Technology Risk and Governance
Core
Leads enterprise-wide technology risk and governance, establishing frameworks to identify, assess, and mitigate IT, cyber, and third-party risks while translating technical issues into business narratives.
Role type
Senior IC technology risk and governance leader
Builds
Enterprise risk frameworks, governance models, and reporting mechanisms for senior leadership and committees
Domain
Financial services / Enterprise Risk Management / Cybersecurity
Deliverable
dashboards & analysis
Required skills
Technology risk framework design, stakeholder management with senior leadership, regulatory compliance knowledge, third-party risk oversight, operational resilience planning, policy development and implementation
Preferred skills
Industry regulations (SOX, PCI, DORA), technical frameworks (NIST, ISO 27001), secure software development understanding, direct regulator interaction
Technologies
Cloud/SaaS, Identity and Access Management, SOC reports, MITRE ATT&CK
Responsibilities
Own the enterprise technology risk framework and governance model; Provide advisory support for material technology decisions; Establish governance and reporting for senior management; Design and improve risk assessment and control evaluation processes; Lead and mature AI risk governance; Support enterprise data governance initiatives; Oversee technology aspects of third-party risk; Partner with Cyber Security for threat and incident governance; Drive operational resilience and business continuity planning; Support client, regulator, and internal audit engagements
Seniority
Senior, hands-on IC with strategic advisory scope