Senior Risk Analyst - IT & Cyber Risk Assurance
Popular
General Description
The Senior Risk Analyst will play a key role in advancing the second-line IT and Cyber Risk Monitoring and Assurance Program. This position provides independent oversight and effective challenge across technology and cybersecurity risk domains, partnering with first line and control functions to strengthen risk governance, and supports senior management and committees through actionable risk insights, reporting, and regulatory readiness.
Essential Duties and Responsibilities
IT & Cyber Risk Framework & Governance:
- Lead the ongoing enhancement and governance of the IT & Cyber Risk and Control Matrix, ensuring alignment with regulatory requirements and industry frameworks such as NIST, COBIT, FFIEC, CCM, PCI, and others.
- Serve as a trusted second-line advisor to IT and Cybersecurity leadership to ensure risk management practices are implemented consistently across the organization.
- Prepare, generate, and provide materials (e.g., risk scorecards, dashboards, and metrics) required for various Risk Committees, Senior Management Team and Executives by the required due dates.
- Independently monitor remediation commitments and provide credible challenge on timeliness, sustainability of remediation, and residual risk calculation and escalate concerns when risks remain outside of the organization’s risk appetite.
Risk Oversight & Advisory:
- Perform second-line review and challenge of policies, standards, risk acceptances, risk escalations, and control implementations to ensure alignment with control expectations and the IT & Cyber Risk and Control Matrix.
- Lead the execution of the IT and Cyber Risk and Control Self-Assessments (RCSAs), including scoping, control evaluation, issue identification, action-plan development, and residual risk assessments.
- Translate control weaknesses into clear risk statements, validate root cause, and recommend solutions aligned with the organization’s risk appetite.
- Support regulatory exams and audits by coordinating activities, reviewing evidence packages, ensuring consistent narratives, and tracking commitments and responses through closure.
- Develop and deliver targeted training for business and technology stakeholders (e.g., RCSA processes, risk acceptance standards, key controls, evidence expectations, etc.).
Key Risk Indicators (KRIs):
- Design, enhance, and govern KRIs, including metric definitions, thresholds, data lineage, data quality controls, and exception handling.
- Perform trends analysis to identify potential issues and perform root cause analysis to provide recommendations to Management on how to better manage their IT & Cyber risk posture.
Education
Bachelor’s degree in Business Administration, Information Technology, Computer Engineering, Computer Science, Cybersecurity or related field.
Experience
- At least 5 years of working experience in IT controls testing, IT Risk, IT Audit and/or Cybersecurity positions; or in a consulting IT/Cyber role with a broad view of Information Technology or Information Security controls.
- Demonstrated experience applying IT and cybersecurity frameworks and regulatory expectations (e.g., NIST, COBIT, FFIEC, CRI, CCM, etc.) including Policy and Standards review and control design assessments.
- Experience with risk governance processes such as RCSAs, Issue Management, Risk Acceptances, and committee/board level reporting.
- IT or Cyber certifications preferred (e.g. CISA, CISM, CISSP, CGEIT, CRISC)
Other Qualifications
- Strong analytical skills with ability to synthesize complex technical topics into clear risk narratives for executives.
- Advanced Excel skills preferred; experience with reporting/dashboard tools is a plus.
- Excellent written and verbal communication in English and Spanish, including executive-level communication.
- Strong judgement, critical thinking, and ability to operate independently with minimal direction.
- Excellent organizational skills are required to establish priorities, multitask, work under pressure, and meet deadlines.
- Excellent interpersonal skills and teamwork.
- Proficient in Microsoft Office: Word, Excel, PowerPoint, and Outlook
Values
- 1. Passion for People
- 2. Own Every Moment
- 3. Succeed Together
- 4. Build the Future
Important: The candidate must provide evidence of academic preparation or courses related to the job posting, if necessary.
Our hybrid work model benefit applies to certain positions and is subject to changes based on the organizational needs.
ABOUT US
Popular is Puerto Rico’s leading financial institution and have been evolving since it was founded over a century ago. From a small bank it has developed into a large corporation that offer a wide variety of services and financial solutions to our customers, with presence in the United States, the Caribbean and Latin America.
As employees, we are dedicated to making our customers dreams come true by offering financial solutions in each stage of their life. Our extensive trajectory demonstrates the resiliency and determination of our employees to innovate, reach for the right solutions and strongly support the communities we serve; therefore, we value their diverse skills, experiences and backgrounds.
We reaffirm our commitment to always offer essential financial services and solutions for our customers and communities, including during emergency situations and/or natural disasters. Popular’s employees are considered essential workers, whose role is critical in the continuity of these important services even under such circumstances. By applying to this position, you acknowledge that Popular may require your services during and immediately after any such events.
