Technology Risk Senior Specialist
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, IT Consultant, Data Security, IT Business Analyst
Technology Risk Senior Specialist – Truist
Join to apply for the Technology Risk Senior Specialist role at Truist.
ApplyTo apply, click the Apply Now button at the top or bottom of page. After clicking and completing your application, you will be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status. If you have a disability and need assistance with the application, you can request a reasonable accommodation by sending an email to Accessibility (accommodation requests only;
other inquiries won’t receive a response).
Candidate must be located in
* or* willing to self‑relocate to one of the following locations:
- Charlotte, NC
- Atlanta, GA
- Raleigh, NC
- Winston Salem, NC
- Richmond, VA
- Greensboro, NC
Truist ‘in office’ requirement is 5 days per week (effective Jan 2026). No full remote or relocation assistance available at this time.
Essential Duties And Responsibilities- Provide independent risk oversight (LOD2) for Truist Technology and related consult to Truist Business Units through effective identification, mitigation, monitoring, and reporting of technology risk and other related risks (e.g., operational, compliance) within Enterprise Technology.
- Serve as a subject matter expert and steward of the Technology Risk Framework to identify, report and mitigate technology risks.
- Execute independent assessment and oversight of the maturity of technology and adequacy of technology controls to achieve business outcomes for performance, stability, security and service availability.
- Strengthen and sustain proactive risk culture through conducting effective risk‑focused management and partnership routines with technology teams and internal partners. Interface with senior leaders and key partners across the organization.
- Review and challenge outcomes of first‑line‑of‑defense risk program execution.
- Monitor legal, regulatory, compliance and audit matters for assigned Enterprise Technology oversight area(s) and ensure timely action.
- Lead complex projects that have broad technology and enterprise level impact with implications and/or resource requirements beyond risk management. Provide informal leadership to others and serve as a resource on complex solutions.
- Comfortable in interdisciplinary, matrix environments. Use acumen and skills to effectively bridge business and IT functions seamlessly. Pivot quickly between advisory consultant and implementation consultant roles.
Required Qualifications
- Bachelor’s Degree or an equivalent combination of education and experience.
- 10+ years of banking, technology, operations or risk management experience.
- Strong business acumen, knowledge, management experience, problem solving, critical thinking, influencing and decision‑making skills.
- Experience operating independently and navigating ambiguity to deliver value.
- Excellent interpersonal and communication skills demonstrating the ability to establish credibility with all levels of management effectively.
- Demonstrated ability to organize and manage complex initiatives and deliver high‑quality, executive level work products.
- Comfort with data and applying analysis to derive value‑add insights.
- Adept with Microsoft Office products.
- Proven technical resiliency practitioner within large financial services environment.
- Familiarity with financial services technology‑related laws, rules, regulations, and risk management standards (e.g., FFIEC, COBIT, ITIL).
- AWS Architecture/Framework knowledge highly preferred (Cloud and On‑Prem).
- Familiarity with risk measurement approaches including development of Key Risk Indicators and thresholds and associated reporting and analytics tools (e.g., Tableau).
- Familiarity with enterprise Governance Risk and Compliance (eGRC) platforms and tools (e.g., RSA Archer).
- Professional risk management designations such as Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), and/or Project Management certification.
All regular teammates (not temporary or contingent workers) working 20 hours or more per week are…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).