CrawlJobs Logo

Senior IT Risk Analyst

United States, Boston 95000.00 - 125000.00 USD / Year · Job Posted March 19, 2026
Apply Position
Job Link Share

Job Description

Berkshire Hathaway Specialty Insurance (BHSI) has an exciting opportunity for a new team member to join their Boston-based IT Governance Risk Audit & Compliance (GRAC) team as an IT Senior Risk Analyst. In this newly created role, the IT Senior Risk Analyst will support and mature the IT Risk Management pillar, ensuring technology risks are proactively identified, assessed, communicated, and monitored across the enterprise. This role will build strong partnerships with Technology leadership and collaborate closely with teams across BHSI to evaluate our IT risk posture, provide independent challenge, and recommend practical risk‑reducing actions aligned with our established risk appetite.

Job Responsibility

  • Lead risk identification, risk assessment, and ongoing monitoring
  • maintain the IT risk register and ensure risks map to business objectives and risk appetite/tolerances
  • Drive Risk and Control Self‑Assessments (RCAs) with different risk and control owners
  • advise on control design for identity & access, change/release, resiliency/DR, cloud security, data protection, and vulnerability management
  • Define and socialize KRIs/KPIs, risk dashboards, trends, and heat maps
  • deliver clear status to Technology leadership, and key stakeholders
  • Partner with Vendor Risk Management Team to evaluate critical vendors (including AI‑enabled services), review SOC reports/certifications, assess control gaps, and track remediation/compensating controls through closure
  • Track risk issues, action plans, and target dates
  • validate remediation and retest where needed
  • participate in lessons‑learned and scenario exercises
  • Provide support to our offices from both a U.S. and global perspective (i.e., Asia, Middle East, UK, Europe, Australasia, etc.) regarding the fulfillment of IT risk related requests and obligations
  • Assess AI/automation use cases for explainability, privacy, security, and bias risk
  • ensure appropriate documentation, monitoring, and governance are in place
  • Educate teams on risk expectations, evidence quality, and the “why” behind controls
  • help embed risk thinking into delivery and operations
  • Attend/participate in e-learning training sessions to increase background knowledge of the ever-evolving IT regulatory landscape

Requirements

  • 6+ years of experience in IT risk, IT audit/compliance, or cyber GRC
  • Experience running RCSAs, defining KRIs/KPIs, and presenting risk insights to senior stakeholders
  • Strong documentation skills, including writing risk narratives, control designs, control matrices, testing procedures, and remediation plans
  • Effective communication and partnership skills
  • able to challenge constructively and receive challenge professionally
  • Experience conducting vendor risk reviews, including SOC 2 analysis, control gap identification, and remediation follow‑up
  • Solid background knowledge of major risk and control frameworks (Technology, Cyber, Enterprise), such as NIST CSF, COSO ERM, COBIT, etc.
  • Working knowledge of U.S. IT regulations (e.g., SOX, CCPA/CPRA, PCI, NY‑DFS) is recommended
  • Ability to work in a team-based environment and communicate effectively and efficiently with others domestically and globally

Nice to have

  • Familiarity with global regulatory frameworks (e.g., GDPR, CBI, DORA, MAS, APRA, BaFin) is preferred but not required
  • Experience with GRC tools such as Workiva, AuditBoard, ServiceNow, Drata, Vanta, or similar platforms is a plus
  • AI experience is a plus, including an understanding of AI risks, responsible AI concepts, or emerging AI regulatory requirements
  • Professional certifications such as CRISC, CISA, CISM, CISSP, or ISO/IEC 27001 Lead Implementer/Lead Auditor (or equivalent) are a plus

What we offer

  • Comprehensive Health, Dental and Vision benefits
  • Disability Insurance (both short-term and long-term)
  • Life Insurance (for you and your family)
  • Accidental Death & Dismemberment Insurance (for you and your family)
  • Flexible Spending Accounts
  • Health Reimbursement Account
  • Employee Assistance Program
  • Retirement Savings 401(k) Plan with Company Match
  • Generous holiday and Paid Time Off
  • Tuition Reimbursement
  • Paid Parental Leave
  • Annual bonus eligibility

