More jobs:
ETS Risk Analyst II
Job in
Johnston, Providence County, Rhode Island, 02919, USA
Listed on 2026-06-07
Listing for:
Citizens Financial Group, Inc.
Full Time
position Listed on 2026-06-07
Job specializations:
-
IT/Tech
Cybersecurity
Job Description & How to Apply Below
ETS Risk Analyst II - Monitoring and Testing
Role Overview
The Enterprise Technology & Security (ETS) Risk Analyst II plays a critical role inthe identification, assessment, and mitigation of technology and security related risks across the organization. Working within a first-line risk team, this role partners directly with
Risk Managers to execute control monitoring and testing that aligns with the bank's risk appetite framework, regulatory expectations, and industry standards including Cybersecurity Risk Institute (CRI) Profile, NIST 800-53, and NIST Cybersecurity Framework. You will independently assess control effectiveness, monitor key risk indicators, and analyze results to identify trends, control gaps, and areas for improvement. This role requires strong professional judgment, high quality documentation, and timely communication to support a resilient control environment and informed risk decisions.
This is an excellent opportunity for an early-career risk professional looking to build foundational expertise in technology and security risk within a growing regulated financial institution.
Responsibilities
* Partner with Risk Managers to execute the control monitoring and testing program across multiple complex technology and cybersecurity processes.
* Independently perform control design and operating effectiveness testing in accordance with established methodologies and timelines.
* Assess material controls and determine whether enhanced controls are effective to support issue validation and closure.
* Document testing results clearly and accurately in the system of record and supporting tools, producing audit ready documentation suitable for QA, Internal Audit, and Regulatory review.
* Support the analysis of monitoring and testing results to identify themes, trends, root causes, and emerging issues.
* Escalate control deficiencies, emerging risks, and potential delays in a timely and professional manner.
* Support issue management activities, including testing to validate remediation and support issue closure
* Participate in Risk and Control Self Assessments (RCSAs), including creation and validation of process maps that reflect key processes, risks, and controls
* Maintain awareness of emerging risks and evolving technologies (e.g., artificial intelligence, automation, and data driven processes) and assess their impact on control design, effectiveness, and monitoring approaches.
* Contribute to the continuous monitoring program by leveraging automated testing, key control metrics, and trend analysis to improve risk insight and control coverage.
* Identify, evaluate, and prioritize opportunities to enhance control testing through automation, data analytics, and improved key control metrics, partnering with stakeholders to support implementation.
* Build effective working relationships with business and technology stakeholders to stay informed of process changes and emerging risks.
* Develop understanding of internal policies, infrastructure processes, and evolving industry risk trends.
* Proactively pursue ongoing professional development, including relevant certifications, industry training, etc. to maintain current knowledge in a rapidly evolving field.
Experience & Skills
Required:
* 3-5 years of experience in IT, information security, risk management, or internal audit.
* Foundational understanding of technology risk concepts, control frameworks (NIST 800-53, NIST CSF, CRI Profile, COBIT, or ITIL), and risk management lifecycle.
* Familiarity with GRC platforms (e.g., Archer) and IT service management tools (e.g., Service Now, Jira).
* Ability to analyze and interpret data from security and operational monitoring tools.
* Strong written and verbal communication skills, with the ability to translate technical risk findings into clear documentation.
* Demonstrated ability to manage multiple priorities in a fast-paced environment with attention to detail.
* Proficiency in Microsoft Office Suite (Excel, Word, PowerPoint).
Preferred:
* Experience in a regulated financial services or banking environment.
* Familiarity with cloud environments (AWS, Azure) or infrastructure risk concepts.
*…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×