JOB SUMMARY:
To effectively identify, assess, monitor, and mitigate risks within the site consistent with Capital One’s internal controls and policies, specifically on Business Continuity and Information Security risk
MAJOR RESPONSIBILITIES:
1. Performance of First Line of Defense Assessments on Business Continuity and Information Security ∙ Conducts periodic controls testing on information security risks
∙ Performs Business Area Risk Review / Risk Management and Control framework / Enterprise Risk Self Assessment
∙ Leads local site audit management for business continuity and information security risks ∙ Liaises with internal and external auditors to facilitate audit requirements
2. Business Continuity and Information Security Risk and Remediation Monitoring
∙ Inputs business continuity and information security risk issues and events in GRC
∙ Identifies potential risk issues and events and reports appropriate ticket for resolution ∙ Participates in the analysis and resolution of risk issues and controls
∙ Conducts local site audit remediation
∙ Maintains inventory of identified risks, controls, and remediation completion
3. Site Risk Management
∙ Partners and liaises with Risk counterparts and the management team in implementing sustainable policies and compliance control programs for business continuity and information security
∙ Ensures site awareness of risk management, including but not limited to the following activities: - Provides training and assistance to Risk points-of-contact (POCs) and other employees on control procedures
- Performs periodic testing, control awareness discussions, distribution of control tools (e.g. findings database)
- Cascades respective risk policies and standards relevant to each function
∙ Prepares materials for monthly Risk Committee Review meeting
4. May be assigned / rotated across related sub-functions including but not limited to sub-functions within Shared Services
5. All other job-related duties that may be assigned from time to time
JOB SPECIFICATIONS/QUALIFICATIONS
Educational Background:
Business or IT graduate
Professional Experience:
2- 3 years’ experience in managing business continuity and information security risks in Financial industry;
Skills Required:
Understanding of business continuity and information security risk management framework and techniques;
Strong IT technical skills to understand risk processes and identify appropriate controls;
Effective communication skills to present, negotiate, and influence
Sound judgment in recommending and implementing resolutions
Notes:
Amenable to work in Alabang (Hybrid set up)
Kindly, complete your online application by visiting the link below:
https://capitalone.wd1.myworkdayjobs.com/en-US/Capital_One/job/Alabang-Muntinlupa-City/Sr-Risk-Specialist_R155032?locations=5303cb0ddb47102d5fab580903990962