Tech & Security Risk Oversight Manager
Fifth Third
Make banking a Fifth Third better®
We connect great people to great opportunities. Are you ready to take the next step? Discover a career in banking at Fifth Third Bank. GENERAL FUNCTION: Provide independent oversight and effective challenge of Technology and Information Security risk activities to support safe and sound operations and regulatory compliance. This includes oversight of third-party technology/security risk, M&A security due diligence and integration risk oversight, risk and control self-assessments (RCSAs), and key risk indicator (KRI) design and monitoring. The role is accountable for elevating concerns, documenting outcomes of credible challenge, and following policies, programs, and procedures as defined. ROLE DETAILS: Location: 38 Fountain Square, Cincinnati, Ohio | Work model: On-site. ESSENTIAL DUTIES AND RESPONSIBILITIES:
LOCATION -- Cincinnati, Ohio 45202 Attention search firms and staffing agencies: do not submit unsolicited resumes for this posting. Fifth Third does not accept resumes from any agency that does not have an active agreement with Fifth Third. Any unsolicited resumes - no matter how they are submitted - will be considered the property of Fifth Third and Fifth Third will not be responsible for any associated fee. Fifth Third Bank, National Association is proud to have an engaged and inclusive culture and to promote and ensure equal employment opportunity in all employment decisions regardless of race, color, gender, national origin, religion, age, disability, sexual orientation, gender identity, military status, veteran status or any other legally protected status.
We connect great people to great opportunities. Are you ready to take the next step? Discover a career in banking at Fifth Third Bank. GENERAL FUNCTION: Provide independent oversight and effective challenge of Technology and Information Security risk activities to support safe and sound operations and regulatory compliance. This includes oversight of third-party technology/security risk, M&A security due diligence and integration risk oversight, risk and control self-assessments (RCSAs), and key risk indicator (KRI) design and monitoring. The role is accountable for elevating concerns, documenting outcomes of credible challenge, and following policies, programs, and procedures as defined. ROLE DETAILS: Location: 38 Fountain Square, Cincinnati, Ohio | Work model: On-site. ESSENTIAL DUTIES AND RESPONSIBILITIES:
- Third-Party Technology & Security Risk Oversight
- Provide 2LOD oversight and credible challenge of the Third-Party Risk Management (TPRM) program, with a focus on technology and information security risk.
- Review and challenge third-party technology/security risk assessments, control requirements, and remediation plans; document challenge outcomes and escalate concerns when needed.
- Partner with stakeholders to improve the quality, consistency, and timeliness of third-party risk decisions, metrics, and reporting.
- Mergers & Acquisitions (M&A) Security Oversight
- Provide oversight and challenge of security due diligence activities and the Extended Security Program for M&A.
- Assess integration and transition risks (e.g., identity and access, data protection, vulnerability management, incident response readiness) and ensure risks and dependencies are tracked through closure.
- Risk & Control Oversight (RCSA / Control Challenge)
- Oversee and challenge RCSAs performed by 1LOD/business control teams for Information Security and Information Technology.
- Provide credible challenge of risk analyses, control selection, and control design/operating effectiveness evidence for topics including Information Security and Information Technology risks, privacy, and other areas that materially affect the Bank's risk profile.
- Key Risk Indicators (KRIs) & Risk Reporting
- Challenge the definition, thresholds, and monitoring cadence for technology/security KRIs to ensure risk measurement is comprehensive, accurate, and timely.
- Translate technology and security risk into clear business terms for senior leaders and governance forums; support periodic risk reporting and emerging risk updates.
- Standards, Regulatory Alignment, and Continuous Improvement
- Maintain awareness of applicable regulatory requirements and industry standards related to safeguarding confidentiality, integrity, and availability of information assets (e.g., OCC/Interagency guidance, NIST, ISO, COBIT, ITIL, PCI as applicable).
- Recommend enhancements to technology and security risk frameworks, assessment methodologies, and oversight routines to improve consistency and regulatory alignment.
- Complete point-of-view (POV) risk assessments on emerging risks and targeted focus areas as assigned.
- Stakeholder Partnership, Enablement, and Influence
- Collaborate with Operational Risk, Compliance (Privacy), Finance, Legal, Information Security, IT, and Business Controls to drive timely execution and improve effectiveness of technology and security risk activities.
- Provide training and education to the 1st line of defense to support a fully operationalized technology and security risk management program.
- Enable cross-training and knowledge sharing across the team and stakeholders (influence without direct supervisory authority).
- Required
- Bachelor's degree in computer science, cybersecurity, data science, or related field (or equivalent practical experience).
- 5+ years of experience leading, executing, and/or governing cyber/information security risk and IT risk assessment programs (or related experience).
- 5+ years of experience in technology and/or information security risk management; financial services experience (e.g., banking, payments) and regulatory exposure strongly preferred.
- Experience developing and performing data, security, and/or IT risk assessments, including documentation of conclusions and recommended remediation.
- Strong understanding of applicable financial services regulations and guidance (e.g., GLBA, Interagency Guidelines Establishing Information Security Standards, OCC/Fed/FFIEC guidance) and related privacy/breach notification obligations.
