Technology Risk Manager

7 days ago


Troy MI United States Flagstar Bank Full time
The Information Technology Risk Manager is responsible for managing the delivery and program management of all first line of defense risk activities directly or indirectly impacting Information Technology and Information Security within Flagstar. The Information Technology Risk Manager will leverage experience in business and technical acumen environment to direct the program activities in the areas of audit, technology, compliance, risk management and security. The position will be responsible for the IT Risk team, which delivers an Information Technology Risk program with clear, defined operational policy, standards and procedures related to Information Technology and Security.

  • Develop and manage specific Information Technology and Security risk program elements to mitigate enterprise risks throughout the Bank.
  • Manage the implementation of the components of the Information Technology Risk Program to include external compliance, internal audit, security, vendor management, operational risk, quality assurance and quality controls for technology and information security.
  • Supervises members of the Technology Risk team in their daily activities.
  • Manage the development of guidelines & standards, and training on Risk Management practices and procedures appropriate for Flagstar’s needs to ensure that risk responsibilities are understood and carried out throughout the enterprise. Manage technology process improvement projects, and transformational initiatives to improve IT risk and control profile.
  • Supervises the first line of defense Risk Management functions for IT meeting the Enterprise Risk Management (ERM) program elements, processes and compliance requirements. Manage the Risk Controls Self-Assessment process for Information Technology and Information Security.
  • Ensures compliance with applicable federal, state and local laws and regulations. Completes all required compliance training. Maintains knowledge of and adhere to Flagstar’s internal compliance policies and procedures. Takes responsibility to keep up to date with changing regulations and policies.

Job Requirements:

  • High School diploma, GED, or foreign equivalent required.
  • Bachelors degree in a related field is strongly desired.
  • Certified Information Systems Security Professional (CISSP), Certified Information Security Manager, (CISM), Certified Information Systems Auditor (CISA), or Certified in Risk and Information Systems Control (CRISC) preferred.
  • Security, risk and audit specialized training highly recommended.
  • 6+ years of previous experience working in Information Security or Information Technology.
  • 3+ years of leadership experience and developing a team.
  • 5+ years of SOX IT control execution or testing or IT auditing experience or IT risk.
  • 2+ years leading Risk and Control Self Assessments for technology or information security.
  • Demonstrated ability to execute and review audits of general IT controls including related infrastructure (Active Directory), operating systems (UNIX, Linux, Windows), databases (Oracle DB and MS SQL DB), and applications (Oracle, PeopleSoft, Salesforce, etc.).
  • Design and manage root cause analysis, control gap assessments, and process improvement projects using technical and problem solving and critical thinking skills to quickly identify internal control deficiencies, evaluate their risk implications, and draw the appropriate conclusions.
  • Manage and implement Governance, Risk and Control frameworks, and systems for technology and information security.
  • Lead implementation of Industry standard frameworks for technology, such as COBIT, ISO, NIST, SANS, and others.
  • Supervise the development of internal control documentation including narratives, process and data flows, and other supporting work papers.
  • Develop an in-depth understanding of business environment and risks associated with the financial services industry, IT environments, and information dataflow.
  • Understand and train the team in IT organization business processes and systems (IT Security, data management, architectural and planning, technology life cycle management, regulatory concerns).
  • Demonstrated ability to develop an in-depth understanding of business environment and risks associated with the financial services industry, IT environments, and information dataflow.
  • Strong verbal and written communication skills with comfort around presenting new ideas and presentations to senior management.
  • Manage multiple projects concurrently, works under pressure well.
  • Demonstrated track record of meeting time commitments.
  • Demonstrated track record of working effectively across functional and organizational lines.
  • Demonstrated knowledge of risk management tools.
  • Ability to manage and supervise team members, and develop personnel.

Flagstar is an Equal Opportunity Employer.  All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identify, or national origin. 



  • Troy, MI, United States Flagstar Bank Full time

    The Information Technology Risk Manager is responsible for managing the delivery and program management of all first line of defense risk activities directly or indirectly impacting Information Technology and Information Security within Flagstar. The Information Technology Risk Manager will leverage experience in business and technical acumen environment to...


  • Troy, United States Flagstar Bank Full time

    The Information Technology Risk Manager is responsible for managing the delivery and program management of all first line of defense risk activities directly or indirectly impacting Information Technology and Information Security within Flagstar. The Information Technology Risk Manager will leverage experience in business and technical acumen environment to...


  • Troy, United States Flagstar Bank Full time

    The Information Technology Risk Manager is responsible for managing the delivery and program management of all first line of defense risk activities directly or indirectly impacting Information Technology and Information Security within Flagstar. The Information Technology Risk Manager will leverage experience in business and technical acumen environment to...

  • Director, IT

    7 days ago


    Troy, MI, United States Flagstar Bank Full time

    The Director of IT & Security Risk Management is responsible for developing and implementing the first line of defense for an end-to-end IT risk management program in alignment with Flagstar’s Enterprise Risk Management program driving the identification, assessment, and prioritization of existing and emerging IT risks across the organization. Lead and...

  • Director, IT

    1 week ago


    Troy, MI, United States Flagstar Bank Full time

    The Director of IT & Security Risk Management is responsible for developing and implementing the first line of defense for an end-to-end IT risk management program in alignment with Flagstar’s Enterprise Risk Management program driving the identification, assessment, and prioritization of existing and emerging IT risks across the organization. Lead and...


