×
Register Here to Apply for Jobs or Post Jobs. X

Information Technology Enterprise Risk Manager

Job in Louisville, Jefferson County, Kentucky, 40201, USA
Listing for: Jobtailor
Full Time position
Listed on 2026-08-16
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, IT Consultant, IT Project Manager
Salary/Wage Range or Industry Benchmark: 120000 - 160000 USD Yearly USD 120000.00 160000.00 YEAR
Job Description & How to Apply Below
  • Support execution and oversight of Northwest's Operational Risk framework for information technology, information security, and data risks
  • Oversee technology-related Risk and Control Self-Assessments (RCSA), challenge conclusions, and monitor routines
  • Independently assess risks and drive actions addressing root causes of significant residual operational risk
  • Validate first-line control testing and independently test IT, information security, and data controls
  • Mature second-line technology and information security risk assessments, document controls, identify gaps, and create action plans
  • Support key risk assessments, including GLBA, authentication and access, PCI DSS, and HIPAA assessments
  • Consult on issues addressing control gaps and monitor remediation progress
  • Establish and review metrics measuring technology risks and challenge deficient-metric action plans
  • Oversee front-line IT, information security, and data activities and exception handling
  • Challenge IT, information security, and data policies and standards for corporate governance compliance
  • Analyze losses associated with IT failures, disruptions, and errors; identify root causes and recommend future risk avoidance
  • Ensure compliance with company policies, procedures, and federal/state regulations
  • Navigate Microsoft Office and department-specific applications
  • Work as part of a team and with on-site equipment
  • Perform additional duties assigned by management
Requirements
  • Bachelor's Degree in Management Information Systems, Cybersecurity, or Business Administration
  • 8–12 years of cybersecurity/information technology experience
  • 6–8 years of prior financial institution experience
  • Deep understanding of information technology, information security, and data principles and best practices
  • Proficiency in risk management methodologies, frameworks, and RCSA execution
  • Knowledge of NIST CSF, GLBA, PCI DSS, and HIPAA
  • Experience with vulnerability scanning and penetration testing tools
  • Strong analytical and problem-solving skills
  • Excellent communication and reporting abilities
  • Ability to comply with Northwest policies and procedures and federal/state regulations
  • Ability to navigate Microsoft Office, computer applications, and department-specific software
  • ITIL, CISA, CISM, CRISC, and CISSP certifications are listed
Core Competencies

Demonstrates expertise in managing operational risk frameworks, particularly in information technology and information security, while ensuring compliance with relevant regulations. Proficient in risk management methodologies and capable of conducting thorough risk assessments and control testing.

Certifications & Qualifications
  • ITIL
  • CISA
  • CISM
  • CRISC
  • CISSP
#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary