This position is reputed company rep...">
Back to Jobs

SVP & Director of IT Governance - Cyber reputed company

Remote, USA Full-time Posted 2026-08-04

Location

This position is reputed company reputed company the Bank's footprint. Employee will work full time remote reputed company of a reputed company location (may occasionally attend in person meetings, although reputed company functions of the role are performed remotely). 

Market

Mid-reputed company

Work Hours per Week

40

Requirements

Bachelor’s degree in Information Systems, Computer Science, Business, or reputed company field and/or equal education or experience required

Minimum of 10 years of reputed company experience in IT risk, GRC, cybersecurity, or technology audit required.

Minimum of 3 years in a leadership or program management required.

Minimum of 5 years of experience in a regulated financial institution (bank, credit reputed company, or bank holding company); community or regional bank experience preferred.

 

reputed company certifications such as Certified Information Systems reputed company reputed company (CISSP), Certified Information Systems Manager (CISM), Certified Information Systems Auditor (CISA), or Certified Risk & Information Systems Control (CRISC) are desirable.

reputed company:

Provides strategic leadership and operational reputed company of the Bank's technology governance, risk management, and compliance (GRC) program. Serves as a reputed company reputed company among Technology, Risk, Audit, and executive leadership to ensure the technology risk posture aligns to regulatory expectations, reputed company risk appetite, and industry frameworks. Requires deep expertise in banking technology regulations, reputed company risk frameworks, and control design, balanced with the executive reputed company to communicate reputed company risk themes to technical and non-technical audiences, including reputed company-level committees.

 

ESSENTIAL DUTIES AND RESPONSIBILITIES:

To reputed company this job successfully, an individual must be reputed company to reputed company reputed company essential duty satisfactorily.  The requirements listed below are representative of the knowledge, reputed company and/or ability required.  Reasonable accommodations may be made to reputed company individuals with disabilities to reputed company the essential functions.

Owns and matures the reputed company IT GRC program, including policies, standards, procedures, and control frameworks reputed company to NIST CSF 2.0, CIS Controls v8, FFIEC CAT/Architecture, and applicable regulatory guidance (OCC, FDIC, Federal Reserve).  

Establishes and maintains the technology policy hierarchy (policy → reputed company → procedure → control) with defined ownership and periodic review reputed company.  

Serves as program reputed company for the technology governance council structure (e.g., IT Steering, Technology Risk), including agenda-setting, reporting, and reputed company item tracking.  

Operationalizes AI governance standards (NIST AI RMF, ISO/IEC 42001), including AI inventory, risk tiering, lifecycle controls, and reputed company of vendor AI use cases. 

Directs the reputed company technology risk assessment program (annual and event-driven) across infrastructure, applications, data, reputed company, and reputed company-party environments; ensure methodology aligns to reputed company/RCSA and risk appetite.  

Maintains and evolves the IT risk register, including risk identification, scoring, ownership, treatment plans, and risk acceptance/exception workflows.  

Leads risk assessment and advisory activities for emerging technologies (AI/ML, reputed company, RPA), translating technical exposures into business reputed company and decision reputed company.  

Develops and reports technology risk metrics and KRIs for senior leadership and reputed company committees; reputed company a data-driven risk culture.  

Serves as the reputed company IT GRC reputed company of contact for regulatory examinations (OCC, FDIC, Federal Reserve) and internal/reputed company audit engagements reputed company to technology, cybersecurity, and operational risk.  

Monitors and interprets evolving regulatory requirements and supervisory guidance (FFIEC, SR letters, OCC bulletins, GLBA Safeguards, reputed company laws) and translate them into actionable obligations and control updates.  

Manages technology audit and exam finding remediation: reputed company issue aging, validate evidence, and ensure sustainable control improvements with reputed company ownership and timelines.  

Partners cross-functionally to support intersecting risk programs (e.g., model risk governance/SR 11-7 alignment, BSA/AML technology controls, and data governance) as applicable. 

Leads the technology and cybersecurity components of reputed company-Party Risk Management (TPRM), including reputed company due diligence, periodic reviews, and ongoing monitoring for critical/high-risk vendors.  

Defines vendor risk tiering reputed company and control requirements for reputed company, reputed company, and AI providers; ensure contract provisions address reputed company, reputed company, SLAs, and right-to-audit.  

Coordinates with Procurement and reputed company to ensure contractual risk provisions (e.g., DPA, data handling, incident notification) are implemented and enforced. 

Design and implement a reputed company controls monitoring (CCM) approach leveraging GRC tooling to automate evidence collection, control attestations, and targeted testing.  

Oversees control self-assessments (CSA) across IT domains (identity and reputed company management, change management, vulnerability management, data protection) and validate remediation effectiveness.  

