Talent.com
Senior Technology Resilience Risk Oversight Leader

Senior Technology Resilience Risk Oversight Leader

TruistRichmond, VA, US
3 days ago
Job type
  • Full-time
Job description

Senior Technology Risk Officer Resiliency

Leader within the Truist second-line-of-defense (LOD2) Technology Risk team responsible for independent risk oversight of technology resiliency. As a valuable teammate you will develop a trusted advisor relationship with technology leaders in assigned oversight areas, provide credible challenge focused on technology resiliency, perform risk identification and mitigation strategy development, partner with other internal teams to assess and mitigate technology risk and manage teammates to execute on technology risk oversight activities and grow their professional skillsets. The Senior Technology Risk Officer Resiliency position is a senior risk leader role responsible for independently assessing and challenging the effectiveness of the firm's technology and cyber resilience programs. The successful candidate will leverage deep technical expertise and strong analytical skills to ensure critical business operations can withstand, adapt to, and recover from severe disruptions, such as cyberattacks, system failures, or natural disasters. This position focuses on all aspects of technology resiliency including, business continuity, disaster recovery and effective testing and measurement to appropriately manage the risk of resiliency at Truist. This role provides guidance and expert challenge to technology teams and executive leadership to ensure alignment with the firm's risk appetite and regulatory requirements.

Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

1. Technology Risk Leadership - Provide independent risk oversight (i.e. second line of defense / LOD2) enterprise-wide for Enterprise Control Functions through the effective identification, mitigation, monitoring and reporting of operational, technology, compliance and strategic risks within the ECFs;

2. Strategic Alignment- Provide strategic risk advisory to ECF leads, i.e. the Chief Information Security Officer, the Chief Data Officer, the Chief Technology Officer, etc that supports the Truist organization's strategies and objectives while operating within established risk appetites. Provide effective challenge of the ECF Strategy for Truist;

3. Industry engagement- lead engagement of peer institution second line functions to influence the industry build of the tech risk functions;

4. Targeted control testing- lead execution of independent second line testing / evaluations (e.g. Red Team / Penetration Testing); work is typically commissioned by the Board, the CEO and / or the CRO;

5. Value Delivery Ensure that resources, activities and initiatives are aligned to enable and sustain achievement of business objectives within forecasted spend rates while reducing risks;

6. Provide independent assessment and oversight of the maturity of technology risk domains (e.g. Cyber, Service Delivery and Operations, Data Management, etc) and adequacy of controls pertaining to domains in meeting agreed to business outcomes for performance, stability, security and service availability. Assessments should leverage agreed upon metrics produced by Business Unit Risk Management (BURM) / first line of defense LOD1) but challenged and validated as appropriate;

7. Independent Challenge of LOD1 assessments - Review and attest to / challenge adequacy of risk assessments (i.e. Risk & Control Self-Assessments, Application Assessments, Change Risk Assessments) produced by BURM;

8. Committee Engagement Serve as member of the Technology Risk Committee and participate in the Enterprise and Board Risk Committees and the Board Technology Committee, when applicable for Technology Risk related topics;

9. Regulatory Engagement Oversight - Ensure effectiveness and structure in regulatory engagement practices, including responses out of the impacted ECF group;

10. Training and Communication - Encourage and monitor risk education, skills training and adoption of goals to drive improved risk culture and awareness across the enterprise;

11. Policy & Standard Leadership Engage on ECF Risk policy governance, as well as, policies, standards, procedures owned by areas of oversight. Provide direction and guidance in the development, implementation and communication of policies, procedures and standards. Oversight of multiple enterprise-wide policies;

12. Third Party Management Risk Oversight - Monitor, assess and challenge as appropriate significant third-party and vendor relationships within Enterprise Technology;

13. Cross-Organizational Communication - Develop and maintain effective channels of communication with other BU CROs, control functions, Senior Business Unit (BU) management, as well as regulatory agencies;

14. Talent Management - Lead, manage and develop teammates directly and indirectly; influence cybersecurity talent management through recommendations to Truist senior leadership, including the Board of Directors, to inform decisions on resource allocations to close control gaps;

15. Participate in applicable mergers and acquisition target evaluation and develop independent risk analyses where needed

Qualifications

Required Qualifications :

1. Advanced degree in business or financial-related discipline, or equivalent education and related training

2. Twenty years of experience or equivalent proficiency in managing people with demonstrated high competency in recruiting, developing, and coaching / mentoring

