Talent.com
Fidelity Investments
ETRA Principal Technology Risk Analyst, External AuditFidelity Investments • Durham, NC, US
ETRA Principal Technology Risk Analyst, External Audit

ETRA Principal Technology Risk Analyst, External Audit

Fidelity Investments • Durham, NC, US
30+ days ago
Job type
  • Full-time
Job description

Job Description

:

The Role

The External Audit Center of Excellence within Fidelity’s Enterprise Technology Risk and Analytics (ETRA) group is seeking a passionate, driven, and experienced professional to help us oversee the technology areas of external audit engagements. You will enhance and run the external audit oversight program activities focused on key technology areas including DevOps, Cloud and Technology Operations. In addition, you will perform proactive risk assessments and develop control strategies for emerging technologies including AI/Machine Learning and Snowflake data services. To accomplish this, you will work closely with technology support teams, Enterprise Cybersecurity (ECS), Enterprise Infrastructure (EI), Cloud and Platform Engineering (CAPE), BU Technology partners, BU Operations Risk, and Fidelity’s external auditors. The role can be based in Merrimack, Boston, Smithfield, North Carolina, or Westlake, and will report to the External Audit Center of Excellence Lead.

The Team

External Audit Center of Excellence oversees the management and execution of technology audit engagements (e.g., SOC 1, SOC 2, control attestations) for the Enterprise. External audit certifications are critical to Fidelity’s institutional businesses, and our key focus is protecting the interests of our clients, customers, and Fidelity’s brand by overseeing the effectiveness of technology controls through successful completion of external audit certifications. The CoE collaborates closely with the business units, technology leaders and operational risk teams develop best in class standards and practices for external audits and build the roadmaps for future technology and business requirements.

The Expertise and Skills You Bring

  • 5-9 years’ experience in information technology auditing, information technology risk, cyber security, or controls assurance roles
  • Bachelor’s degree in Computer Science, Information Systems, Technology, or a related field of study preferred
  • Demonstrated technical abilities in multiple areas including technology infrastructure and application controls, cloud, cyber security, and access management
  • Experience or knowledge of CI/CD technologies, automated code build and deployments pipelines/orchestration solutions
  • Experience performing risk assessments, control assessments, IT Audits or implementing Cybersecurity controls for large scale financial service organizations
  • Experience supporting or conducting SOC 1 or control attestation audit engagements preferred but not required
  • Professional technology risk certification (CISSP, CISA, CISSP, CRISC, CISM) and/or Cloud Certification(s) (CCSP, CCSK, AWS) preferred
  • Your love of solving complex problems, and comfort with ambiguous situations, and your ability to help solution innovative ways to mitigate risk and develop controls using your analytical and critical thinking skills
  • Your process orientation and understanding of operations and technology enabling you to provide support in the analysis, development, and monitoring of controls
  • Experience with Cloud security and controls and cloud technology environments (AWS/Azure, PaaS, SaaS)
  • Knowledge of industry standards, frameworks, and methodologies, such as SOC 1, SOC 2, ISO27001, HITRUST
  • You have excellent verbal and written communication skills enabling you to prepare and present findings clearly and concisely
  • You demonstrate a proven sense of ownership, accountability, and a commitment to achieving objectives
  • Your ability to build and maintain collaborative working relationships to craft and assist in the execution of appropriate controls design and monitoring

The Value You Deliver

  • Leading external auditor readiness engagements and readiness assessments and providing timely status updates to management
  • Planning and coordination of audit cycles with external auditors and internal stakeholders
  • Facilitating requests from external auditor and monitoring to ensure timely completion
  • Performing technology risk assessments and developing control strategies, including documenting controls, identifying potential gaps and/or inconsistencies and making sound recommendations for improvement and/or mitigation.
  • Providing technical assistance on risk related systems issues, and serving as a liaison with technology and risk teams to track external audit findings, perform issues follow-up, consulting and action plans with owners and issue resolution
  • Assessing the various information technology risks that the business faces in its operations and implementing action plans, policy and procedural changes for risk avoidance and mitigation.
  • Evaluating control maturity by performing control design and operating effectiveness reviews and peer reviewing as needed.
  • Assist with conducting Cloud Risk assessments and readiness reviews for applications and workloads migrating to the public Cloud environment.

Certifications:

Create a job alert for this search

ETRA Principal Technology Risk Analyst, External Audit • Durham, NC, US

Similar jobs

Senior Analyst /Government Pricing

Bavarian NordicDurham, NC, United States
Full-time

Senior Analyst, Government Pricing.At Bavarian Nordic, we are dedicated to protecting lives and advancing global health through innovative vaccines.As a global leader in smallpox and mpox vaccines,... Show more

 • Promoted

Principal Auditor

Duke UniversityDurham, NC, United States
Full-time

Work Arrangement: Hybrid (On-Site and Remote mix) Location: Durham, NC, US, 27710 Personnel Area: CENTRAL ADMIN MANAGEMENT.The Office of Audit Risk and Compliance (OARC) is a dynamic risk and contr... Show more

