Talent.com
Comerica Bank
BRCO Control Testing Lead - Enterprise Security and TechnologyComerica Bank • Frisco, TX
BRCO Control Testing Lead - Enterprise Security and Technology

BRCO Control Testing Lead - Enterprise Security and Technology

Comerica Bank • Frisco, TX
30+ days ago
Job type
  • Full-time
Job description

Job Description

BRCO Control Testing Lead The Business Risk and Control Officers (BRCOs) play a pivotal role in guiding the business to identify and understand risk exposures and the controls needed which are integral to reducing risk and safeguarding our customers and colleagues. BRCOs are critical to the success of the Risk Management Lifecyle and play a role in Planning, Identifying, Assessing, Mitigating, Monitoring, and Reporting. BRCOs are members of the First Line of Defense (1LOD) who:
  • Provide leadership and coaching to the 1LOD to proactively identify and effectively manage risks.
  • Translate and educate 1LOD to enable and drive business relevant implementation of Second Line of Defense (2LOD) risk management frameworks, policies, taxonomies, and inventories.
  • Review, validate, and test 1LOD activities to ensure adequate control design and effective control operation.
  • Provide credible challenge to 1LOD colleagues, ensuring safeguard and risk mitigation measures are upheld in decision making and adherence to 2LOD frameworks and policies prior to 2LOD review.
  • Drive two-way collaboration across 1LOD and 2LOD; liaise between 1LOD and 2LOD to drive engagement throughout the risk management lifecycle.
  • Collaborate and coordinate across the organization to help navigate and mitigate horizontal risk promoting resilience and ensuring safety and soundness.
  • Document, aggregate and report risk in accordance with the risk management lifecycle.
  • The Business Risk and Control Office (BRCO) Control Testing Lead is responsible for the structured review to validate that processes and controls function as intended to mitigate risk, including SOX controls. The BRCO Control Testing Lead does not own the design nor execution of controls.
Position Responsibilities Translates and interprets corporate testing policies and participates in the implementation of overall independent testing program for the Line of Business (LOB).
  • Adheres to a defined testing schedule and provides periodic updates on progress.
  • Provides guidance to other team members supporting the engagement.
  • Establishes strong relationships with business partners and other key stakeholders ( SOX Office).
Develops testing processes and procedures in alignment with enterprise risk frameworks and policies and conducts baseline review activities.
  • Understands LOB end to end business processes, products, services, financial statement risks, controls, and risk profile.
  • Adheres to testing procedures, standards, and methodologies established by 2LOD. Tests are performed periodically based on inherent risk level and frequency of controls operation; scope and sample size vary based on the type of test, inherent risk level, and dataset population size.
  • Addresses any review and challenge comments as received to ensure alignment with 2LOD testing requirements. Designs and executes testing plans and scripts to evaluate the effectiveness of the overall control environment, including for SOX compliance.
  • Performs walkthrough prep and walkthrough execution.
Conducts testing of control design and operating effectiveness; including issue control testing/validation for more complex issues.
  • Assesses both Design (is the control is designed to accomplish the goal or detect/prevent a misstatement - test sample of 1) and Effectiveness (was the control executed correctly).
  • Performs the role of Tester/Preparer (does the testing, picks the samples, executes testing based on test plan, documents, manages follow-up, reviews comments) or Reviewer (reviews the testing, documents issues).
  • Ensures 1LOD quality assurance procedures are aligned with frameworks and policies.
Documents and provides evidence for testing results.
  • Documents narratives, flowcharts, and controls.
Reports on control testing results and key themes to management reflecting trends, emerging risks, strengths, and weaknesses.
  • Identifies and escalates issues for remediation. Advises on how to remediate any control deficiencies/failures, proposing solutions to root causes of identified conditions.
  • Validates remediation of control deficiencies and issues, including sustainability.
    Supports audits, exams and assessments conducted internally and externally.
Adapts testing methodology ( sampling methodology, resourcing) based on testing results and overall risk profile of organization.
  • Identifies and assesses the impact of the changing regulatory environment on business objectives, risk appetite and testing methodology.
Business Partnering
  • Partners and engages with relevant business partners at varying levels in the organization to develop and maintain a strong control environment through effective testing and related activities that lead to early identification and sustainable mitigation of risks.
  • Drives a strong enterprise risk culture by fostering rigor and discipline focused on risk and compliance awareness, ethical business practices, transparency, and escalation.
  • Learns continuously about the line of business to strengthen subject matter expertise and provide more valuable application of control testing.
A successful candidate will have the following knowledge and/or skills:
  • Demonstrated knowledge of banking industry products, services, and workflows.
  • Strong familiarity with critical business processes and controls, as well as overall business needs and objectives, for the Line of Business.
  • Strong track record of driving timely and effective issue resolution in a financial services context.
  • Deep expertise and ability to educate colleagues on risk management, controls, and compliance concepts, frameworks, and policies.
  • Ability to establish authority, influence stakeholders, and productively debate issues (, credible challenge) at all levels including without direct reporting responsibility.
  • Ability to build strong relationships and engage constructively in a proactive and transparent approach with cross-functional stakeholders, to challenge status quo and drive buy-in to achieve common goals.
  • Ability to clearly and effectively communicate, including ability to summarize and explain complex findings and issues to a wide range of audiences.
  • Ability to apply sound judgment and appropriately escalate concerns and issues.
  • Ability to demonstrate managerial courage and inspire colleagues across the organization to embrace change.
  • Ability to gather, analyze and interpret large datasets from various sources.
  • Strong analytical and critical thinking skills with high attention to detail and accuracy.
  • Ability to manage multiple tasks and projects, prioritize work, meet deadlines, achieve goals, and work under pressure in a dynamic and complex environment.
  • Self-starter, able to work independently, flexible and can navigate a complex organization.
Create a job alert for this search

