UBS

Business Risk Specialist - Access Control (AO)

UBS$80K — $100K *
Finance & Insurance
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's or master's degree in Business, Information Security, Computer Science or related field.
  • 3+ years of experience in operational risk management, information security, or access control, ideally in financial services.
  • Familiarity with identity and access management (IAM) processes or tools is beneficial.
  • Knowledge of operational risk frameworks and regulatory requirements, including SOX controls.
  • Strong analytical skills for evaluating processes and identifying control gaps.
  • Excellent communication skills for collaboration with technical and non-technical stakeholders.
  • Curiosity about AI's impact on workflow optimization.

Responsibilities

  • Manage entitlement and user access requests for UBS systems.
  • Update Access Control procedural manuals to include new tools and policies.
  • Enhance automation and self-service capabilities within the MAC tool.
  • Conduct ongoing risk assessments and SOX control testing related to access management.
  • Identify risks or gaps in access granting processes and drive remediation actions.
  • Prepare and analyze access control metrics and risk reports for management.
  • Advise business and IT stakeholders on access control risks and policies.

Benefits

  • Comprehensive benefits package including health, dental, and vision coverage.
  • 401(k) retirement plan with company match.
  • Opportunities for professional development and certification support.
  • Flexible work arrangements to promote work-life balance.
Full Job Description
Your role

Do you recognize the pivotal role of data in driving business success? Are you committed to excellence in information security, risk management, and strategic leadership?

We're looking for someone like this who can:
• manage day-to-day entitlement and user access requests (e.g. review and approve access requests for business systems, internet access exceptions and other sensitive entitlement changes) to ensure that employees have appropriate, risk-aligned access to UBS systems. This includes timely processing of Master Access Control (MAC) base role and entitlement approvals, as well as handling internet exception requests in BBS and related platforms.
• assist in maintaining and updating Access Control procedural manuals and processes to reflect new tools (e.g. automation, robotics) and policy changes
• help enhance automation and self-service capabilities within the MAC tool, ensuring that processes are efficient and compliant with internal policy requirements.
• perform ongoing operational risk assessments and control testing related to access management, such as SOX control testing for access controls.
• proactively identify potential risks or control gaps in access granting processes and drive remediation actions to mitigate operational and information security risks.
• prepare and analyze access control metrics and risk reports (e.g. monthly access management metrics and dashboards) to monitor the risk profile of access control activities.
• act as a first-line risk partner by advising and supporting business and IT stakeholders on access control risks and policies. You will work closely with risk owners and control functions (e.g. Business Risk Officers, IT Security, Compliance & Operational Risk Control (C&ORC)) to ensure UBS's risk strategy and information security policies are effectively communicated, implemented, and enforced in access management processes.

Your team

You'll be working in the Access Control Business Risk team within Wealth Management Americas (WM US). We are part of the first line of defense, acting as sparring partners to risk owners in managing operational risks associated with employee system access. Our team manages the Master Access Control (MAC) framework - a comprehensive role-based access management system - with a focus on automation, self-service, and improved controls for employee access to UBS systems. We assist with role creation and modification, enable business application entitlements for employees in both home office and branches, and conduct end-user access reviews to maintain a strong risk and control environment. By ensuring the right people have the right access at the right time, we protect sensitive client and firm data and support smooth business operations while upholding UBS's risk management standards.

Your expertise
• A bachelor's or master's degree in Business, Information Security, Computer Science, or a related field. Relevant professional certifications (e.g., CISSP, CISA, CRISC) are an advantage.
• ideally 3+ years of experience in operational risk management, information security, or access control within the financial services industry. Exposure to identity and access management (IAM) processes or tools is highly beneficial.
• Knowledge of operational risk frameworks and regulatory requirements, including familiarity with Sarbanes-Oxley (SOX) controls and data protection/privacy standards relevant to access management.
• Strong analytical and problem-solving skills, with experience in evaluating processes, identifying risks or control gaps, and implementing improvements to enhance efficiency and security.
• Excellent communication and interpersonal skills, with the ability to collaborate effectively across teams and clearly communicate risk issues and recommendations to both technical and non-technical stakeholders.
• A client-focus and risk-aware mindset, demonstrating high standards of professional behavior and integrity. You are proactive, detail-oriented, and committed to maintaining strong risk culture and control environment in day-to-day activities.
• The ability to work under moderate supervision, managing your time to achieve team objectives within defined processes while still contributing your own ideas and improvements. You're a self-starter who can take ownership of tasks and follow through independently, yet you know when to seek guidance in a collaborative team environment.
• You're curious to explore how AI can improve how we build, deliver, and optimize workflows. You do this with sound judgment - validating outputs and aligning with policies, risk standards, and ethical use.

How we hire

We may request you to complete one or more assessments during the application process. Learn more

Salary information

The indicative gross base salary range as a full-time equivalent role:
• United States - New Jersey - Weehawken min USD 80000 - max USD 100000 /annum

The expected salary for this role will be determined by relevant factors which may include but are not limited to, role-required experience, qualifications, education, location and skill level. UBS offers a range of competitive benefits and for further information, please visit ubs.com/employee-benefits. We may, at our sole discretion, provide additional variable compensation or awards.

About UBS

UBS Group AG is a Swiss multinational investment bank and financial services company founded in 1862 and headquartered in Zurich, Switzerland. UBS is one of the largest and most respected financial institutions in the world, with a presence in over 50 countries. The company offers a wide range of financial services to its clients, including wealth management, investment banking, asset management, and retail banking. UBS is committed to providing its clients with innovative and effective financial solutions that meet their unique needs and goals.
Learn more about UBS
Size
71,697 employees
Market Cap
$64.8 billion
Industry
Founded
1854
5 Year Trend
-6.5%
NASDAQ

Similar Jobs

More Jobs at UBS

More Finance & Insurance Jobs

Find similar Business Risk Specialist - Access Control (AO) jobs: