CRO - Information Security & Risk Oversight Lead
$215k - $290kBloomberg
CRO - Information Security & Risk Oversight Lead Location New York Business Area Legal, Compliance, and Risk Ref # 10052405 Description & Requirements The energy of a newsroom, the pace of a trading floor, the buzz of a recent tech breakthrough; we work hard, and we work fast - while keeping up the quality and accuracy we're known for. It's what keeps us inventing and reinventing, all the time. Our culture is wide open, just like our spaces. We bring out the best in each other through collaboration. Through our countless volunteer projects, we also help network with the communities around us, too. You can do amazing work here. Work you couldn't do anywhere else. It's up to you to make it happen. About the Role: We’re looking for an Information Security Risk Oversight Lead who can translate cybersecurity risk into executive insight and action. Sitting in the Company’s Second Line of Defense, the Chief Risk Office and reporting directly to our Head of Technology Risk, you will provide independent oversight and credible challenge across the firm’s enterprise-wide information security program. Operating at the intersection of technology, risk management, cybersecurity, governance, and strategy, you will partner with the Chief Information Security Office, Engineering, and CTO teams to ensure cyber risks are appropriately identified, measured, monitored, and aligned with the firm’s risk appetite. The "so what" is critical: your oversight will enable leadership to understand not only what the risks are, but whether they are being managed effectively—and where decisive action is required to strengthen the firm’s overall security posture. Key Responsibilities * Serve as the primary Second Line risk advisor for cybersecurity -related risks and lead independent oversight and credible challenge of First Line of Defense activities. *Identify and measure threat-actor initiated risks and risk scenarios that may impact the confidentiality, integrity, and availability of information systems. * Evaluate the design and operating effectiveness of security controls, particularly across complex, high-risk, or enterprise-scale technology initiatives. *Quantify risk and control posture to support executive decision-making through scenario analysis and metrics (e.g., KRIs, KPIs, SLA/SLOs, ALE). * Review and challenge security-driven programs and initiatives to ensure alignment with enterprise risk appetite, industry control frameworks, and regulatory expectations. * Partner closely with Information Security and Engineering teams to enhance risk awareness, accountability, and control ownership. * Identify root causes of control failures, security incidents, or systemic weaknesses and support the development of actionable, preventative recommendations. * Prepare and present risk oversight materials to senior leadership committees, internal audit, Board of Directors, and regulatory bodies as required. * Act as a strategic thought partner to senior leaders by advising on emerging threats, evolving regulatory requirements, and industry best practices. Required Qualifications * Bachelor’s Degree required. * 10+ years of experience in Information Security. * 10+ years of experience in IT or Cyber Risk Management. * Demonstrated experience operating within a Second Line of Defense or independent risk oversight function. * Strong understanding of cybersecurity control frameworks (e.g., NIST CSF, NIST 800-53, MITRE ATT&CK, ISO 27001, COBIT, CIS). * Experience interacting with Boards, regulators, internal audit, and/or executive governance forums. * Authorized to work in the United States. Preferred Qualifications * Relevant professional certifications (e.g., FAIR, CISSP, CISM, CRISC, CISA). * Experience in regulated industries (e.g., financial services). * Strong understanding of cloud security, application security, identity and access management, and cyber resilience. * Familiarity with enterprise risk management methodologies and risk appetite frameworks. Core Competencies * Strong analytical and critical thinking skills with the ability to provide constructive challenge. * Executive-level communication and presentation skills. * Ability to influence without direct authority. * Strategic mindset with strong attention to detail. * High integrity and independent judgment. Salary Range = 215,000 - 290,000 USD Annual + Benefits + BonusThe referenced salary range is based on the Company's good faith belief at the time of posting. Actual compensation may vary based on factors such as geographic location, work experience, market conditions, education/training and skill level. We offer one of the most comprehensive and generous benefits plans available and offer a range of total rewards that may include merit increases, incentive compensation (exempt roles only), paid holidays, paid time off, medical, dental, vision, short and long term disability benefits, 401(k) +match, life insurance, and various wellness programs, among others. The Company does not provide benefits directly to contingent workers/contractors and interns. Discover what makes Bloomberg unique - watch our podcast series for an inside look at our culture, values, and the people behind our success.
