Jobs
>
New York City

    VP- Technology Information Risk Management - New York, United States - Banco Santander SA

    Default job background
    Description
    VP- Technology Information Risk Management page is loaded

    VP- Technology Information Risk Management

    Apply

    locations

    Madison Ave Corp

    time type

    Full time

    posted on

    Posted 30+ Days Ago

    job requisition id

    Req

    VP- Technology Information Risk ManagementCountry: United States of America

    Functional Summary
    Information Risk Management is a 2nd Line oversight function.

    At BSNY/SANCAP, the Information Risk Management (IRM) team engages in key projects and business/technology initiatives, works with the 1st and 3rd Lines to drive a business aligned, risk-based, cost-effective program designed for the confidentiality, integrity and availability of information, information systems (technology infrastructure, application systems and end-user technology) and information resources in support of business products and processes.

    Mutual commitment and shared interests are critical to our success. We value motivated self-starters, diverse perspectives, integrity, adaptability and excellence.

    We seek capable, experienced, qualified and motivated individuals who seek to advance their own professional goals, by working with us to serve the best interests of our team, the firm and, our customers.

    Position Summary
    Santander is looking to hire an

    Information Risk Management VP

    to become a key member of our Information Risk Management team.

    We are looking for an experienced candidate with a solid Information Technology risk or audit background and experience in operational risk and managing information technology, information security or similarly complex programs in the Financial Services industry.

    The candidate will be part of the 2nd line of defense Information Risk Management team responsible for managing risk frameworks and policy, and providing oversight, review and credible challenge of risk management activities.

    This role will report to the Head of Information Risk Management.

    The individual will partner with key stakeholders across all lines of defense, all business lines and support functions, including IT, IS, Risk, Compliance, Legal, Audit, Human Resources and Finance, to support the identification, assessment, management and reporting of information risks.

    The individual will work in concert with the operational risk management team, including the vendor risk management and business continuity management teams, to ensure close coordination, integration, transparency and awareness of information risks across all risk management programs.

    Primary

    Responsibilities
    Provides 2nd Line risk oversight of the Information Risk Management Program and provides direct 2nd Line support for the Information Technology, Information Security, Business Continuity Management and Records Management Programs, including

    policies/standards/procedures,

    strategies, material risks, risk reporting routines and metrics.

    Independently serves as a trusted partner and risk advisor to key stakeholders and business partners across all lines of defense.

    Credible review and challenge of 1st Line Risk and Control Self-Assessments, including process mapping, identification and assessment of risk, identification of controls, and assessments of control design and effectiveness.

    Provide direct support for regulatory exams and interactions, including assessing risk remediation activities.

    Perform independent risk assessments of information risk management related disciplines, including information technology, information security, business continuity management and disaster recovery and records management.

    Positively contribute to the risk culture and overall awareness of information risk and contribute to the creation and delivery of information risk management training.

    Escalate, report and communicate information risk management matters to executive management and/or regulatory bodies.
    EXPERIENCE and QUALIFICATIONS

    8+ years of related experience; ideally a combination of Technology Risk (1st or 2nd line), IT Audit (3rd line) and/or 1st line Information Technology or Information Security experience.

    Experience in Banking / Financial Services/Insurance.
    Bachelor's degree in the field of IT, Information Security or related field; Master's degree preferred.
    Must actively hold one or more recognized

    industry certifications (CISA, CISM, CRISC, etc.)
    Thought leader, strategic and critical thinker, problem solver.
    Ability to work well both independently and collaboratively as a member of the team.
    Ability to multi-task, work in a fast-paced environment and adapt to change.
    Ability to influence with strong written and verbal communication skills.
    Integrity, combined with high personal and professional standards.
    Strong program and project management skills/capabilities

    SPECIALIZED KNOWLEDGE

    Risk Management Processes:
    Risk Identification, Risk Assessment, Risk Treatment Measures including Risk Acceptance, Governance including

    Measuring/Monitoring/Reporting,

    Risk Aggregation, Control Assessments & Controls Testing, RCSA, etc.

    Information Technology Processes:

    asset management, change management, incident/problem management, patch management, Software Development Lifecycle (SDLC), release management, capacity/performance management, data/records management and destruction, backup and recovery, etc.


