Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Chief Cybersecurity Risk Officer

$300k - $400k

Truist

The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.Need Help?If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).Regular or Temporary:RegularLanguage Fluency: English (Required)Work Shift:1st shift (United States of America)Please review the following job description:The Chief Cybersecurity Risk Officer (CCRO) is a senior executive position responsible for providing comprehensive risk oversight of the organization's cybersecurity organization. Reporting to the Chief Risk Information Officer (CIRO), this role serves as a critical second line of defense function, ensuring effective risk management across cybersecurity, while supporting the institution's strategic objectives. This role will serve as the Risk Oversight Leader for all functions within Cybersecurity. This role will lead and implement the cyber risk oversight for Truist which includes: 1) Serve as the Chief Cybersecurity Risk Officer with independent oversight and challenge to the Chief Information Security Officer (CISO) for all risk types; 2) Establish and manage cyber risk oversight – inclusive of delivery of independent assessments and continuous monitoring; 3) Provide guidance to senior leaders across the company on critical cybersecurity issues for both internal and external stakeholders; 4) Use judgment to escalate significant issues and emerging risks; communicate cyber domain maturity and residual risk to senior management including up to the Board of Directors; 5) consistently and appropriately apply second line of defense corporate authority for managing Truist’s cyber risk.Essential Duties and ResponsibilitiesFollowing is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time. 1. Strategic Leadership - Develop and maintain the enterprise technology management framework, incorporating emerging risks related to cyber security. Establish risk appetite statements, key risk indicators, and thresholds for cyber security across the organization. Provide independent assessment and challenge of cyber security initiatives, ensuring alignment with risk appetite and regulatory expectations. Lead the evaluation of strategic cyber security decisions and their impact on the organization's risk profile.2. Risk Leadership - Provide independent risk oversight (i.e., second line of defense/LOD2) for Truist Protection Services (TPS) through the effective identification, mitigation, monitoring and reporting of operational, technology and compliance related risks within Core Technology and Cyber. This role includes independently challenging LOD1 self-assessments and providing effective challenges of CCS to ensure applicable risk types remain within our stated risk appetite.Additionally, this role is responsible for integrating and aligning all cybersecurity risk with business unit risk, controls and assessments. Work in conjunction with other Risk Oversight Officers (RCSA, IRM, MRMD etc.) to ensure a common set of requirements in establishing a comprehensive risk management approach & transparent decision making and prioritization of technology activities.3. Governance and Oversight - Serve as a non-voting member of the first line owned Technology, Data and Operations risk committee, a voting member of the CIRO led risk committee and actively participate in the Enterprise and Board Risk Committees (BRC) This includes (a) reviewing and effectively challenging technology and data risk policies, standards, and procedures, (b) overseeing the assessment and monitoring of critical technology vendors and third-party service providers, and (c) ensuring compliance with regulatory requirements and supervisory guidance related to cybersecurity risk.4. Risk Assessments - Define, communicate and drive the Cyber Risk Frameworks and direct the assessment of information security and cyber risk. Provide independent assessment and oversight of the maturity of CCS and adequacy of cybersecurity controls in meeting agreed business outcomes for cybersecurity. Assessments should leverage agreed upon metrics produced by Business Units (LOD1), but challenge and validated as appropriate.5. Risk Continuous Monitoring - Oversee the evaluation of the cybersecurity strategy and operations for potential risks and biases. Furthermore, monitor the cybersecurity project portfolios, developmental methodologies and progress on project milestones. Lead the review of significant cyber incidents and direct remediation efforts to remediate incident root causes. Using monitoring routines to identify emerging risk and/or consider accelerate risk reviews of technology policies/standards, business processes or control assessments. 6. 6. Risk Reporting - Design the standard recurring reporting packages for Cyber Security to support ongoing reporting of identification, mitigation, monitoring of material risks. These reporting packages will be used for internal discussions and/or governance reporting.7. Regulatory Engagement Oversight - Serve as the primary risk point of contact with regulators on cyber risk matters. This includes presenting regular risk assessments and updates to the Board and external stakeholders and collaborating with Truist Audit Services (TAS) / external auditors on cybersecurity reviews. Additionally, this role should provide effective challenge and validation procedures on all regulatory remediations where management actions are being reviewed and validated for closure.8. Talent Management - Lead, manage and develop teammates directly and indirectly. Leverage industry insights to influence enterprise technology talent management through recommendations to Truist senior leadership to inform decisions on resource allocations (both competence and capacity). Where needed, encourage and facilitate Cybersecurity Risk education series, skills training, and industry participation in conference to elevate competence of the risk teammates and enable risk management to meet its objectives of maintaining a strong stature and influence with the company.9. Risk Culture - Promote the culture of Risk Management across the organization by empowering risk teammates to embrace leadership direction, identify risk exposure in everyday operations and champion improving the enterprise programs for building a sustainable business model, meeting the objectives outlines by leadership and the Board of Directors.QualificationsRequired Qualifications:The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.1. Bachelor’s degree in computer science, Information Systems, or data/technology related field; MBA preferred.2. Fifteen+ (15+) years of progressive experience in cybersecurity relevant roles within a Category 2 or 3 Large Financial Institution (LFI) with a deep understanding of regulatory requirements for complex financial services organization (including both Federal Reserve and FDIC regulations). In depth understanding of how data is captured, transformed, and used and the ability to connect end-to-end processes independently.3. Fifteen+ (15+) years of experience or equivalent proficiency in managing people with demonstrated high competency in recruiting, developing, and coaching/mentoring.4. Fifteen+ (15+) years of experience in a financial institution with emphasis on risk management or equivalent work experience. 5. Extensive knowledge on information security, cyber risk, core technology infrastructure, cloud operations, and technology operations.6. Experience in leveraging modern tools to measure effective of technology and cyber controls.7. Experience with enterprise architecture, reference architectures and emerging technologies.8. Knowledge of key technology rules/regulations and technology risk management practices (e.g. Federal Financial Institutions Examination Council (FFIEC), Control Objectives for Information and Related Technology (COBIT), NIST (National Institute of Standards and Technology), Information Technology Infrastructure Library (ITIL).9. Excellent leadership skills including the ability to lead direct and indirect reports, including executive level leaders.10. Excellent communication (verbal and written), presentation and facilitation skills; ability to influence and communicate with impact with C-suite executives and board members. This includes the ability to translate technical concepts for various audiences.11. Excellence in building and leading high-performing teamsPreferred Qualifications:1. Bachelor’s degree in finance or business equivalent.2. Professional designations such as Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (Information Systems Audit and Control Association) (CRISC), Certified Project Manager (CPM) Strategic business and financial planning experience.3. Have an innovation mindset and strong understanding of industry recognized tooling to support enterprise data programs and strong control environments.4. Experience with audit processes and techniques5. Exposure to and experience with adapting cybersecurity capabilities in a post Mythos threat environment.The annual base salary for this position is $300,000 to $400,000.General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.EEO is the LawE-VerifyIER Right to WorkJob SummaryJob number: R0118093Profession: Audit, Risk, Legal and Finance

