VP, IS Risk - Assurance (L12)
Core
Leading and executing end-to-end control assurance activities, first line of defense assessments, client security audits, third-party contract reviews, and cyber insurance risk quantification within the Information Security Risk Management program.
Role type
VP, Information Security Assurance (Senior Leadership)
Builds
Robust security risk posture and control effectiveness across the technology landscape for a consumer financial services company.
Domain
US Banking / Information Security Risk Management
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Information Security Risk Management, US Banking regulations (NIST, PCI DSS, HIPAA, CRI), Control testing/assurance program design, Third-party risk management, Cyber insurance risk quantification, Executive communication, Team leadership
Preferred skills
Cloud security, AI security, Data protection, Shared Assessments (SIG), Privacy regulations (US, India, Philippines)
Technologies
NIST, PCI DSS, HIPAA, CRI, SIG
Responsibilities
Oversee end-to-end control assurance activities for all sub-functions; Formalize and execute first line of defense (1LOD) assessments; Lead client assessments program; Collaborate with Sourcing and Legal on third-party contract reviews; Support FedLine and other assessments; Support Cyber Insurance renewal; Develop security assurance standards and procedures.
Seniority
VP, hands-on leadership with 10+ years experience