SVP & Director of IT Governance - Cyber Security
WesBanco Bank
Job DescriptionSUMMARY:Provides strategic leadership and operational oversight of the Bank's technology governance, risk management, and compliance (GRC) program. Serves as a primary liaison among Technology, Risk, Audit, and executive leadership to ensure the technology risk posture aligns to regulatory expectations, enterprise risk appetite, and industry frameworks. Requires deep expertise in banking technology regulations, enterprise risk frameworks, and control design, balanced with the executive presence to communicate complex risk themes to technical and non-technical audiences, including Board-level committees.ESSENTIAL DUTIES AND RESPONSIBILITIES:To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.Owns and matures the enterprise IT GRC program, including policies, standards, procedures, and control frameworks aligned to NIST CSF 2.0, CIS Controls v8, FFIEC CAT/Architecture, and applicable regulatory guidance (OCC, FDIC, Federal Reserve). Establishes and maintains the technology policy hierarchy (policy standard procedure control) with defined ownership and periodic review cadence. Serves as program owner for the technology governance council structure (e.g., IT Steering, Technology Risk), including agenda-setting, reporting, and action item tracking. Operationalizes AI governance standards (NIST AI RMF, ISO/IEC 42001), including AI inventory, risk tiering, lifecycle controls, and oversight of vendor AI use cases. Directs the enterprise technology risk assessment program (annual and event-driven) across infrastructure, applications, data, cloud, and third-party environments; ensure methodology aligns to ERM/RCSA and risk appetite. Maintains and evolves the IT risk register, including risk identification, scoring, ownership, treatment plans, and risk acceptance/exception workflows. Leads risk assessment and advisory activities for emerging technologies (AI/ML, cloud, RPA), translating technical exposures into business impact and decision options. Develops and reports technology risk metrics and KRIs for senior leadership and Board committees; drive a data-driven risk culture. Serves as the primary IT GRC point of contact for regulatory examinations (OCC, FDIC, Federal Reserve) and internal/external audit engagements related to technology, cybersecurity, and operational risk. Monitors and interprets evolving regulatory requirements and supervisory guidance (FFIEC, SR letters, OCC bulletins, GLBA Safeguards, privacy laws) and translate them into actionable obligations and control updates. Manages technology audit and exam finding remediation: track issue aging, validate evidence, and ensure sustainable control improvements with clear ownership and timelines. Partners cross-functionally to support intersecting risk programs (e.g., model risk governance/SR 11-7 alignment, BSA/AML technology controls, and data governance) as applicable. Leads the technology and cybersecurity components of Third-Party Risk Management (TPRM), including onboarding due diligence, periodic reviews, and ongoing monitoring for critical/high-risk vendors. Defines vendor risk tiering criteria and control requirements for SaaS, cloud, and AI providers; ensure contract provisions address security, privacy, SLAs, and right-to-audit. Coordinates with Procurement and Legal to ensure contractual risk provisions (e.g., DPA, data handling, incident notification) are implemented and enforced. Design and implement a continuous controls monitoring (CCM) approach leveraging GRC tooling to automate evidence collection, control attestations, and targeted testing. Oversees control self-assessments (CSA) across IT domains (identity and access management, change management, vulnerability management, data protection) and validate remediation effectiveness. Partners with Cybersecurity on security control maturity assessments (CIS Controls, NIST SP 800-53) and annual FFIEC CAT completion. Leads or co-leads the annual SOC 1/SOC 2 review process for material service providers and support SOX ITGC scoping, testing coordination, and remediation tracking (as applicable). Builds, leads, and mentors a team of GRC analysts/specialists; establish performance expectations, succession coverage, and professional development pathways. Drives GRC tool strategy and platform optimization (e.g., ServiceNow GRC, Archer, or equivalent) to enable scalable risk and compliance workflows. Develops and manages the IT GRC program budget, including tooling, vendor contracts, and staffing plans. Champions a risk-aware culture through executive communications, training, and proactive engagement with Technology and business teams. OTHER REQUIREMENTS:Banking is a highly regulated industry and you will be expected to acquire and maintain a proficiency in the Bank's policies and procedures, and adhere to all laws, rules and regulations that are applicable to your conduct and the work you will be performing. You will also be expected to complete all assigned compliance training in a timely manner.Proficient in Microsoft Office products including Outlook, Word, PowerPoint and Excel.Deep working knowledge of FFIEC IT Examination Handbook, NIST CSF , CIS Controls , , and NIST SP 800-63B. Strong familiarity with AI governance frameworks including NIST AI RMF and ISO/IEC 42001. Proficiency with ITGC/SOX (as applicable) and SOC 2 review processes. Working knowledge of cloud risk and compliance considerations (AWS, Azure, or GCP) and shared responsibility models. Experience configuring and operating GRC platforms (ServiceNow, Archer, or equivalent). Understanding of networking concepts (e.g., firewalls, VPNs, DNS) and security protocols (e.g., TLS, SSH). , Ability to learn other banking