Talent.com
Director, Cyber and Digital Risk Management

Director, Cyber and Digital Risk Management

Santander Holdings USA IncDallas, TX, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Director, Cyber and Digital Risk Management

Country : United States of America Your Journey Starts Here :

Santander is a global leader and innovator in the financial services industry. We believe that our employees are our greatest asset. Our focus is on fostering an enriching journey that empowers you to explore diverse career opportunities while nurturing your personal growth. We are committed to creating an environment where continuous learning and development are prioritized, enabling you to thrive both professionally and personally. Here, you will find ample opportunities to connect and collaborate with talented colleagues from around the world, sharing insights and driving innovation together. Join us at Santander, where you are supported by a culture of engagement and a commitment to your success.

An exciting journey awaits, if you are interested in exploring the possibilities We Want to Talk to You!

The Difference You Make :

The Director, Cyber and Digital Risk Management m onitors activities to minimize the company's exposure to information security risks. Activities may include 2nd line of defense independent assurance over technical cyber risk analysis, risk identification and remediation. The incumbent shall support the preservation of digital trust and ensure that the oversight is adequate to minimize compliance and regulatory risk by resolving issues and ensuring adherence to industry good practice frameworks, company and legal standards. The Director is responsible for ensuring that the company's activities adhere to the necessary rules and regulations, and that the company complies with legal / regulatory statutes and jurisdictions, as they relate to the management of cyber and digital risks.

The Director, Cyber and Digital Risk Management at Santander US and Santander Bank NA is responsible for independent risk management and assurance activities over the assigned business area's technology footprint covering Information Security, Cyber Resilience, Cyber Fraud and Data Security (incl. Retention and Disposal) as part of the second line of defense Technology Risk Management organization.

The incumbent develops and maintains an effective Information Security Risk oversight program that enables the assigned business area to comprehensively identify, assess, mitigate, manage, monitor and report technology risk, including performing technical risk reviews of identified domains.

This role is established in the second line of defense and requires collaboration across CISO, Data Office, IT, Operational Risk, Internal Audit and other relevant functional stakeholders within the organization in the management of Cybersecurity risks. An excellent understanding of the evolving regulatory landscape in the US and EU are vital for success in this role.

The day-to-day focus may vary depending on the requirements of the overall second line of defense program priorities directed by the Head of Technology Risk and may include : planned or ad-hoc technical risk review and challenge, review of Technology or Business initiatives, Ongoing risk monitoring activities, Risk reporting, development of technical risk framework and methodologies.

The team to support the oversight of cybersecurity risks will comprise of individuals aligned against the core coverage areas noted above. This is an individual contributor role but will require people and stakeholder management skills to operate effectively in a 2nd line of defense role in a matrix organization.

Key Responsibilities :

  • Establish themselves as the second line of defense subject matter expert for key stakeholders in the management of cybersecurity and technology risks across all operating entities
  • Prepare information to enable governance committees / working groups in the management oversight of cybersecurity and technology risks
  • Participate in relevant governance committees and working groups as a delegate of the Head of Technology, including the Operational Risk Committee, Technology Executive Working Group, Information Security & Data Management Committee, Architectural Review Board, AI Enablement Working Group
  • Initiate timely escalations to the Sr. Director, Cyber & Digital Risk and to the leadership team
  • Identify and assess cybersecurity risks and counsel business units managers, CISO and / or IT GRC stakeholders on risk management issues to ensure awareness and accountability for cybersecurity risks
  • Oversee ongoing oversight of the firm's information risk footprint through ongoing monitoring, formal review and challenge activities, targeted risk reviews, technology policy and standard assurance, and other activities e.g., transformation review and challenge.
  • Contribute to the updating of existing policies and framework or develop new ones that steer the safe and sound adoption of technologies across the organization
  • Participate in the independent and ongoing risk oversight of key technology components of the firm's digital transformation initiatives.
  • Implement and sustain independent risk oversight coverage of the cloud operating platform and vendor software development activities.
  • Work across the lines of defense to recommend strategies that effectively treat risks within the risk appetite
  • Monitor external trends and evaluate potential impacts to business strategy; provide documented analytical insights of the risk horizon, while ensuring a sound operational and compliance control environment through establishment of a system of effective and sustainable internal controls
  • Participate in evaluation of new products / Business changes / projects and assess related information risks and impact to the cybersecurity and technology risk profile
  • Participate in the evaluation and management of cybersecurity risks related to third-party suppliers involved in technology and business projects
  • Advises on remediation of regulatory findings, correction of any inconsistencies and monitors resolution.
  • Manage, oversee and contribute to targeted risk reviews designed to evaluate information risks and their effective and sustainable mitigation
  • Perform review and challenge of first line of defense risk management processes, data and outcomes (e.g. risk assessments, control evaluations, risk metrics, mitigation plans, risk acceptances etc.) and communicate risk opinions at various levels of management
  • Analyze risk data from various sources (e.g. external events, control deficiencies, risk register etc.) to identify and measure levels of risk, concentration, trends and patterns
  • Participate in the review and challenge of scenario for crisis management exercises, especially where there is a cyber component
  • Support process for constructive engagement across the Lines of Defense regarding differences or conflicts in risk appetite, risk metric determination or evaluation, issue severity or other areas of dispute
  • Own individual delivery timelines and develop materials to ensure second line of defense independent opinion appropriately represented during committee meetings, external exams and internal audits.
  • Ensure all activities and deliverables achieve their timeliness, quality and accuracy service levels.
  • Collaborate with other second line of defense functions such as Operational Risk, Model Risk, Compliance etc. on common priorities and strategic initiatives
  • Provides second line of defense leadership and subject matter expertise during response to major technology or cyber incidents including cyber-security related privacy events and coordinate second line of defense engagement and response of incident / crisis managers