If you have a disability or need more information about requesting an accommodation, please contact us at Ver el correo electrónico en jobs.popular.com . This email inbox is monitored for such types of requests only . All information you provide will be kept confidential and will be used only to the extent required to provide needed exemptions or reasonable accommodations. Any other correspondence will not receive a response.
Are you ready for a rewarding career?
Popular is an Equal Opportunity Employer, including Disability/Vets
Learn more about us at and keep updated with our latest job postings at .
Connect with us!
LinkedIn | Facebook | Twitter | Instagram
If you are a California resident, please click here to learn more about your privacy rights.
- ...General Description The Senior Risk Analyst is responsible for executing... ...effectiveness (OE) testing of IT and Cybersecurity controls... ...internal/external auditors, cyber risk teams, and business stakeholders... ...experience in IT audit/assurance, risk management, or control...SeniorPrácticaPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...Juan, P.R. General Description The Senior Data Analyst facilitates gathering business/... ...models for predicting and monitoring fraud risk. Essential Duties and Responsibilities... ...institution and have been evolving since it was founded over a century ago. From a small...SeniorPrácticaTiempo completoPatrocinio de visaInicio inmediatoTrabajo híbrido
- ...his/her responsibility and lead business analyst team through deliverable work phases and completion... ...drivers by channel and submitting it to comptroller for official Business Line... ...validating, and programing Branch Time Studies to assure that the drivers used in the distribution...SeniorPrácticaTiempo completoPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...following opportunity: Senior Business Analyst / Segment Strategy Ind. Contributor... ...and objectives, identifying risks, gaps, and improvement... ..., CX, Digital, Technology, Risk, Compliance, and other business... ...and have been evolving since it was founded over a century...SeniorPrácticaTiempo completoPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...Workplace Type: Hybrid Financial Analyst Job Type General... ...The Analyst will report to a Senior Manager and work with the Acquisitions... ...and return on investment, risk-adjusted NPV, comparable... ...and have been evolving since it was founded over a century ago...SeniorPrácticaPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...Financial / Corporate Development Analyst to support M&A, venture... ...The Analyst will report to a Senior Manager and work with the Acquisitions... ...and return on investment, risk-adjusted NPV, comparable transactions... ...and have been evolving since it was founded over a century ago...SeniorPrácticaPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...compliance, reputational, or strategic risks—particularly within different... ...-line capabilities through risk identification and measurement... ...to manage the expectations of senior business stakeholders and support... ...and have been evolving since it was founded over a century ago....SeniorPrácticaPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...Popular Workplace Type: Hybrid Quantitative Analyst General Description Popular is... ...quantitative models in accordance with the Model Risk Management framework and regulatory... ...institution and have been evolving since it was founded over a century ago. From a small...PrácticaPatrocinio de visaInicio inmediatoTrabajo híbrido
- ...opportunity: Fraud Prevention Analyst Ind. Contributor,05 Applying... ...will be reporting to the Fraud Risk and Project Administration Unit... ...risk assessment, incident and its resolution, create remediation... ...institution and have been evolving since it was founded over a century ago....PrácticaTiempo completoPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...strong Puerto Rico-based banking, compliance, risk, or legal-regulatory professional to play... ...will be comfortable working with senior stakeholders, regulatory requirements, customer... ...institution and have been evolving since it was founded over a century ago. From a small...SeniorPrácticaTiempo completoInicio inmediatoTrabajo híbrido
- ...monitor, manage, and mitigate risks associated with the sales of financial... ...dashboards to measure business risk performance. • In conjunction... ...to manage the expectations of senior business stakeholders and... ...institution and have been evolving since it was founded over a century ago....SeniorPrácticaInicio inmediato
- ...Popular Workplace Type: Hybrid Business Analyst Popular is committed to developing and... ...to improve efficiency, reduce risk, and enhance data-driven decision-making.... ...institution and have been evolving since it was founded over a century ago. From a small...PrácticaTiempo completoPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...INGELLICOM is an established, growth-oriented, high-end IT consulting and software company with headquarters in Puerto Rico. Its... ...document action items, and ensure timely follow-up. Assist in risk management, issue tracking, and change management processes. Maintain...Tiempo completoContratoTrabajo híbrido
