Assistant Vice President – IT Security Governance & Risk Management
Job in
Princeton, Mercer County, New Jersey, 08543, USA
Listed on 2026-09-01
Listing for:
State Street
Full Time
position Listed on 2026-09-01
Job specializations:
-
IT/Tech
Information Security & Data Protection, Cybersecurity
Job Description & How to Apply Below
Role Summary
We are seeking an experienced IT Security Governance & Risk Management leader to support enterprise-wide remediation and compliance initiatives across Alternatives Investment Services (AIS) and Insurance technology platforms.
At the AVP level, this role acts as a hands-on execution lead and escalation point
, partnering with application owners, production support, infrastructure teams, and senior leadership to ensure timely remediation of identity, access, vulnerability, and application lifecycle risks in a highly-regulated environment.
The role requires strong execution discipline, governance maturity, and the ability to drive outcomes across a large, complex application portfolio.
Key Responsibilities Identity & Access Risk Management- Lead remediation of aged passwords and non-human/service accounts across a large portfolio of AIS and Insurance applications.
- Partner with application and production support teams to drive corrective actions including password rotation, account disablement, or decommissioning.
- Track remediation activity through enterprise change management tools and ensure committed actions are executed on schedule.
- Validate remediation outcomes using identity and access platforms and ensure evidence is audit-ready.
- Maintain centralized tracking, metrics, and reporting for non-compliant accounts.
- Escalate repeated non-compliance and missed timelines to senior management, clearly articulating risk and impact.
- Review weekly vulnerability reports and validate trends, new findings, and remediation progress.
- Identify carried-over and at-risk vulnerabilities and engage application teams to ensure timely resolution.
- Maintain high-quality data sets and develop management views to support leadership decision-making.
- Produce weekly executive-level reporting for AIS and Insurance portfolios, including risks, trends, and remediation timelines.
- Coordinate with infrastructure and security teams to resolve issues and remove blockers.
- Track and govern MFA implementation across AIS and Insurance applications.
- Coordinate with application teams to manage timelines, dependencies, and attestations.
- Provide clear, concise weekly status reporting to senior leadership.
- Highlight risks and elevate applications not meeting agreed-upon milestones.
- Review periodic policy violation reports related to application security controls.
- Engage application owners to obtain remediation plans and progress updates.
- Provide guidance on remediation of common violations and control gaps.
- Escalate non-responsive or non-compliant applications to senior leadership.
- Drive remediation of interactive and legacy account risks in collaboration with application owners and support teams.
- Support teams with remediation approaches to align accounts with non-interactive access standards.
- Maintain status tracking and elevate stalled remediation activity where required.
- Ensure applications using end-of-life or unsupported components are properly documented in enterprise lifecycle risk repositories.
- Validate remediation timelines and support application teams with required updates.
- Escalate applications that fail to maintain accurate lifecycle risk data.
- Produce and maintain governance and status reporting for key technology initiatives within AIS and Insurance.
- Partner with delivery teams to ensure accomplishments, upcoming activities, and risks are accurately captured and communicated.
- Support audit and regulatory inquiries through consistent, high-quality reporting.
- 7-10+ years of experience in IT risk management, security governance, identity and access management, or regulatory compliance.
- Proven ability to lead remediation activities across large, complex application portfolios.
- Strong experience producing executive-level reporting and communicating technical risk to senior stakeholders.
- Demonstrated ability to drive accountability, follow-through, and escalation in matrixed environments.
- Strong analytical,…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×