Technology Risk Director- CyberSecurity
$190k - $240kCitizens Financial Group, Inc.
First Line Of Defense Cybersecurity Risk Director
As a First Line Of Defense Cybersecurity Risk Director within the Enterprise Technology Security (ETS) Risk organization, you will provide strategic leadership in protecting the organization against evolving cyber threats while enabling business innovation. This role is accountable for the design, execution, and continuous maturity of the cybersecurity risk management framework, ensuring cyber risks are proactively identified, assessed, mitigated, monitored, and transparently reported. You will serve as a trusted advisor to senior leadership, translating complex cybersecurity and technology risks into clear business impacts and risk-based decisions aligned to enterprise risk appetite. The role partners closely with Technology, Corporate Security, Legal, Compliance, Risk, Audit, and business leaders to ensure cybersecurity risk strategies are fully integrated with business objectives, regulatory expectations, and enterprise resilience goals. You will also lead and develop a high performing team of cybersecurity risk professionals, fostering a culture of strong risk discipline, constructive challenge, and continuous improvement across the organization.
Key Responsibilities
- Leadership & Strategy
- Lead, coach, and develop a team of cybersecurity risk analysts, principals, and managers, establishing a consistent, scalable, and value driven risk support model across the enterprise.
- Define and evolve the cybersecurity risk management strategy and operating model, ensuring alignment with enterprise risk appetite, regulatory requirements, and business priorities.
- Translate cyber and technology risks into business relevant impacts, enabling senior management to make informed, risk-based decisions.
- Cybersecurity Risk Management & Oversight
- Establish and oversee an end-to-end cybersecurity risk management process that enables continuous identification, analysis, assessment, treatment, and monitoring of cyber and technology risks.
- Define and maintain key risk indicators (KRIs), controls, and control testing strategies to measure cybersecurity risk exposure and control effectiveness.
- Provide oversight of Risk and Control Self Assessments (RCSAs), Targeted Risk Reviews, business initiative risk assessments, and issue management, ensuring timely remediation and sustainable risk reduction.
- Maintain visibility into detailed cyber risk assessments, advising business and technology leaders on prioritized mitigation strategies and risk tradeoffs.
- Business Partnership & Advisory
- Act as a strategic risk advisor to business lines and technology leaders, providing day to day guidance on regulatory compliance, risk mitigation, and industry best practices.
- Advise on new products, processes, technologies, and strategic initiatives, ensuring appropriate risk identification, control design, and governance approvals are in place.
- Guide business partners through enterprise governance forums and approval processes, ensuring cyber risks are understood, documented, and appropriately managed.
- Regulatory, Audit & External Engagement
- Serve as the primary risk lead for regulatory exams and audits related to cybersecurity and technology risk for assigned products or functions.
- Partner with Internal Audit, and second line stakeholders, leading exam preparation, responses, and ongoing issue remediation.
- Ensure compliance with applicable laws, regulations, and supervisory guidance, including FFIEC, GLBA, SOX, and other relevant standards.
- Collaboration & Stakeholder Management
- Build and maintain strong, trusted relationships with business partners, technology leaders, security teams, project stakeholders, and subject matter experts.
- Collaborate across lines of defense to provide effective challenge while enabling responsible innovation and delivery.
- Promote a culture of cybersecurity awareness and operational resilience across the organization.
- Qualifications - Experience & Skills
- 10+ years of experience in Cybersecurity and/or Information Technology, with deep exposure to enterprise environments.
- 10+ years of risk management experience within financial services, preferably in cybersecurity, technology risk, or operational risk.
- Strong experience with cloud technologies (IaaS, PaaS, SaaS), DevSecOps, web applications, operating systems, databases, and networking.
- Broad knowledge of cybersecurity domains including: Network and infrastructure security, Vulnerability and configuration management, Identity and Access Management including Customer Identity, API and application security, Data protection and cryptography, Operational resilience, Incident, problem, and change management
- Experience operating in a highly regulated environment under significant supervisory scrutiny.
- Solid understanding of internal controls, risk assessments, and governance processes.
- Working knowledge of FFIEC guidance, GLBA, SOX, and related regulatory frameworks.
- Familiarity with leading industry frameworks, including Cybersecurity Risk Institute, NIST Cybersecurity Framework, Cloud Security Alliance, NIST 800 53, and ISO 27001.
- Demonstrated ability to synthesize complex risk data, prioritize mitigation actions, and influence outcomes.
- Exceptional communication and executive presence skills, with the ability to engage all levels of the organization.
- Proven leadership, coaching, and talent development experience.
- Strong project and program management capabilities across multiple stakeholders.
- Education & Certifications (Preferred)
- Bachelor's Degree required; Master's Degree preferred.
