Serve as a key advisor responsible for recognizing and reporting IT and IS strategic and aggregate risks across the business while advancing the Enterprise Risk Management function for aggregation, quantification, and qualification of risks
Set direction for risk management programs within IT and IS and lead all aspects of the delivery of those programs across the line of business
Provide risk management and governance leadership, operational direction and operational oversight of Information Security, Business Continuity, Data Center Security, AI and Corporate Investigations domains
Establish a best-in-class Risk Management framework for the Enterprise Security Group (ESG) to ensure comprehensive oversight and management of risks across the full risk taxonomy
Ensure risks align within appetite tolerances and strategic goals, product plans, forecasts, and adjust to variances
Aggregate and report risks to senior leadership and effectively assess and influence business decisions and direction
Contribute to the long-term strategy of how risk systems should be adapted and integrated to improve risk handling amid regulatory change and new technologies
Ensure effective and appropriate policies, procedures, and controls are in place supporting all risk processes, systems, strategies, and implementations
Establish trust and rapport with senior business leaders to sustain oversight of the second line risk role and actively engage line of business leaders
Partner with senior risk executives in leading overall risk appetite, including identification and definition of key methods, metrics, and limits
Influence and set strategy for advancement of the risk management framework and partner across Risk Management, Finance, and the business
Liaise with Compliance and CLO on legal & regulatory considerations; assist in interactions with regulators (OCC, FED, FDIC, CFPB) and prepare Board and Senior Management level reports
Build and lead all aspects of a team for assigned functional area through recruiting, development, retention, mentoring, performance management, and managerial activities
Requirements
Bachelor’s degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
10+ years of risk management, regulatory or operations experience in a functional area such as insurance, banking, or financial services
5+ years of this experience focused on Information Security, Business Continuity, Physical Security or Corporate Investigations
4+ years of people leadership experience in building, leading and/or developing high-performing teams
Industry certification(s) in Information Security (e.g., CISSP, CISM) or Business Continuity (e.g., ABCP, CBCP) or Risk Management (e.g., CRISC) or Physical Security (e.g., CPP)
Proven experience working with and applying Risk, Security or Audit frameworks (FFIEC, COBIT, COSO, ISO 27001/2, NIST 800-53, SSAE16)
Knowledge of applicable laws, rules, and regulations applicable to financial institutions
Experience making data-driven decisions
Experience working with external agencies and regulators
Broad knowledge of information technology systems and general system development principles
Proven experience integrating security throughout the Software Development Lifecycle (SDLC), including component analysis, static and dynamic scanning (SAST/DAST), penetration testing, and comprehensive application security testing across build, deploy, and maintenance phases (preferred: 10+ years)
3+ years experience with artificial intelligence (AI) and machine learning principles, including responsible AI use case evaluations and deployment (preferred)
Proven ability to develop high-impact materials and deliver concise, insight-driven presentations to executive leadership
USAA does not provide visa sponsorship for this role; do not apply if you will need immigration support (e.g., H-1B, TN, STEM OPT)
Benefits
Relocation assistance is available
Employees may be eligible for pay incentives based on overall corporate and individual performance
Long Term Incentive Plan: Cash payment for Executive level roles only, representing a cash payment which is both time and performance based
Comprehensive medical, dental and vision plans
401(k)
Pension
Life insurance
Parental benefits
Adoption assistance
Paid time off program with paid holidays
16 paid volunteer hours
Various wellness programs
Career path planning and continuing education
Job title
IT/IS SSDLC Risk Management and Governance Executive
Business Unit Risk Advisor managing business continuity and disaster recovery program requirements at Truist. Collaborating with leadership to mitigate risk and ensuring compliance in a financial context.
Business Unit Risk Advisor managing risks and controls within Technology Business Unit at Truist. Executing risk program requirements and advising leadership on risk management strategies.
Lead Governance Operations at lemon.markets, ensuring compliance and operational excellence. Drive innovation in European FinTech with a focus on secure infrastructure.
Data Governance Consultant at iKnowHow S.A. shaping data governance initiatives and working closely with clients. Designing, implementing, and optimizing governance strategies for data quality and management.
SAP System Management and Governance Tool Specialist managing batch job automation and compliance within Airbus ERP systems and landscapes. Collaborating in an international team to enhance data security and process improvements.
Senior Analyst managing operational risk compliance and controls for Mastercard's Vocalink in the UK. Collaborating with teams to ensure robust operational risk practices.
Head of Risk Products driving risk strategy and delivering risk platform solutions at fintech startup. Collaborating with teams to prevent fraud and abuse in payment ecosystems.
Senior Manager in High Risk Client Management at RBC, overseeing EDD risk assessment processes for high risk clients. Partnering with Financial Intelligence and Compliance teams to ensure timely management and oversight of risk assessments.
Governance Analyst for IT at Catupiry, implementing IT frameworks and managing governance policies. Responsible for financial oversight and internal compliance in a hybrid work model.
IT - Risk & Governance Chief Officer ensuring strategic IT risk management process at LBBW bank. Leadership in global IT risk projects and compliance management with deep expertise in regulatory requirements.