3. Fifteen years of experience in a financial institution (or large corporate equivalent) with emphasis on risk management or equivalent work experience

4. Ten years of large ECF and related technology operations, including extensive knowledge of technology policy, procedures and regulations

5. Knowledge of key technology rules / regulations and technology risk management practices (e.g. Federal Financial Institutions Examination Council (FFIEC), Control Objectives for Information and Related Technology (COBIT), NIST (National Institute of Standards and Technology), Information Technology Infrastructure Library (ITIL))

6. Strong leadership skills including the ability to lead direct and indirect teammates

7. Excellent communication (verbal and written), presentation and facilitation skills; ability to influence and communicate with impact

8. Experience presenting to Executive Leadership and Board level

9. Superior ability to think critically and strategically

Preferred Qualifications :

1. Twenty years of experience in a financial institution with emphasis on risk management or equivalent work experience

2. Professional designations such as Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (Information Systems Audit and Control Association) (CRISC), Certified Project Manager (CPM)

3. Strategic business and financial planning experience

4. Experience with audit processes and techniques

5. Master's degree in Business Administration (MBA) or advanced degree in Business Management, Technology or Finance.

6. Familiarity in application and execution of financial services technology-related laws, rules, regulations, and risk management standards (e.g. Federal Financial Institutions Examination Council (FFIEC), Control Objectives for Information and Related Technology (COBIT), Information Technology Infrastructure Library (ITIL)).

7. Familiarity with risk measurement approaches including development of Key Risk Indicators and thresholds and associated reporting and analytics tools (e.g. Tableau, RSA Archer).

8. Technical expertise : Advanced knowledge of core infrastructure technologies (e.g., cloud, networking, databases, storage, data center management), concepts including SRE, Chaos Testing and other applicable IT resilience principles, and industry control frameworks (e.g., NIST, ISO27001, FDIC Operational Resilience).

9. Risk management knowledge : In-depth practical knowledge of risk assessment methodologies, control evaluation, and reporting.

10. Communication skills : Excellent written and verbal communication skills with the ability to influence stakeholders at all levels of the organization.

11. Problem-solving : Strong analytical, problem-solving, and decision-making skills in a fast-paced and high-pressure environment.

Create a job alert for this search

Technology Oversight • Richmond, VA, US

Related jobs
  • Promoted
  • New!
Product Design Director, Enterprise Risk Management

Product Design Director, Enterprise Risk Management

Capital OneRichmond, VA, US
Full-time +1
Product Design Director, Enterprise Risk Management.We're currently seeking a Product Design Director to lead our Enterprise Risk Management and Operations Risk Management portfolio, which is part ...Show moreLast updated: less than 1 hour ago
  • Promoted
Senior Manager, Cyber Risk & Analysis - Enterprise Services Risk

Senior Manager, Cyber Risk & Analysis - Enterprise Services Risk

Capital OneRichmond, VA, United States
Full-time +1
Senior Manager, Cyber Risk & Analysis - Enterprise Services Risk.The Enterprise Services Risk organization is expanding with a focus on attracting innovative, pioneering, collaborative, and highly ...Show moreLast updated: 1 day ago
  • Promoted
  • New!
Manager, Technology Risk Guide - Enterprise Services Risk

Manager, Technology Risk Guide - Enterprise Services Risk

Capital OnePETERSBURG, Virginia, United States
Full-time +1
Manager, Technology Risk Guide - Enterprise Services Risk.The Enterprise Services Risk organization is expanding with a focus on attracting innovative, pioneering, collaborative, and highly skilled...Show moreLast updated: 8 hours ago
  • Promoted
Chief Risk Officer, US & Bermuda

Chief Risk Officer, US & Bermuda

MarkelRichmond, VA, United States
Full-time
Chief Risk Officer, Us & Bermuda.What part will you play? If you're looking for a place where you can make a meaningful difference, you've found it. The work we do at Markel gives people the confide...Show moreLast updated: 6 days ago
  • Promoted
  • New!
Product Design Director, Audit, Credit & Financial Risk Management

Product Design Director, Audit, Credit & Financial Risk Management

Capital OneRichmond, VA, US
Full-time +1
Product Design Director, Audit, Credit & Financial Risk Management.We’re currently seeking a Product Design Director to lead our Audit, Credit & Financial Risk Management (CFRM), and Enterprise Ser...Show moreLast updated: 4 hours ago
  • Promoted
Boomi Integration Architect - Manager - 65711224

