1

Risk And Control Jobs in Oregon (NOW HIRING)

Upstart's Risk team is enhancing its second line of defense function in support of our application ... reporting, and control of material risks, in alignment with OCC, FDIC, and FFIEC regulatory ...

OR

$60K - $70K/yr

This role is designed to streamline, drive, and maintain compliance and risk management workflows, including regular control activities, evidence collection, policy/procedure maintenance, and ...

As a Senior Third Party Risk Analyst, you'll play a critical role in ensuring the security ... Identify, track, and drive remediation of control gaps and security risks uncovered throughout the ...

... risk control measure. This candidate will foster a culture of security awareness through communication, education, and partnership across all business functions. STACK operates as a member of the ...

QA-QC/Safety Manager

Portland, OR · On-site

$75K - $90K/yr

The position is responsible for conducting risk assessments, leading incident investigations, and ... The QA/QC and Safety Manager independently plans and conducts safety audits, inspections, and ...

Showing results 41-60

Risk And Control information

What is a risk and control professional?

Risk and Control professionals are responsible for identifying, assessing, and managing risks within an organization to ensure that business objectives are achieved safely and efficiently. They implement controls to mitigate financial, operational, and compliance risks, and monitor these controls for effectiveness. Their work often involves developing risk management strategies, conducting audits, and ensuring adherence to regulations and internal policies. By proactively addressing potential issues, they help protect the organization from losses and reputational damage.

What are some common challenges faced by risk and control professionals, and how can they be addressed?

Professionals in Risk and Control roles often encounter challenges such as staying current with regulatory changes, managing competing priorities, and ensuring effective communication across departments. A proactive approach—such as continuous learning and leveraging risk management software—can help mitigate these issues. Building strong relationships with business units and maintaining clear documentation also play a key role in identifying and addressing risks efficiently. Successful professionals balance analytical skills with collaboration to ensure organizational compliance and resilience.

What are the key skills and qualifications needed to thrive as a risk and control professional?

To thrive as a Risk and Control professional, you need a strong understanding of risk management frameworks, regulatory compliance, and internal controls, often supported by a degree in finance, accounting, or a related field. Familiarity with risk assessment tools, audit management systems, and certifications like CPA, CIA, or CRMA are commonly required. Analytical thinking, attention to detail, and effective communication are essential soft skills for identifying risks and collaborating with stakeholders. These skills ensure the organization proactively manages risks, maintains compliance, and protects its reputation and assets.

What is the difference between Risk And Control vs Compliance Analyst?

AspectRisk And ControlCompliance Analyst
Primary FocusIdentifying, assessing, and mitigating risks within an organizationEnsuring adherence to laws, regulations, and internal policies
CertificationsCRISC, COSO, or similar risk management certificationsCFE, CAMS, or compliance-specific certifications
Work EnvironmentRisk management departments, internal audit, or control teamsCompliance departments, legal teams, or regulatory units
Industry UsageWidely used across finance, banking, and corporate sectorsCommon in financial services, healthcare, and regulated industries

While Risk And Control professionals focus on identifying and mitigating risks to protect organizational assets, Compliance Analysts concentrate on ensuring the organization follows applicable laws and regulations. Both roles are essential for organizational integrity but differ in their core objectives and scope.

Is risk and control a good career?

Risk and control roles involve identifying, assessing, and mitigating financial or operational risks within organizations. These positions often require strong analytical skills, knowledge of compliance standards, and certifications such as FRM or CPA. The field offers stability, opportunities for advancement, and is essential across various industries.
What are popular job titles related to Risk And Control jobs in Oregon? For Risk And Control jobs in Oregon, the most frequently searched job titles are:
Infographic showing various Risk And Control job openings in Oregon as of August 2026, with employment types broken down into 1% As Needed, 75% Full Time, 19% Part Time, 4% Contract, and 1% Nights. Highlights an 95% Physical, 1% Hybrid, and 4% Remote job distribution.

Contractor

Re-posted 24 days ago


Job description


Job Summary
The IT SOX Analyst is responsible for ensuring compliance with the Sarbanes-Oxley Act (SOX) as it relates to IT systems and controls, in partnership with Business Controls Office (BCO). This role involves evaluating IT processes and in-scope systems/applications, development and evaluation of control activities and quarterly certification documentation, supporting design walkthroughs and operational effectiveness testing by IA and external audit teams, and IT General Controls (ITGCs), and collaborating with BCO, internal and external auditors.
Key Responsibilities
SOX Compliance & Testing
• Facilitate walkthroughs of IT processes and controls.
• Assist with development of SOX key control attributes for ITGCs, spreadsheets, and reports.
Facilitate PBC requests for IA and external related to walkthroughs, design and operational effectiveness testing
• Evaluate the design and operational effectiveness of IT controls, in partnership with BCO.
• Identify and document control deficiencies and recommend remediation to BCO.
• Maintain and update SOX documentation (narratives, flowcharts, risk/control matrices) in partnership with BCO
Audit & Risk Management
• Support internal and external audit teams during SOX audits.
• Assist in annual and periodic risk assessments.
• Participate in third-party risk assessments and SSAE18 reviews.
• Monitor segregation of duties and access controls.
Collaboration & Reporting
• Work closely with IT, Finance, and Compliance teams.
• Provide regular updates to senior management on SOX compliance status.
• Train stakeholders on SOX requirements and control procedures.
Documentation & Process Improvement
• Create and maintain internal control documentation.
• Contribute to process improvement initiatives to enhance control efficiency.
• Ensure quality assurance of SOX working papers and deliverables.
Requirement
• Bachelor's degree in Accounting, Finance, Information Systems, or a related field; alternatively, four years of direct experience in IT SOX Compliance may be considered in lieu of a degree.
• 3+ years in internal audit, IT compliance, or SOX 404 testing.
• Experience with COSO framework, US GAAP, and ITGCs.
• Familiarity with ERP systems (e.g., SAP) and GRC tools.
• Strong understanding of SOX, ICFR, and IT control frameworks.
• Solid understanding of business processes supported by IT applications
• Ability to interpret complex regulations and assess their impact on IT systems.
• Excellent analytical, communication, and interpersonal skills.
• Identifying gaps in compliance and proposing practical solutions.
• Ability to work independently and manage multiple priorities.
• Working effectively with IT, legal, audit, and business teams.
• Managing multiple audits, assessments, and documentation tasks simultaneously.
• Handling sensitive data and compliance issues with discretion.
• Certifications (Preferred): CISA, CIA, CMA, or similar.