Lead IT Embedded Risk Specialist

Overview

On Site
Full Time

Skills

Attention to detail
Time management
Security+
Professional development
Life insurance
Risk management
Product engineering
Internal auditing
IT risk
Operational risk
Penetration testing
Continuous improvement
IT infrastructure
Disaster recovery
Cyber security
Information systems
Financial services
Leadership
Embedded systems
IMPACT
DTCC
Collaboration
Innovation
Finance
ERM
Management
Testing
TRM
Network
Policies
Auditing
Facilitation
Design
KPI
Regulatory Compliance
Reporting
Roadmaps
COE
Mainframe
Cloud computing
Automation
ITIL
Communication
Creativity
CISSP
Presentations
Accountability
SAP BASIS

Job Details

Short Description for Internal Candidates
The Lead Embedded Risk Specialist is responsible for assisting stakeholders with the identification and timely remediation of risk. She/he is a top-level contributor that acts independently with minimal direction. The successful ability to form strong relationships and communicate with a breadth and breadth of leadership levels is critical. Attention to detail and strong time management skills are also required.
Description for Internal Candidates
Are you ready to make an impact at DTCC?

Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We're committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.

Pay and Benefits:
  • Competitive compensation, including base pay and annual incentive
  • Comprehensive health and life insurance and well-being benefits, based on location
  • Pension / Retirement benefits
  • Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
  • DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).

About this Opportunity

The Embedded Risk Manager (ERM) is responsible for assisting stakeholders with the identification and timely remediation of risk. She/he is a top-level contributor that acts independently with minimal direction. The ERM's ability to form strong relationships and communicate with a breadth and variety of management resources is critical. Attention to detail and strong time management skills are also required.

Primary Responsibilities:

Follow the DTCC processes and methodologies for risk management

Learn to effectively use the tools required for risk management at DTCC such as PDMS / MetricStream

Comply with existing risk and control commitments and requirements
  • Liaison between and across the cost centers composing Enterprise Platform and Product Engineering and the following control functions:
    • Internal Audit Department
    • Technical Risk Management
    • Operational Risk Management
    • Regulators / Regulatory Relations
    • IT Risk Community of Excellence
    • Management Control Testing
  • Drive successful and timely completion of commitments and requirements
    • Issues and Actions
    • TRM network and app pen test findings, FOSS findings
    • Risk acceptances and policy deviations
    • PDMS Policy and Procedures document reviews
  • Provide guidance and become central point of contact between stakeholders and control functions
  • Assist with articulating issues and remediation plans, drive timely submissions to control functions
  • Assist Enterprise Product and Platform Engineering teams in tracking audit deliverables and facilitating management's timely response to requests
  • Track audit actions against defined delivery dates and assist with development of retarget plans as necessary

Protect stakeholders by identifying control adherence/design effectiveness gaps as first line of defense
  • Conduct proactive Continuous Improvement Questionnaire meetings to identify MSIs, policy deviations and risk acceptances to mitigate future control function findings
  • Update Process, Risk & Control (PRC) framework proactively
  • Review Key Performance Indicator (KPI) maker/checker compliance
  • Work closely with management and stakeholders to accurately report status of audit and regulatory actions
  • Collaborate effectively with the Risk Management Center of Excellence to drive the teams' timely response to TRM, external Audit, and regulatory requests

Enable strategic improvement of IT control environment
  • Integrate risk management into each team's continuous improvement processes, roadmaps, and strategies
  • Drive/facilitate control efforts
  • Provide information and feedback to the CoE and control functions as appropriate
  • Influence and support the Risk mindset of Enterprise Product and Platform Engineering

Leadership Competencies
  • Familiarity with IT Infrastructure - Mainframe, distributed, cloud, network, disaster recovery, automation, ITIL processes
Global Collaboration: Applies global perspective when working within a team by being aware of own style and ensuring all relevant parties are involved in key team tasks and decisions.
  • Communication: Articulates information clearly and presents information effectively and confidently when working with others.
  • Influencing: Convinces others by making a strong case, bringing others along to their viewpoint; maintains strong, trusting relationships while at the same time is comfortable challenging ideas.
    Innovation and Creativity: Thinks boldly and out of the box, generates new ideas and processes, and confidently pursues challenges as new avenues of opportunity.

Talent Needed for Success:
  • Cyber Security experience - CompTIA Security+ certificate or the CISSP (Certified Information Systems Security Professional) certification strongly preferred
  • Familiarity with IT Infrastructure - Mainframe, distributed, cloud, network, disaster recovery, automation, ITIL processes
  • Able to identify Audit control gaps in engineering platforms and processes
  • Strong written and verbal communications and presentation skills
  • Accountable to take necessary actions to continuously meet required deadlines and goals
  • Convinces others by making a strong case, bringing others along to their viewpoint; builds strong, trusting relationships while being comfortable challenging ideas
  • Thinks boldly and out of the box, generates new ideas and processes, confidently pursues challenges
  • Minimum of 6 years of Financial services experience
  • Bachelor's degree preferred with Masters or equivalent experience

The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

About The Depository Trust & Clearing Corporation