Lead Technology Governance Consultant – IT Asset Risk Classification Governance
Listed on 2026-08-27
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Business Analyst, IT Consultant
Need Help? If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).
Regular or Temporary:Regular
Language Fluency:English (Required)
Work Shift:1st shift (United States of America)
Please review the following job description:The IT Asset Risk Classification (ITARC) Governance Lead is responsible for the design, governance, and continuous improvement of the enterprise technology asset risk classification methodology. This role partners across Cybersecurity, Operational Resilience, Data Governance, Technology Risk, and business stakeholders to establish risk-based criteria, define scoring models, and ensure consistent assessment of technology assets based on their inherent and residual risk characteristics.
The position leads the development and maintenance of a comprehensive risk scoring framework that incorporates cybersecurity, resilience, data sensitivity, business criticality, and regulatory considerations into a consolidated ITARC score. The individual is responsible for defining risk indicators, establishing weighting methodologies, validating scoring outcomes, and providing governance oversight to ensure the methodology remains accurate, auditable, and aligned with enterprise risk management objectives.
This role requires a strong understanding of technology governance, risk management, cybersecurity, resilience, and data management principles, along with the analytical skills necessary to translate complex risk factors into meaningful and actionable risk classifications. The successful candidate will support executive reporting, risk prioritization, audit and regulatory inquiries, and strategic decision-making by providing reliable and defensible technology risk insights across the enterprise.
- Truist will not sponsor an applicant for work visa status or employment authorization, nor will we offer any immigration-related support for this position (including, but not limited to H-1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN-1 or TN-2, E-3, O-1, or future sponsorship for U.S. lawful permanent residence status.)
- Please also note that candidates must be located in
* or* willing to self-relocate to one of the following locations:
Charlotte or Raleigh, NC or Atlanta, GA. Truist has 'in office' requirements that must be honored.
- Leads complex technology governance assessments, control design, and/or testing initiatives.
- Advises senior leaders on technology risk posture and control effectiveness.
- Designs and enhances enterprise technology governance frameworks.
- Guides remediation strategies for significant or systemic risk issues.
- Mentors and provides technical guidance to other governance professionals.
Required Qualifications
- Bachelor’s degree in Information Technology, Information Security, Engineering, or related field.
- Extensive experience in technology governance or related disciplines.
- Demonstrated expertise in regulatory requirements and control frameworks.
- Master’s degree in a relevant technical or business discipline.
- Experience in the financial services industry.
- Professional certifications such as CRISC, COBIT, CGEIT, CISM3, or equivalent.
- Strong knowledge of cybersecurity capabilities and frameworks and financial industry regulations.
- Proven ability to manage complex technology governance projects, programs, and initiatives.
All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).