  • New York, NY, United States Flagstar Bank Full time

    Pay Range: 112- 140K JOB SUMMARY As a key member of the second line of defense Technology, Cyber, Third Party Risk Management & Resilience Risk Management team, the Technology Risk Senior Analyst will support the Technology Risk team to fulfill the Bank’s Second Line of Defense (“2LoD”) mandate to identify, measure, monitor, and manage the Information...


  • New York, NY, United States The Phoenix Group Full time

    This is a great opportunity for a candidate interested in getting started in a career in security, especially governance and risk. No prior security experience required (although it doesn't hurt) just need someone who has a curious nature and wants to learn and grow!OverviewAs a Technology Risk Management Consultant, you will support the governance, audit,...

  • Director, IT

    1 week ago


    Troy, United States Flagstar Bank Full time

    The Director of IT & Security Risk Management is responsible for developing and implementing the first line of defense for an end-to-end IT risk management program in alignment with Flagstar’s Enterprise Risk Management program driving the identification, assessment, and prioritization of existing and emerging IT risks across the organization. Lead and...

  • Director, IT

    3 weeks ago


    Troy, United States Flagstar Bank Full time

    The Director of IT & Security Risk Management is responsible for developing and implementing the first line of defense for an end-to-end IT risk management program in alignment with Flagstar’s Enterprise Risk Management program driving the identification, assessment, and prioritization of existing and emerging IT risks across the organization. Lead and...

  • Director, IT

    4 weeks ago


    Troy, United States Flagstar Bank Full time

    The Director of IT & Security Risk Management is responsible for developing and implementing the first line of defense for an end-to-end IT risk management program in alignment with Flagstar’s Enterprise Risk Management program driving the identification, assessment, and prioritization of existing and emerging IT risks across the organization. Lead and...

  • Director, IT

    3 weeks ago


    Troy, United States Flagstar Bank Full time

    The Director of IT & Security Risk Management is responsible for developing and implementing the first line of defense for an end-to-end IT risk management program in alignment with Flagstar’s Enterprise Risk Management program driving the identification, assessment, and prioritization of existing and emerging IT risks across the organization. Lead and...

  • Director, IT

    1 week ago


    Troy, United States Flagstar Bank Full time

    The Director of IT & Security Risk Management is responsible for developing and implementing the first line of defense for an end-to-end IT risk management program in alignment with Flagstar’s Enterprise Risk Management program driving the identification, assessment, and prioritization of existing and emerging IT risks across the organization. Lead and...


  • Merrimack, NH, United States Fidelity Investments Full time

    Job Description:ETRA FFIO Technology Risk Principal AnalystDo you want to join a team focused on developing Next-Gen capabilities in Technology Risk? The Technology Risk team for Fidelity Fund and Investment Operations (FFIO) within Enterprise Technology Risk & Analytics (ETRA) group is seeking a passionate, driven, and experienced professional to join the...


  • Merrimack, NH, United States Fidelity Investments Full time

    Job Description:ETRA FFIO Technology Risk Principal AnalystDo you want to join a team focused on developing Next-Gen capabilities in Technology Risk? The Technology Risk team for Fidelity Fund and Investment Operations (FFIO) within Enterprise Technology Risk & Analytics (ETRA) group is seeking a passionate, driven, and experienced professional to join the...


  • Cincinnati, OH, United States Golden Technology Full time

    Ready to grow your career? We should talk.We seek a Cyber Risk Analyst for a contract-to-hire opportunity with one of our top-tier Cincinnati clients. This role is a Remote. To be successful in this role, you should have experience with Risk management.Job DescriptionThe IT risk analyst supports the IT risk management practice, which ensures risk is...


  • Atlanta, GA, United States GreenSky® Full time

    About GreenSky:GreenSky makes it easy for businesses of all sizes to offer credit to their customers with a fast and paperless solution. With billions of dollars in loans and hundreds of thousands of satisfied customers, GreenSky is quickly changing the consumer credit marketplace. We are committed to our people, capital, and ideas to help our clients,...


  • UNITED STATES, PA, PITTSBURGH BNY Full time

    At BNY, our culture empowers you to grow and succeed. As a leading global financial services company at the center of the world’s financial system we touch nearly 20% of the world’s investible assets. Every day around the globe, our 50,000+ employees bring the power of their perspective to the table to create solutions with our clients that benefit...


  • Maitland, FL, United States Digital Risk Full time

    Who are we looking for?Looking for a candidate to support site infrastructure activities having required skills of team management, cloud computing, working with different verticals, vendors and customers. The Individual should be passionate about technology, experienced in deployment, monitoring and maintaining cutting edge technology. Technical Skills:...


  • McLean, VA, United States Zillion Technologies, Inc. Full time

    USC, GC, H1B ONLYUSC or GC or H1BJob Title : IT Risk Manager_Operational Risk GovernanceLocations:. : Onsite (Hybrid) in McLean, VA on Tuesday, Wednesday and ThursdayMust have: A minimum of 5 years of operational/business risk experience. Experience with SOX testing or Auditing is a must.Position Description:Perform on-going operational risk management...


  • Merrimack, NH, United States Fidelity Investments Full time

    Job Description:The RoleThe Technology Risk team for Fidelity Brokerage (FB) within Enterprise Technology Risk & Analytics (ETRA) group is seeking a passionate, driven, and experienced professional to join the team!  Leading the Fidelity Brokerage Technology Risk Management team, you will focus on the oversight of key risks, threats, controls, and other...