Job Posting for OTS Compliance and Audit Analyst at Bellco Credit Union
Summary:
The Information Security Compliance and Audit Analyst participates and identifies, manages, and reports on the company’s compliance, regulatory, legislative, and contractual requirements. Responsibilities will include assisting in the reviews, assessments, and audits, conducting research, and facilitating communication to internal and external stakeholders where necessary. The position will assist with monitoring, creating, review, and implementing policies, standards, procedures, controls, and guidelines to support security, compliance, and audit requirements.
Please note this is not an Auditor position. Rather, it will work with auditors, internal staff and occasionally partner customers in preparation and participation in various audits.
Essential Duties and Responsibilities:
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
• Assist in the Improvement of existing compliance programs and processes.
• Participate in the creation and adherence of policy, plans, and strategy in compliance with laws, regulations, and standards in support of organizational cyber activities.
• Contribute to the development, review, and modification of information security and privacy policies.
• Assist in the development of materials and tools to effectively communicate compliance and corporate requirements.
• Participate in the audit procedures to assess and measure company compliance with its security policies and procedures.
• Work with business leaders to ensure information security risk findings are reviewed and solutions are implemented.
• Participate in internal security risk assessments and security compliance audits.
• Collect, analyze, and prepare reports required for senior management, regulators, and other relevant stakeholders.
• Document, investigate, and report cybersecurity compliance issues and incidents, where necessary.
• Understand, develop, and deliver meaningful reports on the program state and adherence to frameworks and standards.
• Assist in the escalation and resolution of risk and compliance issues with appropriate stakeholders including business, security, legal, IT, and customers.
• Liaise with relevant parties to commission activities relating to contingency planning, business continuity management, and IT disaster recovery.
• Assist with Compliance and Audit Assessments
• Apply IT security audit procedures relevant to GLBA, GDPR, PCI-DSS, NCUA Regulations, and FFIEC guidelines.
• Apply COBIT, COSO, ITIL, or ISO 17799 frameworks to documentation and remediation efforts.
• Liaise with external auditors to facilitate the auditing process.
• Assist customer internal audit teams in delivering requests from external auditors and consultants.
• Other duties as assigned.
Position Requirements
Formal Education & Certification
• Minimum Bachelor’s degree in business or information technology, or equivalent experience.
Knowledge & Experience
• Minimum prior experience and/or exposure of at least 1 year required in the area of Information Security compliance, risk management and audit. 4 years preferred.
• Demonstrated knowledge of and experience with legal and regulatory compliance standards such as GLBA, GDPR, PCI-DSS, NCUA Regulations, and FFIEC guidelines.
• Strong familiarity with governance and controls frameworks, such as COBIT, COSO, ITIL, and ISO 17799.
• Experience with IT governance, risk, and compliance management.
• Knowledge of computer networking concepts and protocols and network security methodologies.
• Knowledge of risk management processes (e.g., methods for assessing and mitigating risk).
• Knowledge of cyber threats and vulnerabilities.
• Knowledge of specific operational impacts of cybersecurity lapses.
Personal Attributes
• Results oriented, high energy, and self-motivated.
• Ability to work well under minimal supervision.
• Excellent verbal and written communication skills.
• Ability to work in a team-oriented, collaborative environment.
• Strong problem solving and analytical skills.
• Ability to handle multiple competing priorities.
• Ability to meet tight deadlines.
Standards of Performance:
• Professional representation of Open Technology Solutions.
• Job knowledge/timely, accurate and efficient performance.
• Adherence to OTS’s policies and procedures.
• Promotes and ensures the highest level of quality member service is provided to all members.
• Confidentiality of all records.
• Timeliness of meeting regulatory guidelines.
• Compliance of regulatory requirements.
• Cost effectiveness and productivity of departmental operations.
• Success in meeting individual, departmental, and corporate goals.
Physical Requirements:
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
• While performing the duties of this job, the employee is required periodically to sit, climb or balance, stoop, kneel, crouch or crawl and reach with hands and arms. The employee is regularly required to stand, walk, use hands and fingers, handle or feel, smell and talk or hear.
• The employee is regularly required to lift up to ten pounds. Job has the following vision requirements: close, distance, color, peripheral, depth perception, and ability to adjust focus.
Working Conditions:
The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
• General office environment with low noise levels
Compensation and Benefits:
• Salary range is targeted to be in the range of $60,000 to $75,000 depending on qualifications.
• In addition, this position is eligible for an annual bonus eligibility with a target payout of 10%, based on company and individual performance.
• The OTS Benefits package includes medical/dental/vision insurance, flexible spending accounts, 401(k) plan with fully vested matching, PTO, life insurance, short-term disability, long-term disability, holiday pay, student loan paydown program, tuition reimbursement, loan discounts, service anniversary bonuses, recognition program. employee referral program, and employee activities
Salary.com Estimation for OTS Compliance and Audit Analyst in Centennial, CO
$74,669 to $99,044
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution.
Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right.
Surveys & Data Sets
Sign up to receive alerts about other jobs with skills like those required for the OTS Compliance and Audit Analyst.
Click the checkbox next to the jobs that you are interested in.