Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
PP
PFSI PFS Investments Inc.
AVP, ISP Risk Management
Career Insights for Operational Risk Analyst
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Georgia data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
An Operational Risk Analyst is responsible for identifying and assessing potential harm to an organization's assets, earning potentials, or economic condition posed by operational processes. Analyzes incident reports, investigates fraudulent activities, and implements strategies to mitigate operational risks.
$127,500 / year median in Georgia
Job Description
Join Our Team In 2025, USA Today recognized Primerica as a Top Workplace USA for the fifth year in a row, and Newsweek named Primerica one of America's Greatest Workplaces for Diversity for the second consecutive year. In 2024, the Atlanta Journal-Constitution named Primerica as a Top Workplace for the eleventh consecutive year, and Forbes recognized Primerica as one of America's Best Employers for Women for the fifth year in a row. In addition, for the tenth time Primerica has been voted a Best Employer by Gwinnett Magazine. Primerica is a great place to work! Join our team to experience what it's like to work at "one of the best places to work in the metro Atlanta". About this Position The AVP ISP Risk Management is responsible for identifying, assessing, and mitigating risks across the Securities Operations function. This role plays a critical part in: 1) ensuring compliance with regulatory requirements and evaluating cost vs. benefit of remediation plans recommended by assurance providers; 2) overseeing Securities Ops fraud response program; and 3) ensuring operational assessment testing and third party due diligence testing is comprehensive and risk based. The role oversees a team of approximately 8 people. The ideal candidate will have 5+ years managerial experience, be securities licenses (Series 6/26 or equivalent), deep understanding of risk management and quality control testing methodologies. This role is hybrid in Duluth, GA. The salary range for this role is $120k - $140k. This role is not eligible for sponsorship now or in the future. Responsibilities & Qualifications Primary Responsibilities 1) Stay Informed of Regulatory Changes and Maintain the ISP Department Risk and Control Matrix. Develop and maintain a comprehensive ISP risk register and control matrix, ensuring alignment to operational processes and regulatory requirements. Identify, document, and map risks to controls, including identification of control gaps and design weaknesses. Perform periodic process walkthroughs and flowcharting to validate control coverage and operating effectiveness. Partner closely with Legal to maintain up-to-date knowledge of regulatory changes impacting ISP Operations to inform policy and process improvements. 2) Oversee Business Assessment Testing and Third Party Onsite Reviews. Oversee the design, execution, and refinement of BA testing procedures, ensuring a risk-based and data-driven approach. Identify opportunities to incorporate analytics and automation to improve testing efficiency, coverage, and precision. Perform root cause analysis of testing exceptions and assess overall risk severity for reporting to the Business Risk and Controls Committee (BRCC). Evaluate BA methodologies for effectiveness and consistency, recommending enhancements to strengthen control assurance. Standardize and coordinate the annual third-party onsite review process, ensuring appropriate risk coverage and documentation. 3) Coordinate with the Compliance Department for Monitoring and Testing Results. Serve as the primary risk management point of contact for Compliance Monitoring & Testing (M&T) results impacting ISP Operations. Research and analyze Compliance write-ups and facilitate ongoing meetings. Facilitate ongoing discussions with Compliance and Operations to ensure clear understanding of findings, required remediation, and risk acceptance decisions. Coordinate management responses to M&T recommendations, ensuring appropriate root cause identification and sustainable remediation. Track remediation plans to completion to ensure deadlines are met. Maintain a centralized issues management process, including escalation of overdue or high-risk items to senior leadership. 4) Lead the ISP Fraud Operations Program. Establish and maintain investigation protocols, governance standards, and escalation thresholds to ensure consistent, timely, and well-documented handling of fraud allegations across Securities Operations. Serve as the key liaison to the Business Information Security Officer (BISO) and Cybersecurity and Privacy teams to integrate fraud investigations with security incident response, particularly for cases involving credential compromise. Collaborate with Operations and Other Departments to Understand Business Activities and Support Risk-Based Decision Making. 5) Collaborate with Operations and Other Departments to Understand Business Activities and Support Risk-Based Decision Making. Partner closely with ISP Operations, Legal, and Compliance to understand changes in systems, processes, products, and personnel that may impact risk and control environments. Ensure operational changes are appropriately reflected in risk assessments, control matrices, and BA testing scope. Provide independent risk guidance to management on control design, efficiency improvements, and risk mitigation strategies. Recommend and validate enhancements that improve the effectiveness and efficiency of the ISP control environment. Promote a strong risk culture and accountability for first-line controls. 6) Prepare for Audits, Exams, and Review. Coordinate preparation of documentation and evidence requests for internal audits, regulatory examinations, and other independent reviews (e.g FICCA, SLOA, etc. by KPMG). Track and manage audit and exam requests, ensuring timely and accurate responses. Promote consistency between OA testing, Compliance M&T, and audit methodologies to minimize duplication and strengthen assurance.