Summary
Overview
Work History
Education
Skills
Certification
Awards
Timeline
Generic

Josh Sayles

Mission Viejo,CA

Summary

Experienced risk management professional with 12+ years of expertise in providing innovative risk management solutions to drive organizational success. Skilled in swiftly understanding new compliance frameworks and risk management strategies, and leveraging technology to assess an organization's risk management maturity, optimize efficiency, and strengthen GRC posture. Particularly proud of accomplishments achieved through collaborative leadership in dynamic and resourceful teams.

Overview

15
15
years of professional experience
1
1
Certification

Work History

Sr. Applications Developer II - Delivery Engineeri

Pacific Life
10.2023 - Current
  • Engages with Operational Risk, Audit, Third Party Risk Management and Business Continuity teams
    Continuity to develop process enhancements.
  • Collaborated with stakeholders regarding project capabilities and limitations to deliver optimal functionality.
  • Collaborated with multidisciplinary teams to design and implement new technology features.
  • Facilitated 20+ end user workshops to gather feedback on GRC system usability, provide training, and demonstrate capabilities.

Assistant Manager - Risk Management

SchoolsFirst Federal Credit Union
08.2020 - 10.2023
  • Led a cross functional team of VPs and SVPs to deploy the Credit Union's first risk hierarchy identifying, assessing, and quantifying 130+ risk events throughout the organization.
  • Partnered with Information Security to align assessments with CIS Critical Security Controls measuring IT compliance against 330 controls and determining the overall maturity of the cybersecurity program.
  • Oversees the execution of operational risk assessment program, training analysts to analyze and develop remediation plans for identified risks.
  • Extracts key assessment results and risk management activities and presents them to NCUA examiners, Chief Risk and Information Security Officers.
  • Streamlined the application risk assessment campaign, reducing the time to completion by 2 months (6 to 4 months)
  • Established and leads the Archer Change Advisory Board, providing governance over the Credit Union's GRC system and initiatives.

Sr. Information Security Analyst

Providence St. Joseph Health System
07.2018 - 08.2020
  • Performed information security reviews assessing the cybersecurity risk associated with new tools and processes to determine the best risk mitigation strategy.
  • Aligned information security assessments with security frameworks (e.g., NIST, HIPAA, ISO 27001), resulting in more comprehensive evaluation of the organization's cybersecurity controls.
  • Became versed in the organization's PCI assessment process and designed and deployed the organizations PCI use case in the Archer GRC tool in 2 months.
  • Identified, extracted and published cybersecurity KRIs and KPIs to PowerBI dashboards for Sr. Leadership consumption on a monthly basis.

Global Risk Management Archer Analyst

Experian
10.2016 - 07.2018
  • Developed from having no prior GRC Archer experience to leading the global platform in 18 months
  • Supported the Global Risk Management, Audit, Legal, Compliance, and Information Security as the lead enterprise GRC system administrator
  • Facilitated exploratory discussions with stakeholders to gather information on current risk management processes and determine requirements for future enhancements.

Sr. Risk & Compliance Analyst

Capital Group Companies
12.2012 - 08.2016
  • Conducted Controls Self Assessments (CSAs), documenting process flows identifying risks, reviewing controls and recommending opportunities for additional risk mitigation
  • Coordinated external audits, providing necessary documentation and responding to auditor inquiries
  • Led the enterprise IT enhancement tracking process assisting with the remediation of 100+ findings
  • Created deliverables to communicate risks and processes to Senior Leaders.

Business Advisory Services Sr. Associate

Grant Thornton LLP
11.2009 - 11.2012
  • Performed IT, SOC 2 and SOC readiness assessments, providing an assessment of the client's IT environment and identifying areas of non-compliance
  • Provided internal audit function for financial institutions identifying key areas of risk and opportunities for control enhancement
  • Consulted on information technology engagements identifying opportunities leverage technology to drive cost savings and process efficiencies.

Education

Bachelor of Science - Computer Information Systems

Northern Arizona University
Flagstaff, AZ
08.2008

Bachelor of Science - Accounting

Northern Arizona University
Flagstaff, AZ
08.2008

Skills

  • Risk Analysis, Reporting, Quantification and Risk Mitigation
  • SQL
  • Tableau / PowerBI
  • Archer
  • Information Security
  • Internal Controls
  • Compliance Monitoring
  • Risk advisory
  • Deficiency documentation
  • Audit Coordination

Certification

  • Certified Archer Expert, 04/2023, Present
  • CRISC (In progress)

Awards

  • Dream Team Teammember Award Winner, 01/2022, SchoolsFirst FCU
  • NAU Football Leadership Council, 08/2006 - 08/2008, Name of the institution that issued/awarded it

Timeline

Sr. Applications Developer II - Delivery Engineeri

Pacific Life
10.2023 - Current

Assistant Manager - Risk Management

SchoolsFirst Federal Credit Union
08.2020 - 10.2023

Sr. Information Security Analyst

Providence St. Joseph Health System
07.2018 - 08.2020

Global Risk Management Archer Analyst

Experian
10.2016 - 07.2018

Sr. Risk & Compliance Analyst

Capital Group Companies
12.2012 - 08.2016

Business Advisory Services Sr. Associate

Grant Thornton LLP
11.2009 - 11.2012

Bachelor of Science - Computer Information Systems

Northern Arizona University

Bachelor of Science - Accounting

Northern Arizona University
  • Certified Archer Expert, 04/2023, Present
  • CRISC (In progress)
Josh Sayles