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Senior IT Risk Analyst

8 matching positions

InfoSec Risk Senior Analyst / Analyst

Location
Location
Salary
Salary:
Not provided
ethicshr.com Logo
Ethics HR
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's Degree in Computer Science or Electronics & Communication Engineering or a related field from a reputable university
  • Minimum 4 years of experience for the Senior Analyst and 2 years of experience for the Analyst in the banking sector and information security field, including the following background: Risk assessment, identification and mitigation
  • Security controls, security baseline, technology best practices
  • Has an integration knowledge across different security technologies and systems
  • Security control enforcement, measure of effectiveness and proposing compensating controls
  • CBE regulations
Job Responsibility
Job Responsibility
  • Review & maintain the Risk profile according to the bank's Cyber Security Risk appetite
  • Identify information security controls necessary to remediate identified risks and follow up remediation with the concerned business lines
  • Assess information security risks for IT assets and propose appropriate measures to eliminate/reduce risk
  • Coordinate with Information Security teams to manage the risk assessment activities
  • Engage InfoSec Teams in all new initiatives and projects to handle InfoSec risk assessment for new projects/technologies with concerned stakeholders
  • Follow up on Audit reports along with audit Findings/Recommendations by Internal Audit/External Audit, CBE and ensure remediation with the related parties
  • Ensure maintaining Global InfoSec Risk Register for all assessed IT assets & follow up on open risks until closure
  • Review the cases performed by the InfoSec Governance & Compliance Teams from risk perspective side
  • Participate in the Change Advisory Board (CAB) meeting
  • Work on standard and ad-hoc threats providing InfoSec risk assessment as needed
Read More
Arrow Right

Senior Risk Analyst - Enterprise Risk Management

Support the Enterprise Risk Management team by executing and advancing our ERM c...
Location
Location
Salary
Salary:
Not provided
deel.com Logo
Deel
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A minimum of 7 years of experience in risk management, audit, or a related function within financial services, FinTech, or regulated industries
  • Demonstrated experience with enterprise risk assessments, KRIs, risk registers, and issue remediation
  • Familiarity with ERM frameworks and global standards
  • Proficiency with risk and data analytics tools, GRC platforms, and data visualization
  • Strong analytical, communication, and stakeholder engagement skills
  • Degree in Finance, Economics, Risk Management, or related field
  • professional certifications such as CRM, ERM, FRM, PRMIA are preferred
Job Responsibility
Job Responsibility
  • Assist in the development, implementation, and embedding of the Enterprise Risk Management Framework (ERMF)
  • Facilitate enterprise-wide risk assessments, including identification, evaluation, and prioritization of risks across financial, operational, regulatory, and reputational domains
  • Assist with the development and monitoring of Key Risk Indicators (KRIs)
  • Support the creation and updating of risk dashboards for senior management and Board-level reporting
  • Maintain and update the enterprise risk register and control library, ensuring consistent structure and accurate risk ownership
  • Assist in developing or refining risk policies, procedures, and guidelines in line with industry and global standards
  • Coordinate follow-up actions for risk assessments, track remediation plans, and support stakeholders through issue resolution and escalation processes
  • Conduct horizon scanning to identify emerging or evolving risks, including regulatory, strategic, or systemic trends, and contribute to scenario-based risk analysis
  • Prepare materials—reports, dashboards, risk summaries—for governance forums including Risk Committees and Executive leadership
  • Assist in executive- and Board-level risk communication, ensuring clarity and data-driven insight
What we offer
What we offer
  • Stock grant opportunities dependent on your role, employment status and location
  • Additional perks and benefits based on your employment status and country
  • The flexibility of remote work, including optional WeWork access
  • Fulltime
Read More
Arrow Right

Markets Data Risk Senior Lead Analyst - Senior Vice President

We are seeking a highly experienced Senior Vice President (SVP) to fill a global...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Significant senior-level experience in risk management, data governance, or internal audit within the financial services industry
  • Deep understanding of a Markets business, including complex traded products, end-to-end trade lifecycles, and associated data flows
  • Proven, in-depth expertise in the design, implementation, and assessment of risk and control frameworks, including hands-on experience with RCSA/MCA processes
  • Comprehensive understanding of data's role in business decisions, risk management, and regulatory compliance, with the ability to analyze data lineage and architecture
  • Exceptional communication and influencing skills with a demonstrated ability to present data-driven narratives to senior stakeholders
  • A track record of developing and implementing long-term strategies that deliver measurable improvements in control effectiveness and risk reduction
Job Responsibility
Job Responsibility
  • Lead rigorous, top-down assessments of data controls across all Markets processes to identify weaknesses and gaps
  • Own and refine the Risk & Control Self-Assessment (RCSA)/Manager Control Assessments (MCA) for Markets Data
  • Design robust data controls to mitigate identified risks
  • Evolve and enhance the Markets Data Risk Appetite framework, defining standards for inherent risk, control effectiveness, and residual risk tolerance
  • Drive the implementation of new data controls within existing governance frameworks and operational workflows
  • Develop key data quality metrics (KRIs/KPIs) and deliver insightful reports on control effectiveness and the overall risk landscape to senior management
  • Serve as the organization's senior expert on data risk and controls
  • Act as a primary liaison between Data Managers, Process Owners, and senior leadership, using exceptional influencing skills to drive complex, cross-functional control improvement initiatives
What we offer
What we offer
  • Generous holiday allowance starting at 27 days plus bank holidays
  • increasing with tenure
  • A discretional annual performance related bonus
  • Private medical insurance packages to suit your personal circumstances
  • Employee Assistance Program
  • Pension Plan
  • Paid Parental Leave
  • Special discounts for employees, family, and friends
  • Access to an array of learning and development resources
  • Fulltime
Read More
Arrow Right

