Position Overview
Job Description
A large investment banking client is looking for a Tech Risk Engineer to join their Transaction Banking team. This Tech Risk Engineer is a hands-on technical role responsible for assessing technology and cybersecurity risks posed by third-party vendors, designing risk treatment plans, and driving remediation in partnership with vendors and internal stakeholders. This role bridges deep technical expertise with risk governance, ensuring vendor-introduced risks are identified, quantified, and resolved in alignment with the organization’s risk appetite.
Responsibilities will include:
1. Vendor Technology Risk Assessment
Perform in-depth technical risk assessments of vendors across cybersecurity, cloud architecture, data protection, application security, infrastructure resilience, and operational technology.
Review SOC 1/SOC 2 Type II reports, ISO 27001 certifications, penetration test results, SBOMs, threat models, and architecture diagrams.
Co...