Risk Management Specialist
Core
Develop, implement, and maintain an Operational Risk framework aligned with regulatory standards (COSO ERM, ISO 31000, ORSA) and integrate cyber risks into the operational risk architecture.
Role type
Senior Operational Risk Specialist (Technology & Cybersecurity focus)
Builds
Operational risk frameworks, cyber risk assessments, executive risk dashboards, and strategic risk reports for the Board and senior management.
Domain
Financial Services / Operational Risk Management / Cybersecurity
Deliverable
production ML models | dashboards & analysis | client delivery
Required skills
Operational risk management, RCSA, KRI/KPI definition, Business Impact Analysis (BIA), Business Continuity Planning (BCP), Internal controls, Regulatory compliance, Cybersecurity risk assessment, Data governance
Preferred skills
Python (pandas, numpy), Power BI (DAX, data modeling), Advanced Excel (Power Query, VBA), GRC systems (eFront, Archer, ServiceNow), Cloud architecture knowledge
Technologies
Power BI, Python, Excel, eFront, Archer, ServiceNow, NIST Cybersecurity Framework, ISO 27001, LGPD, GDPR
Responsibilities
Identify, map, and evaluate operational risks via RCSA and scenario analysis; Integrate cyber risks related to attacks, third parties, and infrastructure; Develop executive risk dashboards and automate KRI/KPI indicators; Support internal, external, and regulatory audits; Translate technical risk information into strategic inputs for the Board and senior leadership.
Seniority
Senior, hands-on IC with strategic support capabilities