Senior Technical Governance Program Manager
Listed on 2026-09-05
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Project Manager
Senior Security Technical Governance Program Manager
Lead Bank is seeking a Senior Security Technical Governance Program Manager to lead the strategy, execution, and continuous optimization of the bank's technology governance, compliance, and risk programs. This role will be responsible for ensuring that security controls across the bank's technology environment, internal operations, and Banking-as-a-Service (BaaS) ecosystem meet rigorous regulatory requirements, industry standards, and internal risk tolerance.
The Senior Technical Governance Program Manager will play a critical role in standardizing security compliance processes, driving continuous monitoring, and embedding automated security controls into everyday operations. This position will partner closely with Security Engineering, Technology, Data, Compliance, and Enterprise Risk Management (ERM) teams to modernize control frameworks, maintain constant audit readiness, and safely govern emerging technologies across the organization.
Key Responsibilities:
- Lead and manage enterprise technology governance, risk, compliance, and control initiatives across Information Security, Technology, Engineering, and Data organizations.
- Lead, mentor, and develop team members, including setting priorities and goals, providing ongoing coaching and feedback, and supporting professional growth and performance.
- Drive enterprise Data Management and Governance initiatives, including data security, data classification, retention, data quality, governance controls, and regulatory compliance requirements.
- Lead governance and readiness programs for enterprise Disaster Recovery (DR), including readiness assessments, control reviews, tabletop exercises, recovery testing, lessons learned, and resiliency improvement initiatives.
- Manage Security Compliance programs across Information Security, Technology, and Engineering teams, ensuring alignment with applicable regulatory requirements, industry frameworks, internal policies, and security best practices.
- Manage and oversee the enterprise Security Third-Party Risk Program, including risk assessments, due diligence, ongoing monitoring, control reviews, audits, issue management, and remediation tracking.
- Drive automation of audit and compliance evidence gathering, control monitoring, and governance workflows to improve efficiency, consistency, audit readiness, and control effectiveness.
- Lead coordination of internal and external audits covering technology, cybersecurity, cloud, engineering, infrastructure, and related controls. Manage evidence collection, lead control walkthroughs, audit requests, findings, and remediation activities through closure.
- Support and lead strategic initiatives and special projects including but not limited to emerging technology risk, Artificial Intelligence (AI) governance and risk management, compliance program enhancements, automation, regulatory readiness, and technology control modernization.
- Identify opportunities to strengthen technology governance and compliance through automation, continuous monitoring, risk-based controls, standardized processes, and scalable program improvements.
- Perform all other duties as assigned.
Qualifications:
- 5–8 years of experience in Technology, Information Security, Cybersecurity, Engineering, Technology Risk, Governance, Risk & Compliance (GRC), or a related discipline.
- Experience managing, mentoring, and developing teams, with demonstrated ability to set priorities, provide feedback, and drive individual and team performance.
- Demonstrated experience leading complex, cross-functional technology governance, risk, compliance, or security programs in high-growth technology, fintech, startup, or similarly fast-paced environments.
- Experience in banking, financial services, or other highly regulated industries preferred.
- Familiarity with AI tools, AI governance, AI risk management, and emerging technology controls.
- Strong understanding of technology governance, cybersecurity frameworks, cloud platforms, infrastructure security, engineering controls, technology risk, enterprise risk management, and compliance practices.
- Experience working with internal and external auditors…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).