Boomi Integration Architect - Manager - 65711224

CognizantDoswell, VA, US
Full-time
As a Boomi Integration Architect, you will make an impact by designing and implementing scalable integration solutions that enhance business operations and data flow across systems.You will be a va...Show moreLast updated: 10 days ago
  • Promoted
Chief Risk Officer, US & Bermuda

Chief Risk Officer, US & Bermuda

Markel CorporationRichmond, VA, United States
Full-time
The work we do at Markel gives people the confidence to move forward and seize opportunities, and you’ll find your fit amongst our global community of optimists and problem-solvers.We’re always pus...Show moreLast updated: 6 days ago
  • Promoted
IT SOX Risk Manager, SOX Advisory Team

IT SOX Risk Manager, SOX Advisory Team

Capital OneRichmond, VA, US
Full-time +1
IT SOX Risk Manager, SOX Advisory Team.If you're looking for a fast paced, dynamic and innovative firm founded on a culture of diversity and inclusion that can provide you with a challenging role a...Show moreLast updated: 30+ days ago
  • Promoted
Digital Strategy & Governance Director

Digital Strategy & Governance Director

AdvanSixHopewell, VA, United States
Full-time
The Director of Digital Strategy and Governance is the central function responsible for providing the strategic direction, operational discipline, and governance framework for the entire Digital Tr...Show moreLast updated: 2 days ago
  • Promoted
  • New!
Consumer Credit Review Senior Manager

Consumer Credit Review Senior Manager

Capital OneRichmond, VA, US
Full-time +1
Consumer Credit Review Senior Manager.The Consumer Credit Review Senior Manager is responsible for executing independent, risk-based assurance reviews within Capital One's Consumer credit portfolio...Show moreLast updated: less than 1 hour ago
  • Promoted
Senior Environmental Technical Claims Specialist

Senior Environmental Technical Claims Specialist

Argonaut Management Services, IncRichmond, VA, United States
Full-time
Argo Group International Holdings, Inc.American National, US based specialty P&C companies, (together known as BP&C, Inc. Brookfield Wealth Solutions, Ltd.BWS"), a New York and Toronto-listed public...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Principal Associate, Business Risk Guide- Enterprise Services Risk Office

Principal Associate, Business Risk Guide- Enterprise Services Risk Office

Capital OnePETERSBURG, Virginia, United States
Full-time +1
Principal Associate, Business Risk Guide- Enterprise Services Risk Office.We are hiring! The Enterprise Services Business Risk Office provides risk management support to several lines of business i...Show moreLast updated: 8 hours ago
  • Promoted
Senior Manager, Technology Change Risk Oversight

Senior Manager, Technology Change Risk Oversight

Capital OnePetersburg, VA, US
Full-time +1
Senior Manager, Technology Change Risk Oversight.Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Senior Manager, Technology Change Risk Oversight

Senior Manager, Technology Change Risk Oversight

Capital OnePetersburg, VA, US
Full-time +1
Senior Manager, Technology Change Risk Oversight.Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology...Show moreLast updated: 1 hour ago
  • Promoted
Sr. Manager, Technical Program Management (Cloud Operations Resilience Engineering)

Sr. Manager, Technical Program Management (Cloud Operations Resilience Engineering)

Capital OnePetersburg, VA, US
Full-time +1
Manager, Technical Program Management (Cloud Operations Resilience Engineering).Are you interested in leading programs that deliver on critical business goals and build large scale products & platf...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Business Director - Operational Risk Management

Business Director - Operational Risk Management

Capital OneRichmond, VA, US
Full-time +1
Business Director - Operational Risk Management.Risk Analytical Solutions (RAS) is a horizontal data analysis function that delivers reporting and analyses for our operational risk program.As the B...Show moreLast updated: 1 hour ago
  • Promoted
Operations Risk Lead

Operations Risk Lead

KalshiRichmond, VA, US
Full-time
Kalshi has defined a new category : prediction markets.Kalshi allows people to trade on the outcome of any events and turn any question about the future into a financial asset.Kalshi fought for year...Show moreLast updated: 2 days ago
  • Promoted
Principal Risk Associate | Retail Bank Tech

Principal Risk Associate | Retail Bank Tech

Capital OneRichmond, VA, US
Full-time +1
Principal Risk Associate | Retail Bank Tech.The Principal Associate within the Tech, Cyber, Data, and Resiliency (TCDR) team will strategically apply analytical expertise to proactively identify, m...Show moreLast updated: 26 days ago