- A global financial services firm is seeking a Financial Crime Risk Oversight Specialist to join their team in New York. This senior role involves supporting the financial crime risk management program, advising on compliance with financial regulations, and assessing risks...Risk
- ...Analytics team. The role supports investment manager oversight, portfolio analytics, and Board-level reporting for over... ...and the Independent Board of Directors. You'll lead portfolio performance analysis, risk, and attribution across multi-asset portfolios, and participate...Risk
- SoFi Technologies, Inc. is seeking a 2LOD Senior Risk Analyst in New York to advance a robust Credit Risk Oversight function. You will perform credit, behavioral, and financial analytics to assess risks and opportunities for various lending products, and translate findings...Risk
- Rudin seeks a Senior Project Manager for MEP/LV construction oversight in New York, NY. You will monitor CM and trade contractors, verify... ..., you will manage owner-driven technical oversight, drive risk resolution, and protect scope, cost, and schedule. #J-18808-Ljbffr...RiskContract workFor contractors
$229.9k - $262.4k
...Senior Lead Information Security Office Consultant At Capital One, you will help consult on initiatives... ...practical in your understanding of risk and security, but also willing to know... ...of experience providing guidance and oversight of cyber security concepts At least...RiskFull timePart timeH1bWork at officeLocal areaShift work$155.8k - $233.6k
...About the team The Office of the CRO sits at the center of Stripe's... ...do As the Executive Engagement Lead, you will own the strategy and... ...before they become relationship risks. GTM Enablement and Repeatable... ...with data and CRM tools to inform engagement strategy and track relationship...RiskWork at office$130k - $200k
...with unmet medical needs. As a leading innovator of Digital... ...digital therapeutics. For more information, visit and connect with us on... ...About the Role:As Information Security Lead, you'll be at the forefront... ...Oversee all third-party and vendor risk management...RiskPermanent employmentTemporary workWork at officeLocal areaVisa sponsorshipFlexible hours- ...) is seeking a dynamic Manager, Audit Oversight (Information Technology) to partner with senior leadership... ...and strengthen the organization’s risk management and internal control... ...identity and access management, network security, logging and monitoring, incident response...RiskFlexible hours
$300k - $400k
A global B2B financial technology organization in New York is seeking a Chief Information Security Officer to lead security functions including governance, risk management, and compliance. The ideal candidate has strong experience in fintech, leadership in building security...Risk- The Citi 1LoD model risk governance professional in New York supports day-to-day governance across the model lifecycle, including inventory control, documentation review, and coordination with Model Sponsors. You will develop expertise in model risk management, track validation...Risk
- TD Securities is seeking an experienced CIB Credit Compliance professional in New York to support deal setup, covenant monitoring, and regulatory... ...six-figure USD range, with growth opportunities and a focus on audit readiness and risk controls within a large #J-18808-Ljbffr TDRisk
$142.3k - $195.7k
...communityJob Description SummaryThe Lead Solutions Architect provides... ...engineering, EA Activation, security, data, and operations. You... ...architecture checkpoints and risk reviews; ensure designs... ...field.8 years of progressive information technology experience directly...RiskFull timeTemporary workFor contractorsWork at officeRemote workWork from homeHome office$150.1k - $227k
...up your career at the company leading workforce transformation in... ...brand new Professional Services Security Assurance (PSSA) team — a... ...translating complex technical risks into actionable security postures... ...Science, Cybersecurity, Information Security, or a related technical...RiskFull time- ...expertise to JPMorganChase. As part of Risk Management and Compliance, you play a crucial... ...needs. Visit our FAQs for more information about requesting an accommodation.JPMorgan... ...worthiness. Risk Management provides independent oversight and maintains an effective control...Risk
- ...opportunity has arisen for a Threat Intelligence Lead to join our Technology team, reporting to the Chief Information Security Officer. You will design and lead the company’... ...Management, Security Engineering and Risk. Experience managing the end-to-end intelligence...RiskLocal areaRemote work
