OCRA/ Third Party Risk Assessor
UBSAbout the role
City
New York
Job Type
Full Time
Country / State
United States - New York
Function Category
Information Technology (IT)
Join us
At UBS, we embrace flexible ways of working when the role permits. We offer different working arrangements like part-time, job-sharing and hybrid (office and home) working. Our purpose-led culture and global infrastructure help us connect, collaborate, and work together in agile ways to meet all our business needs.
From gaining new experiences in different roles to acquiring fresh knowledge and skills, we know that great work is never done alone. We know that it's our people, with their unique backgrounds, skills, experience levels and interests, who drive our ongoing success. Together we’re more than ourselves. Ready to be part of #teamUBS and make an impact?
Contact Details
UBS Business Solutions SA
UBS Recruiting
Disclaimer / Policy statements
UBS is an Equal Opportunity Employer. We respect and seek to empower each individual and support the diverse cultures, perspectives, skills and experiences within our workforce.
Your team
You’ll be working in the CISO/OCRA (Operational Consolidate Risk assessment) team. You'll take a part in supporting colleagues from different areas of our firm, including Risk Taxonomy Owners, Compliance & Operational Risk Controllers and Outsourcing & Supplier Management, in improving the overall risk assessment process and implementing the most effective remediation measures. Your role will be based in our New York City location.
Diversity helps us grow, together. That’s why we are committed to fostering and advancing diversity, equity, and inclusion. It strengthens our business and brings value to our clients.
Your expertise
• Bachelor's degree with professional certification in Cybersecurity, Cloud Security or a related field of study
• ideally 5+ years of experience in third-party risk assessment or cybersecurity assessment and audit experience/mindset
• ability to communicate effectively with both technical and non-technical leads
• strong analytical and problem-solving skills
• certifications such as Certified Third-Party Risk Professional (CTPRP) or Certified Information Systems Security Professional (CISSP) are a plus
• experience with industry recognized standards for IT security controls and best practices like NIST, ISO27001, PCI DSS, COBIT, SOC 2 etc.
• one of the following professional qualifications obtained: CEH, CISSP, CISA, CISM, CRISC or ITIL.
• experience with risk identification and risk articulation skills and available to work in hybrid model at least 3 days from the office
“At UBS, we appreciate our Veterans and are committed to providing opportunities in Financial Services.”
*LI-UBS
*UBS-MOGUL
About us
UBS is the world’s largest and the only truly global wealth manager. We operate through four business divisions: Global Wealth Management, Personal & Corporate Banking, Asset Management and the Investment Bank. Our global reach and the breadth of our expertise set us apart from our competitors..
We have a presence in all major financial centers in more than 50 countries.
Salary information
US Only: The expected salary range for this role is $108000 to $133000 based on factors including, but not limited to, experience, qualifications, education, location and skill level. Please see «Your role» section for detailed salary information.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s