Talent.com
Senior Manager Technology & Information Security Risk

Senior Manager Technology & Information Security Risk

BethpageBethpage, NY, United States
5 hours ago
Job type
  • Full-time
Job description

It Starts With Our Employees

FourLeaf's ultimate goal is to provide the best-in-class member and employee experience, and it all begins with two things : hiring incredible people and giving them a great place to work.

What You’ll Do

The Senior Manager of Technology & Information Security Risk reports to the FVP Enterprise and Third-Party Risk Management (TPRM) and is responsible for the oversight and development of the Technology and Information Security Risk program and team. In collaboration with leadership, the Senior Manager develops, implements, and executes on the Technology and Information Security risk program ensuring the required due diligence is completed for systems, applications, tools, AI models, products services and processes in alignment with NCUA, FFIEC, NIST, PCI, NYDFS and cybersecurity best practices in addition to providing key support for audits and exams.

Core Contributions

  • Manage and develop the Technology & Information Security Risk team, fostering a team driven by service and efficiency through leadership and training, ensuring deliverables are accurate, timely and consistent with the established Risk program and strategic direction. Develop and execute a plan for individual and team education. Supervise activities to ensure adherence to policy, procedures, and regulatory requirements.
  • Identify key metrics (KRI’s) for monitoring current and emerging Technology, Cyber and Information Security risk in the Credit Unions GRC system, using a combination of quantitative and qualitative analysis for leadership and board reporting. Monitor, measure and track risk indicators for exposure, working with IT, Cyber Security, Transformation and First Line Risk Leaders to ensure recommendations, controls and mitigation steps are appropriately documented.
  • Collaborate with Enterprise & Third-Party Risk Management Leaders and team in addition to legal, compliance, and internal audit on risk related matters, regulatory changes and compliance risk issues. Partners with leaders, business areas, first line of defense team and CUSO’s to ensure documents and artifacts are developed, managed and updated in accordance with Enterprise Risk policies and framework. (i.e. contracts, policy, procedures, standards, change control log etc.)
  • Develop and conduct annual, new product, service, project and ad hoc risk and control assessments for technology, cyber, and information security systems, infrastructure, architecture, data setup and linage, AI models and third-party relationships, in addition to overseeing assessment process for the credit union CUSO’s. Act as the lead for Risk Management on New Product, Service and Project Assessments related to Technology and Information Security. Work closely with credit union leadership, business areas and external parties on recommendation and implementation of risk mitigation strategies to address any identified risk-related issues.
  • Prepare and present risk reports to senior management, the Enterprise Risk Management Committee and or the Information Security Committee highlighting key risk exposure, trends and mitigation actions. Manage the preparation of the monthly, quarterly, annual, and ad hoc reports and presentations for the Chief Legal and Risk Officer, First Vice President Enterprise and Third-Party Risk Management, Enterprise Risk Management Committee, Asset Liability Risk Management Committee and Board.
  • In collaboration with Risk leadership, develop and manage a comprehensive Business Continuity program and framework ensuring the Credit Union’s critical technology, data and infrastructure can be restored in accordance with RTO / RPO objectives in the event of an incident, in addition to managing the day-to-day deliverables of the Business Continuity Program Manager.
  • Ensure adherence to applicable regulatory frameworks including : NCUA Part 748 (Security Program, Suspicious Activity Reports), FFIEC IT Examination Handbook, NYDFS, GLBA, PCI-DSS, and other relevant data security laws. Act as the key contact for Risk on any internal, external audit or exams as it pertains to Technology and Information Security Risk.
  • Oversee the management, monitoring, and maintenance of Reportable Events (issues incidents, and losses) for technology and information security related events for root cause analysis, action planning and resolution as the second line of defense.

Assets You Will Bring

  • Bachelor’s Degree; preferably in business, risk management, information systems, technology, cybersecurity or equivalent work experience and certifications.
  • 10+ years of experience in one or more of the following : IT risk, Enterprise Risk, Information Security, Business Continuity, Third-Party Risk or IT audit, preferably within a credit union or financial institution.
  • Strong knowledge of general IT controls, penetration testing, cybersecurity principles, and risk frameworks (e.g., NIST, ISO 27001, COSO).
  • Certifications / credentials similar or equivalent to CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor, CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), CRCM or other regulatory risk certifications are all preferred.
  • Proficiency in Microsoft Office Suite.
  • Proficiency in risk assessment tools, GRC platforms, and reporting systems.
  • Excellent written and verbal communication skills; ability to convey complex technical risks to non-technical audiences.
  • Strong knowledge of vendor management practices, technology risk, SOC controls contract language.
  • Strong knowledge of Third Party and Technology risk management frameworks, methodologies, and tools.
  • The estimated salary for this role is $114,647 - $143,308 annually. (FourLeaf Federal Credit Union provides a range of benefits with various enrollment periods, including medical, dental, and vision coverage, a 401K plan with employer match, reimbursement programs, wellness programs, and an annual performance-based bonus.)