- Ability to maintain independence and objectivity in executing oversight, credible challenge, and reporting activities.
- Strong communication skills with the ability to explain technology and security risk in business terms to senior/executive leaders and cross-functional partners (IT, Information Security, Audit, Compliance/Privacy, Legal).
- Strong organizational and project management skills; ability to manage multiple priorities, deliver results, and meet milestones and deadlines.
- Demonstrated analytical capability to understand complex issues, develop meaningful analyses, and support remediation to closure.
- Demonstrated ability to work independently, prioritize effectively, and drive continuous improvement through feedback and learning.
- Preferred
- Advanced degree in Information Technology, Cybersecurity, Data Science, or related area.
- Relevant professional certifications (e.g., CISA, CISM, CRISC, CISSP) or equivalent.
- Working knowledge of relevant frameworks/standards (e.g., NIST CSF, NIST RMF, NIST SP 800-53, FFIEC IT Handbook, ISO 27000-series, COBIT, COSO, PCI).
- Experience providing oversight/credible challenge of TPRM, RCSA programs, and KRI design/monitoring in a regulated environment.
- #LI-GM1
LOCATION -- Cincinnati, Ohio 45202 Attention search firms and staffing agencies: do not submit unsolicited resumes for this posting. Fifth Third does not accept resumes from any agency that does not have an active agreement with Fifth Third. Any unsolicited resumes - no matter how they are submitted - will be considered the property of Fifth Third and Fifth Third will not be responsible for any associated fee. Fifth Third Bank, National Association is proud to have an engaged and inclusive culture and to promote and ensure equal employment opportunity in all employment decisions regardless of race, color, gender, national origin, religion, age, disability, sexual orientation, gender identity, military status, veteran status or any other legally protected status.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Tech & Security Risk Oversight Manager in Ohio vacancy
$119.77k - $140.9k
...Job Description As an AI Technology Risk Manager, the role involves overseeing and mitigating... ...: Ensure awareness and manage the oversight of the AI risk management processes and... ...your health, protect your financial security and give you peace of mind. Our benefits...SuggestedTemporary workWork experience placementWork at officeLocal area3 days per week- ...A premier IT consulting firm is seeking an IT Risk Program Manager in Columbus, OH, for an 11-month contract. The candidate should have 8-10... ...involves overseeing IT risk programs and ensuring compliance with security policies. Equal opportunity employer committed to diversity...SuggestedContract work
- ...A global professional services firm is seeking a Manager in Risk Technology to manage client engagement teams and focus on Oracle application security. Responsibilities include transforming risk functions and implementing technology solutions. Ideal candidates will have...SuggestedFlexible hours
$146.3k - $326.04k
...success. As a Line of Business Risk Manager Senior within PNC's... ...AL. • Responsible for the oversight of risk management strategies... ...functions. • Plays a key role in Tech risk management of Strategic... ...for any registered role, the Secure and Fair Enforcement for Mortgage...SuggestedFull timeTemporary workPart timeWork experience placementWork at office- NCS Credit in Cleveland, Ohio is seeking a Manager of IT Operations & Risk to lead the infrastructure team. This role focuses on ensuring the stability and security of internal technology, including hardware and cloud services. Candidates should have a Bachelor’s degree...SuggestedFull time
- ...A leading global consulting firm is looking for a Manager in Risk Technology to drive ServiceNow IRM projects while mentoring team members. The role requires expertise in risk management and strong project management skills, along with a commitment to fostering relationships...
$107k - $214.5k
...of professional services to the middle market globally. Our ERP Risk & Automation Consulting practice guides clients through major ERP transformations to manage and de‑risk implementations, design security and controls optimizing automation through ERPs, and reduce the...Local areaFlexible hours$133.37k - $156.9k
...SUMMARY The Emerging Technologies Risk Manager is a First Line of Defense (1FLOD) leadership... ...owning and executing risk management, oversight and governance for Artificial... ...boost your health, protect your financial security and give you peace of mind. Our benefits...Temporary workWork experience placementLocal area$110.5k - $202.7k
...and reliable overview of their risk landscape. Our solutions can... ...cloud risk framework and oversight capability to ensure consistency... ...You will be responsible for managing multiple client engagement teams... ...technology control and security engagements. Skills and attributes...Contract workSummer holidayWork at officeImmediate startFlexible hours$110.5k - $202.7k
...and reliable overview of their risk landscape. Our solutions can... ...cloud risk framework and oversight capability to ensure consistency... ...You will be responsible for managing multiple client engagement teams... ...technology control and security engagements. Skills and attributes...Contract workSummer holidayWork at officeImmediate startFlexible hours$73.8k - $218.8k
...helping businesses across industries migrate, manage, and optimize their cloud environments.... ...with clients to design scalable, secure, and resilient cloud environments. The practice... ..., products, communications and media tech) Experience with cloud native, containers...Work experience placementLive inWork at officeLocal areaShift work- ...Risk Management - Multi Asset Investment Risk Manager - Vice President Join a high-impact team at the heart of JPMorganChase Wealth Management... ...Risk & Analytics (IR&A), you will own end-to-end risk oversight for Managed Strategies across the Private Bank and Consumer Bank...