- ...A global risk management firm is seeking an experienced Risk Officer for their New York office. The candidate will drive compliance and risk oversight of third-party relationships, alongside managing strategic deliverables to enhance the firm's TPRM framework. Ideal applicants...RiskWork at office
- Crédit Agricole Group seeks a Lead Auditor to drive second-line corporate regulatory compliance audits from planning through final reporting. You will assess risks, test controls, and validate compliance with policies and laws while coordinating a team of auditors. You...Risk
- SMBC in New York, NY is seeking an Associate to join the Capital Management Oversight within Treasury Risk Management. The role focuses on independent oversight of capital adequacy, regulatory capital, and balance sheet strategy for the Americas, reporting to the Head...Risk
- JPMorgan Chase in New York seeks an Associate in Capital Risk Management to provide independent oversight of capital risk, defining and reporting metrics and monitoring limits. You will work with risk and finance leaders to develop analyses and present findings that influence...Risk
$128k - $140k
...Sourcing & Procurement Lead - What this job involvesThe... ...on strategy for direct oversight of Sourcing &... ...Procurement (sourcing, contract, risk management, and vendor... ...protect the personal information provided to us... ...your personal information secure with appropriate level...RiskFull timeContract workTemporary workLocal areaRemote work- iCapitalnetwork is seeking a Chief Risk Officer (CRO) to establish and oversee risk management and regulatory compliance across its global... ...governance. The successful candidate will manage regulatory oversight, enterprise risk frameworks, and risk and compliance functions...RiskRemote work
$163.6k - $245.4k
...DescriptionProgram Management Senior Lead (SVP) - Wealth... ...) provides leadership, oversight and hands on delivery... ...dependencies and risks, and ensure initiatives... ...objectives.Negotiate with and secure resources from various... ...analysis, and informed recommendations.People,...RiskFull time$194.71k - $311.53k
...differences. We believe that belonging leads to better outcomes and a... ...and the opportunity to secure annual grants for the organizations... ..., security engineering, and risk teams to ensure their solutions... ...provide thought leadership for Information Security policies and...RiskFull timeTemporary workLocal areaFlexible hours$114.1k - $268.18k
...training facility, and leading market tools, we help... ...Lead Specialist, Cloud Security to join our Managed... ...reporting of security risks, misconfigurations, and... ...management coordination and oversight of Cyber Managed... ...degree in cybersecurity, information technology, computer...RiskH1bLocal area- DescriptionCompany Overviewiboss is a cloud security company that enables the... ...DescriptionThe Manager of Information Security & Compliance is a... ...expertise in technology, risk management, and IT security principles... ..., without requiring direct oversight.Oversee and execute security...Risk
- The FCC Compliance Analytics Lead will support the implementation, governance, and ongoing... ...in compliance analytics, financial crime risk management, and regulatory reporting. The... ...within governance, audit, regulatory oversight, or compliance control environments. 5+...Risk
$260k - $280k
...data operations. The Chief Information Security Officer (CISO) leads the enterprise-wide cybersecurity and risk management program, overseeing... ...’s security posture to the CRO and Board. Through proactive... ...security program design and oversight. Maintain Reg SCI, SOC1/2...RiskInterim roleLocal area- ...Sox and Compliance Lead Date: Aug 17, 2026 Location: New York,... ...policyholders a safe harbor for the risks they face. Headquartered in... ...practices. Provide strategic oversight of IT and application... ...degree in Finance, Accounting, Information Systems, or related field; CPA...Risk
- ...seeking a Transversal Underwriting & Governance Lead for the Americas to develop and monitor... .... You will collaborate with underwriting, risk, compliance and audit teams to uphold governance standards and enable strategic oversight. This role requires proactive governance...Risk
- ...acquisition activities within a regulated pharma environment. The role requires 6+ years in pharma/CRO/biotech, expertise in ICH-GCP, HL7 FHIR, and strong leadership, communication, and risk management skills; occasional travel up to 10% may be needed. Advanced degree preferred....Risk
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to CRO - Information Security & Risk Oversight Lead. Be the first to apply!


