Senior Risk Analyst, Enterprise Risk Management (Bank Origination
Listed on 2026-08-22
-
Finance & Banking
Risk Manager/Analyst, Financial Compliance, Regulatory Compliance Specialist
Who We Are
Founded in 1997, Merrick Bank is an FDIC‑insured financial institution headquartered in South Jordan, Utah, with over $10 billion in assets. A wholly owned subsidiary of Card Works Financial Group, Merrick Bank serves roughly five million card members and more than 100,000 merchant customers nationwide.
What We DoWe provide credit cards, recreational loans, deposit accounts, merchant services and bank sponsor ships to consumers and businesses. As a leader in non‑prime lending and merchant acquiring, we combine innovative technology with data‑driven insights to help underserved consumers build and strengthen credit while delivering integrated, scalable payment solutions for businesses.
Essential Functions- Supports the execution of the ERM program across the Bank, ensuring consistency in risk identification, assessment, monitoring, and reporting practices.
- Contributes to the development and enhancement of risk reporting and governance processes for Bank Origination and other key risk programs.
- Supports second‑line oversight of risks arising from Bank Origination programs through aggregation and analysis of risk‑related data.
- Assists in monitoring risk exposures, including identification of emerging risks, trends, and concentration risks.
- Partners with first and second‑line stakeholders and subject matter experts to collect, validate, and challenge risk inputs.
- Aggregates and analyzes risk information from multiple sources, including risk assessments and risk monitoring activities, to support Bank‑level reporting.
- Supports the risk appetite monitoring processes, including identification and escalation of threshold breaches or adverse trends.
- Prepares and maintains risk dashboards, key risk indicators (KRIs), and trend analyses for management review.
- Supports the development and maintenance of enterprise risk profiles and supporting documentation.
- Produces concise, decision‑useful reporting for senior management and risk governance committees.
- Ensures alignment with internal governance standards, policies, and regulatory expectations.
- Performs other duties as assigned.
- Responsible for complying with all of the Bank’s internal control policies and procedures.
- Responsible for understanding and complying with all laws and regulations to which the Bank is subject.
- Responsible for communicating problems in operations, non‑compliance with the code of conduct, policy violations, or illegal acts.
- Bachelor’s degree in Risk Management, Finance, Business Administration, Accounting, or a related field required; advanced degree or professional certification (e.g., CRMA, FRM, CPA, CIA) preferred.
- Minimum of 3‑5 years of progressive experience in Enterprise Risk Management, Operational Risk, Third‑Party Risk Management or a related risk discipline within a financial services or regulated environment.
- Experience supporting Bank Origination, fintech partnership, or third‑party risk oversight activities.
- Familiarity with interagency third‑party risk management guidance and partner governance expectations.
- Solid understanding of ERM frameworks, risk governance practices, and regulatory expectations applicable to banking and financial services organizations.
- Proven ability to work cross‑functionally, influence stakeholders, and partner effectively with both first and second line teams.
- Excellent written and verbal communication skills, with a strong attention to detail and the ability to translate technical risk concepts into business‑focused insights.
- Experience with ERM systems and risk data repositories (e.g., risk assessment tools, issue management systems, reporting platforms) is strongly preferred.
This is largely a sedentary role; however, some filing is required and may involve lifting files, opening filing cabinets, and bending or standing on a stool as necessary.
Security Responsibilities – GeneralThis classification requires heightened security awareness to safeguard the Bank’s data, including customer non‑public personal information. The security level means that the job includes exposure to all…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).