What You Bring :

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and / or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Education :

  • Bachelor's Degree in a technical discipline or equivalent work experience : Computer Science, Information Technology, Information Systems, Information Security. Req
  • Master's Degree in related technical disciplines. Pref
  • Professional Certifications in Cybersecurity. Req.
  • Professional Certifications in Cloud Security (AWS, Azure). Pref
  • Work Experience :

  • Practitioner and management experience in one or more areas of Cybersecurity Risks
  • Overall professional experience of 15+ years or more in cybersecurity risk management roles in a matrix organization
  • Experience in Cybersecurity risk consulting in the financial services sector, Cyber security audit, Chief Information Security Officer / Deputy or in a similar second line of defense role is highly preferred
  • Experience within a highly regulated environment such as the financial services industry and knowledge of the current and evolving regulatory landscape is necessary
  • Experience leading high performance teams
  • Skills and Abilities :

  • Strong understanding of technology infrastructure, information security, and enterprise resilience
  • Experience with developing and implementing technology & cyber risk oversight programs, preferably in a 2nd or 3rd line of defense
  • Demonstrated leadership skills and ability to coordinate oversight activities across different teams
  • Knowledge of current and evolving regulatory requirements and industry best practices in technology and cybersecurity risk management
  • Strong Leadership Experience
  • Technical skills (incl . click apply for full job details

    serp_jobs.job_alerts.create_a_job

    Director Risk Management • Dallas, TX, United States

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Director, Cyber and Digital Risk Management

    Director, Cyber and Digital Risk Management

    Santander Holdings USA IncDallas, TX, US
    serp_jobs.job_card.full_time
    Director, Cyber and Digital Risk Management.Country : United States of America.Santander is a global leader and innovator in the financial services industry. We believe that our employees are our gre...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Principal Auditor- Cyber, Risk and Analysis Technology Audit (Hybrid)

    Principal Auditor- Cyber, Risk and Analysis Technology Audit (Hybrid)

    Capital OnePlano, TX, US
    serp_jobs.job_card.full_time +1
    Principal Auditor- Cyber, Risk and Analysis Technology Audit (Hybrid).Capital One's Audit function is a dedicated group of professionals focused on delivering top-quality assurance services to the ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Sr. Associate, Technology Risk Management

    Sr. Associate, Technology Risk Management

    Santander Holdings USA IncDallas, TX, US
    serp_jobs.job_card.full_time
    Associate, Technology Risk Management.Country : United States of America.Santander is a global leader and innovator in the financial services industry. We believe that our employees are our greatest ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Infrastructure / DevOps Sr Group Mgr - Director

    Infrastructure / DevOps Sr Group Mgr - Director

    CitigroupIrving, TX, US
    serp_jobs.job_card.full_time
    Infrastructure / DevOps Sr Group Mgr - Director.Working at Citi is far more than just a job.A career with us means joining a team of more than 230,000 dedicated people from around the globe.At Citi, ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Technology / Cyber Risk Sr Grp Manager - Director (hybrid)

    Technology / Cyber Risk Sr Grp Manager - Director (hybrid)

    CitigroupIrving, TX, US
    serp_jobs.job_card.full_time
    Technology and Cyber Compliance and Operational Risk Office (TCCORO) at Citi.The Technology and Cyber Compliance and Operational Risk Office (TCCORO) at Citi is the firm's reliable second set of ey...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Risk Management Senior Manager - Dallas, TX

