IT and InfoSec Operational Risk Officer

4 weeks ago


Columbus, United States Northwest Bancorp, Inc. Full time

Job Summary

The IT and InfoSec Operational Risk Officer within the second line of defense Operational Risk organization is responsible for the independent oversight of front-line Information Technology (IT) and Information Security (IS) units to socialize risk concepts, frameworks and promote the organizations' risk culture, including education and training. The IT and InfoSec Operational Risk Officer must adapt previous experience and industry leading practices to fit Northwest. The position also partners with functional and operational leadership in the development of risk mitigation plans, consistent with the Bank's enterprise risk management framework. The role will be an integral part of a risk management team that encourages creativity, leadership, and influence. The role is expected to have a significant impact and influence in bank-wide strategic decision-making, and to support our mission through risk-based and data-driven decision making.

Essential Functions

* Provide companywide oversight and governance over information security and information technology risks
* Help mature and execute an IT and IS risk management framework using industry leading practices (e.g., NIST CSF, COBIT, SCF) taking into consideration regulatory expectations
* Independently assess risks and drive actions to address the root causes that persistently lead to significant residual operational risk by challenging both historical and proposed practices
* Leverage the current ERM framework and partner with first-line IT and IS teams to further mature IT risk assessments, document controls, identify gaps, and create action plans for critical IT and IS processes, including validation and testing to ensure IT risk programs are implemented and executed appropriately
* Help refine the risk register for IT, IS and operational risk competencies, as well as help create additional ones as appropriate
* Provide oversight of IT/IS Risk and Control Self-Assessment (RCSA) activities, and monitoring routines (Third Party, Audit, Issue Management, Remediations, etc.)
* Make recommendations for remediation of issues and continuous monitoring through the creation of metrics
* Review processes and controls against leading practice and industry frameworks, identify gaps in design and execution, and communicate issues and make recommendations
* Perform independent risk assessment of the first line, inclusive of emerging risks
* Review and challenge of first-line risk acceptances
* Identify trends, themes, tendencies that indicate emerging IT/IS risks by relying on mining trends in relevant metrics, loss data and external events and effectively communicate learnings to Business to drive necessary responses and action
* Complete risk assessments of critical technology implementations (e.g., Cloud Computing, hybrid infrastructure models, and Active Directory)
* Provide analysis and reporting of Northwest's IT and IS risk profile, and consultative advice to Northwest's Management Team
* Influence appropriate risk management prioritization by the first line to enable the business to meet strategic objectives, while meeting IT and IS risk program expectations
* Ensure compliance with Northwest's policies and procedures, and Federal/State regulations
* Navigate Microsoft Office Software, computer applications, and software specific to the department to maximize technology tools and gain efficiency
* Work as part of a team
* Work with on-site equipment

Education + Experience preferred

* Bachelor's degree in Information Technology or related degree
* 12 - 15 years of banking or regulatory experience
* Certified Information Systems Auditor (CISA)
* Certified Information Security Manager (CISM)
* Certified Risk and Information Systems Control (CRISC)
* Certified Information Systems Security Personnel

#LI-EK1

#LI-Hybrid



  • Columbus, Ohio, United States Huntington National Bank Full time

    The Commercial Business Risk Officer, Sr. reports to the Commercial Segment Risk Officer, Sr. and will have responsibility for driving and overseeing key risk activities for the assigned Commercial Business Unit(s) (Corporate, Specialty & Government Banking; Commercial Real Estate; Midde Market Banking; Commercial Administration Services; Asset Finance;...


  • Columbus, Ohio, United States Huntington National Bank Full time

    Responsible for the development and oversight of Huntington's risk management protocols in the Enterprise Payment Segment, manage tasks and activities related to risk management initiatives to support the Enterprise Payments Risk Management team in a well-managed capacity. Develops, recommends, and administers risk management processes and procedures for the...


  • Columbus, United States First Merchants Bank Full time

    Job DescriptionJob DescriptionLead, implement and provide oversight in support of the lines of business for the company’s Operational Risk Management program and methodologies, with the intention of building a strong risk management culture across the company.As part of this role, you will: Define, implement, and maintain the Operational Risk Management...


  • Columbus, United States FIRST MERCHANTS BANK NA Full time

    Description As part of this role, you will: Define, deploy and maintain the Operational Risk Management Program for the bank; primary focus within the Operations Division for assessment and governance. Serve as chair of Operational Risk Committee (ORC) and other committee involvement and leadership. Develop, design and co-chair the External (customer) Fraud...


  • Columbus, United States Huntington Bancshares, Inc. Full time

    Responsible for the development and oversight of Huntingtons risk management protocols in the Enterprise Payment Segment, manage tasks and activities related to risk management initiatives to support the Enterprise Payments Risk Management team in a Risk Officer, Risk, Payment, Enterprise, Senior, Officer, Business Services


  • Columbus, United States First Merchants Bank Full time

    Job DescriptionJob DescriptionFirst Merchants Bank is seeking a Senior Manager, Operational Risk Management to join our team! This position will lead, implement and provide oversight in support of the lines of business for the company’s Operational Risk Management program and methodologies, with the intention of building a strong risk management culture...


