Technology Risk Director- CyberSecurity
$190k - $240kCitizens Financial Group, Inc.
First Line Of Defense Cybersecurity Risk Director
As a First Line of Defense Cybersecurity Risk Director within the Enterprise Technology Security (ETS) Risk organization, you will provide strategic leadership in protecting the organization against evolving cyber threats while enabling business innovation. This role is accountable for the design, execution, and continuous maturity of the cybersecurity risk management framework, ensuring cyber risks are proactively identified, assessed, mitigated, monitored, and transparently reported. You will serve as a trusted advisor to senior leadership, translating complex cybersecurity and technology risks into clear business impacts and risk-based decisions aligned to enterprise risk appetite. The role partners closely with Technology, Corporate Security, Legal, Compliance, Risk, Audit, and business leaders to ensure cybersecurity risk strategies are fully integrated with business objectives, regulatory expectations, and enterprise resilience goals. You will also lead and develop a high performing team of cybersecurity risk professionals, fostering a culture of strong risk discipline, constructive challenge, and continuous improvement across the organization.
Key Responsibilities
- Lead, coach, and develop a team of cybersecurity risk analysts, principals, and managers, establishing a consistent, scalable, and value driven risk support model across the enterprise.
- Define and evolve the cybersecurity risk management strategy and operating model, ensuring alignment with enterprise risk appetite, regulatory requirements, and business priorities.
- Translate cyber and technology risks into business relevant impacts, enabling senior management to make informed, risk-based decisions.
- Establish and oversee an end-to-end cybersecurity risk management process that enables continuous identification, analysis, assessment, treatment, and monitoring of cyber and technology risks.
- Define and maintain key risk indicators (KRIs), controls, and control testing strategies to measure cybersecurity risk exposure and control effectiveness.
- Provide oversight of Risk and Control Self Assessments (RCSAs), Targeted Risk Reviews, business initiative risk assessments, and issue management, ensuring timely remediation and sustainable risk reduction.
- Act as a strategic risk advisor to business lines and technology leaders, providing day to day guidance on regulatory compliance, risk mitigation, and industry best practices.
- Advise on new products, processes, technologies, and strategic initiatives, ensuring appropriate risk identification, control design, and governance approvals are in place.
- Serve as the primary risk lead for regulatory exams and audits related to cybersecurity and technology risk for assigned products or functions.
- Partner with Internal Audit, and second line stakeholders, leading exam preparation, responses, and ongoing issue remediation.
- Build and maintain strong, trusted relationships with business partners, technology leaders, security teams, project stakeholders, and subject matter experts.
- Collaborate across lines of defense to provide effective challenge while enabling responsible innovation and delivery.
- Promote a culture of cybersecurity awareness and operational resilience across the organization.
Qualifications - Experience & Skills
- 10+ years of experience in Cybersecurity and/or Information Technology, with deep exposure to enterprise environments.
- 10+ years of risk management experience within financial services, preferably in cybersecurity, technology risk, or operational risk.
- Strong experience with cloud technologies (IaaS, PaaS, SaaS), DevSecOps, web applications, operating systems, databases, and networking.
- Broad knowledge of cybersecurity domains including: Network and infrastructure security, Vulnerability and configuration management, Identity and Access Management including Customer Identity, API and application security, Data protection and cryptography, Operational resilience, Incident, problem, and change management.
- Experience operating in a highly regulated environment under significant supervisory scrutiny.
- Solid understanding of internal controls, risk assessments, and governance processes.
- Working knowledge of FFIEC guidance, GLBA, SOX, and related regulatory frameworks.
- Familiarity with leading industry frameworks, including Cybersecurity Risk Institute, NIST Cybersecurity Framework, Cloud Security Alliance, NIST 800 53, and ISO 27001.
- Demonstrated ability to synthesize complex risk data, prioritize mitigation actions, and influence outcomes.
- Exceptional communication and executive presence skills, with the ability to engage all levels of the organization.
- Proven leadership, coaching, and talent development experience.
- Strong project and program management capabilities across multiple stakeholders.
Education & Certifications (Preferred)
- Bachelor's Degree required; Master's Degree preferred.
- Professional certifications strongly preferred, including: Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), Cloud security specialty certification in AWS and Azure, Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC).
Hours & Work Schedule
- Hours per Week: 40
- Work Schedule: Monday-Friday
- Hybrid: 4 days onsite, 1 day remote
Pay Transparency
The salary range for this position is $190,000 - $240,000 per year, plus an opportunity to earn an annual discretionary bonus. Actual pay is based on various factors including but not limited to the work location, and relevant skills and experience.
