Support the Sr Manager Technology Risk office to engage Technology and its business, risk, compliance and audit partners to implement and maintain a coordinated operating model that efficiently drives Technology performance while meeting other partner needs. Provide support to Technology teams full cycle from identification of risks to management action plan (MAP) closure. This role will help provide control optimization between SOX/SOC1/SOC2, regulatory requirements and the technology control framework. May provide people leadership in the Technology Risk Office. Key Responsibilities Provide strategic support to the Senior Manager by maintaining and strengthening relationships with Risk & Control Services (RCS)/Internal Audit and Technology Risk stakeholders across the enterprise technology organization, and by collaborating with RCS and other audit and compliance functions to ensure alignment of activities and deliverables with the Technology Risk Office operating model. Support end-to-end process of managing SOC 2 audits, ensuring compliance with industry standards and regulatory frameworks. Assist in managing Technology regulatory activities, including OCC and Federal Reserve exams, and compliance to NYDFS Cybersecurity regulations. Help drive risk management practices by supporting ORM’s five core minimum standards: Risk and Control Self-Assessment (RCSA), Risk Events (REV), Testing the Design and Effectiveness of key controls, Risk of Change (ROC) and Reporting to Governance Committees. Facilitate deployment and maintenance of Technology risk and controls model with assigned Technology teams using industry standard models (e.g., COBIT5, ITIL, NIST) and regulatory mentorship (FFIEC, FCA) as references. Be a 'go to' person for RCS, GCO and other technology risk partners when the Sr Manager is unavailable. Leverage the organization’s Technology Control Framework and comprehensive risk catalog to collectively help drive Technology performance while meeting other stakeholder needs. Support Technology teams to deploy, supervise and improve their critical functions in alignment with the model requirements. Communicate requirements to Technology teams and, supporting leaders in complying and soliciting areas for improvement Implement and support approach to drive Technology Risk Office functions, including detailed processes, risks and controls, and provide reporting of status. Build out current reporting to provide the CIO leadership team a view into current status of effort. Work with Risk & Control Services (RCS) and other audit and compliance functions to align work and deliverables with the Technology Risk Office operating model. Facilitate the inclusion of Technology Risk Office principles into awareness and training programs on topics such as performance management, quality management, risk management, compliance, etc. Provide technology operational risk domain expertise and engage Technology leaders and their business, risk, compliance and audit partners to further operationalize our technology risk framework.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Manager
Education Level
No Education Listed
Number of Employees
5,001-10,000 employees