- Huntington Bancshares, Inc. is seeking an Associate Director - Franchise responsible for managing a portfolio of commercial loans. Key duties include underwriting loans, monitoring the portfolio, and collaborating with internal partners. Candidates must hold a Bachelor...Remote jobWork at officeFlexible hours
- ...high-impact team at the heart of JPMorganChase Wealth Management's investment lifecycle. You will shape risk strategy across proprietary and third‑party... ...Experience with multi‑asset portfolio construction, manager oversight, and product due diligence frameworks Familiarity...
$142.6k - $261.5k
...organization faces today demands change. And with change comes risk. As a Risk Technology professional, you will be addressing... ...business and process controls transformation, application security, risk management technology enablement, continuous controls monitoring, and...Work experience placementSummer holidayFlexible hours$142.6k - $261.5k
...today demands change. And with change comes risk. As a Risk Technology professional, you... ...controls transformation, application security integrity, governance, risk, and control... ...continuous controls monitoring, and IT risk management. You will belong to an international...Work experience placementSummer holidayFlexible hoursShift work$159.75k - $197.33k
...Job Title: Asset and Liability Management Risk Manager - Financial Risk Management Location: CityScape What you'll do: The... ...process improvement. You'll provide independent risk oversight, challenge, and assessment of interest rate risk exposure with...- ...A global service provider is seeking a highly motivated Manager for their Risk Technology practice focusing on SAP application risk and technology enablement. This role includes managing client engagement teams, delivering professional services, and ensuring high-quality...
- A leading financial services firm is looking for a Tech Risk & Controls Director to shape and implement their technology risk management strategy. The role involves managing risk compliance, collaborating with stakeholders, and leading teams. With over 10 years of experience...
$96k - $181k
...Governance Manager – Credit & Lending Location: Cleveland, OH or Buffalo, NY preferred... ...serves as a key member of the first line Risk team within the Commercial Bank, with responsibility... ...readiness, and effective portfolio oversight. This includes partnering closely with...Work at officeRemote workWork from homeHome officeFlexible hours3 days per week$70k - $140k
## Cybersecurity Risk ManagerApplyremote type: Officelocations: Columbus, OH: Hoover,... ...of risks with Threat and Vulnerability Management, Vulnerability SDLC, Zero Trust, or the... ...CISSP, CISM, CISA, GIAC, CIPP/US or other security/privacy certifications preferred but not...Work at officeRemote workWork from homeFlexible hours- ...Overview Responsible for overall management and objectives of Parker Insurance Program... ...Works with Parker's Leadership, Director of Risk Management and the Manager of Risk... ...and ability to communicate findings to non-techs. Ability to solve practical problems in...Permanent employmentFor contractors
$150k - $180k
...Project Risk Manager The Project Risk Manager is accountable for comprehensive and cross-functional project risk identification, prioritization... ...governance with project controls, stage gates, and executive oversight Integrate qualitative and quantitative risk analysis with...Work at officeLocal area$70k - $140k
1 Line Technology Risk – Cybersecurity As a 1 Line Technology Risk – Cybersecurity... ...of risks with Threat and Vulnerability Management, Vulnerability SDLC, Zero Trust, or the... ...CISSP, CISM, CISA, GIAC, CIPP/US or other security/privacy certifications preferred but not...Work at officeRemote workWork from homeFlexible hours$142.6k - $261.5k
...today demands change. And with change comes risk. As a Risk Technology professional, you... ...controls transformation, application security integrity, governance, risk, and control... ...continuous controls monitoring, and IT risk management. You will belong to an international...Work experience placementSummer holidayFlexible hoursShift work- ...Responsibilities: Daily sub-merchant risk reviews and investigations Review... ...and periodic reviews Participate in oversight meetings with internal risk and compliance... ...Services, InfoSec, AML Ops, Third Party Management, 2nd LOD, and 3rd LOD Risk Review Group...Remote work
$125.8k - $184.5k
...Hartford, United States; Princeton, United States; Risk Governance & Reporting Lead (Project Management) We are adding to our diverse team of experts... ...discipline. Provide project risk management oversight for major initiatives, including review and...Temporary workRemote work$153.6k - $230.4k
...Director Information Security - IS06AE We're determined to make... ...Application & Data Technology Risk provides senior leadership for... ...identifying, assessing, and managing technology risks across the enterprise... .... Provide risk oversight across the end-to-end application...Temporary workWork at office3 days per week- ...unique opportunity to shape the firm's tech risk strategy and enhance industry compliance... ...implementing the firm's technology risk management strategy. Leveraging your advanced knowledge... ...and constituents regarding their security obligations, facilitating acceptable outcomes...
- ...Risk Management Home Lending Risk Control Manager Bring your expertise to JPMorgan Chase. As part of Risk Management and Compliance, you... ...Lending Risk Management. You will be responsible for the oversight of control functions including risk/control identification, testing...Work at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Tech & Security Risk Oversight Manager. Be the first to apply!

