Jobs · Rhode Island

Director Cybersecurity Operational Risk Oversight

Citizens · Johnston, RI · 2 days ago
$178k–$220k/yrFull-time

About the role

As the Director of Operational Risk Management Oversight - Cybersecurity Risk, you will provide independent oversight, review, and challenge of cybersecurity related risks and collaborate with key stakeholders across the enterprise ensuring material risks within these groups are well defined and managed appropriately.

Responsibilities

  • Lead a team of three in independent oversight, review, and challenge of risk management activities within the cybersecurity first line of defense, evaluating effectiveness of formal risk program activities such as Risk and Control Self-Assessments, issues management, controls management, and new business initiative risk assessments.
  • Serve as an advisor to first‑line risk partners on complex risk issues, identifying and assessing aggregate enterprise‑wide risks.
  • Collaborate with key stakeholders across all three lines of defense, escalating emerging risk issues, driving accountability, and maintaining strong relationships with regulatory agencies.
  • Monitor the external environment, including emerging industry risks and regulatory priorities, and work with stakeholders to ensure mitigation strategies are underway.
  • Participate in cybersecurity incident response activities, ensuring real‑time risk assessment and appropriate mitigating actions; lead or participate in post‑incident root cause analysis and recommendations.
  • Lead targeted risk assessments on emerging issues to provide independent opinions on enterprise impact.
  • Operate within existing governance structures, seeking efficiencies and effectiveness improvements.
  • Manage policy and program governance, performing assurance activities to assess corporation‑wide compliance.
  • Co‑locate with relevant business units as needed, providing domain‑relevant advice, monitoring, and expert challenge to ensure effective implementation of the independent Operational Risk Management Program.

Requirements

  • 8+ years demonstrated cybersecurity domain expertise.
  • 4+ years risk management experience in the financial services industry.
  • Expert knowledge of cybersecurity risks and controls.
  • Experience working in a financial services organization under strong regulatory oversight.
  • Proven ability to develop and maintain high‑impact relationships with senior executives.
  • History of developing and leading a team.
  • Decisiveness and sound judgment on a consistent basis.
  • Capacity to challenge the status quo.
  • Influencing and conflict‑resolution skills.
  • Excellent business writing skills.
  • Proficient use of Microsoft Word, Excel, PowerPoint, and Visio.

Qualifications

  • Bachelor’s degree (required).
  • Preferred certifications: CISSP, CISM, CISA, Certified in Risk and Information System Control, or other relevant risk certifications.

Pay

The salary range for this position is $178,000 – $220,000 per year, plus an opportunity to earn an annual discretionary bonus. Actual pay is based on factors such as budget, work location, and relevant skills and experience.

Benefits

  • Competitive medical, dental, and vision coverage.
  • Retirement benefits.
  • Maternity/paternity leave.
  • Flexible work arrangements.
  • Education reimbursement.
  • Wellness programs.
  • Paid time off policy that exceeds mandatory local and state requirements.

Schedule

  • 40 hours per week.
  • Monday‑Friday work schedule.

Similar jobs