Compliance and Operational Risk Specialist

at Bank of America
Location Dallas, TX
Date Posted November 21, 2021
Category Default
Job Type Full-time

Description

Job Description:

The Compliance and Operational Risk (“C&OR”) Specialist assists the C&OR officer team in activities to contribute to the independent compliance and operational risk oversight of Front Line Unit or Control Function (“FLU/CF”) performance and any related third party/vendor relationships in alignment with the Global Compliance -- Enterprise Policy, the Operational Risk Management -- Enterprise Policy (collectively “the Policies”) and the Compliance and Operational Risk Management (“CORM”) Program and Standard Operating Procedures (SOPs).

The C&OR Specialist assists in engaging other C&OR officers, including horizontal coverage owners and Enterprise Areas of Coverage (“EAC”), to provide comprehensive oversight of FLU/CF activities. This role assists in developing and maintaining a global coverage plan which defines the scope and risk-based focus of the second line’s risk management activities. The C&OR Specialist assists in preparing materials for C&OR regulatory exams/audits/inquiries and may assist with preparation for FLU/CF regulatory exams/audits/inquiries.

The C&OR Specialist is accountable for assisting the C&OR Team in the proactive identification, escalation and timely mitigation of compliance and operational risks through the execution of some or all of the following activities:

• Assists in the development of independent risk management reporting for respective area(s) of coverage as input into governance and management routines
• Contributes to the oversight of FLU/CF training which may include content development and/or tracking and communication of employee completion rates
• Assists with the development and maintenance of C&OR owned policies and standards and/or the oversight of FLU/CF-owned policies, standards and procedures to ensure regulatory and operational risk requirements are appropriately addressed, inclusive of conduct risk as applicable
• Monitors the regulatory environment to identify regulatory changes applicable to area(s) of coverage and maintains a comprehensive regulatory inventory; may support communication of regulatory changes to the FLU/CF and ensuring that policies, standards, procedures and/or processes are appropriately implemented or amended to address regulatory requirements
• Assists in identifying, aggregating, reporting, escalating, inspecting and challenging remediation plans, and performing thematic analysis on FLU/CF-owned issues and control enhancements
• Assists in remediating C&OR “owned” issues and control enhancements
• Contributes to risk coverage plan development, executes independent risk monitoring, testing, and risk assessments, communicates results
• Reviews and challenges the FLU/CF process, risk, control (PRC) inventory and FLU/CF Risk & Control Self-Assessment (RCSA)
• Supports the review and challenge of internal and external operational loss events, including development of remediation plans to strengthen controls
• Assists with the development of risk metrics, monitors related performance and breach remediation

Required and desired qualifications:

• Knowledge of various facets of application security and network infrastructure security, including defense in depth
• Familiarity of security standards and regulations
• General knowledge of SDLC process
• General knowledge of risk management and risk governance processes
• Excellent communication skills, ability to communicate at all levels
• Strong critical thinking skills
• Strong interpersonal skills
• Sound teamwork and conflict resolution skills
• CISSP, CISM or CRISC desired
 

Required Skills: Minimum Years Business & Functional Experience: 5 Years Functional Experience

Degree Required: Bachelor’s Degree

Job Band:

H5

Shift: 

1st shift (United States of America)

Hours Per Week:

40

Weekly Schedule:

Referral Bonus Amount:

0

-->

Job Description:

The Compliance and Operational Risk (“C&OR”) Specialist assists the C&OR officer team in activities to contribute to the independent compliance and operational risk oversight of Front Line Unit or Control Function (“FLU/CF”) performance and any related third party/vendor relationships in alignment with the Global Compliance -- Enterprise Policy, the Operational Risk Management -- Enterprise Policy (collectively “the Policies”) and the Compliance and Operational Risk Management (“CORM”) Program and Standard Operating Procedures (SOPs).

The C&OR Specialist assists in engaging other C&OR officers, including horizontal coverage owners and Enterprise Areas of Coverage (“EAC”), to provide comprehensive oversight of FLU/CF activities. This role assists in developing and maintaining a global coverage plan which defines the scope and risk-based focus of the second line’s risk management activities. The C&OR Specialist assists in preparing materials for C&OR regulatory exams/audits/inquiries and may assist with preparation for FLU/CF regulatory exams/audits/inquiries.

