BPM LLP logo
BPM LLP

We are committed to the success of our clients and our people. #BecausePeopleMatter

Senior Risk Assurance

Location

California

Posted

5 days ago

Salary

0

Seniority

Senior

Job Description

Senior Risk Assurance

BPM LLP

• Lead and perform IT General Controls (ITGC), IT Application Controls (ITAC), and automated controls testing for SOX compliance engagements. • Perform audit activities, including walkthroughs through report preparation, for SOC 1 and SOC 2 engagements and SOX compliance, ensuring timely deliverables. • Prepare and review workpapers, testing documentation, narratives, flowcharts, and risk and control matrices (RCMs). • Perform testing and review and provide technical expertise to clients and engagement team members. • Mentor, coach, and review the work of Associates and interns, providing constructive feedback and guidance. • Contribute to practice development initiatives, including methodology enhancements, training, and recruiting.

Job Requirements

  • Bachelor's degree in Information Systems, Accounting, Computer Science, or a related field.
  • 2–5 years of experience performing IT audits, SOC examinations, SOX compliance, or risk assurance engagements in public accounting or consulting.
  • Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP) and/or CPA license are preferred.
  • Strong understanding of SOC 1, SOC 2, and SOX frameworks, including ITGCs, ITACs, automated controls, business process controls, and third-party risk considerations.
  • Experience with ERP systems, cloud environments (Azure, AWS, GCP), and cybersecurity concepts is preferred.
  • Ability to independently manage multiple assignments and prioritize competing deadlines.
  • Excellent analytical, problem-solving, and critical-thinking skills.
  • Strong verbal and written communication skills with the ability to interact effectively with client management and engagement teams.
  • Ability to synthesize research into clear, thoughtful, and actionable deliverables.

Benefits

  • Total rewards package: from flexible work arrangements to personalized benefit structures and financial compensation options that give you choice and flexibility.
  • Well-being resources: interactive wellness platform and incentives, an employee assistance program and mental health resources, and Colleague Resource Groups (CRGs) that provide safe spaces for colleagues to share, be heard, feel valued and deepen connections.
  • Balance & flexibility: 14 Firm Holidays including 2 floating, Flex PTO, paid family leave, winter break, summer hours, and remote work options, so you can balance challenging yourself with taking care of yourself.
  • Professional development opportunities: A learning culture with CPA exam resources and bonuses, tuition reimbursement, a coach program, and live classes, workshops, and seminars through BPM University.

Related Categories

Related Job Pages

More Risk Jobs

Poms & Associates logo

Senior Risk Control Consultant

Poms & Associates

Risk Control and Insurance. Smarter Insurance for Smarter Business.

Risk5 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

• Conduct risk control and safety audits at client facilities, including: Traveling to client locations to perform on-site assessments, Leading opening and closing meetings with client representatives, Performing facility walkthroughs to identify potential loss exposures and safety hazards, Documenting observations through detailed field notes and photographs, Preparing photo-illustrated digital reports using Poms Risk Organizer (PRO) • Provide expert consultation services to clients by: Responding to safety and compliance concerns in dynamic, high-pressure environments, Evaluating client challenges and developing practical solutions for implementation, Helping clients understand factors contributing to workers’ compensation, general liability, and automobile claim trends, Assisting with the development and implementation of regulatory, safety, and environmental compliance programs • Develop and deliver occupational health, safety, and environmental training programs for supervisors and employees across various industries. • Support the continued growth and enhancement of Poms’ risk control service offerings. • Maintain professional expertise through continued education, professional development, and relevant certifications. • Manage additional projects, research, and responsibilities as assigned.

California
$125K / year
KBR, Inc. logo

Cybersecurity Risk Management Framework Information System Security Officer

KBR, Inc.

We deliver science, technology and engineering solutions to governments and companies around the world.

