-
Business Analyst- Security-15269- (Hybrid)
- Shuvel Digital (Vienna, VA)
-
Business Analyst- Security
Hybrid
Vienna, VA.
Description:
Basic Purpose:
To support Security Governance & Risk (SG&R) in a lead role with high multi-facet Business and IT insight to ensure Navy Federal Credit Union's (NFCU) Security Division in effectively managing the enterprise's Security risks and overall program through technical implementation.
To support Security Governance & Risk (SG&R) by being multi-faceted responsible for supporting implementation of a focused risk management strategy and methodology within NFCU enterprise anchor platform as well as procedural documents (e.g., procedures, job aids, etc.) are thoroughly documented. Partner with various business units on iterative annual enhancements and modernizations to the programs as well as overall maintenance and ad hoc adjustments corresponding to the IT technical needs as well as the drafting of initial procedural documents to support the execution of scalable and repeatable associated processes and activities. Collaborate heavily with Enterprise Risk Management (ERM) and Enterprise Technology Services (ETS) partners, NFCU asset Business and IT owners, and Business Unit risk management delegates across the enterprise to identify and assess Inherent Risk, Control Effectiveness, and Residual Risk compiling the generation of not only risk prioritization, reporting and dashboards and also high value attribute data population serving to facilitate data integrity and credibility to the enterprise asset inventory/repository. Work closely with various levels of technical staff to ensure overall organizational effectiveness and efficiency. Work under minimal supervision with expected deliverables met on a weekly and monthly cadence.
Responsibilities:
+ Scale vertically and horizontally across the enterprise driving asset Inherent and Residual Risk for Security within an enterprise gateway assessment.
+ Request existing documentation such a Standard Operating Procedure (SOP) from Business Unit, Asset Owner, 1st Line of Defense Risk Delegate, BISO, etc.
+ As applicable, articulate data context definitions of Inherent, Control Effectiveness and Residual Risk attributes related to reporting and dashboard metrics.
+ Compile additional information requirements, objectives, functions and features.
+ Draft technical documents, primarily procedures and job aids.
+ Review drafts with stakeholders for completeness and clarification.
+ Team player with participation in Security-related special projects, councils, committees, working groups, etc. as a Risk SME
+ Upload documentation into eGRC tool of choice
+ When applicable, map the Control Procedure to the corresponding Control Standard.
+ Execute daily ad-hoc tasks or lead small projects as needed.
Qualifications and Education Requirements:
+ Risk Management experience
+ Consulting skills to extract key business and IT procedures including the ability to work with multiple stakeholders in a federated approach to a unified means
+ Significant experience researching, compiling, and documenting data and procedures associated with business processes
+ Extensive experience with content management
+ Significant experience in developing technical documentation
+ Extensive experience managing multiple priorities independently and/or in a team environment to achieve goals
+ Expert skill capturing and translating technical processes and requirements into easily understood terms
+ Advanced skill communicating complex technical concepts to non-technical audiences
+ Advanced skill identifying and analyzing technical requirements and recommending solutions
+ Advanced research, analytical, and problem solving skills
+ Expert verbal and written communication skills
+ Advanced skill presenting findings, conclusions, alternatives, and information clearly and concisely
+ Advanced skill working with all levels of management, supervisors, stakeholders and vendors
+ Experience creating/editing presentations using software or other types of material/media
+ Advanced organizational, planning and time management skills
+ Advanced skill to influence, negotiate and persuade to reach agreeable exchange and positive outcomes
-
Recent Jobs
-
Business Analyst- Security-15269- (Hybrid)
- Shuvel Digital (Vienna, VA)
-
Manager - Global Treasury Operations
- Brown-Forman (Louisville, KY)