What are the responsibilities and job description for the Risk and Compliance Analyst position at Cetera Financial Group?
Role Overview:
We are seeking a Cybersecurity Professional to join our team. As a key member of our organization, you will be responsible for managing and mitigating risks associated with cybersecurity threats.
- Collect and log vulnerabilities from various sources, including Risk Register, Tanium, Qualys, Bitsight, SEC and FINRA exams, Pen Tests, and other self-identified vulnerabilities.
- Evaluate the risk level of each vulnerability and determine due dates.
- Assign vulnerabilities to the appropriate parties responsible for remediation.
- Monitor and follow up with vulnerability owners to ensure timely remediation of issues.
- Collect and attach evidence of remediation to the tracking system.
- Closely work with various teams to ensure vulnerabilities are addressed promptly and effectively.
Requirements:
- 3-6 years of experience in IT controls, IT Risk Management, Vulnerability Management or a related field.
- Familiarity with vulnerability management tools such as Tanium, Qualys, Bitsight, and experience with regulatory exams (SEC, FINRA).
- Strong analytical and problem-solving skills, attention to detail, and the ability to prioritize tasks based on risk.
- Excellent verbal and written communication skills.
- Relevant certifications such as CISA, CASP, CIA or similar are a plus.