 • Promoted

Principal, Custom Market Research Consulting Services

GenaeDurham, NC, United States
Full-time

Principal, Custom Market Research Consulting Services.Durham, United States of America | Full time | Home-based.IQVIA's Custom Market Research team works at the intersection of strategy, analytics,... Show more

 • Promoted

Compensation Analyst

AA2ITDurham, NC, United States
Full-time

Sales Incentive - Compensation Analyst.Alexander Drive, Research Triangle Park, NC.Education: Bachelor's degree required.Experience: Minimum 5-8 yrs of direct compensation and total rewards experie... Show more

 • Promoted

Supervisory Principal Consultant

Lincoln FinancialDurham, NC, United States
Full-time

Supervisory Principal Consultant.The Supervision Consultant supports the day-to-day oversight of registered representatives in a wholesale broker-dealer environment.This role is a first line of def... Show more

 • Promoted

Business Analyst

ProcomDurham, NC, United States
Permanent

Procom is a leading provider of professional IT services and staffing to businesses and governments in Canada.With revenues over $500 million, the Branham Group has recognized Procom as the 3rd lar... Show more

 • Promoted

Senior Compliance Analyst (MS), AML (Anti-Money Laundering)

ACA GroupDurham, NC, United States
Full-time

Senior Compliance Analyst (MS), AML (Anti-Money Laundering).The Opportunity: The AML/KYC Senior Analyst supports the day-to-day execution of the investor onboarding and lifecycle due diligence.This... Show more

 • Promoted

Director, Insurance Risk

Cypress Creek RenewablesDurham, NC, United States
Full-time

Cypress Creek Energy is powering a sustainable future, one project at a time.We develop, finance, own and operate utility-scale and distributed solar and storage projects across the country.Fosteri... Show more

 • Promoted

Information Technology Professional

US NavyHolly Springs, NC, US
Full-time

Information Technology Professional (IT/CTN/IS).Information Systems Technicians, Cryptologic Technician Networks, and Intelligence Specialists keep the Fleet connected, informed, and secure by oper... Show more

 • Promoted

Security Risk & Compliance Assistant

Robinson BradshawChapel Hill, NC, United States
Full-time

Security Risk & Compliance Assistant.The Security Risk and Compliance Assistant's primary responsibility is to coordinate the Firm's security compliance efforts and support the Firm's overall infor... Show more

 • Promoted

Senior US and Canada Payroll Analyst

UL SolutionsDurham, NC, United States
Full-time

Canada Payroll Specialist is responsible for managing and processing payroll for employees across the United States and Canada, ensuring accuracy, compliance, and timely delivery.This role requires... Show more

 • Promoted

QA Compliance Lead Auditor (GCP Auditor) North Carolina Hybrid Based

FortreaDurham, NC, United States
Full-time +1

QA Compliance Lead Auditor (GCP Auditor).This position is within Fortreas Global Quality Assurance organization, responsible for providing regulatory expertise, leading complex GCP audits and inspe... Show more

 • Promoted

Globality Bid (Common Identity) - Business/System Analyst |

KaavDurham, NC, United States
Full-time

Business Analyst / System Analyst.Fidelity is seeking a detail-oriented and strategic Business Analyst / System Analyst to bridge the gap between business needs and technology solutions.The ideal c... Show more

 • Promoted

Investment Analyst

Focus Financial PartnersChapel Hill, NC, United States
Full-time

Eton Advisors is a Multi-Family Office dedicated to providing discerning, ultra-high net-worth clients with sophisticated wealth management and family office services.Our commitment is a customized... Show more

 • Promoted

COMPLIANCE SPECIALIST

Duke HealthDurham, NC, United States
Full-time

Patient Revenue Management Organization.Pursue your passion for caring with the Patient Revenue Management Organization, which is the fully integrated, centralized revenue cycle organization that s... Show more

 • Promoted

Fulfillment Compliance Facilitator

Millennium Print GroupDurham, NC, United States
Full-time

Fulfillment Compliance Facilitator.Join Millennium Print Group as a Fulfillment Compliance Facilitator!.We're looking for a detail-oriented and process-driven professional to support compliance, qu... Show more

 • Promoted

Trade Compliance Analyst

MacomDurham, NC, United States
Full-time

MACOM designs and manufactures semiconductor products for Data Center, Telecommunication and Industrial and Defense applications.Headquartered in Lowell, Massachusetts, MACOM has design centers and... Show more

 • Promoted

Portfolio Strategy Analyst

KBI BiopharmaDurham, NC, United States
Full-time

This is an on-site position located in Durham, NC.At KBI Biopharma, we are advancing science and accelerating breakthroughs.As a global leader in biopharmaceutical development and manufacturing, we... Show more

 • Promoted

Globality Bid (Common Identity) - Business/System Analyst |

SamprasoftDurham, NC, United States
Full-time

Business Analyst / System Analyst.Fidelity is seeking a detail-oriented and strategic Business Analyst / System Analyst to bridge the gap between business needs and technology solutions.The ideal c... Show more

 • Promoted

Manager, Global Trade Compliance

WolfspeedDurham, NC, United States
Full-time

Global Trade Compliance Manager.At Wolfspeed, we do amazing things in a human way.We know that the achievements of our organization are due to the passion, hard work and creativity of our employees... Show more