Lead Technology Governance Consultant – IT Asset Risk Classification Governance
Listed on 2026-08-24
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Business Analyst
IT Asset Risk Classification (ITARC) Governance Lead
The IT Asset Risk Classification (ITARC) Governance Lead is responsible for the design, governance, and continuous improvement of the enterprise technology asset risk classification methodology. This role partners across Cybersecurity, Operational Resilience, Data Governance, Technology Risk, and business stakeholders to establish risk-based criteria, define scoring models, and ensure consistent assessment of technology assets based on their inherent and residual risk characteristics.
The position leads the development and maintenance of a comprehensive risk scoring framework that incorporates cybersecurity, resilience, data sensitivity, business criticality, and regulatory considerations into a consolidated ITARC score. The individual is responsible for defining risk indicators, establishing weighting methodologies, validating scoring outcomes, and providing governance oversight to ensure the methodology remains accurate, auditable, and aligned with enterprise risk management objectives.
This role requires a strong understanding of technology governance, risk management, cybersecurity, resilience, and data management principles, along with the analytical skills necessary to translate complex risk factors into meaningful and actionable risk classifications. The successful candidate will support executive reporting, risk prioritization, audit and regulatory inquiries, and strategic decision-making by providing reliable and defensible technology risk insights across the enterprise.
Essential Duties and Responsibilities Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
- Leads complex technology governance assessments, control design, and/ or testing initiatives.
- Advises senior leaders on technology risk posture and control effectiveness.
- Designs and enhances enterprise technology governance frameworks.
- Guides remediation strategies for significant or systemic risk issues.
- Mentors and provides technical guidance to other governance professionals.
Qualifications Required Qualifications The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
- Bachelor's degree in Information Technology, Information Security, Engineering, or related field.
- Extensive experience in technology governance or related disciplines.
- Demonstrated expertise in regulatory requirements and control frameworks.
Preferred Qualifications
- Master's degree in a relevant technical or business discipline.
- Experience in the financial services industry.
- Professional certifications such as CRISC, COBIT, CGEIT, CISM3, or equivalent.
- Strong knowledge of cybersecurity capabilities and frameworks and financial industry regulations.
- Proven ability to manage complex technology governance projects, programs, and initiatives.
Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).