Risk5 days ago
Full TimeRemoteTeam 10,001+Since 1901H1B No Sponsor

Role Description KBR is seeking a Cybersecurity Risk Management Framework (RMF) Information System Security Officer (ISSO) to support the DHA Solution Delivery Division (SDD). In this role, you will lead Assessment & Authorization (A&A) activities and guide systems through the RMF lifecycle to achieve and maintain Authorizations to Operate (ATOs) for mission-critical medical systems. You will work closely with engineers, developers, and government stakeholders to ensure compliance with NIST, DoD, and DHA cybersecurity requirements while supporting continuous monitoring and risk management efforts. This 100% remote position requires availability during standard Eastern Time (ET) day shift hours. Join KBR to contribute directly to protecting critical healthcare systems supporting warfighters and their families. Roles and Responsibilities - Manage one or more information systems throughout the full six-step RMF lifecycle, including assessment, authorization, and continuous monitoring activities. - Serve as an RMF Subject Matter Expert (SME), advising stakeholders on cybersecurity compliance, risk posture, and ATO readiness. - Develop, review, and maintain RMF packages and associated documentation, including Security Plans, POA&Ms, Risk Assessment Reports, and security control policies. - Assess system compliance against NIST SP 800-53 controls and DHA RMF requirements as part of self-assessment and annual reviews. - Document and maintain evidence supporting control implementation and compliance. - Lead and participate in A&A and stakeholder meetings to track system status, resolve issues, and drive RMF progress. - Coordinate with engineers and system owners to develop architecture diagrams, system asset inventories, and security policies. - Prepare and deliver status reports to DHA leadership on system authorization and compliance efforts. Qualifications - U.S. Citizen. Active DoD Secret security clearance. - Bachelor’s degree in cybersecurity, information technology, or related field with 6+ years of experience; or 14+ years of relevant cybersecurity/IT experience in lieu of degree. - DoD Manual 8140.03 (formerly 8570.01)-compliant certification (e.g., Security+, CISSP, CASP+/SecurityX). - Demonstrated experience performing RMF activities as an ISSO/ISSM/SME, including ATO process support and RMF package development (Security Plans, POA&Ms, architecture diagrams, system security policies, etc.). - Demonstrated experience assessing and documenting NIST SP 800-53 controls. - Experience using Microsoft Office applications: Word, PowerPoint, Excel, and SharePoint. Preferred Qualifications - Experience using eMASS or equivalent compliance-tracking application. - Experience supporting RMF processes under DHA. - Familiarity with ACAS and DISA STIGs/SRGs and tools such as STIG Viewer and SCAP Compliance Checker. - Familiarity with Continuous Monitoring and Risk Scoring (CMRS). - Experience using Microsoft Project to build Integrated Master Schedules (IMS). Compensation $107,600.00 - $161,400.00. The salary range posted is based on the national average. The offered rate will be based on the contract affordability and the selected candidate’s location, knowledge, skills, abilities, and/or experience, and in consideration of internal parity. Benefits - Selection of competitive lifestyle benefits which could include a 401K plan with company match. - Medical, dental, vision, life insurance, AD&D. - Flexible spending account, disability, paid time off, or flexible work schedule. - Support for career advancement through professional training and development.

United States
$107.6K - $161.4K / year

Enterprise Risk Management (ERM) Credit Risk

NTT DATA Services

NTT DATA is a $30 billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers, and application services. Our consulting and Industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is a part of NTT Group, which invests over $3 billion each year in R&D.

