Senior Analyst - IT/Cyber Risk
Ally FinancialAbout the role
General information
Career area Risk Work Location(s) 500 Woodward Avenue, MI, 601 S. Tryon Street, NC Remote? No Ref # 20841 Posted Date 10-03-25 Working time Full timeAlly and Your Career
Ally Financial only succeeds when its people do - and that’s more than some cliché people put on job postings. We live this stuff! We see our people as, well, people - with interests, families, friends, dreams, and causes that are all important to them. Our focus is on the health and safety of our teammates as well as work-life balance and diversity and inclusion. From generous benefits to a variety of employee resource groups, we strive to build paths that encourage employees to stretch themselves professionally. We want to help you grow, develop, and learn new things. You’re constantly evolving, so shouldn’t your opportunities be, too?Work Schedule: Ally designates roles as (1) fully on-site, (2) hybrid, or (3) fully remote. Hybrid roles are generally expected to be in the office a certain number of days per week as indicated by your manager. Your hiring manager will discuss this role's specific work requirements with you during the hiring process. All work requirements are subject to change at any time based on leader discretion and/or business need.
The Opportunity
This role is on a hybrid schedule in our Charlotte or Detroit office.
The individual will be responsible for leading one of the testing functions (IT Processes, Applications or Asset Classes) within IT Risk. In addition, this position is also responsible for designing testing objectives/steps and performing testing of higher complexity controls to ensure that key application controls are designed appropriately and working effectively to mitigate risks. This individual will independently perform all aspects of controls testing starting from scoping to communicating results. The successful candidate will have experience in IT Audit, Information Security, or Risk. The position will require the ability to effectively consult on IT/Information Security risks and issues and manage multiple priorities efficiently while demonstrating excellent time management skills.
The Work Itself
- Lead applicable IT Process, Application or Asset Class testing function within IT Risk.
- Design testing objectives/steps and performing testing of higher complexity controls.
- Independently perform IRM testing for key application controls which includes assessing the design and operating effectiveness of the control structure and compliance with policies and standards.
- Provide guidance and mentoring to other individuals on IT Risk team performing application testing.
- Document test results and provide support for an informed, objective opinion of the risk exposure.
- Draft testing observations and provide recommendations to management both verbally and in writing.
- Review management action plans to assess effectiveness of proposed remediation and appropriateness of the timeline.
- Identify emerging technology risks and lead the dialog among stakeholde
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s