Risk Partner Lead Identity and Access Management
Listed on 2026-01-09
-
Finance & Banking
Risk Manager/Analyst, Financial Compliance -
Management
Risk Manager/Analyst
BRCO Risk Partner Lead
The Business Risk and Control Officers (BRCO) play a pivotal role in guiding the business to identify and understand risk exposures and the controls needed which are integral to reducing risk and safeguarding our customers and colleagues. BRCOs are critical to the success of the Risk Management Lifecycle and play a role in Planning, Identifying, Assessing, Mitigating, Monitoring, and Reporting. BRCOs are members of the First Line of Defense (1
LOD) who:
- Provide leadership and coaching to the 1
LOD to proactively identify and effectively manage risks. - Translate and educate 1
LOD to enable and drive business relevant implementation of Second Line of Defense (2
LOD) risk management frameworks, policies, taxonomies, and inventories. - Review, validate, and test 1
LOD activities to ensure adequate control design and effective control operation. - Provide credible challenge to 1
LOD colleagues, ensuring safeguard and risk mitigation measures are upheld in decision making and adherence to 2
LOD frameworks and policies prior to 2
LOD review. - Drive two-way collaboration across 1
LOD and 2
LOD; liaise between 1
LOD and 2
LOD to drive engagement throughout the risk management lifecycle. - Collaborate and coordinate across the organization to help navigate and mitigate horizontal risk promoting resilience and ensuring safety and soundness.
- Document, aggregate and report risk in accordance with the risk management lifecycle.
The Business Risk and Control Office (BRCO) Risk Partner Lead for the Line of Business is responsible for engaging with 1
LOD on the development and design of implementing new controls as well as changes to existing processes. Develops options and actions for control owners to perform that will result in improved controls and greater control effectiveness. Monitors controls, including advising on appropriate monitoring structures and conducts thematic analysis providing insights on drivers of risk and emerging risks.
- Develops and maintains partnerships with the Line of Business process owners to provide end-to-end thought leadership through strategic consulting and providing expertise in control design that can lead to early identification and sustainable mitigation of risks.
- Inquiries about and builds deep familiarity with critical Line of Business processes to advise on controls.
- Drives a strong enterprise risk culture by fostering rigor and discipline focused on risk and compliance awareness, ethical business practices, transparency, and escalation.
- Collaborates with and supports other BRCO team members to ensure a robust and comprehensive implementation of Second Line of Defense (2
LOD) frameworks within 1
LOD. - Depending on size of LOB and the number BRCO Risk Partners, may align support to specific leaders.
- Engages in the development and design of implementation of new controls as well as changes to existing processes. Develops options and actions for control owners to perform that will result in improved controls and greater control effectiveness.
- Designs controls to fit for purpose, are relevant and primarily address the root causes of the risk, they should also be appropriate, covering the full extent and scope of the risk and its consequences, taking into consideration efficiency and cost-effectiveness as well as ensure they conform to relevant standards or regulatory requirements.
- Supports Line of Business process owners and ensures appropriate controls for new and changing processes are identified, risk assessed, documented, and implemented to mitigate risks and ensure all incremental risks have been captured.
- Drives adherence within 1
LOD to enterprise-wide control design standards, policies, and frameworks. - Engages with 2
LOD to ensure risks and control results are in alignment with Comerica's objectives, all risk pillars, and risk appetite and provides 2
LOD with regular updates.
- Oversees Line of Business monitoring of controls, including advising on appropriate monitoring structures.
- Performs validation to demonstrate the remediation has effectively address root cause of issue, is effective…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).