Sr Operational Risk Analyst (Onsite)

Overview

On Site
$0.00 - $88.02 per hour
Contract - W2
Contract - 6 month(s)

Skills

cybersecurity
third-party/vendor risk
IT operations
business continuity
and project risk. Strong understanding of risk frameworks (e.g.
COSO
NIST
ISO 31000) and regulatory expectations (e.g.
FFIEC
NYDFS
HIPAA).

Job Details



We are seeking a Sr Operational Risk Analyst (Non-Financial Risk Lead) to join a team at our client site in Newport Beach, CA. This is a W2 position with Roth Staffing (Ledgent is a division of Roth) and is for 6 months (could be extended). Due to our contract with our client, we cannot consider 3rd party candidates.


JOB DESCRIPTION


As Sr Operational Risk Analyst II (Non-Financial Risk Lead) you will play a critical role in strengthening the company's Operational Risk and IT Risk posture. You'll support 1st Line of Defense (LoD) business owners in identifying, assessing, and mitigating risks that could impact our ability to achieve strategic objectives. This role reports to the AVP, OR&R Service Lead supporting Consumer Markets Division.


We're seeking a Sr Operational Risk Analyst II (Non-Financial Risk Lead) to join our Operational Risk & Resilience (OR&R) team in Newport Beach, CA


How you'll help us move forward



  • Lead the execution of key Operational Risk and IT Risk programs, including second line risk reviews of critical business functions, consultatory on Risk Control Self-Assessment (RCSA) for 1Line and Issues Management.

  • Partner with business and technology stakeholders to enhance the Operational Risk and Resilience Framework, ensuring alignment with regulatory expectations and industry best practices.

  • Provide subject matter expertise on Operational Risk and IT Risk domains, including cybersecurity, third-party risk, data governance, portfolio, and program & project risk.

  • Facilitate risk assessments and control evaluations across consumer markets such as Life Insurance, Annuities, and Actuarial.

  • Deliver clear, actionable guidance on risk mitigation strategies and control enhancements.

  • Monitor emerging risks and regulatory developments, translating insights into proactive risk management actions.

  • Support the development and maintenance of risk tools and documentation, including business process flows, risk libraries, and control taxonomies.



What experience you bring



  • Bachelor's degree and 8+ years of experience in Operational Risk, IT Risk, Compliance, Audit, or related control functions.

  • Proven experience managing risk across multiple domains: cybersecurity, third-party/vendor risk, IT operations, business continuity, and project risk.

  • Strong understanding of risk frameworks (e.g., COSO, NIST, ISO 31000) and regulatory expectations (e.g., FFIEC, NYDFS, HIPAA).

  • Experience supporting 1st LoD in maintaining RCSAs, KRIs, and risk issue remediation.

  • Proficiency with risk management tools such as RSA Archer, MS Visio, and Excel.

  • Excellent communication skills with the ability to influence and build consensus across technical and non-technical stakeholders.

  • Strong analytical, problem-solving, and strategic thinking skills.

  • Experience in project delivery in a risk or control environment.



What makes you stand out



  • Certifications such as CISSP, CRISC, CISA, or SANS related credentials.

  • Experience in the insurance or financial services industry, particularly in shared services or enterprise functions.

  • Ability to translate complex risk concepts into practical, business-aligned solutions.

  • Demonstrated success in cross-functional collaboration and risk culture development.


TECHNICAL SKILLS


Must Have



  • Demonstrated success in cross-functional collaboration and risk culture development.

  • Experience in project delivery in a risk or control environment.

  • Experience supporting 1st LoD in maintaining RCSAs, KRIs, and risk issue remediation.

  • Proficiency with risk management tools such as RSA Archer, MS Visio, and Excel.

  • Strong understanding of risk frameworks (e.g., COSO, NIST, ISO 31000) and regulatory expectations (e.g., FFIEC, NYDFS, HIPAA).


Nice To Have








All qualified applicants will receive consideration for employment without regard to race, color, national origin, age, ancestry, religion, sex, sexual orientation, gender identity, gender expression, marital status, disability, medical condition, genetic information, pregnancy, or military or veteran status. We consider all qualified applicants, including those with criminal histories, in a manner consistent with state and local laws, including the California Fair Chance Act, City of Los Angeles' Fair Chance Initiative for Hiring Ordinance, and Los Angeles County Fair Chance Ordinance. For unincorporated Los Angeles county, to the extent our customers require a background check for certain positions, the Company faces a significant risk to its business operations and business reputation unless a review of criminal history is conducted for those specific job positions.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About Ledgent Technology