- Professional certifications strongly preferred, including: Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), Cloud security specialty certification in AWS and Azure, Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC)
- Hours per Week: 40
- Work Schedule: Monday-Friday
- Hybrid: 4 days onsite, 1 day remote
- Analytical Reasoning
- Business Integrity Management
- Commercial Thinking
- Compliance Management
- Compliance Risk
- Corporate Governance
- Creating Purpose
- Crisis Control
- Cross-Functional Collaboration
- Customer Empowerment
- Customer-Centricity
- Developing Others
- Diversity and Inclusion Practice
- Due Diligence
- Empowering Others
- Fostering Inclusion
- Industry Insight
- Influencing Others
- Innovation
- Monitoring and Evaluation (M&E)
- Motivating Others
- Optimizing People Productivity
- Organizational Knowledge
- Persistence and Tenacity
- Policy Implementation
- Risk Assessment
- Risk Management Framework
Hours & Work Schedule
Pay Transparency
The salary range for this position is $190,000 - $240,000 per year, plus an opportunity to earn an annual discretionary bonus. Actual pay is based on various factors including but not limited to the work location, and relevant skills and experience.
We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more. Note, Citizens' paid time off policy exceeds the mandatory, paid sick or paid time-away policy of every local and state jurisdiction in the United States. For an overview of our benefits, visit
Required Skills
About Us
Equal Employment Opportunity
Citizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical condition, military or veteran status, national origin, pregnancy/childbirth/lactation, colleague's or a dependent's reproductive health decision making, race, religion, sex, sexual orientation, or any other category protected by federal, state and/or local laws. At Citizens, we are committed to fostering an inclusive culture that enables all colleagues to bring their best selves to work every day and everyone is expected to be treated with respect and professionalism. Employment decisions are based solely on merit, qualifications, performance and capability.
Equal Employment and Opportunity Employer
Job Applicant Data Privacy Policy
Background Check
Any offer of employment is conditioned upon the candidate successfully passing a background check, which may include initial credit, motor vehicle record, public record, prior employment verification, and
- ...Director, Cyber And Information Risk Lead The Cyber and Information Risk Program Support Lead is responsible... ...Risk Culture - Assist the Head of Technology and Information Security Risk... ...Management, Computer Engineering, Cybersecurity or equivalent). M.S. desired. ·...Suggested
- ...please visit our website What is the Role? The Manager Information Technology is responsible for managing and maintaining the ERA’s ICT... ...responsible for ensuring effective service delivery, ICT governance, risk management and compliance with public sector requirements. It...SuggestedPermanent employmentFull timeWork from homeFlexible hours
- ...College Achieve Public Schools is seeking a Director of Technology to lead and coordinate tech operations in the Paterson district. This role involves overseeing technology systems and ensuring efficient resource management to enhance instructional and operational effectiveness...Suggested
$169.27k
Planning Manager Kerry is the world's leading taste and nutrition company for the food, beverage and pharmaceutical industries. Every day we partner with customers to create healthier, tastier and more sustainable products that are consumed by billions of people across...SuggestedWork experience placementRemote work$123.5k - $216k
...difference at Fiserv. Job Title Fraud Data, Signals and Risk Intelligence, Senior Director About your role: As Senior Director, Fraud Data,... ...and revenue growth where data is the key component and technology is the delivery layer. Collaborate with product,...SuggestedWork at officeMonday to Friday$116k - $150k
...Risk Director Everest Global Services, Inc. is seeking a Risk Capital Modelling Director with experience in Bermuda Regulation. The role will support analytics at Everest Group across consolidating entities (Group, US and Bermuda). The role will be part of the Financial...Full time$135k - $150k
...resources are allocated efficiently. A university qualification and 10+ years of experience in project management, especially in the technology or financial sector, are essential. Benefits include a salary range of $135K – $150K, variable compensation, paid volunteer days,...$120.67k - $206.86k
...experience in commercial real estate transactions Experience serving as a mentor, reviewer, or technical resource to underwriters within the risk management team. Demonstrated experience negotiating, underwriting, and closing non-recourse commercial real estate loans used for...Local area£58.1k - £87.1k per year
...re looking for an experienced and collaborative Energy Markets Risk Manager (Quant Modelling and Data) to play a leading role in shaping... .... Working closely with stakeholders across trading, risk, technology, and senior leadership, you’ll lead a small team while helping...Permanent employmentFull timeWork at officeFlexible hours- ...Cyber And Information Risk, Independent Risk Review Lead The Cyber and Information... ...Risk Culture – Assist the Head of Technology and Information Risk Management and Head... ...Information Management, Computer Engineering, Cybersecurity or equivalent). M.S. desired.· Relevant...