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Chief Cybersecurity Risk Officer in Charlotte, NC vacancy
  •  ...Chief Cybersecurity Risk Officer (CCRO) About the Company Popular provider of software & services to non-profit organizations Industry Financial Services Type Privately Held, Private Equity-backed Founded 2019 Employees 10,001+ Categories... 
    Suggested

    Confidential

    Charlotte, NC
    4 days ago
  •  ...Chief Risk Officer (CRO) About the Company State-chartered digital asset bank building risk infrastructure for the fiat-crypto bridge. Industry Banking Type Privately Held About the Role The Company is seeking a Chief Risk Officer to establish and... 
    Suggested

    Confidential

    Charlotte, NC
    3 days ago
  • $133.37k - $156.9k

     ...at—all from Day One.Job DescriptionThe Technology, Cybersecurity, and AI, Digital, and Innovation Risk team provides support to our business partners to maintain...  ...computer skills, especially Microsoft Office applicationsApplicable professional certifications (... 
    Suggested
    Full time
    Work at office
    Local area

    US Bank

    Charlotte, NC
    4 days ago
  • $105.4k - $207.8k

     ...could be the place for you. Traditional security and integrated risk programs have often been unsuccessful in unifying the need to...  ...services • Experience responding to and recovering from cybersecurity incidents • Hands-on experience configuring, tuning, and operationalizing... 
    Suggested
    Local area
    Visa sponsorship

    Deloitte

    Charlotte, NC
    3 days ago
  • $73.2k - $95k

     ...Process Automation Analyze, simplify, and automate Technology Chief Risk Officer (TCRO) processes using Microsoft SharePoint, Microsoft...  ...(2LOD) oversight activities across multiple technology and cybersecurity programs, ensuring assessments, reviews, action items, and... 
    Suggested
    Full time
    Part time
    Work at office
    Shift work
    Day shift

    Truist Financial

    Charlotte, NC
    2 days ago
  • $96k - $181k

     ...Road, Brooklyn OhioAbout the JobReporting to the Director of Cybersecurity Risk Oversight, the Sr. Cybersecurity Risk Oversight Professional...  ...requirements and operational processes.Familiarity with Microsoft Office tools such as Excel, Teams, and the proven ability to learn... 
    Full time
    Work at office
    Flexible hours
    Night shift