systemsAbility to manage or materially contribute to regulatory examinations and audit cycles, including remediation of findings. Ability to learn new technologies and keep up with industry trends. Professional demeanor in appearance, interpersonal relations, work ethic and attitude.Ability to interact effectively across all levels of the organization.Demonstrated ability to manage multiple priorities and delegate effectively to meet critical deadlines under difficult time restraints.Understanding of account documentation and retention requirements. Excellent verbal and written skills and presentation skills with the ability to define and solve problems.Team player with a positive outlookDemonstrated leadership ability and skills. Ability to work independently and meet communicated deadlines.Excellent analytical, problem-solving and decision-making skills. Willingness to travel quarterly for onsite meetings. Job RequirementsBachelor’s degree in Information Systems, Computer Science, Business, or related field and/or equal education or experience required Minimum of 10 years of progressive experience in IT risk, GRC, cybersecurity, or technology audit required.Minimum of 3 years in a leadership or program management required. Minimum of 5 years of experience in a regulated financial institution (bank, credit union, or bank holding company); community or regional bank experience preferred. Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Systems Manager (CISM), Certified Information Systems Auditor (CISA), or Certified Risk & Information Systems Control (CRISC) are desirable. Job DetailsJob Type: Full-timeCategory: Information TechnologySalaried: Salaried
- ...Job Description The Manager, Information Security is responsible for strengthening and maintaining... ...role provides leadership across security governance, risk and compliance, and security operations while partnering with IT teams and business leadership to identify and...SuggestedFull timeRemote work
$163.4k - $322.1k
...Deloitte is seeking an AWS Cloud Security Senior Manager to lead the design and delivery... ...delivery of cloud security services within our Cyber practice. In this role, you will advise... ...the development of security strategies, governance frameworks, and secure architectures for...SuggestedLocal areaVisa sponsorship$163.4k - $322.1k
...seeking a Senior Manager to lead how clients secure their Google Cloud Platform (GCP) cloud... ...development capabilities.Our Deloitte Cyber team understands the unique challenges and... ...incentive program, subject to the rules governing the program, whereby an award, if any, depends...SuggestedLocal areaVisa sponsorship$134.5k - $265.1k
Position Summary Join Deloitte’s Cyber team as an AWS Cloud Security Manager and help organizations address the complex challenges and opportunities... ...frameworksExperience with AI/ML security risks and governance practices, including model and data protection, prompt...SuggestedLocal areaVisa sponsorship$163.4k - $322.1k
Position Summary Cyber Security Architecture Senior Manager - Strategy, Growth and Transformation Deloitte is seeking a Senior Manager... ...discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various...SuggestedLocal areaVisa sponsorship$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities... ...confidence, and proactively manage to secure success.Recruiting for this role ends on... ...with policy-as-code, multi-project governance, and regulatory or compliance frameworks...Local areaVisa sponsorship- ...technical expertise combined with strong program governance, execution discipline, and organizational... ...deployment and integration of:Endpoint Security Tooling (EDR, XDR, Defender, DLP, device... ...CoordinationAlign and coordinate across:IT OperationsSecurity EngineeringService...Work at officeRemote workFlexible hours
$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities... ...confidence, and proactively manage to secure success. Recruiting for this role ends on... ...cloud cyber risk engagements across governance, identity, application security, platform...Local areaVisa sponsorship$163.4k - $322.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities... ...confidence, and proactively manage to secure success. Recruiting for this role ends on... ...AI security playbooks and governance controls covering encryption, access control...Work at officeLocal areaVisa sponsorship$170.51k - $341.03k
...firm of K&L Gates is seeking a Director, Digital User Experience.... ...offices can work productively, securely, and with minimal friction, and... ...; Security and Information Governance Leadership; Practice Innovation... ..., digital workplace, or IT operations environments, including...Full timeContract workTemporary workWork at officeLocal areaRemote workWeekend workAfternoon shift- ...ItSeeking to hire a Chief Information Officer of IT for a leading higher education IT... ...Client and the Client's leadership, the Director leads and manages the IT department, serving... ...the organization's IT strategic plans, security, systems, applications, infrastructure, and...Contract workRemote workNight shift
$134.5k - $265.1k
Position Summary Cyber Digital Trust and Online Safety ManagerThe Digital Trust... ...flagging mechanisms, training data, and governance controls based on testing findings.... ...cross-functional stakeholders to strengthen security, trust, safety, and responsible use outcomes...Local areaVisa sponsorship- ...In the role of Director of IT Mergers and Acquisitions, based in Pittsburgh, Pennsylvania, you will collaborate with executives and integration... .... Your role also includes establishing effective program governance frameworks to manage project execution and risks....