- ...ISO Security Analyst General Description Support the cybersecurity operations... ...function in safeguarding the organization’s IT infrastructure across network security,... ...Strong technical acumen: knowledge of Cyber Security, Information Security, and Information...PrácticaPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...philosophy. Certifications / Licenses (desirable) Business Analyst Certification PMP Microsoft Certified Professional (MCP)... ...Rico's leading financial institution and have been evolving since it was founded over a century ago. From a small bank it has developed...PrácticaPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...Popular Workplace Type: Hybrid Senior Projects Coordinator Senior... ...acceptance criteria, manage risks, and support successful delivery... ...procedures, including contract risk reviews and invoice... ...institution and have been evolving since it was founded over a century ago....SeniorPrácticaTiempo completoContratoPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbridoTrabajo por turnos
- ...and growth is supported. Summary: The Senior HR Coordinator is a key member of the HR... ...the rest? Our Vision: To be everywhere risk exists – today and tomorrow. Helping protect... ...workplace isn't just part of what we do—it's at the heart of who we are. Department...SeniorPrácticaTemporalTrabajar en la oficina
- ...Certifications are highly desirable but not required. Business Analyst Certification Knowledge, Skills & Abilities (KSA's) • Strong... ...'s leading financial institution and have been evolving since it was founded over a century ago. From a small bank it has developed...PrácticaPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...plans. * Facilitate meetings, workshops, and presentations with clients and cross-functional teams to align on goals, priorities, risks, and next steps. * Develop proposals, reports, presentations, and other client-facing materials that communicate insights,...SeniorPrácticaTemporalEmpleo permanenteTrabajar en la oficina
- ...Required 6-10+ years of experience in Java and understanding of its ecosystem Strong grasp of Object-Oriented Programming (OOP)... ...with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top...SeniorPatrocinio de visaRemotoTrabajo híbrido
- Realiza ciclo completo de cierre contable, ayuda en la preparación de cuentas por pagar, reconciliaciones bancarias, entradas al jornal, registro contable de nómina, preparación y radicación de planilla 480. Prepara reportes, apoya en procesos de auditorías y realiza cualquier...SeniorPago diarioLunes a viernes
- Bachillerato o grado asociado en Administración, Logística, Operaciones o área relacionada. Mínimo 5 años de experiencia en operaciones de almacén o depósito, con al menos 2 años supervisando personal operativo. Experiencia en creación, seguimiento y mejora de procesos...Senior
- ...requirements. Create functional and non-functional test cases for all levels within the scope of testing Work closely with business and IT lead on planning and executing the user acceptance testing Develop and document testing processes and procedures Develop test...PrácticaPatrocinio de visaInicio inmediatoTrabajo híbridoTurno de noche
- ...General Description The Consumer Privacy & FCRA Compliance Risk/Compliance Officer operates within the organization's second line of... ...Rico's leading financial institution and have been evolving since it was founded over a century ago. From a small bank it has developed...SeniorPrácticaPatrocinio de visaTrabajar en la oficinaInicio inmediatoTrabajo híbrido
- ...CONOCIMIENTOS Amplio dominio de las aplicaciones de Microsoft Windows: Word, Excel, Outlook, Canva Pro, Meta y Bussines Google Analyst Excelentes destrezas de comunicación verbal y escrita en inglés y español Excelentes destrezas de organización,...Senior
- ...IDR. In this role, you will be the key liaison between IDR and its clients, ensuring a seamless project experience, high client satisfaction... ...Schedule and coordinate client and expert calls. Quality Assurance Ensure the quality of submissions from the operations team,...PrácticaTiempo completoTrabajar en la oficinaVisa de trabajo
- ...Analytics team reduces cyber risk by uncovering vulnerabilities... ...information security, IT, cloud, and business... ...of offensive security analysts conducting full?scope... ...Computer Science, Information Assurance, MIS, or related field;... ..., CISM, or equivalent senior-level cybersecurity...SeniorPrácticaPatrocinio de visaInicio inmediatoTrabajo híbrido
- ...Job Objective : The Field Support Analyst I is responsible for providing on-site technical support, including installation, maintenance... ...Certification. Experience working with desktop technologies and IT support environments. Availability to work on-site, Monday...Tiempo completoTrabajar en la oficinaLunes a viernes
- ...sectors. The company is seeking a Senior General Engineer & Advisor to strengthen its technical and strategic... ...technical proposal sections (methodology, risks, management approach). Technical... ...Factor D — Program Execution & Risk Advisory Risk identification —...SeniorSubcontratistaTiempo completo
$75 000 - $80 000 por año
Senior HR Generalist Compensation: $75,000 - $80,000/year We are certified as a Great Place to Work for the 6th year in a row and ranked... ...as needed. PRINCIPLE DUTIES: · Conducts recruitment efforts assuring qualified employees are recruited and hired in a timely manner....SeniorTiempo completoTrabajar en la oficinaHorario flexible
¿Desea recibir más vacantes?
Suscríbase y reciba vacantes similares a Senior Risk Analyst - IT & Cyber Risk Assurance. ¡Sea el primero en aplicar!
