Sr. Associate II, Technology Risk and Controls - IT Regulatory
Corebridge FinancialAbout the role
Who we are
Corebridge Financial helps people make some of the most meaningful decisions they’re ever going to make. We help them plan and take action to protect the future they envision, and respond to some of life’s most difficult moments through the solutions and services we provide. We do this through our broad portfolio of life insurance, retirement, and institutional products, offered through an extensive, multichannel distribution network. We provide solutions for a brighter future through our client centered service, breadth of product expertise, deep distribution relationships, and outstanding team of hardworking and passionate employees.
About the role
As a Sr. Associate II, you will provide the knowledge and subject matter expertise required to help drive the strategic growth of the Technology Risk & Controls team. In collaboration with the team leaders, facilitate and support periodical on-site examination and assessment exercise conducted by regulators.
A successful candidate will be expected to assist identifying, assessing, responding to, and monitoring technology risks and regulatory requirements and ensure their impact on business operations are understood and addressed.
- Develops strong relationships and interacts with IT Teams, Business Functions, Operational Risk Management, Internal Audit, and Legal, Compliance, Privacy teams to coordinate and execute required compliance assessment activities.
- Provide subject matter expertise in technology, Cyber and Data Privacy Regulation and risk management to all stakeholders (IT and Non-IT partners).
- Assists with analysis and identification of technology scope coverage, executes current-state assessments and control testing against technology compliance requirements.
- Evaluates and documents effectiveness of assessment results, outlines mitigation controls and action plans for timely remediation of identified risk areas.
- Assists in development of executive-level risk presentations to describe program approach and status, and consults on key technology risks.
- Responds to questions from internal stakeholders regarding implementation of Technology Risk measures and assists with accurate control implementation.
Please note: The job can only be performed in the State location listed: Houston, TX,
Basic Qualification
- Bachelor’s degree in Information Technology, Business Administration, or related fields.
- 4+ years of relevant industry experience in regulatory compliance, information security, risk assessments and management, cybersecurity, data privacy, audit, or related client services or consulting experience.
- Technical knowledge and familiarity with information security standards and control processes across various industry frameworks, such as NIST, ISO, FFIEC, COBIT, CIS, SOX, SOC 1 & 2 etc.
Job Requirements
Understanding of information technology and governance, regulatory compliance, and best practices across the industry as well as project management principles.
- Organized self-starter with the ability to think critically, highly detail-orientated, works independently and executes simultaneously on multiple technology compliance deliverables across the organization.
- Establishes credibility and maintains strong working relationships with stakeholders involved to resolve technology compliance matters (IT, Business, Legal, Internal Audit etc.).
- Coordinates collection and review of deliverables for internal and external (regulatory, etc.) exams, reviews, and audits.
- Assist with internal technology compliance reviews including coordination efforts, facilitation of documentation requests and gathering, and analysis of policies, standards, and procedures.
- Reviews information security controls that are technical in nature, such as application security, access controls, data encryption in transit and at rest, logging, and monitoring etc.
- Delivers recommendations and risk interpretations in a clear, concise, and audience-specific manner.
- Understands metrics development and reporting. Strong problem solving and program execution skills. Ability to prioritize and drive difficult decisions among stakeholders.
- Ability to solve risk issues that span legal, compliance and regulatory obligations across various lines of business and shared service areas of the organization.
- Strong interpersonal and oral/written communication skills, able to build relationships with people at all levels. Experience developing and delivering management presentations.
- Supports data automation and ad-hoc data analysis requests.
Preferred Skills
- Understands requirement set forth in the New York Department of Financial Services (NYDFS) Cybersecurity Regulation, I
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s