$150k - $160k
Onsite 3x per week after 3-6 mos of 5x/wk $150-160K base + bonus Job Summary: Financial firm is seeking an experienced risk professional to join their brokerage business. Will be positioned within the firm’s Energy & Commodities brokerage business. The focus of the role...Work at office3 days per week$139.23k - $163.8k
U.S. Bank is seeking an experienced individual to manage a team responsible for accounting and investor servicing. This role involves providing expertise to clients while overseeing complex investment transactions. You will need substantial experience in the alternative...- ...Job Summary (Primary function) This Global Risk Management & Safety Surveillance (GRMSS) Scientist collaborates with the GRMSS Physicians and GRMSS Scientists to characterize the evolving clinical and post‑marketing safety profiles for investigational drugs and/or products...Work experience placementLocal area
$81k - $93k
...presence is local and close to our customers. Read more at Location: USA - Iselin, Wood Ave Division: Air & Sea Job Posting Title: Credit Risk Management Supervisor, North America Time Type: Full Time We are seeking a skilled and experienced Credit Supervisor with a strong...Full timeLocal area$135k - $155k
...read our impact report and visit our About Us page. The technology operations director role is central to managing the Office of Innovation's technology... ...requirements and industry standards and research in the cybersecurity space to inform our team's practices. Develop processes...For contractorsWork at office$102.96k - $185.33k
...Risk Adjustment Strategic Manager Location: Virginia, Indiana, Georgia, Tennessee, Connecticut, New York, New Jersey, Maine, Kentucky This role requires associates to be in-office 1 - 2 days per week, fostering collaboration and connectivity, while providing flexibility...Temporary workWork experience placementWork at officeLocal area2 days per week1 day per week- Corps Team is seeking an experienced investment Product Manager for a contract role based in Woodbridge Township, NJ. This position involves managing end-to-end investment products and ensuring a digital experience for Retirement Plan participants. The role focuses on ...Contract work
- The Casualty Actuarial Society is seeking a Senior Actuarial Manager in Port Reading, NJ, to lead reserving and rate indication analyses for Auto and Homeowners insurance lines. The role involves mentoring a team, developing new methods for claims-related metrics, and collaborating...
$195k - $275k
...throughout the Northeast and mid-Atlantic, where we have built an unparalleled reputation for service. We continuously invest in technology, our employees thrive in our empowering environment, and our customers are among the most loyal in the industry. The Plymouth Rock...$170k - $185k
Ascot Group is looking for a Senior Manager, Financial Planning & Analysis in Woodbridge Township, NJ. This hybrid role supports corporate financial needs and requires developing budgets, forecasts, and reports. Candidates should have a Bachelor's degree in finance and...- ...VenuesWest is seeking a Manager Budget Strategy and Risk Management based in New York, Town of Perth. This permanent full-time position involves managing and leading budget strategy and financial risk management functions while providing expert advice to stakeholders....Permanent employmentFull timeFlexible hours
$175k - $200k
...Senior Director, Alternative Risk Underwriter The Senior Director, Alternative Risk Underwriter will be responsible for leading the strategy, underwriting performance, and portfolio management of alternative risk solutions, including captive insurance programs and...Temporary work$111.1k - $130.7k
...for all clients assigned to the team and directs issue resolution and process changes to support client needs. Proactively identifies risk‑related issues through review of qualitative and quantitative data, anticipates obstacles and then implements mitigating solutions....Temporary workWork at officeLocal area3 days per week- Our client, a large financial services company, is seeking an experienced investment Product Manager for a contract role, 3+ months, with potential to extend and convert to a full-time team member. This will be a hybrid role (3 days in office) located in Iselin NJ. This...Full timeContract workWork at office
$73.3k - $90.5k
...Jersey seeks a Senior Client Manager to independently manage a portfolio of commercial clients. Responsibilities include evaluating risks, negotiating quotations, and ensuring high levels of client satisfaction. The ideal candidate will have over 3 years of experience in...- ...Fulfillment Analyst (Fintech) Get in on the ground floor of this innovative Fintech opportunity. Our client, a successful financial technology and services company, currently seeks candidates for their in-office Treasury Fulfillment Analyst position. The Treasury...Work at officeFlexible hoursNight shift
- ...Information Security Risk Management Lead The Information Security Risk Management... ...quarterly ORM/ERM reports and present to Technology Leadership, Audit, and regulatory bodies... ...to stakeholders on the evolving cybersecurity and technology risk landscape. Policy...
- ...Woodbridge Township, NJ, is looking for an Internal Audit Consulting Manager to oversee various audit engagements primarily focused on risk management and compliance services. Ideal candidates will have significant experience in internal audit processes and client...
- ...EisnerAmper LLP is looking for an experienced Internal Audit Consulting Manager to join their Risk & Compliance Services practice in Woodbridge Township, NJ. The ideal candidate will oversee internal audit and risk management engagements and manage various consulting...
- ...Senior Manager, Change Lead – Customer Risk Assessment (Fixed Term) – Sydney, Australia The Senior Manager – Change Lead is responsible... ..., executable changes across people, process, governance and technology. Support cross‑functional delivery across local, regional and...Full timeTemporary workFixed term contractWork at officeLocal areaShift work3 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Technology Risk Director- CyberSecurity. Be the first to apply!

