Cybersecurity & Technology Risk Officer
Listed on 2026-06-06
-
IT/Tech
Cybersecurity, Information Security, Data Security, IT Consultant
We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants and consumers to one another millions of times a day – quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved.
If you want to make an impact on a global scale, come make a difference at Fiserv.
Seeking a strategic and business‑savvy Cybersecurity & Technology Risk Officer (CTRO) to serve as the critical link between our business unit leadership and the broader enterprise Cybersecurity organization. This individual will champion cybersecurity awareness and risk mitigation, advise executive stakeholders, and ensure alignment of business objectives with enterprise security and technology standards, and regulatory expectations.
Key Responsibilities- Executive Engagement & Risk Advisory
Partner with CIOs, senior leadership, and technology stakeholders to assess and communicate cybersecurity risk in business terms. Influence prioritization of security investments and drive remediation strategies that align with enterprise risk tolerance. - Cybersecurity Consulting & Enablement
Serve as the primary cybersecurity advisor to the business, interpreting enterprise policies, providing actionable guidance, and ensuring business initiatives comply with internal standards and regulatory requirements. - Risk Identification & Mitigation
Identify, assess, and document security risks across products, applications, and third‑party relationships. Collaborate with remediation owners to develop and track resolution plans based on risk severity and business impact. - Metrics & Reporting
Deliver executive‑level risk dashboards and metrics that provide transparency into the business’s security posture. Ensure timely and meaningful communication of emerging risks and remediation progress. - Policy & Strategy Alignment
Collaborate with the broader Cybersecurity and Risk organizations to ensure security strategies are pragmatic, risk‑based, and aligned with both business priorities and technical capabilities. - Compliance & Awareness
Promote awareness of regulatory and industry obligations through targeted training, awareness campaigns, and proactive engagement. Ensure the business maintains readiness for internal audits and external regulatory assessments. - Security Assessments & Continuous Improvement
Ensure security risk and controls assessments are conducted at appropriate intervals and with relevant depth based on evolving threats and business changes. Continuously refine assessment methodologies to improve effectiveness and efficiency. - Technology Enablement & Governance
Guide technology teams in adopting enterprise cybersecurity tools, capabilities, and controls. Assist in prioritizing adoption based on risk impact and business value. - Threat & Trend Monitoring
Stay current with the threat landscape, regulatory developments, and best practices. Apply insights to anticipate future risks and inform business‑specific security planning. - Team & Culture Leadership
Foster a security‑first mindset across the business. Promote high performance, collaboration, and continuous development within the extended risk and technology teams.
- Education – Bachelor’s degree in Computer Science, Information Security, Information Technology, or related discipline (or equivalent work experience)
- Certifications preferred but not required: CISSP (Certified Information Systems Security Professional); CRISC, CISM, or other risk‑related certifications
- 10+ years of progressive experience in Information Security, Cyber Risk, or Technology Risk roles
- 5+ years in the financial services or banking industry with working knowledge of relevant regulations (e.g., GLBA, FFIEC, PCI, SOX)
- Proven experience influencing executive leadership and communicating complex technical risks in business terms
- Demonstrated success in leading cross‑functional teams and delivering cybersecurity solutions at scale
- Experience with cybersecurity governance frameworks (e.g., NIST CSF,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).