Governance Risk and Compliance Risk Register Analyst || Remote || Must have Linkedin and 14+ years of exp.||
Posted Today by Nestortechnologies Inc
Negotiable
Undetermined
Remote
Remote
Summary: The Governance Risk and Compliance Risk Register Analyst role focuses on defining governance workflows for risk management, including risk identification, validation, and ongoing monitoring. The position requires extensive experience in risk register design, governance processes, and stakeholder engagement. The analyst will produce documentation and frameworks to support enterprise risk management. This role is remote and requires candidates to have a LinkedIn profile and at least 14 years of experience.
Key Responsibilities:
- Define end to end governance workflows for risk identification, review, acceptance, mitigation, and ongoing monitoring.
- Establish roles and responsibilities for risk owners, reviewers, and governance bodies.
- Design escalation and reporting processes for high risk and accepted risks.
- Engage key stakeholders across business, technology, security, and governance functions to validate risk requirements and workflows.
- Facilitate working sessions or workshops to socialize the risk register and governance processes.
- Support onboarding of initial risks into the enterprise risk register.
- Produce clear, audit ready documentation covering risk register structure, scoring methodology, and governance workflows.
- Provide knowledge transfer to designated security staff to ensure sustainability beyond the contract term.
- Deliver enterprise risk register framework, risk scoring and prioritization model, risk governance model, initial population of risk register, and final documentation package.
Key Skills:
- Experience with Risk Register Design and Framework.
- Experience with Risk Scoring and Prioritization Model.
- Experience with Governance Processes and Workflows.
- Experience with Stakeholder and Enablement.
- Demonstrated skill with documentation and knowledge transfer.
Salary (Rate): undetermined
City: undetermined
Country: undetermined
Working Arrangements: remote
IR35 Status: undetermined
Seniority Level: undetermined
Industry: Other
Governance Risk and Compliance Risk Register Analyst
Job Description:
o Risk review and validation
o Risk acceptance, mitigation, or transfer
o Ongoing monitoring and periodic reassessment
Establish roles and responsibilities for risk owners, reviewers, and governance bodies.
Design escalation and reporting processes for high risk and accepted risks.
Engage key stakeholders across business, technology, security, and governance functions to validate risk requirements and workflows.
Facilitate working sessions or workshops to socialize the risk register and governance processes.
Support onboarding of initial risks into the enterprise risk register.
Produce clear, audit ready documentation covering:
o Risk register structure and data definitions
o Risk scoring methodology
o Governance workflows and decision authorities
Provide knowledge transfer to designated security staff to ensure sustainability beyond the contract term.
The contractor shall provide the following deliverables during the engagement:
1. Enterprise Risk Register Framework
o Standardized risk register template and taxonomy
2. Risk Scoring and Prioritization Model
o Documented likelihood and impact scales
o Scoring methodology and prioritization logic
3. Risk Governance Model
o Defined workflows for risk intake, review, acceptance, and monitoring
o Roles and responsibilities matrix
4. Initial Population of Risk Register
o Initial set of documented risks reflecting current cybersecurity and technology risk posture
5. Final Documentation Package
o Consolidated guidance and operating procedures for ongoing risk management
SKILLS AND QUALIFICATIONS
Actual | Years | Required/ | Skills/Experience |
| 8 | Required | Experience with Risk Register Design and Framework |
| 8 | Required | Experience with Risk Scoring and Prioritization Model |
| 8 | Required | Experience with Governance Processes and Workflows |
| 8 | Required | Experience with Stakeholder and Enablement |
| 8 | Required | Demonstrated skill with documentation and knowledge transfer |