  • Columbus, United States Insight Global Full time

    Basic Qualifications: Make your application after reading the following skill and qualification requirements for this position. Bachelor’s degree Min 5 years of experience in a Technology Risk position, primarily in a technology, cybersecurity or infrastructure environment Preferred Qualifications: Problem Solving and Critical thinking Strong Written...


  • Columbus, United States Insight Global Full time

    Basic Qualifications:Bachelor’s degreeMin 5 years of experience in a Technology Risk position, primarily in a technology, cybersecurity or infrastructure environment Preferred Qualifications:Problem Solving and Critical thinkingStrong Written and Verbal Communication skillsAbility to Identify root cause and proper solutionStrong research and analytical...


  • Columbus, United States Insight Global Full time

    Basic Qualifications:Bachelor’s degreeMin 5 years of experience in a Technology Risk position, primarily in a technology, cybersecurity or infrastructure environment Preferred Qualifications:Problem Solving and Critical thinkingStrong Written and Verbal Communication skillsAbility to Identify root cause and proper solutionStrong research and analytical...


  • Columbus, United States Insight Global Full time

    Basic Qualifications:Bachelor’s degreeMin 5 years of experience in a Technology Risk position, primarily in a technology, cybersecurity or infrastructure environment Preferred Qualifications:Problem Solving and Critical thinkingStrong Written and Verbal Communication skillsAbility to Identify root cause and proper solutionStrong research and analytical...


  • Columbus, United States Insight Global Full time

    Basic Qualifications: Bachelors degree Min 5 years of experience in a Technology Risk position, primarily in a technology, cybersecurity or infrastructure environment Preferred Qualifications: Problem Solving and Critical thinking Strong Written and Verbal Communication skills Ability to Identify root cause and proper solution Strong research and...


  • Columbus, United States Huntington National Bank Full time

    Description The Commercial Business Risk Officer, Sr. reports to the Commercial Segment Risk Officer, Sr. and will have responsibility for driving and overseeing key risk activities for the assigned Commercial Business Unit(s) (Corporate, Specialty & Government Banking; Commercial Real Estate; Midde Market Banking; Commercial Administration Services; Asset...


  • Columbus, United States Huntington Bancshares Inc Full time

    Description Summary: The Commercial Business Risk Officer, Sr. reports to the Commercial Segment Risk Officer, Sr. and will have responsibility for driving and overseeing key risk activities for the assigned Commercial Business Unit(s) (Corporate, Specialty & Government Banking; Commercial Real Estate; Midde Market Banking; Commercial Administration...


  • Columbus, Ohio, United States Huntington National Bank Full time

    The Cybersecurity Risk Manager is responsible for oversight and administration of operational and regulatory risk strategy programs for a business segment. Looking for an experienced Cyber Engineer or Cyber Architect to work as a Risk Manager supporting Huntington's transformation and use of cybersecurity technologies. As a risk manager, you will work with...


  • Columbus, United States UNICON International Full time

    We are currently accepting resumes for a Segment Risk Specialist: IV (Lead) position in Columbus, OH. This position is Hybrid. Benefits offered: Medical, Vision, Dental, 401 K The selected candidate will perform the following duties: The Technology Risk Assessment Lead will be responsible for operational and risk strategy programs within the IT...


  • Columbus, United States Huntington National Bank Full time

    Description : Perform Risk Assessments of IT systems in development by engaging with project/segment teams for high priority projects; Serve as the Risk voice. Partner with project teams to communicate security and control requirements and provide both oversight and support to determine if these requirements are met through the development cycle,...


  • Columbus, United States Huntington Bancshares, Inc. Full time

    The Issues Risk Management Operational Excellence Sr Manager is responsible for developing the technology strategy and supporting the implementation of technical solutions to support the Issues Risk Management policy and procedure. Duties & Responsib Risk, Product Manager, Management, Manager, Operation, Product, Banking


  • Columbus, United States Robert Half Full time

    Responsible for operational and risk strategy programs within the IT segment focusing on findings/action plan validation within the Technology Risk organization. May execute periodic risk assessments Risk Control Self Assessments and targeted risk assessments. Evaluate control effectiveness and finding/action plan content and provide first line challenge to...


  • Columbus, United States Robert Half Full time

    Responsible for operational and risk strategy programs within the IT segment focusing on findings/action plan validation within the Technology Risk organization. May execute periodic risk assessments Risk Control Self Assessments and targeted risk assessments. Evaluate control effectiveness and finding/action plan content and provide first line challenge to...


  • Columbus, United States UNICON International Full time

    We are currently accepting resumes for a Segment Risk Specialist: IV (Lead) position in Columbus, OH. This position is Hybrid. Benefits offered: Medical, Vision, Dental, 401 K The selected candidate will perform the following duties: Responsible for operational and risk strategy programs within the IT segment, focusing on findings/action plan...