Assistant Vice President, ICM Risk Analysis Credit Risk Senior Analyst

ICM Risk Analysis Credit Risk Associates are responsible for a portfolio of inst...
Location
Location
Japan , Tokyo
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's/University degree or equivalent experience
  • Financial Services experience including 5-8 years of credit experience in Banking or Credit Risk Management
  • Well-developed analytical skills with understanding of key financial components
  • Advanced knowledge of financial statements and GAAP accounting or similar governance
  • Solid understanding of Credit Policy and procedures
  • Advanced Microsoft Office (Word, Excel, and PowerPoint) skills
  • Advanced experience with internal Policies, Standards, Procedures, Templates and financial modeling
  • Highly effective interpersonal skills with ability to build relationships
  • Exceptional written and verbal communication skills
Job Responsibility
Job Responsibility
  • Assess credit and financial strength of Citi's most complex Large Corporate, Public Sector, and Financial Institutions Clients
  • Complete Credit Approval Memos (CAMs) and Final Obligor Risk Ratings (FORR)
  • Continuous monitoring of covered portfolio including industry trends and impacts to key relationships
  • Review and provide recommendation on risk rating across sector
  • Partnership with regional and industry stakeholders in credit assessment implementation
  • Support ICM Risk Analysis Voice of the Employee (VOE) initiatives
  • Travel (less than 10%)
  • Fulltime
Read More
Arrow Right

Risk Analysis Credit Risk Senior Analyst

The Global Network Business Unit is an integral part of the Institutional Credit...
Location
Location
Brazil , São Paulo
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s/University degree in Business Administration, Engineering, Accounting, International Relations or equivalent
  • English fluency is required
  • Interpersonal skills, with the ability to build relationships
  • Organizational skills with ability and willingness to work under pressure and manages time and priorities effectively
  • Strong written and verbal communication skills, with the ability to communicate clearly and concisely to audiences of varying levels of seniority
  • Microsoft Office (Word, Excel, and PowerPoint) skills
  • Knowledge of basic financial concepts (e.g. liquidity position, profitability metrics, leverage profile) and macroeconomy
Job Responsibility
Job Responsibility
  • Assess the credit and financial strength of Citi's clients by performing fundamental credit analysis of those clients using both quantitative and qualitative factors
  • Complete credit analysis write-up memos and internal ratings of Citi's clients based on independent assessment and industry knowledge to provide appropriate extensions of credit remaining within Risk appetite
  • Continuous monitoring of the covered portfolio, including following industry trends, impacts to key relationships, and escalation of potential credit
  • Partnership with applicable stakeholders in ICM UW, Banking and Risk in the implementation of credit assessment and monitoring standards for applicable portfolios
  • Strong understanding of internal credit policy and procedures, proactively referring to resources as needed
  • Actively contribute to meetings, asking questions and challenging ideas
  • Display a deep commitment and positive attitude to Citi and colleagues and an eager to do more
  • Fulltime
Read More
Arrow Right

Wholesale Credit Risk Data Quality Analytics and Reporting Senior Lead Analyst- Senior Vice President

Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 15+ years of experience in Banking or Finance industry preferred
  • 12+ years of experience on working with Wholesale Credit Risk dataset
  • Experience / Certifications in Agile Methodology preferred
  • Experience monitoring and managing Data Quality on an ongoing basis, including identifying and resolving issues
  • executing against Data Quality strategies and policies
  • Communicates effectively, develops and delivers multi-mode communications that convey a clear understanding of the unique needs of different audiences
  • able to drive consensus, and influence relationships at all levels
  • Collaborates effectively by building partnerships and working well with others to meet shared objectives
  • Strong negotiation, influencing and stakeholder management skills across a variety of stakeholders at different levels
  • Optimizes work processes by balancing effective / efficient processes with a focus on continuous improvement. Demonstrates ability to balance between understanding the big picture while paying close attention to detail
Job Responsibility
Job Responsibility
  • Directs key initiatives within the business through the collection, analysis, review, reporting, documentation and communication of business needs and requirements
  • Manages resource allocation of work on key projects/initiatives
  • Deals with complex and highly variable issues with substantial potential business impact
  • Applies ingenuity and creativity to problem analysis and resolution in complicated and/or novel situations
  • Acts as an advisor or coach to new or lower-level personnel in the business processes and procedures of the business
  • Provides in-depth and sophisticated analysis with interpretive thinking to define problems and develop innovative solutions
  • Influences strategic functional decisions through advice, counsel or provided services that have direct impact on the business
  • Designs/analyzes complex reports to satisfy management requirements
  • Uses broad discretion in developing solutions for broad-based business reporting issues
  • Leads reengineering efforts in business's methodology, strategy, and organizational goals
  • Fulltime
Read More
Arrow Right