    KeyBank

    Charlotte, NC
    3 days ago
  •  ...apply now.We are currently seeking a Cyber Risk Consultant to join our team in Charlotte...  ...Consultant to join a high-performing cybersecurity and technology risk team supporting a complex...  ..., Business Information Security Office (BISO) operations, and emerging AI governance... 
    Full time
    Temporary work
    Work at office
    Remote work
    Flexible hours

    NTT

    Charlotte, NC
    5 days ago
  •  ...starting drive, mental agility and group-approach to lead teams in the forefront of cybersecurity? Are you ready to put your classroom experience into action? Protecting our investors from risk requires clear goals, big ideas and resolute action. As part of the Analyst... 
    Full time
    Internship
    Summer internship

    Vanguard

    Charlotte, NC
    1 day ago
  •  ...Required: Yes Minimum Qualifications ~ Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or...  ...management programs. ~ Experience with cryptographic governance, risk assessments, and regulatory compliance within large financial... 
    Contract work

    The Judge Group

    Charlotte, NC
    2 days ago
  •  ...effectively configure scans and interpret results. Governance, Risk, and Compliance (GRC) Enables the analyst to align scan...  ...across stakeholders. In this role, candidates will: Work in Cybersecurity as part of the Information Protection Scanning team, with... 
    Work experience placement

    InterSources

    Charlotte, NC
    5 days ago
  • $43.59 - $51.59 per hour

     ...automation solutions, and manage the end-to-end lifecycle of cybersecurity metrics. Responsibilities: Consult on or participate...  ...to audiences inside and outside of Cybersecurity Manage risk, provide control oversight, metric quality, and compliance for... 
    Hourly pay
    Permanent employment
    Contract work

    Genesis10

    Charlotte, NC
    5 days ago
  •  ...Description:Pacific Life is seeking an Actuary & Director, Model Risk Management to join our team. This role is on-site 4 days per...  ...Charlotte, NC. If you are not currently located near one of our offices, we offer comprehensive relocation assistance.This role is a strong... 
    Full time
    Work from home
    Relocation package
    Flexible hours
    1 day per week

    Pacific Life Insurance Company

    Charlotte, NC
    7 days ago
  •  ...join the BISO organization. We are back in the office collaborating for greater outcomes! This role is a...  ...critical role. This is a role for an experienced cybersecurity professional who can identify meaningful risks, turn complex data into actionable insights, and confidently... 
    Work experience placement
    Work at office
    Remote work
    Visa sponsorship
    3 days per week

    Wells Fargo

    Charlotte, NC
    5 days ago
  • $102.8k - $176k

     ...our Enterprise Sales Organization to focus on growing our cybersecurity and risk consulting practice. The Strategic Account Manager is responsible...  ..., audit committee members, compliance leaders, privacy officers, and business unit executives to enable multi-threaded... 
    Full time
    Contract work
    Work experience placement
    Internship
    Work at office
    Local area

    RSM International

    Charlotte, NC
    5 days ago
  •  ...operation of the Securiti.ai data scanning platform within the Cybersecurity organization. This position focuses on configuring, executing,...  ...with engineering teams and data owners to ensure accurate risk identification and remediation. The analyst will also drive governance... 
    Contract work

    PTR Global

    Charlotte, NC
    3 days ago
  •  ...security FAQs, intake and triage of security questionnaires and risk assessments, and security documentation and reporting. Define...  ...in one or more of the following: Information security or cybersecurity; Cloud engineering, data engineering, or platform operations with... 
    Internship

    Compunnel

    Charlotte, NC
    2 days ago
  • What You'll Do:Serve as the primary risk SME for data-related risks across Personal Wealth.Provide independent guidance and challenge...  ...Collaborate with Enterprise Data Governance, Technology Risk, Cybersecurity, Privacy, and other enterprise partners to promote consistent... 
    Full time

    Vanguard

    Charlotte, NC
    5 days ago
  • $105k

     ...leading the organization’s GRC program, focusing on ISO 27001, risk assessments, and compliance frameworks, with high visibility...  ...leadership. The ideal candidate will have strong experience with cybersecurity controls, data privacy, and GRC program implementation,... 
    Remote work
    Relocation

    The Phoenix Group

    Charlotte, NC
    2 days ago
  • $134.5k - $265.1k

    Position Summary Financial Services Manager - Financial Risk Our Deloitte Regulatory, Risk & Forensic team helps client leaders...  ...user stories or business needsAdvanced proficiency in Microsoft Office (PowerPoint, Excel, Visio) Information for applicants with a... 
    Work at office
    Visa sponsorship

