RBC Global IT Risk (GITR) team enables the protection of RBC's brand, systems, and operations by equipping business and technology partners with meaningful insights, advice, and information on RBC IT & cyber risks. The Senior Cyber Security and IT Risk Management Analyst will perform risk-based testing activities that independently evaluate the design and effectiveness of IT controls and further assist with the enhancement and execution of the IT Control Testing and Monitoring. This role will primarily support the identification and mitigation of IT and regulatory risks and operational issues and will also assist in the maintenance of operational and IT control procedures. This is an advanced senior professional with wide-ranging experience who uses professional concepts to resolve complex issues. Serves as an expert in their own discipline or area of specialization. This dynamic position provides opportunities for working across the organization.
Executing control testing to evaluate the design and operating effectiveness of IT controls. Documenting test work adhering to the quality standards, procedure, and industry best practices. Analyzing, aggregating, and articulating the results, issues, and recommendations related to control testing activities.
Participate in all phases of the internal control monitoring process including planning, testing, evaluating risk, identifying mitigating controls, developing conclusions, writing reports, and maintaining work papers.
Coordinate with stakeholders to log and manage control deficiencies. Assess remediation plans and corrective actions are reasonably designed to reduce risk. Verify control deficiencies are remediated according to the remediation plans.
Establish strong working relationships with the stakeholders across business units and teams to build trust and act as trusted advisor. Perform as a subject matter expert to advise stakeholders on control documentation and testing in compliance with policies and standards.
Maintaining thorough understanding of organization's governing policies and standards, IT control testing methodologies, and related regulatory and compliance standards.
Keeping abreast of external cyber security trends, technologies and cyber risk management approaches, control hygiene of the environment, and often collaborate with other teams on IT risk-related initiatives to provide subject-matter recommendations and guidance to achieve a risk posture within the organization's overall risk appetite.
Must have:
Nice-to-have:
RBC is committed to supporting flexible work arrangements when and where available. Details to be discussed with Hiring Manager.
We thrive on the challenge to be our best, progressive thinking to keep growing, and working together to deliver trusted advice to help our clients thrive and communities prosper. We care about each other, reaching our potential, making a difference to our communities, and achieving success that is mutual.
A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicable.
Leaders who support your development through coaching and managing opportunities.
Ability to make a difference and lasting impact.
Work in a dynamic, collaborative, progressive, and high-performing team.
A world-class training program in financial services.
Flexible work/life balance options.
Opportunities to do challenging work.
LI-Hybrid
LI-POST
TECHPJ
RC23
Business Continuity Disaster Recovery, Cyber Security Management, Firewall Management, Information Technology (IT) Risk, IT Network Security, IT Standards, Problem Management, Process Management, Risk Assessments, Technical Writing, Threat Management.