SVP & Director of IT Governance - Cyber Security
WesBanco Bank
Job DescriptionSUMMARY:Provides strategic leadership and operational oversight of the Bank's technology governance, risk management, and compliance (GRC) program. Serves as a primary liaison among Technology, Risk, Audit, and executive leadership to ensure the technology risk posture aligns to regulatory expectations, enterprise risk appetite, and industry frameworks. Requires deep expertise in banking technology regulations, enterprise risk frameworks, and control design, balanced with the executive presence to communicate complex risk themes to technical and non-technical audiences, including Board-level committees.ESSENTIAL DUTIES AND RESPONSIBILITIES:To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.Owns and matures the enterprise IT GRC program, including policies, standards, procedures, and control frameworks aligned to NIST CSF 2.0, CIS Controls v8, FFIEC CAT/Architecture, and applicable regulatory guidance (OCC, FDIC, Federal Reserve). Establishes and maintains the technology policy hierarchy (policy standard procedure control) with defined ownership and periodic review cadence. Serves as program owner for the technology governance council structure (e.g., IT Steering, Technology Risk), including agenda-setting, reporting, and action item tracking. Operationalizes AI governance standards (NIST AI RMF, ISO/IEC 42001), including AI inventory, risk tiering, lifecycle controls, and oversight of vendor AI use cases. Directs the enterprise technology risk assessment program (annual and event-driven) across infrastructure, applications, data, cloud, and third-party environments; ensure methodology aligns to ERM/RCSA and risk appetite. Maintains and evolves the IT risk register, including risk identification, scoring, ownership, treatment plans, and risk acceptance/exception workflows. Leads risk assessment and advisory activities for emerging technologies (AI/ML, cloud, RPA), translating technical exposures into business impact and decision options. Develops and reports technology risk metrics and KRIs for senior leadership and Board committees; drive a data-driven risk culture. Serves as the primary IT GRC point of contact for regulatory examinations (OCC, FDIC, Federal Reserve) and internal/external audit engagements related to technology, cybersecurity, and operational risk. Monitors and interprets evolving regulatory requirements and supervisory guidance (FFIEC, SR letters, OCC bulletins, GLBA Safeguards, privacy laws) and translate them into actionable obligations and control updates. Manages technology audit and exam finding remediation: track issue aging, validate evidence, and ensure sustainable control improvements with clear ownership and timelines. Partners cross-functionally to support intersecting risk programs (e.g., model risk governance/SR 11-7 alignment, BSA/AML technology controls, and data governance) as applicable. Leads the technology and cybersecurity components of Third-Party Risk Management (TPRM), including onboarding due diligence, periodic reviews, and ongoing monitoring for critical/high-risk vendors. Defines vendor risk tiering criteria and control requirements for SaaS, cloud, and AI providers; ensure contract provisions address security, privacy, SLAs, and right-to-audit. Coordinates with Procurement and Legal to ensure contractual risk provisions (e.g., DPA, data handling, incident notification) are implemented and enforced. Design and implement a continuous controls monitoring (CCM) approach leveraging GRC tooling to automate evidence collection, control attestations, and targeted testing. Oversees control self-assessments (CSA) across IT domains (identity and access management, change management, vulnerability management, data protection) and validate remediation effectiveness. Partners with Cybersecurity on security control maturity assessments (CIS Controls, NIST SP 800-53) and annual FFIEC CAT completion. Leads or co-leads the annual SOC 1/SOC 2 review process for material service providers and support SOX ITGC scoping, testing coordination, and remediation tracking (as applicable). Builds, leads, and mentors a team of GRC analysts/specialists; establish performance expectations, succession coverage, and professional development pathways. Drives GRC tool strategy and platform optimization (e.g., ServiceNow GRC, Archer, or equivalent) to enable scalable risk and compliance workflows. Develops and manages the IT GRC program budget, including tooling, vendor contracts, and staffing plans. Champions a risk-aware culture through executive communications, training, and proactive engagement with Technology and business teams. OTHER REQUIREMENTS:Banking is a highly regulated industry and you will be expected to acquire and maintain a proficiency in the Bank's policies and procedures, and adhere to all laws, rules and regulations that are applicable to your conduct and the work you will be performing. You will also be expected to complete all assigned compliance training in a timely manner.Proficient in Microsoft Office products including Outlook, Word, PowerPoint and Excel.Deep working knowledge of FFIEC IT Examination Handbook, NIST CSF , CIS Controls , , and NIST SP 800-63B. Strong familiarity with AI governance frameworks including NIST AI RMF and ISO/IEC 42001. Proficiency with ITGC/SOX (as applicable) and SOC 2 review processes. Working knowledge of cloud risk and compliance considerations (AWS, Azure, or GCP) and shared responsibility models. Experience configuring and operating GRC platforms (ServiceNow, Archer, or equivalent). Understanding of networking concepts (e.g., firewalls, VPNs, DNS) and security protocols (e.g., TLS, SSH). , Ability to learn other banking systemsAbility to manage or materially contribute to regulatory examinations and audit cycles, including remediation of findings. Ability to learn new technologies and keep up with industry trends. Professional demeanor in appearance, interpersonal relations, work ethic and attitude.Ability to interact effectively across all levels of the organization.Demonstrated ability to manage multiple priorities and delegate effectively to meet critical deadlines under difficult time restraints.Understanding of account documentation and retention requirements. Excellent verbal and written skills and presentation skills with the ability to define and solve problems.Team player with a positive outlookDemonstrated leadership ability and skills. Ability to work independently and meet communicated deadlines.Excellent analytical, problem-solving and decision-making skills. Willingness to travel quarterly for onsite meetings. Job RequirementsBachelor’s degree in Information Systems, Computer Science, Business, or related field and/or equal education or experience required Minimum of 10 years of progressive experience in IT risk, GRC, cybersecurity, or technology audit required.Minimum of 3 years in a leadership or program management required. Minimum of 5 years of experience in a regulated financial institution (bank, credit union, or bank holding company); community or regional bank experience preferred. Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Systems Manager (CISM), Certified Information Systems Auditor (CISA), or Certified Risk & Information Systems Control (CRISC) are desirable. Job DetailsJob Type: Full-timeCategory: Information TechnologySalaried: Salaried
- ...evolution.This is not a “keep the lights on” IT leadership role.The organization has... ...innovation with operational stability, security, governance, cost, and risk. AI, Automation &... ...engage senior executives and Boards of Directors.· Strong business acumen and the ability...SuggestedContract work
- ...digital transformation.This position goes beyond traditional IT management responsibilities.Our organization has made substantial... ...a mere support function.· Balance innovation with stability, security, governance, cost, and risk management.AI, Automation & Creativity· Lead...SuggestedContract work
- ...solutions, strong knowledge of cybersecurity governance, and experience in managing technology... ...innovation with operational stability, security, and risk, and must possess exceptional... ...with senior executives and Boards of Directors. A Bachelor's degree in a relevant field...Suggested
- ...ideal CIO for the company will have over 10 years' of progressive IT leadership experience, with a strong background in technology... ...environments, enterprise resource planning solutions, and cybersecurity governance. Experience in leading technology modernization and digital...Suggested
$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities... ...confidence, and proactively manage to secure success.Recruiting for this role ends on... ...with policy-as-code, multi-project governance, and regulatory or compliance frameworks...SuggestedLocal areaVisa sponsorship$163.4k - $322.1k
...Deloitte is seeking an AWS Cloud Security Senior Manager to lead the design and delivery... ...delivery of cloud security services within our Cyber practice. In this role, you will advise... ...the development of security strategies, governance frameworks, and secure architectures for...Local areaVisa sponsorship$163.4k - $322.1k
...seeking a Senior Manager to lead how clients secure their Google Cloud Platform (GCP) cloud... ...development capabilities.Our Deloitte Cyber team understands the unique challenges and... ...incentive program, subject to the rules governing the program, whereby an award, if any, depends...Local areaVisa sponsorship$163.4k - $322.1k
Position Summary Cyber Security Architecture Senior Manager - Strategy, Growth and Transformation Deloitte is seeking a Senior Manager... ...discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various...Local areaVisa sponsorship$134.5k - $265.1k
Position Summary Join Deloitte’s Cyber team as an AWS Cloud Security Manager and help organizations address the complex challenges and opportunities... ...frameworksExperience with AI/ML security risks and governance practices, including model and data protection, prompt...Local areaVisa sponsorship- ...technical expertise combined with strong program governance, execution discipline, and organizational... ...deployment and integration of:Endpoint Security Tooling (EDR, XDR, Defender, DLP, device... ...CoordinationAlign and coordinate across:IT OperationsSecurity EngineeringService...Work at officeRemote workFlexible hours
$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities... ...confidence, and proactively manage to secure success. Recruiting for this role ends on... ...cloud cyber risk engagements across governance, identity, application security, platform...Local areaVisa sponsorship$163.4k - $322.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities... ...confidence, and proactively manage to secure success. Recruiting for this role ends on... ...AI security playbooks and governance controls covering encryption, access control...Work at officeLocal areaVisa sponsorship$170.51k - $341.03k
...firm of K&L Gates is seeking a Director, Digital User Experience.... ...offices can work productively, securely, and with minimal friction, and... ...; Security and Information Governance Leadership; Practice Innovation... ..., digital workplace, or IT operations environments, including...Full timeContract workTemporary workWork at officeLocal areaRemote workWeekend workAfternoon shift- ...efficiencies, our best-in-class team leverages methodologies, governance and systems that are unparalleled in the engineering space. Are... ...approval from the Project Manager and Global Discipline Director for the implementation of procedures and work processes that do...Local areaFlexible hours
- ...ItSeeking to hire a Chief Information Officer of IT for a leading higher education IT... ...Client and the Client's leadership, the Director leads and manages the IT department, serving... ...the organization's IT strategic plans, security, systems, applications, infrastructure, and...Contract workRemote workNight shift
$134.5k - $265.1k
Position Summary Cyber Digital Trust and Online Safety ManagerThe Digital Trust... ...flagging mechanisms, training data, and governance controls based on testing findings.... ...cross-functional stakeholders to strengthen security, trust, safety, and responsible use outcomes...Local areaVisa sponsorship$155.6k - $306.8k
Position Summary M&A IT Manager Our Deloitte Strategy & Transactions team helps guide clients through their most critical moments... ...with deal closing, integration and divestiture strategy and governance, integration and divestiture accounting and reporting services,...Local areaVisa sponsorshipFlexible hours$134.5k - $265.1k
Position Summary Join Deloitte’s Cloud Cyber Risk practice and help organizations secure cloud transformation at scale. As a Cloud Architect, Manager... ...annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various...Local areaVisa sponsorship$114.1k - $268.18k
...currently seeking a Manager, SailPoint Identity Governance Technical Lead to join our Advisory... ...and implement robust, scalable, and secure configurations withinSailPoint ISC; accountable... ...owners, business stakeholders, and IT teams to gather requirements,provide updates...H1bLocal area$163.4k - $322.1k
Position Summary Join Deloitte’s Cloud Cyber Risk practice and help organizations secure cloud transformation at scale. As a Cloud Security Architect... ...annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various...Local areaVisa sponsorship- ...Director of TechnologyLead the future of analytical instrumentation. As the Director of Technology, you will be the senior technical authority shaping the next generation of analyzer platforms—driving innovation, setting the technology roadmap, and solving the toughest...
- ...to $270,300About AccentureAccenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services...Full timeWork experience placementLive inWork at officeLocal area
$163.4k - $322.1k
Position Summary Cyber Oracle Cloud Security - Senior Manager / Associate Vice President, Engineering Management Our Deloitte Cyber team... ...SaaS, Oracle Cloud Infrastructure, and Oracle Access Governance technologiesServe as a subject matter expert for senior business...Local areaVisa sponsorship- ...Description Description: Job Posting: IT Manager / Application Systems Analyst Company... ...IS responsibilities, ensuring systems are secure, reliable, well documented, and aligned... ...checklists • Support audits, cyber insurance requests, vendor risk assessments...Full timeWork at officeRemote workDay shift
$141.2k - $278.3k
...Summary Google Infrastructure and Security Lead ArchitectJoin our AI & Engineering... ...continuous compliance against evolving cyber threats. You will collaborate closely with... ..., Folders, Projects) tailored to client governance and billing requirements.Design...Local areaVisa sponsorshipFlexible hours- ...experience leading Major Incident Management within a large enterprise IT environment.Demonstrated experience administering enterprise IT... ...Title: IT Incident ManagerBusiness Unit: TechnologyReports to: Director of Service QualityPosition Overview:The IT Incident Manager is...Full timeWork at officeLocal areaRelocationNight shift
$124k - $280k
...challenges and drive success in finance, operations, human capital, and governance. You will be part of a team that supports clients in their... ...members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all.Applications will be accepted...Full timeH1b- Corporate Security Engineering - Lead Engineer RoleAt BNY, our culture allows us to run our company... ..., vulnerability management, identity/access governance, and logging/SIEM integrations; ability to partner effectively with Cyber and Risk/Compliance.Excellent communication,...Work at officeRemote workWorldwideFlexible hours
- ...sector innovations into government. The SEI works closely... ...Threat Analysis (TA) Directorate conducts research and... ...Artificial Intelligence (AI) Security, Malware and... ...team works to improve cyber-tradecraft analysis within... ...(including security, IT, contracting, and human...Full timeWork experience placementWork at office
- ...software engineering and cybersecurity and serves as a national resource for secure, resilient software systems. The SEI works closely with academia, the U.S. Department of War, other government organizations, and industry to improve the development, acquisition, and...Full timeFor contractorsWork experience placementWork at officeRelocation package
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SVP & Director of IT Governance - Cyber Security. Be the first to apply!
- cybersecurity manager Pittsburgh, PA
- cyber security lead Pittsburgh, PA
- director - cyber security Pittsburgh, PA
- cyber Pittsburgh, PA
- IT security Pittsburgh, PA
- IT cyber security Pittsburgh, PA
- cybersecurity certificate Pittsburgh, PA
- cybersecurity Pittsburgh, PA
- remote cyber security Pittsburgh, PA
- cybersecurity administrator Pittsburgh, PA