    Risk Management Senior Manager - Dallas, TX

    VetJobsDallas, TX, US
    serp_jobs.job_card.full_time
    Risk Management Senior Manager.ATTENTION MILITARY AFFILIATED JOB SEEKERS : Our organization works with partner companies to source qualified talent for their open roles. The following position is ava...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Credit Risk Management Director

    Credit Risk Management Director

    Santander Holdings USA IncDallas, TX, United States
    serp_jobs.job_card.full_time
    Credit Risk Management Director.Country : United States of America.Santander is a global leader and innovator in the financial services industry. We believe that our employees are our greatest asset....serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Principal Auditor - Cyber, Risk and Analysis Technology Audit

    Principal Auditor - Cyber, Risk and Analysis Technology Audit

    Capital OnePlano, TX, US
    serp_jobs.job_card.full_time +1
    Principal Auditor - Cyber, Risk and Analysis Technology Audit.Capital One's Audit function is a dedicated group of professionals focused on delivering top-quality assurance services to the organiza...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior Manager, Risk Advisor, Technology and Data Risk Management

    Senior Manager, Risk Advisor, Technology and Data Risk Management

    Capital OnePlano, TX, US
    serp_jobs.job_card.full_time +1
    Senior Manager, Cyber Risk And Analysis.Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we drea...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Risk Management Senior Manager

    Risk Management Senior Manager

    EquinixDallas, TX, US
    serp_jobs.job_card.full_time
    Equinix is the world's digital infrastructure company, shortening the path to connectivity to enable the innovations that enrich our work, life, and planet. A place where bold ideas are welcomed, hu...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Sr. Director, Business Risk & Controls

    Sr. Director, Business Risk & Controls

    TIAAUSA, Texas, Frisco
    serp_jobs.job_card.full_time
    The Business Risk and Controls works to optimize the operation of 1st Line of Defense Business, while driving adherence to TIAA Enterprise Risk Management Polices. Under limited supervision, this jo...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Technology Risk Management Principal

    Technology Risk Management Principal

    Fannie MaePlano, TX, United States
    serp_jobs.job_card.full_time
    Playing an essential role in the U.Fannie Mae is foundational to housing finance.Here, your expertise can help fuel purpose-driven innovation that expands access to homeownership and affordable ren...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Manager, BRCO Third Party Risk - Cybersecurity

    Manager, BRCO Third Party Risk - Cybersecurity

    ComericaFrisco, TX, US
    serp_jobs.job_card.full_time
    Manager, BRCO Third Party Risk.The Business Risk and Control Officers (BRCO) play a pivotal role in guiding the business to identify and understand risk exposures and the controls needed which are ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Director of Digital Product Management

    Director of Digital Product Management

    Yum BrandsPlano, TX, US
    serp_jobs.job_card.full_time
    At Pizza Hut, we're on a mission to connect people through the joy of pizza and our Global Digital & Technology organization is building a world-class, distinctive digital experience that's unique...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Risk Manager

    Risk Manager

    TradeJobsWorkforce75393 Dallas, TX, US
    serp_jobs.job_card.full_time
    Risk Manager job responsibilities : Leads the identification, communication, measurement, and management o...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Director, Change and Incident Management

    Director, Change and Incident Management

    VizientIrving, TX, US
    serp_jobs.job_card.full_time
    Enterprise Director Change Control, Critical Incident Management, And Release Management.When you're the best, we're the best. We instill an environment where employees feel engaged, satisfied and a...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Director Governance, Risk & Compliance (GRC)

    Director Governance, Risk & Compliance (GRC)

    Baylor University Medical CenterDallas, TX, US
    serp_jobs.job_card.full_time
    Director of Healthcare Governance, Risk, and Compliance.The Director of Healthcare Governance, Risk, and Compliance, reporting to the CISO, is responsible for developing, implementing, and overseei...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Risk, Enterprise Risk (Appetite and Limits), Vice President, Dallas

    Risk, Enterprise Risk (Appetite and Limits), Vice President, Dallas

    Goldman SachsDallas, TX, US
    serp_jobs.job_card.full_time
    Vice President, Enterprise Risk Management.The Risk Division aims to effectively identify, monitor, evaluate, and manage the firm's financial and non-financial risks in support of the firm's Risk A...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Director Identity & Access Management (IAM)

    Director Identity & Access Management (IAM)

    Baylor University Medical CenterDallas, TX, US
    serp_jobs.job_card.full_time
    Director Of Identity & Access Management (IAM).The Director of Identity & Access Management (IAM), reporting to the CISO, is responsible for the full identity lifecycle for all hospital system staf...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Risk Manager

    Risk Manager

    TradeJobsWorkForce75229 Dallas, TX, US
    serp_jobs.job_card.full_time
    Risk Manager Job Duties : Leads the identification, communication, measurement, and manag...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30