    What Sets Us Apart?

    Along with a comprehensive benefit package, we offer :

  • Competitive 401k
  • Tuition reimbursement
  • Flexible work options
  • Volunteer opportunities
  • Water Cooler Chats with executive teammates
  • Clubs & Sports
  • Food truck days
  • ….and more!

    Who is FourLeaf?

    FourLeaf Federal Credit Union (FourLeaf) has been committed to the financial well-being of our members for over 80 years. Through our full range of competitive savings and loan products, you can trust us in every step of your financial journey. From applying for a credit card to closing on your mortgage to opening your child’s first savings account, FourLeaf is here to help you reach your financial goals.

    We are proud to be an award-winning place to work! Some of our recent recognitions include Certified Great Place to Work 2024-2025, America’s Greatest Midsize Workplaces 2025, Quantum Workplace Employee Voice Award 2024, and Fortune’s Best Workplaces in Financial Services & Insurance 2024.

    As a credit union, our vision is to enrich the lives of our members, employees, and communities. Since 2002, we have been an integral community partner through our charitable giving and community development programs in New York and beyond.

    Equal Opportunity Employer

    This employer is required to notify all applicants of their rights pursuant to federal employment laws.

    For further information, please review the Know Your Rights notice from the Department of Labor.

    Create a job alert for this search

    Information Technology Manager • Bethpage, NY, United States

    Related jobs
    • Promoted
    • New!
    Information Security Risk Compliance Manager

    Information Security Risk Compliance Manager

    NYC IT IncMassapequa Park, NY, US
    Full-time
    I am writing to you regarding the.Information Security Risk Compliance Manager.I have mentioned the job Description below for your review. Please let me know if you are interested and send me your m...Show moreLast updated: 15 hours ago
    • Promoted
    Tech - Cyber Security - Identity and Access Mgmt -IAM - Senior Manager - Multiple Positions -1635273

    Tech - Cyber Security - Identity and Access Mgmt -IAM - Senior Manager - Multiple Positions -1635273

    Ernst & Young Advisory Services Sdn BhdJericho, NY, US
    Full-time
    Tech - Cyber Security - Identity and Access Management (IAM) – Senior Manager.EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these ...Show moreLast updated: 1 day ago
    • Promoted
    Information Security Manager

    Information Security Manager

    Jobs via DiceGreenwich, CT, US
    Full-time
    Be among the first 25 applicants.Dice is the leading career destination for tech experts at every stage of their careers. Our client, Mitchell Martin, Inc.Northeastern United States (Hybrid).Collabo...Show moreLast updated: 1 day ago
    • Promoted
    Head of Technology Risk Management - Selby Jennings

    Head of Technology Risk Management - Selby Jennings

    Jobs via eFinancialCareersStamford, CT, US
    Full-time
    Head of Technology Risk Management - Selby Jennings.Head of Technology Risk Management - Selby Jennings.Head of Technology Risk Management - Selby Jennings. Be among the first 25 applicants.Head of ...Show moreLast updated: 1 day ago
    • Promoted
    Identity & Access Management Cyber Security Product Management Expert (Sr Director / Analyst, Ful[...]

    Identity & Access Management Cyber Security Product Management Expert (Sr Director / Analyst, Ful[...]

    GartnerStamford, CT, US
    Full-time
    Identity & Access Management Cyber Security Product Manager (Sr Director / Analyst, Fully Remote United States).Identity & Access Management Cyber Security Product Manager (Sr Director / Analys...Show moreLast updated: 1 day ago
    • Promoted
    Global Head of Investment Research and Risk Technology, MD

    Global Head of Investment Research and Risk Technology, MD

    State StreetStamford, CT, US
    Full-time
    Why this role is important to us.State Street Investment Management ("State Street IM", formerly State Street Global Advisors or SSGA) is seeking a seasoned senior leader to oversee our investment ...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Retail Security Systems Manager

    Retail Security Systems Manager

    Mavis TireWhite Plains, NY, US
    Full-time
    In this role, you'll be responsible for the full lifecycle management of our proprietary alarm system.We're a highly technical company that monitors our own systems, so you won't be dea...Show moreLast updated: 7 hours ago
    Director of Information Technology