Risk Analyst II - Financial Crime Risk Investigative Analyst

We are seeking a high-caliber Financial Crime Risk Investigative Analyst to join...
Location
Location
Canada , Ottawa
Salary
Salary:
38.46 USD / Hour
https://www.randstad.com Logo
Randstad
Expiration Date
July 10, 2026
Flip Icon
Requirements
Requirements
  • 2+ years of dedicated Risk Analyst experience
  • Fundamental understanding of AML operations, standards, laws, and regulatory rules
  • Proficiency in MS Office Suite and experience navigating complex computer applications
  • Undergraduate degree is preferred
  • High attention to detail, ability to handle confidential data with discretion, and strong written/verbal communication skills for internal reporting
Job Responsibility
Job Responsibility
  • Transaction Analysis: Conduct deep-dive analysis of transactional activity to identify risks, emerging trends, and potential suspicious activity
  • Risk Mitigation: Identify and manage risks, escalating non-standard or high-risk transactions to senior leadership as necessary
  • Subject Matter Expertise: Act as a specialist owner for AML/ATF and sanctions-related matters, providing subject matter expertise to internal colleagues
  • Due Diligence: Ensure 100% accuracy in all transactions and activities by performing necessary due diligence against global guidelines
  • Operational Excellence: Manage complex workflows across multiple systems and jurisdictions, prioritizing workload to meet strict Service Level Agreements (SLAs) and productivity KPIs
What we offer
What we offer
  • Hybrid Flexibility: Enjoy a balance of 2 days onsite and 3 days remote (Monday and Friday are anchor onsite days)
  • Expert Training: 3 weeks of comprehensive theory, system, and AML-specific training to ensure your success
  • Impactful Work: Operate within the FCRM (Financial Crime Risk Management) business unit, protecting the bank and the global financial system
  • Stability: A full-year contract with the possibility of extension or permanent conversion based on performance and business needs
  • Fulltime
Read More
Arrow Right

Market Risk Senior Analyst

This position provides an excellent opportunity for a quantitative risk analyst ...
Location
Location
Poland , Warsaw
Salary
Salary:
241750.00 - 411650.00 PLN / Year
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in Risk and knowledge of one or more of the following is an advantage: derivatives pricing, exotic products, risk management practices, regulation, numerical computation, statistics
  • Experience in developing complex end-to-end models, including: identifying key steps, data analysis, ability to provide critical insights and original solutions
  • Expert level hands-on IT skills (for example: Python, C/C++, SQL, Excel, and other quantitative analytics software) are required
  • Excellent oral and written communication skills. Ability to communicate with people at all levels of seniority in the organization
  • Ability to listen and understand stakeholders’ needs and find effective/comprehensive solutions
  • Educated to postgraduate level (preferably MSc or PhD in financial, mathematical or similar quantitative field), with an excellent academic record
Job Responsibility
Job Responsibility
  • Develop methodology for quantitative analysis required on various work streams for Basel 2.5 implementation within the bank
  • Provide robust, controlled, reusable, and scalable analytics capabilities to address specific Legal Entities requirements (VaR breach analysis, Backtesting, ad-hoc analyses requested by other teams)
  • Produce high quality documentation for models, interact with the model validation team
  • Work with existing market risk models as required, and provide solutions where weaknesses are identified in testing, or where new business needs require model enhancements
  • Interact confidently with other risk management teams, governance teams, the front office, technology and control groups to implement improvements to the market risk models and to support any related production processes
  • Prepare reports and detailed quantitative analysis for presentation to senior management and regulators
  • Pro-actively develop deep knowledge of the forthcoming Market Risk regulations of the Fundamental Review of the Trading Book (FRTB) and its application in the legal entity
What we offer
What we offer
  • Employer paid Defined Contribution Pension Plan contribution of 6% of employee’s pensionable earnings (PPE Program)
  • Employer paid Private Medical Care Package for employees and Private Medical Care Packages for certain family members available at preferential rates
  • Employer paid Life Insurance Program for employees and Life Insurance for certain family members available at preferential rates
  • Employee Assistance Program financed by Employer
  • Paid Parental Leave Program (maternity and paternity leave
  • statutory and 2 weeks additional paid paternity leave)
  • Sport Card for employees subsidised via Social Benefits Fund and Sport Cards for certain family members available at preferential rates
  • Additional benefits from Company’s Social Benefit Fund
  • Additional day off for volunteering
  • Cafeteria/ flex benefit
  • Fulltime
Read More
Arrow Right