We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more. Note, Citizens' paid time off policy exceeds the mandatory, paid sick or paid time-away policy of every local and state jurisdiction in the United States. For an overview of our benefits, visit
Required Skills
- Analytical Reasoning
- Business Integrity Management
- Commercial Thinking
- Compliance Management
- Compliance Risk
- Corporate Governance
- Creating Purpose
- Crisis Control
- Cross-Functional Collaboration
- Customer Empowerment
- Customer-Centricity
- Developing Others
- Diversity and Inclusion Practice
- Due Diligence
- Empowering Others
- Fostering Inclusion
- Industry Insight
- Influencing Others
- Innovation
- Monitoring and Evaluation (M&E)
- Motivating Others
- Optimizing People Productivity
- Organizational Knowledge
- Persistence and Tenacity
- Policy Implementation
- Risk Assessment
- Risk Management Framework
About Us
Equal Employment Opportunity
Citizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical condition, military or veteran status, national origin, pregnancy/childbirth/lactation, colleague's or a dependent's reproductive health decision making, race, religion, sex, sexual orientation, or any other category protected by federal, state and/or local laws. At Citizens, we are committed to fostering an inclusive culture that enables all colleagues to bring their best selves to work every day and everyone is expected to be treated with respect and professionalism. Employment decisions are based solely on merit, qualifications, performance and capability.
Equal Employment and Opportunity Employer
Job Applicant Data Privacy Policy
Background Check
Any offer of employment is conditioned upon the candidate successfully passing a background check, which may include initial credit, motor vehicle record, public record, prior employment verification, and criminal background checks. Results of the background check are individually reviewed based upon legal requirements imposed by our regulators and with consideration of the nature and gravity of the background history and the job offered. Any offer of employment will include further information.
Job Info
- Job Identification 46359
- Job Category Risk & Oversight
- Degree Level Bachelor's Degree
- Job Schedule Full time
- Job Shift 1st
- Locations One Citizens Bank Way, Johnston, RI, 02919, US 645 East Missouri Avenue, Phoenix, AZ, 85012, US 99 Wood Avenue South, Iselin
$190k - $240k
...Description As a First Line of Defense Cybersecurity Risk Director within the Enterprise Technology Security (ETS) Risk organization, you will provide strategic leadership in protecting the organization against evolving cyber threats while enabling business innovation...SuggestedLocal areaRemote workMonday to FridayFlexible hours- ...Job Title: Director, Information Technology Department: IT Reports to: CTO Position Purpose... ...manage the infrastructure, helpdesk and cybersecurity teams. The Director will play a... ...considering scalability, efficiency, and risk management. Identify...SuggestedSeasonal workWork at officeWeekend work
- ...Financial Planning & Analysis Director - Information Technology Location: CityScape The Financial Planning... ...infrastructure, applications, cybersecurity, and digital transformation teams with... ...opportunities while balancing risk, scalability, and performance. Investment...Suggested
- ...Cyber Governance, Risk & Compliance (GRC) Manager Here at Discount Tire, we celebrate... ..., and leading a modern enterprise cybersecurity GRC program. This role owns the structure... ...expectations, and the company's broader technology strategy. Essential Duties and Responsibilities...SuggestedWork at officeLocal area
- ...Job Title: GRC Enterprise Risk Management Director Location: CityScape What you'll do: As an ERM GRC Director you will... ...three lines of defense (e.g., banking operations, information technology, SOX, compliance, risk management, audit). ~ Advanced to...Suggested
- ...ABOUT THIS OPPORTUNITY If you're a strategic, detail-oriented risk professional who thrives on balancing financial insight with operational awareness, this role is for you. As Risk Director, you'll lead the enterprise-wide risk management program - from...Weekly payContract workFor contractorsFor subcontractorH1bLocal areaVisa sponsorshipWork visa
$104k - $174k
...Business Risk Program Director Remote We are a hybrid, remote-office company dedicated to growing our talent anywhere! We have onsite... ...findings to stakeholders. Leverages data analytics and technology for predictive risk modeling. Other duties as assigned....Work experience placementWork at officeLocal areaRemote work$183.53k - $262.19k
...BES Business Group Technology Director At HDR, our employee-owners are fully engaged in creating a welcoming environment where each of us... ...driven, innovative strategies with practical implementation and risk management. Develop communication strategies to connect...Full timeTemporary workPart time$185k - $237.5k
Investor Relations Leader Circle is one of the world's leading internet financial platform companies, building the foundation of a more open, global economy through digital assets, payment applications, and programmable blockchain infrastructure. Circle's platform includes...Flexible hours- VP Investor Relations The Investor Relations Manager owns the entire investor experience—from onboarding and communication to tax documentation and community engagement. You will be the central point of contact for all investor relationships and ensure every investor...Live out
$100k
...Vaco Phoenix is seeking an Associate Compliance Director for a leading banking organization in Phoenix, AZ. This role is responsible for overseeing the bank’s risk and compliance programs, including sales practices, and ensuring adherence to FINRA and SEC regulations across...Work at officeLocal area- ...Managing Director, IB // Technology M&A At Portage Point Partners (Portage Point), you are not a cog in a legacy machine, you are shaping strategy, influencing outcomes and being rewarded for driving impact. Backed by New Mountain Capital, Portage Point is recognized...Interim roleWork at officeRelocation
- ...The Director, Global Trade Technology & Advisory serves in a senior leadership role responsible for driving growth, delivery excellence, and market... ...agreements and duty optimization Trade remedies, enforcement risk, and regulatory change management Quality, Risk, and...InternshipSeasonal workWork at officeLocal areaFlexible hours3 days per week
- ...for a mission that matters at a company where you matter. Your Impact Axon is seeking an experienced Senior Manager, Tax Technology to support and enhance technology enablement for our global tax function. This role will lead process improvement efforts, support...Work at officeRemote work
- ...Sr. Manager, People Technology And Ai Enablement The People & Engagement Technology team is a critical member of the Corporate Platform... ...the full product lifecycle, from strategy through execution, risk management, and continuous improvement and serve as a senior leader...Full timePart timeWork at officeWork from homeHome office2 days per week
- ...customer service, we operate with a strong risk mindset, ensuring we continue to uphold... ...the future of American Express. Technology at American Express As part of our diverse... .... RESPONSIBILITIES As the Director Software Engineering - AWS Public Cloud...Work at officeLocal areaFlexible hours
- ...capital solutions at client roundtables, industry conferences, webinars, and professional media platforms Manage the non-credit risk for customer portfolio and monitor and enhance profitability of all assigned relationships Required Qualifications, Capabilities...
