Risk Management Coordinator
Tower
Summary of Position
|
Primary responsibilities include executing activities related to the Enterprise Risk Management Program, Vendor and Contract Management Program, and Corporate Insurance Program. The Risk Management Coordinator evaluates operational, third-party, and enterprise risks; analyzes complex data and risk information; identifies trends and emerging risks; and develops recommendations to strengthen internal controls and risk mitigation strategies. The Coordinator exercises sound judgment in performing risk assessments, interpreting due diligence documentation, and communicating findings to business leaders. This role is responsible for monitoring key risk indicators, identifying process improvement opportunities, supporting strategic risk initiatives, and contributing to the continued maturity of the Credit Union's risk management framework. |
Principal Accountabilities and Functions
|
Evaluates vendor due diligence documentation, identifies material risks and control deficiencies, assesses overall risk exposure, and develops recommendations for risk mitigation and escalation. |
|
Performs vendor risk assessments, residual risk assessments, and ongoing monitoring activities in accordance with established program requirements. |
|
Requests, reviews, uploads, categorizes, and tracks vendor due diligence documentation within the risk management database; follows up with vendors and internal stakeholders to obtain required information. |
|
Analyzes trends in vendor performance, cybersecurity ratings, financial condition, audit results, and other risk indicators to identify emerging risks and recommend corrective actions. |
|
Evaluates data quality, identifies reporting discrepancies, and recommends enhancements to improve data integrity, reporting accuracy, and workflow efficiency. |
|
Prepares and distributes recurring reports, dashboards, metrics, and scorecards related to vendor management, enterprise risk management, contract management, and corporate insurance activities. |
|
Coordinates and independently manages assigned vendor onboarding activities, evaluates risk assessment results, resolves outstanding issues with business units, and recommends appropriate risk ratings. |
|
Reviews contractual provisions for risk considerations, identifies unusual terms or potential concerns, and coordinates resolution with business owners and stakeholders. |
|
Analyzes insurance claims, policy coverage, loss trends, and renewal information to identify exposures and recommend improvements to coverage or reporting practices. |
|
Collaborates with internal stakeholders including Information Security, IT, Compliance, Finance, Business Continuity, Facilities, and Internal Audit to support risk management initiatives and ensure program alignment with regulatory expectations and industry best practices. |
|
Assists with enterprise risk management activities, including gathering information, preparing risk assessments, maintaining risk inventories, and supporting risk reporting. |
|
Researches regulatory guidance, industry trends, and emerging risks and communicates relevant information to management. |
|
Facilitates cooperation with regulatory examinations, internal audits, and third-party audits by gathering documentation, responding to requests, and tracking remediation activities. |
|
Develops, updates, and maintains procedures, training materials, forms, and intranet content related to risk management programs. |
|
Participates in testing and validation activities related to risk management systems and process enhancements. |
|
Identifies systemic issues through data analysis, develops recommendations to improve operational efficiency, strengthen internal controls, and increase automation within risk management processes. |
|
Supports risk management training and awareness initiatives across the organization. |
|
Performs related duties as assigned. |
Required Qualifications
|
Associates degree in Business Administration, Finance, Risk Management, Information Technology, or a related field (or equivalent work experience). |
|
Two to four years of relevant experience in vendor management, contract administration, compliance, risk management, insurance administration, audit, or a related function. |
|
Working knowledge of third-party risk management, enterprise risk management, contract management, and corporate insurance processes. |
|
Experience with risk management, governance, risk and compliance (GRC), contract management, or vendor management software preferred. |
|
General knowledge of applicable regulatory requirements and guidance, including NCUA, FFIEC, GLBA, and third-party risk management expectations. |
|
|
|
|
|
Professional certifications preferred, such as Certified Regulatory Vendor Program Manager (CRVPM), National Credit Union Risk Management Certification (NCRM), or similar credentials. |
|
Or an equivalent combination of education and experience |
Knowledge, Skills and Abilities
|
Strong organizational skills and attention to detail. |
|
Ability to manage multiple tasks and meet deadlines. |
|
Effective written and verbal communication skills. |
|
Knowledge of SOC reports, independent audit reports, and other third-party assurance documentation. |
|
Strong analytical, organizational, and problem-solving skills with the ability to identify, assess, and communicate risk-related issues. |
|
Ability to evaluate existing processes and recommend enhancements that improve effectiveness, efficiency, and risk management outcomes. |
|
Analytical and critical thinking skills with the ability to interpret complex information, identify trends, evaluate risk, and formulate sound recommendations. |
|
Ability to synthesize information from multiple sources and communicate meaningful conclusions. |
|
Demonstrated judgment in evaluating risk and determining appropriate escalation. |
|
Ability to influence business partners through data-driven recommendations. |
|
Ability to identify root causes and recommend practical risk mitigation strategies. |
|
Proficiency in Microsoft Office (Excel, Word, Outlook, Teams). |
|
Ability to work both independently and collaboratively. |
|
Comfortable working with data and maintaining accurate records. |
|
Professional and responsive when working with internal stakeholders. |
|
Has knowledge of and adheres to credit union policies and procedures and all regulations related to the Bank Secrecy Act, the USA PATRIOT Act and OFAC. |
Working Conditions
|
Ability to work the hours needed, which may extend beyond the defined work schedule when operating conditions dictate. |
|
Ability to lift up to 15 lbs., with or without assistance, in compliance with ADA. |