
Technology Risk & Compliance Analyst
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Texas.
• Identify, evaluate, and document technology risks across projects, products, and platforms within the Retail sector.
• Facilitate the prioritization of technology risks based on business impact, regulatory exposure, and established risk appetite.
• Conduct risk evaluations for new initiatives, including mergers and acquisitions and platform deployments.
• Integrate risk mitigation strategies into delivery plans and milestones in collaboration with project managers and product teams.
• Monitor risk exposure and track remediation efforts until completion.
• Ensure compliance with internal policies and external regulatory standards.
• Assist in the implementation and maintenance of IT GRC frameworks.
• Review and update technology policies, standards, and procedures.
• Maintain compliance documentation, control narratives, and evidence repositories.
• Support internal and external audits, including evidence collection, walkthroughs, and tracking remediation.
• Evaluate IT control effectiveness and identify gaps across applications, infrastructure, and processes.
• Enhance control design and execution in collaboration with control owners.
• Drive the resolution of audit findings and control deficiencies.
• Collaborate with vendor risk teams to identify and mitigate technology-related vendor risks.
• Prepare decision-ready reports for Steering Committees and OCIO leadership.
• Monitor Key Risk Indicators (KRIs), control effectiveness, and remediation progress.
• Identify opportunities to enhance GRC processes, tools, and the efficiency of the operating model.
• Contribute to the advancement of OCIO governance, risk, and control frameworks.
• Bachelor’s degree in Information Technology, Cybersecurity, Business, or a related field.
• 3–7 years of relevant experience in IT risk, compliance, audit, or cybersecurity.
• Solid understanding of GRC frameworks (e.g., NIST, ISO 27001, COBIT).
• Familiarity with regulatory standards (SOX, SOC, GDPR, or similar).
• Experience in risk assessment, control design, and audit support.
• Ability to convert technical risks into business impacts and executive-level communications.
• Strong collaboration and stakeholder management skills across technology and business teams.
• High attention to detail with disciplined documentation practices.
• Willingness to travel up to 30%.
• Medical/Rx, Dental, Vision, Life Insurance, Disability Insurance
• Employee Stock Purchase Plan (ESPP)
• 401k
• Student Loan Assistance
• Tuition Reimbursement
• Complimentary Mental Health & Enhanced Advocacy Services
• Paid Time Off
• Holidays
• Discounts from Preferred Partners
Banner Health
Zigabyte
Ramboll
Ramboll
Get handpicked remote jobs straight to your inbox weekly.