Principal Technology Risk Manager at BECU enhancing technology risk management across a diverse tech ecosystem. Collaborating with teams to mitigate risks and influence executive decisions.
Responsibilities
Lead the design and execution of a unified vulnerability risk framework that streamlines grouping, strengthens remediation cycles, and reduces recurring issues across applications and systems.
Partner with Cybersecurity, Tech Infrastructure & Operations, and system owners to drive sustainable remediation, support SLA adherence, and promote structural, long-term solutions.
Serve as the central point of coordination for technology audits, ensuring consistency in interpretation, response, evidence collection, and remediation activities.
Apply your understanding of coding practices and system architecture to evaluate risks across tech stacks and recommend controls that improve stability, security, and resilience.
Collaborate with technology and risk leaders to build, refine, and monitor Key Risk Indicators (KRIs) that align to the Board-approved Enterprise Risk Appetite.
Develop and deliver clear, actionable risk reporting that translates performance, exposures, and emerging risks for Executives, the Board of Directors, and Regulators.
Lead strategic, cross-functional initiatives that enhance risk processes, optimize operations, and inform recommendations for senior and executive leaders.
Partner with ERM, Compliance, Legal, Cyber, Fraud, and Internal Audit teams to ensure visibility into emerging risks and strengthen mitigation strategies.
Work with Vendor Management and Technology owners to ensure external partners meet BECU’s operational, security, and risk management expectations.
Ensure regulatory reporting accuracy, prepare teams for examinations, and represent Technology in conversations with regulators and Board committees.
Take on additional responsibilities that elevate BECU’s risk posture and support long-term organizational resilience.
Requirements
Bachelor’s degree in risk management, Computer Science, Information Security or related field, or equivalent experience required.
Minimum 10 years of technology risk management in a tech organization with related experience in the financial services industry.
Experience assessing risk related to software code required.
Minimum 3 years of experience leading teams or programs involving controls, risk, remediation, and operational governance for a technical team.
Knowledge of coding practices and the ability to assess risk based on that knowledge required.
Experience assessing the unique risks and vulnerabilities of a tech stack and creating controls to mitigate those risks required.
Experience working independently and as a team member while using discretion in decision making and sound judgment in problem solving is required.
Experience in leadership, negotiation, and management skills required.
Benefits
401(k) Company Match (up to 3%)
4% annual contribution to your 401(k) by BECU
Medical, Dental and Vision (family contributions as well)
Supplier Risk Manager overseeing supplier risk management and compliance at Lloyds Banking Group. Building relationships with internal teams and external partners while providing critical risk oversight.
ICT Risk & Third Party Manager collaborating with compliance team on risk management. Driving regulatory compliance and ensuring robust risk reporting for digital asset custody services.
Business Unit Risk Specialist advising on risk management in Corporate Technology & Operations. Engaging with stakeholders and providing expertise on operational risks and compliance.
Manager, Model Risk Management focusing on model validation at Synchrony. Ensuring compliance with regulatory standards in risk management and model governance.
Metadata Governance Lead at Huntington Bank shaping technology and metadata operational standards. Driving consistent governance and enabling high - quality data delivery across the enterprise.
Senior Risk Associate enhancing risk controls and collaborating with stakeholders at Capital One's Retail Bank. Responsible for executing control testing and advising on control designs.
Risk Analyst managing AML compliance within FIS, the largest FinTech company worldwide. Collaborating with business leaders on cybersecurity risks and operational improvements.
SOX Risk Professional at U.S. Bank ensuring compliance with risk management frameworks. Collaborating with business lines and audit teams to identify and mitigate risks.
Financial Analyst performing financial and analytical activities for critical business projects in Risk Management. Collaborating with various teams to uphold financial integrity and fulfill departmental objectives.
Associate providing oversight of capital management risk for TD's Capital Risk & Governance team. Involves independent risk management oversight and compliance with regulations.