$155.6k - $306.8k
Position Summary M&A IT Manager Our Deloitte Strategy & Transactions team helps guide clients through their most critical moments... ...with deal closing, integration and divestiture strategy and governance, integration and divestiture accounting and reporting services,...Local areaVisa sponsorshipFlexible hours$114.1k - $268.18k
...currently seeking a Manager, SailPoint Identity Governance Technical Lead to join our Advisory... ...and implement robust, scalable, and secure configurations withinSailPoint ISC; accountable... ...owners, business stakeholders, and IT teams to gather requirements,provide updates...H1bLocal area- ...Director of TechnologyLead the future of analytical instrumentation. As the Director of Technology, you will be the senior technical authority shaping the next generation of analyzer platforms—driving innovation, setting the technology roadmap, and solving the toughest...
$163.4k - $322.1k
Position Summary Cyber Oracle Cloud Security - Senior Manager / Associate Vice President, Engineering Management Our Deloitte Cyber team... ...SaaS, Oracle Cloud Infrastructure, and Oracle Access Governance technologiesServe as a subject matter expert for senior business...Local areaVisa sponsorship- Chief Technology Officer (CTO) Location: Pittsburgh, PA (in-person) Company: Shelfmark, Inc. Shelfmark is building the next generation of industrial intelligence systemscombining computer vision, machine learning, and productized hardware to detect defects in real...Remote work
$134.5k - $265.1k
Position Summary Cyber Oracle Cloud Security - Manager / Engineering Manager II Are you interested in working in a dynamic environment... ...strengthen Oracle Cloud ERP, HCM, and SCM security by delivering governance, risk, and compliance solutions that reduce risk and...Local areaVisa sponsorship$141.2k - $278.3k
...Summary Google Infrastructure and Security Lead ArchitectJoin our AI & Engineering... ...continuous compliance against evolving cyber threats. You will collaborate closely with... ..., Folders, Projects) tailored to client governance and billing requirements.Design...Local areaVisa sponsorshipFlexible hours- ...experience leading Major Incident Management within a large enterprise IT environment.Demonstrated experience administering enterprise IT... ...Title: IT Incident ManagerBusiness Unit: TechnologyReports to: Director of Service QualityPosition Overview:The IT Incident Manager is...Full timeWork at officeLocal areaRelocationNight shift
$124k - $280k
...challenges and drive success in finance, operations, human capital, and governance. You will be part of a team that supports clients in their... ...members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all.Applications will be accepted...Full timeH1b- Corporate Security Engineering - Lead Engineer RoleAt BNY, our culture allows us to run our company... ..., vulnerability management, identity/access governance, and logging/SIEM integrations; ability to partner effectively with Cyber and Risk/Compliance.Excellent communication,...Work at officeRemote workWorldwideFlexible hours
- ...Nurick is actively seeking a Director of Technology Operations to... ...Serve as a key liaison between IT and business stakeholders to... ..., network operations, security, disaster recovery, business... ...legislative matters at all levels of government. Our services span...Contract workRemote work
$100.1k - $204.49k
...Technology Group and be located at one of our IT Hubs: Cleveland, Ohio; Birmingham,... ...across application, infrastructure, and security teams to deliver a stable, reliable, and... ...operational metrics and reduce toil.• Ensure Governance, Risk & Compliance; maintain adherence to...Permanent employmentFull timeTemporary workPart timeWork experience placementWork at officeShift workAfternoon shift$204k - $306k
..., there is a rise in scammers pretending to be real Duolingo employees. Duolingo and our employees will never ask for your Social Security number, bank details, or passport info, and we’ll never ask you to deposit a check, purchase equipment, or exchange money during the...Work experience placement- At Alstom, we understand transport networks and what moves people. From high-speed trains, metros, monorails, and trams, to turnkey systems, services, infrastructure, signalling and digital mobility, we offer our diverse customers the broadest portfolio in the industry....Full timeWorldwideFlexible hours
$253.12k - $379.68k
Latitude AI (lat.ai) develops automated driving technologies, including L3, for Ford vehicles at scale. We’re driven by the opportunity to reimagine what it’s like to drive and make travel safer, less stressful, and more enjoyable for everyone. When you join the Latitude...Permanent employmentFull timeWork at officeImmediate startVisa sponsorship- ...the world. HDR is looking for a Value Engineer & Project Risk Management Lead. This position will assist the Value Engineering/Risk Director in the development of strategic visions and tactical plans, contemplate and participate in the hiring process, manage workshare...Work at office
$253.12k - $379.68k
...replacing current manual scheduling analysis, with an eye toward eventual global, multi-core deadline guaranteesOversee the boot sequence, secure boot integration, and watchdog/fault escalation strategy for the compute platform, and provide input to the platform team on...Permanent employmentFull timeWork at officeImmediate startVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SVP & Director of IT Governance - Cyber Security. Be the first to apply!
- cyber security lead Pittsburgh, PA
- director - cyber security Pittsburgh, PA
- cybersecurity manager Pittsburgh, PA
- cyber Pittsburgh, PA
- IT security Pittsburgh, PA
- cybersecurity software engineer Pittsburgh, PA
- cybersecurity administrator Pittsburgh, PA
- remote cyber security Pittsburgh, PA
- cyber security Pittsburgh, PA
- cybersecurity specialist Pittsburgh, PA