$108k - $144k
...Overview The Senior Manager, Information Technology provides strategic leadership and operational oversight across designated IT domains... ...negotiation and performance oversight Strong governance, risk, and compliance management across regulatory frameworks...Contract workLocal areaImmediate startRemote workFlexible hoursNight shift- ...outlined in the APS Promise: Design for Tomorrow, Empower Each Other and Succeed Together. Summary Manager Information Technology | Automation COE As the Manager of Automation Center-of-Excellence, you'll lead a high-performing team focused on enterprise...Permanent employmentLocal areaWork from homeHome office
- ...Third-Party Risk Associate Director Location: Block 23 The Third-Party Risk Associate Director will work across the Third-Party Risk... ...look for operational improvements in people, process and technology to ensure the most efficient and effective methods of identifying...
$154k - $193k
...Director, Risk Management At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-... ...Bachelor's degree in Business Administration, Finance, Accounting, Technology, Security or other related field of specialty. Typically,...Hourly payWork at officeImmediate startVisa sponsorshipWork visaFlexible hours- ...Job Title: First Line Risk & Control RCSA Manager Location: CityScape What you'll do: This role is a first line of defense risk professional responsible for support and/or execution of various risk programs and Business Unit (BU) risk activities in adherence...
$103.75k - $174.75k
...providing world-class customer service, we operate with a strong risk mindset, ensuring we continue to uphold our brand promise of... ...legal, compliance, servicing operations, Digital Banking platform, technology, vendors, and capabilities teams. Successful candidates...Work at officeLocal areaFlexible hours$173k - $216k
...Senior Manager, Artificial Intelligence Risk Management At Early Warning, we've powered... .... Reporting to the Senior Director of Enterprise Risk Program Governance within... ...first-line business managers, product, technology (including the CDO office), data science...Work at officeVisa sponsorshipWork visa- ...Environmental; Energy; Mining & Metals, and the Manufacturing and Technology markets. Our services span from initial planning and investment... ...and value engineering Job Summary: This Project Risk Manager role is a senior role responsible for managing the project...Full timeWork at officeLocal areaRemote workRelocation
$90k - $110k
...accessible to all. Position Summary At The Joint, effective risk management helps protect our patients, franchise partners, and... ..., data security, and industry standards Participate in cybersecurity incident response and broader enterprise risk efforts...Work at office3 days per week$99k - $176k
...Risk Advice Senior Manager, Business Risk Oversight RBC US Wealth Managing is building out our credit, lending and cash management products and capabilities. As a Risk Advice Senior Manager, Business Risk Oversight, you will provide risk advice and guidance to product...Full timeFlexible hours- ...Job Description The Prequalification Risk Manager will be responsible for working with our Preconstruction and Operations teams... ...technically complex and sustainable projects for the advanced technology, life sciences, healthcare, higher education and commercial markets...Contract workFor contractorsFor subcontractorLocal area
- ...better world. Join us. Job Description AECOM is looking for a Risk Manager to join our Tucson, AZ, or San Diego, CA or Phoenix, AZ... ...our industry and shaping the future. With cutting-edge technology and a network of experts, you'll have the resources to make a real...Work at officeLocal areaWorldwideFlexible hours
- ...providing structured capital and credit solutions to mid-to-late-stage technology companies, with investments typically ranging from $20 million... ...Conduct in-depth due diligence, including financial analysis, risk assessment, and market research, to support investment...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Technology Risk Director- CyberSecurity. Be the first to apply!
- technology manager Phoenix, AZ
- director advanced technology Phoenix, AZ
- senior technology project manager Phoenix, AZ
- technology consulting manager Phoenix, AZ
- risk management specialist Phoenix, AZ
- risk management associate Phoenix, AZ
- director credit risk Phoenix, AZ
- risk management manager Phoenix, AZ
- head of risk management Phoenix, AZ
- operational risk manager Phoenix, AZ

