Corporate Risk Analyst
ACI WorldwideAbout the role
Join the Team Making Possibilities Happen
If you’ve ever used an ATM, paid a bill through your phone, sent money to a friend or shopped online, chances are your transaction was safeguarded and processed using our software. Now it’s your turn to serve the payment needs of organizations and people the world over.
Applicants must be currently authorized to work in the Unites States on a full-time basis. We are unable to sponsor or take over sponsorship of employment visas at this time.
Job Summary:
Responsible for assisting the organization’s Enterprise Risk Management program specifically to enhance and further mature the Third-Party Risk Management (TPRM) and Business Continuity/Operational Resilience Program (BCP) efforts to ensure ACI meets and exceeds regulatory and contractual requirements. These programs gather information that identify risks and take necessary steps to mitigate those risks and potential impacts of business interruptions. In addition, supports the on-going enhancement of ACI’s TPRM and BCP tools, produce risk reporting, conduct risk analysis, and provide training and guidance to key stakeholders and business partners throughout each program lifecycle of compliance required activities. Work across the company to put in place processes, reviews metrics, to ensure that these programs meet regulatory requirements and are audit ready. Supports the creation of a risk-aware culture across the ACI organization.
Job Responsibilities:
- Assist in identifying risks by leveraging both formal and informal mechanisms, e.g.,
- Formal mechanisms include but are not limited to program framework components / pillars, established TPRM and BCP processes and procedures
- Informal mechanisms include but are not limited to regular touchpoints with key stakeholders, ad-hoc discussions with stakeholders as needed to discuss emerging risks, risks that have materialized into issues, self-identified vulnerabilities, control gaps/failures that have been discovered, etc.
- Assist in development of assessment questionnaires for both programs that identify criticality of ACI and ACI third-party’s products and services, as well as dependencies. Engage in effective challenges with stakeholders to ensure accurate data inputs and assessment results. Support and provide input into the organization’s strategic risk programs.
- Own and take responsibility for the development, execution, and maintenance of key processes within the program framework, including the following activities: communications, process / program adherence, effective challenge, plan development, process improvement, policy and standards creation, documenting and standardizing procedures, tools / technology, escalating risk information, reporting to appropriate forums.
- Engage in development, execution, and tracking of business continuity exercises across ACI’s sites, business and technology teams, and tracking findings and remediation plans to completion.
- Administer and coordinate life-safety and emergency communication exercises using ACI’s alert tool.
- Engage with Disaster Recovery teams to monitor new product development as well as product and environment changes, assess planning and readiness capabilities, exercise development, reporting, etc.
- Engage in corporate crisis management team activations, assist with collecting readiness assessments, testing, tracking team activities and reporting.
- Administer GRC tools used for TPRM and BCP requirements that include assessment questionnaires (business impact analysis and third-party onboarding and reassessments), supporting documentation, plan content, and reporting.
- Oversee the onboarding, monitoring, and offboarding of third-party vendors, ensuring compliance with organizational standards.
- Conduct thorough risk assessments of third-party vendors, evaluating their security, compliance, and operational capabilities.
- Identify and implement risk mitigation strategies to address vulnerabilities in third-party relationships.
- Ensure third party vendors comply with relevant regulations and standards, including data protection and cybersecurity requirements.
- Conduct training for internal stakeholders on third-party risk management and business continuity practices, including development of training materials and supporting documentation.
- Develop strong working relationships across all 3 lines of defense; is a trusted business partner and advisor; coordinate risk mitigation efforts across multiple business units, product lines, and/or functions.
- Participates in customer assessments and contract reviews to ensure alignment with ACI Policies.
- Perform other duties as assigned.
- Assist i
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s