Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
CF
Citizens Financial Group
Director Cybersecurity Operational Risk Oversight
Career Insights for Cyber Security Manager / Administrator
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Rhode Island data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Cyber Security Manager or Administrator monitors, controls, and maintains systems that protect the security of large databases, including databases with customer information and patient files. Manages and administers the examination of client computer systems, identification of weak points in security, development and implementation of new systems, and monitoring and response to security issues.
$141,764 / year median in Rhode Island
+3% projected growth
Job Description
Director Cybersecurity Operational Risk Oversight Citizens Financial Group - 3.4 Johnston, RI Job Details Full-time $178,000 - $220,000 a year 23 hours ago Benefits Health insurance Dental insurance Tuition reimbursement Paid time off Parental leave Vision insurance Opportunities for advancement Retirement plan Qualifications Internal controls Team leadership General IT Controls Writing skills Workplace dispute resolution Industry knowledge of banking risk management Visio Bachelor's degree Industry knowledge of financial regulations Productivity software Banking internal controls Senior leadership Team building IT risk management Full Job Description Description As the Director of Operational Risk Management Oversight - Cybersecurity Risk, you will provide independent oversight, review, and challenge of cybersecurity related risks and collaborate with key stakeholders across the enterprise ensuring material risks within these groups are well defined and managed appropriately.
This includes evaluating the effectiveness of their formal risk program activities including but not limited to:
Risk and Control Self-Assessments, issues management, controls management, new business initiative risk assessments. Serving as an advisor to first line risk partners on complex risk issues and challenges, while identifying and assessing aggregate enterprise-wide risks.
Collaborating with key stakeholders, including all three lines of defense, escalating emerging risk issues that require remediation and working directly with stakeholders while driving accountability.
Maintaining strong relationships with all three lines of defense, as well as the regulatory agencies. Understanding the external environment, including emerging risks within the industry and the priorities of the regulatory agencies. Determining how these changes affect the risk profile of the enterprise and working with appropriate stakeholders to ensure mitigation strategies are underway. Participating in the cybersecurity incident response activities to ensure risks are accurately assessed in real time and mitigating actions are appropriate.
Post incident, leading or participating in root cause analysis and opining on next steps. Leading targeted risk assessments on emerging issues to provide an independent opinion on the impact on the enterprise. Operating within existing governance structures with an eye towards making these processes more efficient and effective.
Managing applicable policy and program governance, while performing assurance activities to assess corporate wide compliance. The role may be co-located as needed with the relevant business and must be actively engaged to support the business with providing domain-relevant advice, monitoring, and credible expert challenge to ensure the independent Operational Risk Management Program is effectively implemented.
Primary responsibilities will include:
Leading a team of three in independent oversight, review, and challenge of risk management activities within the cybersecurity first line of defense.This includes evaluating the effectiveness of their formal risk program activities including but not limited to:
Risk and Control Self-Assessments, issues management, controls management, new business initiative risk assessments. Serving as an advisor to first line risk partners on complex risk issues and challenges, while identifying and assessing aggregate enterprise-wide risks.
Collaborating with key stakeholders, including all three lines of defense, escalating emerging risk issues that require remediation and working directly with stakeholders while driving accountability.
Maintaining strong relationships with all three lines of defense, as well as the regulatory agencies. Understanding the external environment, including emerging risks within the industry and the priorities of the regulatory agencies. Determining how these changes affect the risk profile of the enterprise and working with appropriate stakeholders to ensure mitigation strategies are underway. Participating in the cybersecurity incident response activities to ensure risks are accurately assessed in real time and mitigating actions are appropriate.
Post incident, leading or participating in root cause analysis and opining on next steps. Leading targeted risk assessments on emerging issues to provide an independent opinion on the impact on the enterprise. Operating within existing governance structures with an eye towards making these processes more efficient and effective.
Managing applicable policy and program governance, while performing assurance activities to assess corporate wide compliance. The role may be co-located as needed with the relevant business and must be actively engaged to support the business with providing domain-relevant advice, monitoring, and credible expert challenge to ensure the independent Operational Risk Management Program is effectively implemented.
Required Experience, Skills and Competencies:
8 years demonstrated cybersecurity domain expertise 4 years risk management experience from working in the financial services industry Expert knowledge of cybersecurity risks and controls Experience in a financial services organization that is under strong regulatory oversight and scrutiny Ability to develop and maintain high impact relationships with senior executives History of developing and leading a team Decisiveness and sound judgment on a consistent basis Capacity to challenge status quo Influencing and conflict resolution skills Excellent business writing skills Proven leadership and management skills in a professional environment Proficient use of MS Word, MS Excel and PowerPoint and Visio Education Bachelor's degreeRequired Certifications Preferred:
CISSP, CISM, CISA, Certified in Risk and Information System Control or other relevant risk certifications Hours and Work Schedule Hours perWeek:
40Work Schedule:
Monday-Friday Pay Transparency The salary range for this position is $178,000 - $220,000 per year, plus an opportunity to earn an annual discretionary bonus. Actual pay is based on various factors including but not limited to budget, the work location, and relevant skills and experience. We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more. Note, Citizens' paid time off policy exceeds the mandatory, paid sick or paid time-away policy of every local and state jurisdiction in the United States. For an overview of our benefits, visit https://jobs.citizensbank.com/benefits Some job boards have started using jobseeker-reported data to estimate salary ranges for roles. If you apply and qualify for this role, a recruiter will discuss accurate pay guidance. Equal Employment Opportunity Citizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical condition, military or veteran status, national origin, pregnancy/childbirth/lactation, colleague's or a dependent's reproductive health decision making, race, religion, sex, sexual orientation, or any other category protected by federal, state and/or local laws. At Citizens, we are committed to fostering an inclusive culture that enables all colleagues to bring their best selves to work every day and everyone is expected to be treated with respect and professionalism. Employment decisions are based solely on merit, qualifications, performance and capability. Background Check Any offer of employment is conditioned upon the candidate successfully passing a background check, which may include initial credit, motor vehicle record, public record, prior employment verification, and criminal background checks. Results of the background check are individually reviewed based upon legal requirements imposed by our regulators and with consideration of the nature and gravity of the background history and the job offered. Any offer of employment will include further information. Benefits We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more.Awards We've Received Dave Thomas Foundation's Best Adoption-Friendly Workplace Disability:
IN World's Top Disability Inclusive Business Glassdoor Best Place to Work in Consulting, Finance & Insurance Human Rights Campaign Corporate Equality Index 100 Award Newsweek America's Most Charitable Company The Banker's US Bank of the YearBenefits
- Paid Time Off (PTO)
- Sick Leave
- Financial Aid/Assistance
- Other Retirement and Savings