolarWinds