×
Register Here to Apply for Jobs or Post Jobs. X

Assistant Vice President – IT Security Governance & Risk Management

Job in Princeton, Mercer County, New Jersey, 08543, USA
Listing for: State Street
Full Time position
Listed on 2026-09-01
Job specializations:
  • IT/Tech
    Information Security & Data Protection, Cybersecurity
Salary/Wage Range or Industry Benchmark: 100000 - 168000 USD Yearly USD 100000.00 168000.00 YEAR
Job Description & How to Apply Below

Role Summary

We are seeking an experienced IT Security Governance & Risk Management leader to support enterprise-wide remediation and compliance initiatives across Alternatives Investment Services (AIS) and Insurance technology platforms.

At the AVP level, this role acts as a hands-on execution lead and escalation point
, partnering with application owners, production support, infrastructure teams, and senior leadership to ensure timely remediation of identity, access, vulnerability, and application lifecycle risks in a highly-regulated environment.

The role requires strong execution discipline, governance maturity, and the ability to drive outcomes across a large, complex application portfolio.

Key Responsibilities Identity & Access Risk Management
  • Lead remediation of aged passwords and non-human/service accounts across a large portfolio of AIS and Insurance applications.
  • Partner with application and production support teams to drive corrective actions including password rotation, account disablement, or decommissioning.
  • Track remediation activity through enterprise change management tools and ensure committed actions are executed on schedule.
  • Validate remediation outcomes using identity and access platforms and ensure evidence is audit-ready.
  • Maintain centralized tracking, metrics, and reporting for non-compliant accounts.
  • Escalate repeated non-compliance and missed timelines to senior management, clearly articulating risk and impact.
Vulnerability & Patch Governance
  • Review weekly vulnerability reports and validate trends, new findings, and remediation progress.
  • Identify carried-over and at-risk vulnerabilities and engage application teams to ensure timely resolution.
  • Maintain high-quality data sets and develop management views to support leadership decision-making.
  • Produce weekly executive-level reporting for AIS and Insurance portfolios, including risks, trends, and remediation timelines.
  • Coordinate with infrastructure and security teams to resolve issues and remove blockers.
Multi-Factor Authentication (MFA) Compliance
  • Track and govern MFA implementation across AIS and Insurance applications.
  • Coordinate with application teams to manage timelines, dependencies, and attestations.
  • Provide clear, concise weekly status reporting to senior leadership.
  • Highlight risks and elevate applications not meeting agreed-upon milestones.
Policy Violations & Control Exceptions
  • Review periodic policy violation reports related to application security controls.
  • Engage application owners to obtain remediation plans and progress updates.
  • Provide guidance on remediation of common violations and control gaps.
  • Escalate non-responsive or non-compliant applications to senior leadership.
Application Risk Remediation
  • Drive remediation of interactive and legacy account risks in collaboration with application owners and support teams.
  • Support teams with remediation approaches to align accounts with non-interactive access standards.
  • Maintain status tracking and elevate stalled remediation activity where required.
Application Lifecycle Risk & Resilience
  • Ensure applications using end-of-life or unsupported components are properly documented in enterprise lifecycle risk repositories.
  • Validate remediation timelines and support application teams with required updates.
  • Escalate applications that fail to maintain accurate lifecycle risk data.
Financial & Delivery Transparency
  • Produce and maintain governance and status reporting for key technology initiatives within AIS and Insurance.
  • Partner with delivery teams to ensure accomplishments, upcoming activities, and risks are accurately captured and communicated.
  • Support audit and regulatory inquiries through consistent, high-quality reporting.
Required Qualifications
  • 7-10+ years of experience in IT risk management, security governance, identity and access management, or regulatory compliance.
  • Proven ability to lead remediation activities across large, complex application portfolios.
  • Strong experience producing executive-level reporting and communicating technical risk to senior stakeholders.
  • Demonstrated ability to drive accountability, follow-through, and escalation in matrixed environments.
  • Strong analytical,…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary