Tandym logo

IT Risk & Controls Analyst

Tandym

  • Vienna, Virginia
  • 9 days ago
  • $45 Per Hour

Highlights

Familiarity with NIST Cybersecurity Framework and 800 Series, ISO 27001/27002, SANS/CIS, and PCI DSS. Plan and scope IT and Information Security control assessments, including communications, risk and control matrices, scope documents, and supporting materials.

Numbers & Facts

LocationVienna, Virginia
IndustryStaffing/Employment Agencies
Salary$45 Per Hour
Company Size100 to 499 employees
Year Founded1985
Websitehttp://www.tandymgroup.com

Description

A financial services organization in Virginia is seeking an IT Risk & Controls Analyst to join their team in Vienna.

About the Opportunity:

  • Schedule: Monday to Friday

  • Hours: Standard business

  • Setting: Hybrid (3 days onsite)

Responsibilities:

  • Plan and scope IT and Information Security control assessments, including communications, risk and control matrices, scope documents, and supporting materials

  • Conduct walkthroughs with business partners to identify actual versus expected controls

  • Develop and execute testing strategies to evaluate control effectiveness

  • Document testing procedures, results, issues, and assessment conclusions

  • Prepare final assessment reports and present findings to leadership and other stakeholders

Qualifications:

  • Experience performing control testing, audit, risk assessments, or related functions

  • Experience with IT and/or Information Security risk assessments

  • Knowledge of financial services regulations, standards, and frameworks, including FFIEC, NIST, ISO, NCUA, and GLBA

  • Familiarity with NIST Cybersecurity Framework and 800 Series, ISO 27001/27002, SANS/CIS, and PCI DSS

  • Bachelor's degree in Business, Information Systems, or a related field, or equivalent work or military experience

  • Strong research, analytical, problem-solving, planning, and organizational skills

  • Strong written, verbal, interpersonal, and technical writing skills

  • Ability to clearly communicate assessment findings, conclusions, and recommendations to leadership

  • Experience working effectively with staff, management, business stakeholders, and third parties

  • Ability to build effective relationships through rapport, trust, diplomacy, and tact

  • Strong proficiency with word processing and spreadsheet applications

Desired Skills:

  • Information Security certification, such as CISSP, CISA, CCSP, or CRISC

  • Experience working within Audit, Enterprise Risk Management (ERM), or First Line of Defense functions

  • Experience working in an Agile environment

About Company

At Tandym Group (formerly The Execu|Search Group), we’re committed to connecting talented people like you with leading companies. With our personalized approach, you’ll never feel like just a resume when you work with us. We know that every job—and every job seeker—is different, which is why we keep the focus on you and your goals. This philosophy has allowed us to help thousands of people find career success over the last three decades, and we’re here to help you do the same.
With our extensive network of companies and full suite of direct hire recruitment and contract staffing services, you’ll have access to a variety of roles. We match talent with highly curated opportunities across healthcare, professional services, tech, and life sciences—but it goes far beyond that.
When you partner with us, we’re all in. Your goals become our goals, and we are committed to helping you reach your highest potential. From matching you with your dream role to providing resume guidance and interview prep, we’re here for the entire journey. In the constantly changing world of work, you can count on us to be by your side.

Similar Jobs

ARCTICOM LLC

Senior Program Analyst

  • Quantico, VA
12 days ago
See more jobs