C

Technology Risk Management Specialist - Hybrid

Charles Schwab

Lone Tree, Douglas County, CO
16 days ago
Not specified

Job Description

Join Charles Schwab as a Technology Risk Management Specialist, where you'll enhance access control frameworks and collaborate with cybersecurity teams to ensure secure operations. This role offers a chance to make a significant impact in finance through innovative problem-solving and teamwork.

Key Responsibilities

  • Collaborate with Schwab Cybersecurity teams and risk partners
  • Guide technical and business teams on access controls
  • Assist in implementing and facilitating access controls
  • Coordinate evidence collection for control testing and audit readiness
  • Support risk analysis and remediation planning
  • Research processes for operational efficiency
  • Maintain process documentation and performance metrics
  • Identify and recommend improvements to access control processes
  • Validate identity controls and settings
  • Conduct business impact and risk exposure assessments
  • Participate in quality assurance of IAM solutions
  • Facilitate automation and advancement of IAM and IGA processes

Required Qualifications

  • Bachelor’s degree in Information Security, Information Systems, Risk Management, or a related field
  • 3+ years of experience in access management, cybersecurity, or IT risk and controls
  • Strong understanding of access control frameworks, IAM principles, and risk management practices
  • Experience working with control testing, evidence collection, and audit processes
  • Excellent written and oral communication and collaboration skills
  • Proficiency in documenting processes, creating control mappings, and tracking metrics
  • Skilled in creating and evaluating solution design/mappings
  • Track record acting with integrity and seeking to excel
  • Excellent judgment and ability to make quick decisions
  • High degree of integrity and professionalism

Preferred Qualifications

  • Experience with tools such as SailPoint, Powershell, Jira, GRC
  • Familiarity with regulatory frameworks such as SOX, ISO 27001, NIST, or COBIT
  • Familiarity with directory services, Windows and Entra ID/Azure AD, SSO, MFA, zero trust, attribute-based access
  • Ability to manage multiple priorities in a fast-paced environment
  • Relevant professional certifications (CISA, CISSP, CIA or equivalent)

Benefits & Perks

401(k) with company matchEmployee stock purchase planPaid time for vacation and volunteering28-day sabbatical after every 5 years of servicePaid parental leave and family building benefitsTuition reimbursementHealth, dental, and vision insurance