Lead Associate Principal, Security Governance
Core
Lead the end-to-end lifecycle and change management of Security Services policies, procedures, standards, and control documentation, ensuring alignment with regulatory requirements and industry frameworks.
Role type
Senior IC security governance lead
Builds
Governance documentation, remediation strategies, and compliance frameworks for the Security Services Department
Domain
Financial services / Information Security / Regulatory Compliance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Information security policy and control writing, Regulatory compliance (SEC, CFTC), Risk management, NIST CSF and NIST 800-53 frameworks, AI tool proficiency (Claude Code), SDLC and Secure SDLC understanding, Integrated risk management systems (RSA Archer), Business intelligence tools (Tableau)
Preferred skills
Cloud implementation and compliance strategies, Agile methodology, Professional security certifications (CISSP, CISA, CISM, CRISC, GIAC)
Technologies
PolicyTech, Confluence, Jira, RSA Archer Suite, Tableau, NIST CSF, NIST 800-53, COBIT, ISO 27001
Responsibilities
Develop and review security policies and controls, Support regulatory exam and Internal Audit remediation planning, Act as a point of contact for senior management and regulators, Facilitate the Security Working Group Program, Strengthen compliance posture through strategy development, Manage third-party requests and surveys
Seniority
Senior, hands-on IC
