SVP & Director of IT Governance - Cyber Security
WesBanco Bank
Job DescriptionSUMMARY:Provides strategic leadership and operational oversight of the Bank's technology governance, risk management, and compliance (GRC) program. Serves as a primary liaison among Technology, Risk, Audit, and executive leadership to ensure the technology risk posture aligns to regulatory expectations, enterprise risk appetite, and industry frameworks. Requires deep expertise in banking technology regulations, enterprise risk frameworks, and control design, balanced with the executive presence to communicate complex risk themes to technical and non-technical audiences, including Board-level committees.ESSENTIAL DUTIES AND RESPONSIBILITIES:To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.Owns and matures the enterprise IT GRC program, including policies, standards, procedures, and control frameworks aligned to NIST CSF 2.0, CIS Controls v8, FFIEC CAT/Architecture, and applicable regulatory guidance (OCC, FDIC, Federal Reserve). Establishes and maintains the technology policy hierarchy (policy standard procedure control) with defined ownership and periodic review cadence. Serves as program owner for the technology governance council structure (e.g., IT Steering, Technology Risk), including agenda-setting, reporting, and action item tracking. Operationalizes AI governance standards (NIST AI RMF, ISO/IEC 42001), including AI inventory, risk tiering, lifecycle controls, and oversight of vendor AI use cases. Directs the enterprise technology risk assessment program (annual and event-driven) across infrastructure, applications, data, cloud, and third-party environments; ensure methodology aligns to ERM/RCSA and risk appetite. Maintains and evolves the IT risk register, including risk identification, scoring, ownership, treatment plans, and risk acceptance/exception workflows. Leads risk assessment and advisory activities for emerging technologies (AI/ML, cloud, RPA), translating technical exposures into business impact and decision options. Develops and reports technology risk metrics and KRIs for senior leadership and Board committees; drive a data-driven risk culture. Serves as the primary IT GRC point of contact for regulatory examinations (OCC, FDIC, Federal Reserve) and internal/external audit engagements related to technology, cybersecurity, and operational risk. Monitors and interprets evolving regulatory requirements and supervisory guidance (FFIEC, SR letters, OCC bulletins, GLBA Safeguards, privacy laws) and translate them into actionable obligations and control updates. Manages technology audit and exam finding remediation: track issue aging, validate evidence, and ensure sustainable control improvements with clear ownership and timelines. Partners cross-functionally to support intersecting risk programs (e.g., model risk governance/SR 11-7 alignment, BSA/AML technology controls, and data governance) as applicable. Leads the technology and cybersecurity components of Third-Party Risk Management (TPRM), including onboarding due diligence, periodic reviews, and ongoing monitoring for critical/high-risk vendors. Defines vendor risk tiering criteria and control requirements for SaaS, cloud, and AI providers; ensure contract provisions address security, privacy, SLAs, and right-to-audit. Coordinates with Procurement and Legal to ensure contractual risk provisions (e.g., DPA, data handling, incident notification) are implemented and enforced. Design and implement a continuous controls monitoring (CCM) approach leveraging GRC tooling to automate evidence collection, control attestations, and targeted testing. Oversees control self-assessments (CSA) across IT domains (identity and access management, change management, vulnerability management, data protection) and validate remediation effectiveness. Partners with Cybersecurity on security control maturity assessments (CIS Controls, NIST SP 800-53) and annual FFIEC CAT completion. Leads or co-leads the annual SOC 1/SOC 2 review process for material service providers and support SOX ITGC scoping, testing coordination, and remediation tracking (as applicable). Builds, leads, and mentors a team of GRC analysts/specialists; establish performance expectations, succession coverage, and professional development pathways. Drives GRC tool strategy and platform optimization (e.g., ServiceNow GRC, Archer, or equivalent) to enable scalable risk and compliance workflows. Develops and manages the IT GRC program budget, including tooling, vendor contracts, and staffing plans. Champions a risk-aware culture through executive communications, training, and proactive engagement with Technology and business teams. OTHER REQUIREMENTS:Banking is a highly regulated industry and you will be expected to acquire and maintain a proficiency in the Bank's policies and procedures, and adhere to all laws, rules and regulations that are applicable to your conduct and the work you will be performing. You will also be expected to complete all assigned compliance training in a timely manner.Proficient in Microsoft Office products including