    Deloitte

    Charlotte, NC
    7 days ago
  • $139k - $170k

     ...reinsurance and insurance solutions and services to control and manage risk. Applying “The Art & Science of Risk,” SCOR uses its industry-...  ...travel on occasion.Skilled at collaborating with others across offices and geographical locations.Basic knowledge and awareness of the... 
    Price work
    Temporary work
    Summer work
    Work at office
    Local area
    Remote work
    Worldwide
    Relocation package
    Flexible hours
    2 days per week
    3 days per week

    SCOR Global Life

    Charlotte, NC
    6 days ago
  •  ...CA, Omaha, NE, or Charlotte, NC. This role is hybrid with four office days per week. If you are not currently located near one of our...  ...a back‑office function, but as a strategic lever used to manage risk, support growth, and enable business decisions. This opportunity... 
    Full time
    Work at office
    Relocation package
    Flexible hours

    Pacific Life Insurance Company

    Charlotte, NC
    6 days ago
  • $82.49k - $122.99k

     ...functional teamsRequired Skill and Experience Experience with Capital Markets products (e.g., Equities, Fixed Income, Derivatives) and/or Risk functions (Market Risk, Credit Risk, Operational Risk, Liquidity Risk). Experience in requirement gathering, process mapping,... 
    Full time
    Temporary work
    Relocation

    Infosys Technologies

    Charlotte, NC
    5 days ago
  • $120k - $165k

     ...SpecialtyAt AIG, we are reimagining the way we help customers to manage risk. Join us as a Actuary, Reserving - North America Specialty,...  ..., which is why we ask our team members to be primarily in the office. This approach helps us work together effectively and create a... 
    Full time
    Work at office
    Local area

    American International Group (AIG)

    Charlotte, NC
    3 days ago
  •  ...Charlotte, NC. This role follows a hybrid schedule of four days in the office (on-site). If you are not currently located near one of our...  ...management early line-of-sight into emerging opportunities or risks.Oversee renewal rate analysis, drawing insights to inform rate-setting... 
    Full time
    Work at office
    Relocation package
    Flexible hours

    Pacific Life Insurance Company

    Charlotte, NC
    5 days ago
  • $139k - $170k

     ...reinsurance and insurance solutions and services to control and manage risk. Applying “The Art & Science of Risk,” SCOR uses its industry-...  ...in the future.Hybrid Work Policy: SCOR is committed to an “in-office” culture where people can collaborate, exchange ideas, and... 
    Temporary work
    Summer work
    Work at office
    Local area
    Remote work
    Worldwide
    Relocation package
    Flexible hours
    2 days per week
    3 days per week

    SCOR Global Life

    Charlotte, NC
    3 days ago
  •  ...Charlotte, NC. If you are not currently located near one of our offices, we offer comprehensive relocation assistance.The Institutional...  ...will play a critical role in shaping the future of our Pension Risk Transfer (PRT) business. We are looking for a collaborative team... 
    Full time
    Work from home
    Relocation package
    Flexible hours
    Shift work
    1 day per week

    Pacific Life Insurance Company

    Charlotte, NC
    3 days ago
  •  ...Charlotte, NC. If you are not currently located near one of our offices, we offer comprehensive relocation assistance. This role is hybrid...  ...with numerous areas including Pricing and Product Development, Risk Management, Modeling and Sales within the Consumer Market... 
    Full time
    Work at office
    Work from home
    Relocation package
    Flexible hours
    1 day per week

    Pacific Life Insurance Company

    Charlotte, NC
    6 days ago
  •  ...About YouRequired: Bachelor's degree and 0 years related experience. Working knowledge of Microsoft Windows applications and Microsoft Office. Preferred: Ability to communicate effectively in a fast paced work environment Excellent oral and written communication skillsAble... 
    Contract work
    Work at office
    Local area

    Arthur J. Gallagher & Co.

    Charlotte, NC
    3 days ago
  •  ...Provides direction on benefit plan analysis, design, cost avoidance, risk and funding strategies Contributes to vendor financial...  ...junior colleagues and provide feedback ~ Excellent Microsoft Office skills, particularly in Excel and PowerPoint ~ State Life and... 
    Temporary work
    Work at office
    Local area
    Remote work
    Visa sponsorship
    Work visa
    Flexible hours

    WTW inc.

    Charlotte, NC
    5 days ago
  • $112.5k - $147.5k

     ...Circle's IT SOX compliance program, including annual planning, risk assessment, control documentation, testing coordination, and...  ...applications, identity and access management, SDLC processes, and cybersecurity controls.Experience with ERP systems, financial applications,... 
    Flexible hours

    Circle

    Charlotte, NC
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Chief Cybersecurity Risk Officer. Be the first to apply!