Location: Dearborn, MI - Hybrid
Position Description: Position Title: IT Security & Compliance Analyst The Credit IT Security and Compliance Analyst provides oversight of IT Security and controls, supports the IT compliance and regulatory requirements. You will play a key role in our Second Line of Defense, supporting our IT assessments, and remediate gaps. Credit Technology is on an exciting transformation journey, and you will have a great opportunity to help us transform the Security area as well. Compliance and Regulatory requirements. This position is responsible for providing support for internal and external audits, engage with business to conduct risk
Skills Required: Partner with Credit Application Teams to Implement and manage IT Controls • Provide Security & Control consulting to Application teams • Internal Audit and Third-Party Audit Support • Support Credit Internal Controls with IT related controls and deficiencies • Management of High and Medium Comments identified by the Audit and application teams. (development, implementation, and sustainability of Control Improvement Plans) • Conduct reviews of recently identified IT and IT related audit Comments • Support Application teams with Detailed Risk Assessments and Threat Modeling • Support Vendor Management and Business Owners with due diligence for supplier onboarding • Support Credit Privacy and Compliance Attorneys with IT related regulatory requirements • Support Third Party consulting engagements • Maintain accurate JIRA User Stories and Backlog
Experience Required: Strong knowledge of Industry standard IT Controls and best security practices • Solid understanding of corporate policies (ISP, Finance Manual, Corporate Directives, etc.) • Understand risk and implement mitigating controls • Knowledge of risk management principles, including risk assessment, mitigation, and reporting. • Capable and comfortable working autonomously • Strong leadership skills and results oriented • Demonstrates ability to work in white space • Continuous controls process improvement mentality • Integrity - ability to "stand ground" for correct action and do the right thing • Demonstrated ability to take ownership and accountability of all work and responsibilities • Strong communication skills (written and oral) • Excellent interpersonal, collaborative and team building skills
Experience Preferred: Internal Audit - IT Auditor • Cyber Security Services Advisor (formerly Security Controls Champion or Security Controls Practitioner) • Preferred candidate should have a proven track record in IT security and controls, demonstrated strong controls mindset • Knowledge in one or more of the following areas: Security services, Database Administration, cloud security, Application development or support and Networks • Familiarity with AI/LLM • Industry Certifications a plus (e.g., CISA, CRISC, CISM, CISSP)
Education Required: Bachelors
Education Preferred: Industry Certifications a plus (e.g., CISA, CRISC, CISM, CISSP)