Outlook, Word, PowerPoint and Excel.Deep working knowledge of FFIEC IT Examination Handbook, NIST CSF , CIS Controls , , and NIST SP 800-63B. Strong familiarity with AI governance frameworks including NIST AI RMF and ISO/IEC 42001. Proficiency with ITGC/SOX (as applicable) and SOC 2 review processes. Working knowledge of cloud risk and compliance considerations (AWS, Azure, or GCP) and shared responsibility models. Experience configuring and operating GRC platforms (ServiceNow, Archer, or equivalent). Understanding of networking concepts (e.g., firewalls, VPNs, DNS) and security protocols (e.g., TLS, SSH). , Ability to learn other banking systemsAbility to manage or materially contribute to regulatory examinations and audit cycles, including remediation of findings. Ability to learn new technologies and keep up with industry trends. Professional demeanor in appearance, interpersonal relations, work ethic and attitude.Ability to interact effectively across all levels of the organization.Demonstrated ability to manage multiple priorities and delegate effectively to meet critical deadlines under difficult time restraints.Understanding of account documentation and retention requirements. Excellent verbal and written skills and presentation skills with the ability to define and solve problems.Team player with a positive outlookDemonstrated leadership ability and skills. Ability to work independently and meet communicated deadlines.Excellent analytical, problem-solving and decision-making skills. Willingness to travel quarterly for onsite meetings. Job RequirementsBachelor’s degree in Information Systems, Computer Science, Business, or related field and/or equal education or experience required Minimum of 10 years of progressive experience in IT risk, GRC, cybersecurity, or technology audit required.Minimum of 3 years in a leadership or program management required. Minimum of 5 years of experience in a regulated financial institution (bank, credit union, or bank holding company); community or regional bank experience preferred. Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Systems Manager (CISM), Certified Information Systems Auditor (CISA), or Certified Risk & Information Systems Control (CRISC) are desirable. Job DetailsJob Type: Full-timeCategory: Information TechnologySalaried: Salaried
- ...analysis to advise the Executive Director and leadership team on risks,... .... Manage external IT consultants and technology vendors... ...Establish practical data-governance standards and ensure appropriate... ...technology roadmap; stronger security, fewer disconnected systems,...Suggested
- ...evolution.This is not a “keep the lights on” IT leadership role.The organization has... ...innovation with operational stability, security, governance, cost, and risk. AI, Automation &... ...engage senior executives and Boards of Directors.· Strong business acumen and the ability...SuggestedContract work
$114.1k - $268.18k
...your capabilities, then consider a career in Advisory.KPMG is currently seeking a Manager, SailPoint Identity Security Cloud and Saviynt Identity Governance to join our Advisory Technology Organization.Responsibilities:Lead SailPoint Identity Security Cloud (ISC) and...SuggestedH1bLocal area- ...Job Description Job Description The IT Manager will plan, direct, and oversee the... ...enterprise information technology strategy, governance, and systems architecture across all... ...investments with business growth, ensuring secure and scalable enterprise systems, and leading...Suggested
$120k - $140k
...review the 2025 Environmental Social and Governance report at . Follow: LinkedIn, Twitter, Instagram... ..., change‑management processes, and security controls for the HCM platform. Work... ...governance and change management procedures in an IT environmentAbility to manage multiple...SuggestedFor contractorsRemote work$144.9k - $265.8k
...identity programs. ~ Translating business, security and regulatory needs into practical identity architecture, migration approaches, governance models and operating practices. ~... ..., governance, privileged access or IT service management platforms. ~ Microsoft...Summer holidayFlexible hours$134.5k - $265.1k
Position Summary Cyber Network Security Architecture - Manager / Manager, Strategy, Growth, and Transformation Are you interested in improving... ..., technical requirements, and success criteria.Apply governance, risk, and compliance principles and common cybersecurity...Local areaVisa sponsorship- ...technical expertise combined with strong program governance, execution discipline, and organizational... ...deployment and integration of:Endpoint Security Tooling (EDR, XDR, Defender, DLP, device... ...CoordinationAlign and coordinate across:IT OperationsSecurity EngineeringService...Work at officeRemote workFlexible hours
- ...Director of TechnologyLead the future of analytical instrumentation. As the Director of Technology, you will be the senior technical authority shaping the next generation of analyzer platforms—driving innovation, setting the technology roadmap, and solving the toughest...
$163.4k - $322.1k
Position Summary Join Deloitte’s Cloud Cyber Risk practice and help organizations secure cloud transformation at scale. As a Cloud Security Architect... ...annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various...Local areaVisa sponsorship$134.5k - $265.1k
Position Summary Join Deloitte’s Cloud Cyber Risk practice and help organizations secure cloud transformation at scale. As a Cloud Architect, Manager... ...annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various...Local areaVisa sponsorship- Chief Technology Officer (CTO) Location: Pittsburgh, PA (in-person) Company: Shelfmark, Inc. About Shelfmark Shelfmark is building the next generation of industrial intelligence systems-combining computer vision, machine learning, and productized hardware...Remote work
- ...to $270,300About AccentureAccenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services...Full timeWork experience placementLive inWork at officeLocal area
- ...impact every day.The Senior Director and Head of Infrastructure &... ...infrastructure reliability, security posture, and service quality... ...reliable, well-managed technology.IT Service Management & Help... ...Finance.Executive Partnership & Governance. Act as a trusted advisor to...Full timeContract workWork at officeRemote work3 days per week
- ...Description Description: Job Posting: IT Manager / Application Systems Analyst Company... ...IS responsibilities, ensuring systems are secure, reliable, well documented, and aligned... ...checklists • Support audits, cyber insurance requests, vendor risk assessments...Full timeWork at officeRemote workDay shift
$124k - $280k
...challenges and drive success in finance, operations, human capital, and governance. You will be part of a team that supports clients in their... ...members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all.Applications will be accepted...Full timeH1b- Corporate Security Engineering - Lead Engineer RoleAt BNY, our culture allows us to run our company... ..., vulnerability management, identity/access governance, and logging/SIEM integrations; ability to partner effectively with Cyber and Risk/Compliance.Excellent communication,...Work at officeRemote workWorldwideFlexible hours
- ...software engineering and cybersecurity and serves as a national resource for secure, resilient software systems. The SEI works closely with academia, the U.S. Department of War, other government organizations, and industry to improve the development, acquisition, and...Full timeFor contractorsWork at officeRelocation package
- ...sector innovations into government. The SEI works closely... ...Threat Analysis (TA) Directorate conducts research and... ...Artificial Intelligence (AI) Security, Malware and... ...team works to improve cyber-tradecraft analysis within... ...(including security, IT, contracting, and human...Full timeWork at office
$124k - $280k
...challenges and drive success in finance, operations, human capital, and governance. You will be part of a team that supports clients in their... ...members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all.Applications will be accepted...Full timeH1b- At Alstom, we understand transport networks and what moves people. From high-speed trains, metros, monorails, and trams, to turnkey systems, services, infrastructure, signalling and digital mobility, we offer our diverse customers the broadest portfolio in the industry....Full timeWorldwideFlexible hours
$204k - $306k
..., there is a rise in scammers pretending to be real Duolingo employees. Duolingo and our employees will never ask for your Social Security number, bank details, or passport info, and we’ll never ask you to deposit a check, purchase equipment, or exchange money during the...Work experience placement$116.18k - $237.38k
...is $116,175 to $237,375. You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational...Work at officeLocal areaVisa sponsorship- ...the world. HDR is looking for a Value Engineer & Project Risk Management Lead. This position will assist the Value Engineering/Risk Director in the development of strategic visions and tactical plans, contemplate and participate in the hiring process, manage workshare...Work at office
- ...Nurick is actively seeking a Director of Technology Operations to... ...Serve as a key liaison between IT and business stakeholders to... ..., network operations, security, disaster recovery, business... ...legislative matters at all levels of government. Our services span...Contract workRemote work
- ...Technology Group and be located at one of our IT Hubs: Cleveland, Ohio; Birmingham,... ...across application, infrastructure, and security teams to deliver a stable, reliable, and... ...operational metrics and reduce toil.Ensure Governance, Risk & Compliance; maintain adherence to...Permanent employmentWork at officeShift workAfternoon shift
- ...closely with legal, compliance, regulatory, governance and related). Strategy and direction for... ...Tools, Coaching Others, Design Thinking, IT Environment, Software Process Improvement... ...(FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage...Full timeTemporary workPart timeWork experience placementWork at office
- ...infrastructure modernization initiatives and ensuring secure, reliable, and scalable services across... ...Direct the administration, security, and governance of Active Directory, Microsoft 365,... ...experience. ~7+ years of experience in IT infrastructure, cloud engineering, or...Remote work
$100.1k - $223.8k
...and Informatica platforms, ensuring stable, secure, and highly available database services through disciplined operational governance and execution.• Drive Automation and Operational... ....Preferred SkillsInformation Security, IT Architecture, Network Administration, Network...Full timeTemporary workPart timeWork experience placementWork at office$134.5k - $265.1k
...is $134,500 to $265,100. You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational...Local areaVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SVP & Director of IT Governance - Cyber Security. Be the first to apply!
- cybersecurity manager Pittsburgh, PA
- director - cyber security Pittsburgh, PA
- cyber security lead Pittsburgh, PA
- cyber Pittsburgh, PA
- IT security Pittsburgh, PA
- cyber security Pittsburgh, PA
- cybersecurity software engineer Pittsburgh, PA
- cyber security sales Pittsburgh, PA
- cyber security part time Pittsburgh, PA
- cyber security intern Pittsburgh, PA