The C&OR Specialist is accountable for assisting the C&OR Team in the proactive identification, escalation and timely mitigation of compliance and operational risks through the execution of some or all of the following activities:

• Assists in the development of independent risk management reporting for respective area(s) of coverage as input into governance and management routines
• Contributes to the oversight of FLU/CF training which may include content development and/or tracking and communication of employee completion rates
• Assists with the development and maintenance of C&OR owned policies and standards and/or the oversight of FLU/CF-owned policies, standards and procedures to ensure regulatory and operational risk requirements are appropriately addressed, inclusive of conduct risk as applicable
• Monitors the regulatory environment to identify regulatory changes applicable to area(s) of coverage and maintains a comprehensive regulatory inventory; may support communication of regulatory changes to the FLU/CF and ensuring that policies, standards, procedures and/or processes are appropriately implemented or amended to address regulatory requirements
• Assists in identifying, aggregating, reporting, escalating, inspecting and challenging remediation plans, and performing thematic analysis on FLU/CF-owned issues and control enhancements
• Assists in remediating C&OR “owned” issues and control enhancements
• Contributes to risk coverage plan development, executes independent risk monitoring, testing, and risk assessments, communicates results
• Reviews and challenges the FLU/CF process, risk, control (PRC) inventory and FLU/CF Risk & Control Self-Assessment (RCSA)
• Supports the review and challenge of internal and external operational loss events, including development of remediation plans to strengthen controls
• Assists with the development of risk metrics, monitors related performance and breach remediation

Required and desired qualifications:

• Knowledge of various facets of application security and network infrastructure security, including defense in depth
• Familiarity of security standards and regulations
• General knowledge of SDLC process
• General knowledge of risk management and risk governance processes
• Excellent communication skills, ability to communicate at all levels
• Strong critical thinking skills
• Strong interpersonal skills
• Sound teamwork and conflict resolution skills
• CISSP, CISM or CRISC desired
 

Required Skills: Minimum Years Business & Functional Experience: 5 Years Functional Experience

Degree Required: Bachelor’s Degree

Job Band:

H5

Shift: 

1st shift (United States of America)

Hours Per Week:

40

Weekly Schedule:

Referral Bonus Amount:

0

Job Description:
The Compliance and Operational Risk (“C&OR”) Specialist assists the C&OR officer team in activities to contribute to the independent compliance and operational risk oversight of Front Line Unit or Control Function (“FLU/CF”) performance and any related third party/vendor relationships in alignment with the Global Compliance -- Enterprise Policy, the Operational Risk Management -- Enterprise Policy (collectively “the Policies”) and the Compliance and Operational Risk Management (“CORM”) Program and Standard Operating Procedures (SOPs).

The C&OR Specialist assists in engaging other C&OR officers, including horizontal coverage owners and Enterprise Areas of Coverage (“EAC”), to provide comprehensive oversight of FLU/CF activities. This role assists in developing and maintaining a global coverage plan which defines the scope and risk-based focus of the second line’s risk management activities. The C&OR Specialist assists in preparing materials for C&OR regulatory exams/audits/inquiries and may assist with preparation for FLU/CF regulatory exams/audits/inquiries.

The C&OR Specialist is accountable for assisting the C&OR Team in the proactive identification, escalation and timely mitigation of compliance and operational risks through the execution of some or all of the following activities:

• Assists in the development of independent risk management reporting for respective area(s) of coverage as input into governance and management routines
• Contributes to the oversight of FLU/CF training which may include content development and/or tracking and communication of employee completion rates
• Assists with the development and maintenance of C&OR owned policies and standards and/or the oversight of FLU/CF-owned policies, standards and procedures to ensure regulatory and operational risk requirements are appropriately addressed, inclusive of conduct risk as applicable
• Monitors the regulatory environment to identify regulatory changes applicable to area(s) of coverage and maintains a comprehensive regulatory inventory; may support communication of regulatory changes to the FLU/CF and ensuring that policies, standards, procedures and/or processes are appropriately implemented or amended to address regulatory requirements
• Assists in identifying, aggregating, reporting, escalating, inspecting and challenging remediation plans, and performing thematic analysis on FLU/CF-owned issues and control enhancements
• Assists in remediating C&OR “owned” issues and control enhancements
• Contributes to risk coverage plan development, executes independent risk monitoring, testing, and risk assessments, communicates results
• Reviews and challenges the FLU/CF process, risk, control (PRC) inventory and FLU/CF Risk & Control Self-Assessment (RCSA)
• Supports the review and challenge of internal and external operational loss events, including development of remediation plans to strengthen controls
• Assists with the development of risk metrics, monitors related performance and breach remediation

Required and desired qualifications:

• Knowledge of various facets of application security and network infrastructure security, including defense in depth
• Familiarity of security standards and regulations
• General knowledge of SDLC process
• General knowledge of risk management and risk governance processes
• Excellent communication skills, ability to communicate at all levels
• Strong critical thinking skills
• Strong interpersonal skills
• Sound teamwork and conflict resolution skills
• CISSP, CISM or CRISC desired
 

Required Skills: Minimum Years Business & Functional Experience: 5 Years Functional Experience

Degree Required: Bachelor’s Degree
Shift:

1st shift (United States of America)

Hours Per Week: 

40

Drop files here browse files ...