More jobs:
Tech & Security Risk Oversight Manager
Job in
Cincinnati, Hamilton County, Ohio, 45208, USA
Listed on 2026-06-04
Listing for:
Fifth Third
Full Time
position Listed on 2026-06-04
Job specializations:
-
IT/Tech
Cybersecurity, Information Security
Job Description & How to Apply Below
Cincinnati, OHtime type:
Full time posted on:
Posted Todaytime left to apply:
End Date:
June 4, 2026 (30 days left to apply) job requisition :
R67767
** Make banking a Fifth Third better(R)
**** GENERAL FUNCTION:
** Provide independent oversight and effective challenge of Technology and Information Security risk activities to support safe and sound operations and regulatory compliance. This includes oversight of third-party technology/security risk, M&A security due diligence and integration risk oversight, risk and control self-assessments (RCSAs), and key risk indicator (KRI) design and monitoring. The role is accountable for elevating concerns, documenting outcomes of credible challenge, and following policies, programs, and procedures as defined.
** ROLE DETAILS:
*
* Location:
38 Fountain Square, Cincinnati, Ohio | Work model:
On-site.
*
* ESSENTIAL DUTIES AND RESPONSIBILITIES:
**
* ** Third-Party Technology & Security Risk Oversight** + Provide 2
LOD oversight and credible challenge of the Third-Party Risk Management (TPRM) program, with a focus on technology and information security risk. + Review and challenge third-party technology/security risk assessments, control requirements, and remediation plans; document challenge outcomes and escalate concerns when needed. + Partner with stakeholders to improve the quality, consistency, and timeliness of third-party risk decisions, metrics, and reporting.
* ** Mergers & Acquisitions (M&A) Security Oversight** + Provide oversight and challenge of security due diligence activities and the Extended Security Program for M&A. + Assess integration and transition risks (e.g., identity and access, data protection, vulnerability management, incident response readiness) and ensure risks and dependencies are tracked through closure.
* ** Risk & Control Oversight (RCSA / Control Challenge)** + Oversee and challenge RCSAs performed by 1
LOD/business control teams for Information Security and Information Technology. + Provide credible challenge of risk analyses, control selection, and control design/operating effectiveness evidence for topics including Information Security and Information Technology risks, privacy, and other areas that materially affect the Bank’s risk profile.
* ** Key Risk Indicators (KRIs) & Risk Reporting** + Challenge the definition, thresholds, and monitoring cadence for technology/security KRIs to ensure risk measurement is comprehensive, accurate, and timely. + Translate technology and security risk into clear business terms for senior leaders and governance forums; support periodic risk reporting and emerging risk updates.
* ** Standards, Regulatory Alignment, and Continuous Improvement** + Maintain awareness of applicable regulatory requirements and industry standards related to safeguarding confidentiality, integrity, and availability of information assets (e.g., OCC/Interagency guidance, NIST, ISO, COBIT, ITIL, PCI as applicable). + Recommend enhancements to technology and security risk frameworks, assessment methodologies, and oversight routines to improve consistency and regulatory alignment. + Complete point-of-view (POV) risk assessments on emerging risks and targeted focus areas as assigned.
* ** Stakeholder Partnership, Enablement, and Influence** + Collaborate with Operational Risk, Compliance (Privacy), Finance, Legal, Information Security, IT, and Business Controls to drive timely execution and improve effectiveness of technology and security risk activities. + Provide training and education to the 1st line of defense to support a fully operationalized technology and security risk management program. + Enable cross-training and knowledge sharing across the team and stakeholders (influence without direct supervisory authority).
*
* SUPERVISORY RESPONSIBILITIES:
** None
* * MINIMUM KNOWLEDGE &
SKILLS REQUIRED:
**
* ** Required** + Bachelor’s degree in computer science, cybersecurity, data science, or related field (or equivalent practical experience). + 5+ years of experience leading, executing, and/or governing…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×