Risk5 days ago

Role Description We are currently seeking an Enterprise Risk Management (ERM) Credit Risk to join our team in New York, New York (US-NY), United States (US). Qualifications - 4 plus years of experience in Murex Front Office, ERM: Credit Risk/MLC - 2 plus years' experience in financial markets and products - Technical skills in SQL, XML, Unix, and Scripting - Previous experience with MX.3 ERM modules such as MLC or XVA or MRB is a must - Proficient in English - If not in NY then remote is ok if the candidate is willing to support EST hours Requirements - Starting pay range for this remote role is $85,000-130,000 - Actual compensation will depend on a number of factors, including the candidate’s actual work location, relevant experience, technical skills, and other qualifications - This position may also be eligible for incentive compensation based on individual and/or company performance Benefits - Medical, dental, and vision insurance with an employer contribution - Flexible spending or health savings account - Life and AD&D insurance - Short and long term disability coverage - Paid time off - Employee assistance - Participation in a 401k program with company match - Additional voluntary or legally-required benefits

United States
$85K - $130K / year
Amazon logo

Senior Risk Manager

Amazon

Work Hard, Have Fun, Make History

Risk5 days ago
Full TimeRemoteTeam 10,001+H1B Sponsor

Role Description The DSP (Delivery Service Partner) Offer & Expansion team is part of the Last Mile Product and Technology organization and is responsible for designing, launching, and managing the strategy of the Delivery Service Partner (DSP) program around the world across all of its various use cases. Amazon’s Last Mile Claims team is seeking a talented claims professional to support our rapidly growing and evolving global auto program. You will lead strategy on complex bodily injury auto claims, handling pre-litigation disputes and resolving litigated claims with cross-functional partners. Further, you will help develop programs and tools that contain costs, and continue successful third party administrator (TPA) strategies and relationships. Typical transactions will range from standard claims settlement to complex high dollar agreements. Essential Duties and Responsibilities - Claims management of moderate and complex bodily injury and litigated claims. - Work with business units to implement strategies to limit complex high value claims and contain costs. - Develop strategy and action plans for claims in tandem with internal/external counsel, TPAs, and insurance companies. - Mediation and settlement strategy and attendance in conjunction with external legal partners, insurance companies, and TPAs. - Field and address business partners on-going questions and issues through claims resolution as needed. - Partner with internal teams to proactively prevent claims through safety measures. - Ensure that the TPA manages the claims diligently, partners with Risk Management and Legal (internal and external), and employs best practices to control claim costs. - Lead logistic complex claims management, develop and refine claims processes, and provide training as needed. - Direct claim reviews and ensure alignment with KPIs and Performance Guarantee. - Report out on business metrics to internal business teams, including logistics and Amazon’s captive insurance program. - Partner and direct external vendors and partners on innovative claims handling and initiatives that support simplicity and contain costs while enhancing the customer experience. - Effectively communicate recommended risk mitigation strategies to cross-functional and internal leadership teams. - Manage and advise on worldwide corporate auto exposures, delivery service provider projects, and other logistics operations. - Utilize and/or establish analytics, metrics, and benchmarking through multiple sources to evaluate loss trends. - Provide guidance and support for loss prevention matters to ensure an open, proactive, and effective risk management culture. - Assist in developing business proposals and case studies for presentation to senior leaders. - Work across teams to share ideas, influence change, and deliver projects results. - Travel up to 10%. Qualifications - BA/BS degree from an accredited university. - 7+ years experience adjudicating complex, pre-litigated and litigated bodily injury claims. - 5+ years experience in transportation claims management, including fleets or large auto claim programs. - Must have active adjuster license. - Knowledge of the litigation process and claims handling from inception to resolution. - Reserve management and financial acumen. Preferred Qualifications - ARM, CPCU, or similar professional designation. - Strong understanding of commercial auto and general liability insurance policies. - Experience interpreting policy language, coverage triggers, endorsements, and exclusions in commercial fleet environments. - Robust understanding of the litigation process and claims handling from inception to resolution. - Understanding and hands-on experience with complex logistics claims. - Experience analyzing and interpreting claims and operational data to support strategic decision-making and drive outcomes. Benefits - Comprehensive health insurance (medical, dental, vision, prescription). - Basic Life & AD&D insurance and option for Supplemental life plans. - EAP, Mental Health Support, Medical Advice Line. - Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage. - 401(k) matching, paid time off, and parental leave.

United States
$96.9K - $185K / year