    Director of Information Technology

    Emerge Talent CloudWhite Plains, NY, US
    Full-time
    Quick Apply
    Must live within commutable distance to White Plains, NY We are a leading consumer healthcare company focused on building a portfolio of powerful brands that address real consumer needs.We are comm...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Manager of Cybersecurity Detection Engineering

    Senior Manager of Cybersecurity Detection Engineering

    CoxSyosset, NY, United States
    Full-time
    The Senior Manager of Cybersecurity Detection Engineering will lead a team of Detection Engineers in designing, implementing, and maintaining advanced detection capabilities to safeguard the organi...Show moreLast updated: 2 days ago
    • Promoted
    Director of Cyber Security

    Director of Cyber Security

    Atlas AirRye, NY, US
    Full-time
    Atlas Air is currently seeking a.Director of Cybersecurity Operations.Hybrid role – White Plains, NY.Relocation assistance is available. Leads a team of highly experienced individual contributors an...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Information Technology Asset Manager

    Information Technology Asset Manager

    Smith Arnold PartnersStamford, CT, US
    Full-time
    IT Asset Manager – Make a Real Impact in Healthcare IT.Are you an experienced IT Asset Manager with a strong background in healthcare environments? Are you ready to step into a role where you...Show moreLast updated: 7 hours ago
    • Promoted
    Sr. Director of Information Technology

    Sr. Director of Information Technology

    Jackson Lewis P.C.Melville, NY, US
    Full-time
    Director of Information Technology.The Senior Director of IT is responsible for the delivery of all IT infrastructure, services, and related IT operations used to enable business capabilities and s...Show moreLast updated: 1 day ago
    • Promoted
    Information Security Manager

    Information Security Manager

    Mitchell MartinGreenwich, CT, United States
    Full-time
    Northeastern United States (Hybrid).Collaborate with technology and risk management teams to enhance security performance. Maintain a formal information security controls framework.Represent cyberse...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Controls Manager

    Information Security Controls Manager

    The Right Click, Inc.Greenwich, CT, United States
    Full-time
    Our client is looking for an experienced.Information Security Controls Manager.This role is ideal for someone with a strong background in information security, excellent communication skills, and t...Show moreLast updated: 2 days ago
    • Promoted
    Director Information Technology Audit

    Director Information Technology Audit

    Smith Arnold PartnersStamford, CT, US
    Full-time
    Are you looking for an opportunity to build a First Line Defense in Technology? Our client is seeking a Managing Director to implement a First Line Risk & Controls function for their IT infrast...Show moreLast updated: 1 day ago
    • Promoted
    Information Security Governance Risk & Compliance Manager

    Information Security Governance Risk & Compliance Manager

    Teachers Federal Credit UnionHauppauge, NY, United States
    Full-time +1
    For over 70 years, Teachers Federal Credit Union has been committed to guiding members toward building a strong financial foundation today for a better tomorrow. Named one of America's Best-In-State...Show moreLast updated: 30+ days ago
    • Promoted
    Director, Operational and Enterprise Risk Management

    Director, Operational and Enterprise Risk Management

    KPMG USStamford, CT, US
    Full-time
    Director, Operational and Enterprise Risk Management.Director, Operational and Enterprise Risk Management.KPMG Advisory practice is currently our fastest growing practice.We are seeing tremendous c...Show moreLast updated: 1 day ago
    • Promoted
    Senior Director - Endpoint & Workspace Security

    Senior Director - Endpoint & Workspace Security

    GartnerStamford, CT, US
    Full-time
    Be among the first 25 applicants.You are a team player who values expert insights, bold ideas and intellectual courage.You are always learning and looking to discover what’s next in technology.You ...Show moreLast updated: 1 day ago
    • Promoted
    Manager, Security Governance, Risk and Compliance (SOQC)

    Manager, Security Governance, Risk and Compliance (SOQC)

    KPMGMelville, NY, United States
    Full-time
    Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by delivering re...Show moreLast updated: 2 days ago
    • Promoted
    Director of Information Technology (IT)

    Director of Information Technology (IT)

    H2M Architects and EngineersMelville, NY, US
    Full-time
    Posted Tuesday, August 26, 2025 at 4 : 00 AM | Expires Tuesday, September 16, 2025 at 3 : 59 AM.H2M architects + engineers, a multidiscipline architectural, engineering, and environmental consulting fi...Show moreLast updated: 1 day ago