Information Technology Risk LoD lead
Listed on 2026-02-16
-
IT/Tech
IT Consultant, IT Project Manager
Location: New York
We are seeking for a highly skilled and experienced Director of Technology Risk LoD1 and Software Asset Management lead to play a critical role in safeguarding Natixis CIB Americas IT and ensuring compliance with industry regulations
They will serve as the primary interface for the LoD
1.1 Group (BCPE group and Natixis CIB at Head Office) and LoD2 (CISO, Operational Risk and Compliance) in relation to IT risk taxonomies and categories for LoD1 (Line of Defense
1).
This executive role is vital for ensuring the security and compliance of our Natixis CIB Americas IT, managing software assets effectively, and mitigating risks associated with information technology operations.
The successful candidate will possess a deep understanding of IT risk frameworks, software licensing agreements, and industry best practices. You will be responsible for implementing the Group IT Risk Management (ITRM) Framework, tailoring it to meet specific business or geographical needs, and leading initiatives to assess and enhance IT risk controls for Natixis CIB Americas platform in coordination with the overall IT department.
and Strategy
- Strenghen the IT risk management strategy in alignment with Head Office (BPCE Group and Natixis CIB), organization’s goals and compliance requirements.
- Lead the Software Asset Management (SAM) program, including process optimization, governance frameworks and contributing ot the associated policy managed at LoD
2. - Participate and/or conduct regular risk assessments, vulnerability assessments, and audits to identify potential IT risks and recommend appropriate controls and mitigations.
- Oversee and assist the identification, analysis, and prioritization of risks associated with IT systems, software applications, and third-party vendors.
- Establish and maintain IT risk management procedures and any associated runbook in accordance with industry regulations and best practices.
- Ensure software asset management procedures and runbooks are effectively communicated and enforced across the organization.
- Oversee the lifecycle of software assets from acquisition to retirement, ensuring compliance with licensing agreements and optimizing software usage with alignment with Head Office processes.
- Conduct daily health checks and completeness checks for all software assets in the IT Asset Management (ITAM) system.
- Coordinate the ITAM Annual Recertification process to ensure ongoing compliance and accuracy of software assets with the IT asset owners.
- Liaise with relevant stakeholders to facilitate IT controls review and reporting, ensuring all controls are met and documented.
- Participate on ITAM tool feature enhancements to improve functionality and ensure it meets organizational needs, especially around SAM area.
- Manage enhancement requests for the ITAM tool, working with IT teams to prioritize and implement improvements.
- Perform random sampling of the End-of-Life (EOL) remediation tracking Power App to ensure compliance and effectiveness.
- Prepare risk and controls reporting, including controls, Data Risk Strategy (DRS), and operational risk reports for senior management.
- Submit risk acceptances for CIO Office needs, ensuring proper documentation and justification for any exceptions.
- Coordinate the implementation and knowledge transfer related to Multi-Factor Authentication (MFA) for appropriate applications to enhance security measures.
- Oversee ITAM controls operations to ensure adherence to established policies and procedures.
- Develop and implement training programs to educate employees on IT risk management practices and software licensing compliance.
- Foster a culture of accountability and awareness around IT risk and asset management within the organization.
- Stay current with industry trends, regulations, and emerging technologies related to IT risk management and software asset management.
- Drive continuous improvement initiatives to enhance risk management processes and software asset utilization.
Natixis is an equal opportunity employer, committed…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).