Risk & Compliance Analyst
Listed on 2025-12-30
-
IT/Tech
Cybersecurity, Information Security, Data Security, IT Consultant
Description
Please note: This is an in-office position that is located in Springfield, IL
Application Instructions: Interested candidates are encouraged to apply with a resume and cover letter detailing their experience and qualifications relevant to this position.
About Us:At INB, your career is more than a job; it’s a chance to make a difference. As a locally owned, community-focused bank, we help individuals and businesses reach their financial goals through personalized service and trusted relationships. Our team is built on care, creativity, teamwork, balance, smart work, and enthusiasm. Join us and be part of a purpose-driven culture that makes a positive impact every day.
Job Summary:The Risk & Compliance Analyst safeguards organizational assets and ensures regulatory compliance by managing information security, risk assessments, policy reviews, and audit operations. This role also oversees third-party vendor compliance, delivers security training, and supports business continuity. Strong analytical, communication, and problem-solving skills are essential.
Key Responsibilities:- Asset Management:
Maintain an inventory of organizational information assets. Maintain workflow/process diagrams for all critical bank functions. - Business Continuity:
Maintain business continuity plans to ensure organizational resilience. Facilitate periodic disaster recovery testing. - Risk Assessment Management:
Conduct risk assessments to assist in managing risk mitigation strategies to protect organizational assets. - Policy Management:
Manage review process of all security policies, standards, and procedures in line with industry standards - Change Management:
Monitor change management processes to ensure that security impacts are assessed and managed. - Operational Security Monitoring:
Continuously monitor security operations to identify and address potential threats and verify effective controls operation. - Identity and Access Management:
Manage identity and access controls to safeguard sensitive information. Conduct User Access Reviews periodically to ensure compliance with Role Based Access Controls. - Audit Operations:
Participate in external audits, ensuring compliance with regulatory requirements. - Audit Remediation:
Implement and track remediation efforts for audit findings to ensure compliance and security. - Third-Party Management:
Assess and manage third-party vendors to ensure they meet security requirements. - Security Awareness Training:
Deliver security awareness training programs to educate employees on best practices. - Framework and Regulatory Compliance Management:
Ensure compliance with key frameworks including NIST 800-53, NIST CSF, and regulatory compliance such as GLBA, PCI, and HIPAA. - Management Reporting:
Assist in preparation of monthly management reports - Perform other duties as assigned.
- Bachelor’s degree in Information Security, Information Assurance, or a related field, or equivalent work experience
- Previous banking experience preferred but not required
- Project management skills preferred but not required
- Experience in Microsoft Office Suite and Visio
- Analytical/attention to detail
- Excellent problem-solving skills and the ability to work both independently and as part of a team.
- Strong communication skills, with the ability to convey complex security concepts to non-technical stakeholders.
Skills:
- Familiarity with regulatory compliance
- Experience with hybrid cloud environments
- Understanding of NIST frameworks (NIST 800-53, NIST CSF)
- Understanding of regulatory compliance such as GLBA, PCI, and HIPAA
Skills:
- Demonstrates ownership and accountability, proactively identifying and addressing risks before they escape
- Anticipates and responds to the needs of internal and external customers
- Stays informed of emerging technologies, best practices, and regulatory changes; devotes time to professional development
- Upholds ethical standards, owns mistakes, and communicates status and challenges openly
- Responds swiftly to critical situations, demonstrating agility and a solutions-driven mindset
- Provides timely, jargon-free updates to stakeholders and non-technical colleagues
- Fosters creativity and continuous…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).