BRCO Control Testing Lead - Enterprise Security and Technology • Frisco, TX

Similar jobs

Lead Protection and Control Technician

Telex LLCDallas, TX, USA
Full-time
Quick Apply

At Telex, we don't just power grids - we power possibilities.Our team of expert engineers and field technician partners with utilities, independent power producers, and energy innovators to deliver... Show more

Application Security Analyst

IVID TEK INCPlano, Texas, United States
$65.00 hourly
Full-time
Quick Apply

We are seeking a skilled and proactive Application Security Analyst to integrate security practices into our DevOps processes.The ideal candidate will work closely with development and operations t... Show more

FS/ 2LOD Compliance Testing/ Monitoring Risk and Compliance Sr Con

InfosysRichardson, TX, United States
Full-time

Second Line Of Defense (2LOD) Sme Focused On Cras, Compliance Testing And Monitoring/h2pAs a Senior Consultant, you will lead and manage delivery of engagements, being responsible for quality, budg... Show more

 • Promoted

Engineer III - Information Security

AmerisourceBergen Corporation (Cencora)Dallas, Texas, United States
Full-time

Our team members are at the heart of everything we do.At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on ... Show more

 • Promoted

Physical Security Project Manager

CTCPlano, TX, United States
Full-time

Looking local to Texas candidates***.The primary responsibility of this role is to support company sponsored Security projects that require integration of access control and video monitoring standa... Show more

 • Promoted

SOX Control Tester contract opportunity (Remote/Onsite)

WaveStrongDallas, TX, United States
Remote
Full-time

Exciting SOX Control Tester contract opportunity (Remote/Onsite). Show more

 • Promoted

Oracle Functional Test Lead

Gandiva Insights LLCDallas, TX, US
Full-time

Job title: Oracle ERP Test Lead Location: Remote Job Type : Full Time Job description: We are seeking a detail-oriented and proactive QA/Test Engineer Lead with hands-on experience in cloud-based C... Show more

 • Promoted

Test Technician

Trispoke managed servicesMcKinney, TX, United States
Full-time
Quick Apply

Test Technician McKinney, TX</u></b></p> <p><b><u>Two shifts available:</u></b></p> <p><b><u>2nd Shift: Monday Frid... Show more

Staff, Software Engineer, Information Security

WalmartDallas, TX, United States

Immigration sponsorship is not available for this role.This is a full-time, onsite role at our Dallas, TX office.This position is not eligible for remote work.Staff Software Engineer, Information S... Show more

 • Promoted

Lead Enterprise Endpoint Security Architect - Remote

PrattwhitneyRichardson, TX, United States
Remote
Full-time

A leading aerospace and defense firm is seeking a Principal Enterprise Endpoint Security Portfolio Architect to define and manage endpoint security strategies.The ideal candidate will have deep tec... Show more

 • Promoted

Application Security Engineer

Zelis Healthcare, LLCPlano, Texas, United States
Full-time

Zelis is modernizing the healthcare financial experience across payers, providers, and healthcare consumers.We serve more than 750 payers, including the top five national health plans, regional hea... Show more

 • Promoted

Risk and Compliance Advisor Lead - Information Security

USAAPlano, TX, United States
Full-time

Risk And Compliance Advisor Lead Information Security.At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trus... Show more

 • Promoted

Senior Program Manager, Information Security

Business Centric TechnologyPlano, TX, United States
Permanent
Quick Apply

Are you passionate about combining security strategy, hands-on technical work, and business impact? We're seeking a Senior Program Manager Information Security to own our client's cyb... Show more

Sr. CyberArk EPM – Endpoint Application Control Technical Lead

Tanisha SystemsFrisco, TX, US
Full-time

CyberArk EPM – Endpoint Application Control Technical Lead Location: Frisco, TX – Onsite 4 Days/Week Duration:.ULL-TIME OR 12+ mONTHS Additional Job Details: Overview: We are seeking a Senior Cyber... Show more

 • Promoted

Vice President of Product

ConfidentialDallas, TX, United States
Full-time

Innovative provider of data-driven security insights & threat analytics.The Company is in search of a VP Product to spearhead the product strategy and execution during a significant growth phase.Th... Show more

 • Promoted

IT Project Lead

TriOptusPlano, TX, United States
Full-time

Responsible for enabling the Security team that supports the T3 Transformation program and their technology or software needs.This position works collaboratively with the Security Embedded Engineer... Show more

 • Promoted

Project Controls Lead

LinesightDallas, TX, United States
Full-time

As a Project Controls Lead at Linesight, you will work with highly experienced, culturally diverse, and passionate teams nurturing a strong social dynamic and a shared sense of achievement.You will... Show more

 • Promoted

Security Engineer

Akaasa TechnologiesDallas, TX, United States
Full-time
Quick Apply

Security Engineer must be local to Dallas and convert to full time without sponsorship now or in the future.Must be able to convert FTE without sponsorship.Cyber Security Staff Engineer con... Show more

Web Application Security Penetration Tester

TEKsystemsRichardson, Texas, United States
Full-time

Web Application Penetration Tester *Location:* Richardson, TX (Onsite - 5 days/week).Employment Type:* 6Month ContracttoHire.Industry:* Banking / Financial Services.Handson *web application and API... Show more

 • Promoted

Project Manager - Electronic Security

DiversifiedDallas, Texas, United States
Full-time

Diversified is a global leader in audio visual and media innovation, recognized for designing and building the world's most experiential environments.Our award-winning team specializes in deliverin... Show more