Director of IT Risk Management overseeing global cyber strategies and leading vendor risk assessments. Collaborating with teams to mitigate risks in critical services, information, and systems.
Responsibilities
Develop and support global cyber and IT risk management strategies aligned with business goals.
Lead the Global 3rd Party Risk Management Team in conducting vendor risk assessments and facilitating remediation efforts.
Collaborate to develop risk models that assess and quantify risks to critical services, information, and systems.
Maintain current and comprehensive vendor inventories and assessments.
Prepare reports, presentations, and dashboards for executive leadership to communicate risk posture and emerging threats.
Continuously enhance Vendor Risk Assessment methodologies to align with evolving industry standards and best practices.
Foster a skilled team environment to effectively perform risk assessments and maintain strong client communication.
Partner with vendors to establish cybersecurity and resilience standards within contracts.
Coordinate global internal audits, client assessments, and security reviews related to third-party risk.
Participate in incident response activities involving third parties, collaborating across teams to reduce exposure.
Engage with operational leaders to identify emerging risks and co-develop risk-reducing solutions.
Adapt and scale risk management processes to address new and evolving threats, including those related to AI and advanced technologies.
Requirements
Experience in cyber and IT risk management, preferably in a global or cross-functional environment.
Strong interpersonal and leadership skills with experience supporting diverse, collaborative teams.
Knowledge of vendor risk assessment and third-party risk management practices.
Effective communication skills, able to engage with internal and external stakeholders at all levels.
Familiarity with current cybersecurity frameworks, standards, and best practices.
Ability to develop and apply risk models and metrics-based reporting.
Experience partnering in contract negotiations related to cybersecurity and resilience.
Understanding of incident response processes and cross-functional collaboration.
Demonstrated ability to innovate and adapt processes to meet evolving threats, including AI-related risks.
Senior Manager driving enterprise risk for Transport for NSW, focusing on risk maturity and culture improvements. Leading a high - performing team and influencing executive decision - making in a complex organization.
Associate in Model Risk Management role within Financial Services Group analyzing financial risks. Support senior members with model validation, risk assessments, and deliver reports.
Senior Supervisory Control Specialist overseeing compliance and supervisory practices within Wealth and Investment Management. Collaborating with business partners to mitigate risks while ensuring adherence to regulations.
Intern supporting climate risk and exposure analytics at USAA with modeling and data analysis for catastrophe management. Collaborating across teams to address climate impacts and improve resilience strategies.
Risk Management & Insurance Intern role at Orchid Insurance in Tampa, FL. Participating in a 6 - week summer internship program focused on risk management and insurance fundamentals.
Senior Operational Risk Officer providing oversight and risk management expertise for KeyCorp's Consumer Bank. Engaging with business units to ensure effective operational risk management practices.
Governance Strategist for ITGC and Identity & Access Management at Truist. Coordinating governance structures and driving risk management initiatives across technology teams.
Customer Complaint Resolution Specialist in the Customer Advocacy team addressing escalated complaints. Conducting investigations, preparing executive - level responses, and advocating for better customer experiences at M&T Bank.
Manager of Information Governance and Privacy overseeing compliance and incident investigations at CVS Health. Fostering privacy culture and risk remediation for Health Services Segment.
Technology Risk and Control Associate managing technology risk and analytics at AIG. Involved in risk assessments, reporting, and working with technology teams for compliance.