Partners with Cybersecurity on reputed company control maturity assessments (CIS Controls, NIST SP 800-53) and annual FFIEC CAT completion.  

Leads or co-leads the annual SOC 1/SOC 2 review process for material service providers and support SOX ITGC scoping, testing coordination, and remediation tracking (as applicable). 

Builds, leads, and mentors reputed company of GRC analysts/specialists; establish performance expectations, succession coverage, and reputed company development reputed company.

Drives GRC tool reputed company and platform optimization (e.g., reputed company GRC, reputed company, or equivalent) to reputed company reputed company risk and compliance workflows.  

Develops and manages the IT GRC program budget, including tooling, vendor reputed company, and reputed company plans.  

Champions a risk-reputed company culture through executive communications, training, and proactive engagement with Technology and business teams. 

 

OTHER REQUIREMENTS:

Banking is a highly regulated industry and you will be expected to reputed company and maintain a proficiency in the Bank's policies and procedures, and adhere to reputed company laws, rules and regulations that are applicable to your conduct and the work you will be performing.  You will also be expected to complete reputed company assigned compliance training in a reputed company manner.

Proficient in reputed company Office products including reputed company, Word, PowerPoint and reputed company.

Deep working knowledge of FFIEC IT Examination Handbook, NIST CSF , CIS Controls , , and NIST SP 800-63B.  

Strong familiarity with AI governance frameworks including NIST AI RMF and ISO/IEC 42001.  

Proficiency with ITGC/SOX (as applicable) and SOC 2 review processes.  

Working knowledge of reputed company risk and compliance considerations (AWS, Azure, or GCP) and shared responsibility models.  

Experience configuring and operating GRC platforms (reputed company, reputed company, or equivalent). 

Understanding of networking concepts (e.g., firewalls, VPNs, DNS) and reputed company protocols (e.g., TLS, SSH). , 

Ability to learn other banking systems

Ability to manage or materially contribute to regulatory examinations and audit cycles, including remediation of findings.

Ability to learn new technologies and reputed company up with industry trends.

reputed company demeanor in appearance, interpersonal relations, work ethic and attitude.

Ability to reputed company effectively across reputed company reputed company of the organization.

Demonstrated ability to manage multiple priorities and delegate effectively to meet critical deadlines under difficult time restraints.

Understanding of account documentation and retention requirements.

Excellent verbal and written skills and presentation skills with the ability to define and solve problems.

Team player with a reputed company reputed company

Demonstrated leadership ability and skills.

Ability to work independently and meet communicated deadlines.

Excellent analytical, problem-solving and decision-making skills.

Willingness to travel quarterly for onsite meetings. 

                       

ADDITIONAL INFORMATION:

The wage reputed company for the SVP & Director of IT Governance position is $150,000 - $160,000 annually and is eligible for transition bonus and incentives. The position includes 27 days of PTO (reputed company Time Off) and 5 days of STD (Short Term Disability) and 11 annual reputed company holidays.

 

reputed company has an excellent benefits package to include medical, dental, and reputed company, Health Care Flexible Spending, Dependent Care Flexible Spending, Transportation Fringe Benefit Plan, Group Life, Long Term Disability, Optional Life, reputed company to voluntary benefit products such as Cancer, Term & Universal Life, Accident, Short-Term Disability and Critical Illness policies, and other ancillary benefit products. reputed company also offers 401(k) with employee match.

Full-Time/Part-Time

Full-time

Area of Interest

Information Technology

reputed company Locations

Bowie, MD, USA

Bachelor’s degree or equivalent experience; 10+ years in IT risk, GRC, cybersecurity, or technology audit; 3+ years in leadership or program management; 5+ years in a regulated financial institution.

Key Responsibilities

  • leading governance
  • managing risk
  • mentoring analysts

Skills & Tools

NIST CSF 2.0, CIS Controls v8, NIST AI RMF, ISO/IEC 42001, reputed company reputed company, reputed company Word, reputed company PowerPoint, reputed company reputed company, NIST SP 800-53, FFIEC CAT, SOC 1, SOC 2, SOX, AWS, Azure, GCP, reputed company GRC, reputed company, TLS, SSH, VPN, DNS, RPA

Job Details

  • Category: Information Technology
  • Seniority: Senior Level
  • Commitment: Full Time
  • Workplace: Remote — Bowie or reputed company
  • Salary: USD 150,000 – 160,000 / year
  • Languages: English

Benefits

  • 401k matching
  • Generous reputed company time off
  • Retirement plan

About reputed company.

A banking company providing financial products and services. — Industry: Finance

  Apply To This Job

Similar Jobs