Technology Risk Specialist
Support.com - Farmington Hills, Michigan, United States
Work at Support.com
Overview
- View job
Overview
Technology Risk Specialist The Technology Risk Specialist is responsible for providing oversight, consulting, risk management assessment/support, and reporting functions related to Comerica's Lines of Business (LOBs) and other divisions. They utilize their specialized skills to engage with business partners and shared services stakeholders, offering consulting support to promote awareness and compliance with the Bank's enterprise risk management framework, policies, and standards. The role ensures independent risk assessments, oversight, and consulting support to facilitate proactive risk identification, mitigation, and remediation, safeguarding customers' and the Bank's data and assets. Job Responsibilities: Execute Second Line of Defense (SLOD) risk management functions related to Technology Risk and Information Security risk management by collaborating with LOBs and other bank stakeholders/divisions. This involves risk reviews, process assessments, providing credible challenge on risk assessments, controls, and strategic activities, and promoting awareness of technology and information risks. The specialist supports proactive risk mitigation, remediation, and ensures accurate monitoring and reporting of risks, controls, and emerging threats based on industry best practices. Assist in developing and documenting SLOD risk management routines, controls, and profiles for technology and information security risks. This includes reporting risks, supporting mitigation activities, and preparing reports for enterprise, management, and board-level awareness at both aggregate and detailed levels. Engage with stakeholders to ensure proper documentation and reporting of identified and potential risks affecting LOBs from a technology and information security perspective. Conduct SLOD reviews, provide credible challenge during regulatory risk assessments, and ensure compliance with relevant guidelines and certifications such as PCI DSS, FFIEC, and state-specific certifications. Serve as a Subject Matter Expert in technology and information risk topics, supporting all SLOD functions, assessments, audits, and related responsibilities.
#J-18808-Ljbffr