    Information Security Processes:

    Identity and access management, privileged access management, generic ID management, threat intelligence, vulnerability management, secure coding practices, data security and encryption, phishing, forensics, mobile security, third-party, etc.

    Business Continuity Management including Business Impact Analysis and Disaster Recovery Planning.

    Technical skills and capabilities (general understanding and/or working knowledge of several of the below examples is a minimum requirement): Microsoft Windows Server/Desktop, Red Hat Linux, IBM AIX, IBM Mainframe/Midrange, VMWare ESXi, LAN/WAN/MAN Networking, Firewall Technologies, Intrusion Detection/Prevention Systems (IDP/IPS), Security Information and Event Management (SIEM), Cloud Computing, Governance Risk and Compliance (GRC) Tools, Web Proxies, SQL/Oracle/DB2 Database Technologies, Data Leakage Protection (DLP), Storage Area Networks (SAN) and Network Attached Storage (NAS), Email Systems, End-User Computing, Web Servers, Middleware Technologies, Microsoft SharePoint.

    Data Analysis skills in Excel, with visualization skills in PowerBI or Tableau a plus

    Regulatory Knowledge:

    Gramm-Leach Bliley Act (GLBA), Sarbanes-Oxley (SOX), OCC Heightened Standards, FFIEC Guidelines, Health Insurance Portability and Accountability Act (HIPAA), New York Department of Financial Services (NYDFS) Cybersecurity Regulation, EU General Data Protection Regulation (GDPR).


    Knowledge of Industry-Standard Frameworks:
    NIST Cybersecurity Framework, SAN/CIS Critical Security Controls, ISO

    9001/20000/22301/27001/31000,

    ISACA COBIT, COSO 2013.
    LOCATION / REPORTING
    Greater NYC, with Madison Ave Location
    Reports to the Head of CIB Information Risk Management

    WORKING CONDITIONS
    Extended hours may be required as dictated by management and business needs.
    Hybrid – 2 days in office, 3 days remote.

    Diversity & EEO Statements:

    At Santander, we value and respect differences in our workforce and strive to increase the diversity of our teams.

    We actively encourage everyone to apply.

    Santander is an equal opportunity employer.

    All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, genetics, disability, age, veteran status or any other characteristic protected by law.


    Working Conditions:
    Frequent Minimal physical effort such as sitting, standing and walking. Occasional moving and lifting equipment and furniture is required to support onsite and offsite meeting setup and teardown. Physically capable of lifting up to fifty pounds, able to bend, kneel, climb ladders.

    Employer Rights:
    This job description does not list all of the job duties of the job. You may be asked by your supervisors or managers to perform other duties. You may be evaluated in part based upon your performance of the tasks listed in this job description. The employer has the right to revise this job description at any time.

    This job description is not a contract for employment and either you or the employer may terminate at any time for any reason.


    For NYC Job Applicants:

    The base annual salary range for this position is $120,000-$160,000.The exact compensation may vary based on skills, experience, training, licensure and certifications and location.

    The Santander Effect
    Our work touches 140 million lives every day. How? By always innovating, sharing our experiences, questioning how we do things and adapting to new challenges.

    As we keep reinventing ourselves for the digital age, you'll find that with us, even your smallest action will have a massive impact.

    #J-18808-Ljbffr

  • DataAxxis

    Risk Manager

    1 week ago


    DataAxxis New York, United States

    **Duration**:6+ months strong potential to be extended or converted to Full-time. · **Location: midtown NYC**- 3 days onsite and 2 WFH · **Rate: $980 per day C2C /$850 per day W2** · **Position Overview**: · As part of a global team the Risk Manager will have responsibilities for ...


  • Bank of China Limited, New York Branch New York, United States

    Introduction: · Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutional weight and global breadth provide our clients with a st ...


  • Toll International LLC New York, United States

    The **Project Risk Manager** will assume a pivotal role in overseeing risk management efforts associated with the development, management, and delivery of Capital and Non-Capital projects across various Port Authority facilities. The Project Risk Manager will collaborate closely ...


  • Amex New York, United States

    **You Lead the Way. We've Got Your Back.** · With the right backing, people and businesses have the power to progress in incredible ways. When you join Team Amex, you become part of a global and diverse community of colleagues with an unwavering commitment to back our customers, ...


  • IDB New York, United States

    **Company Description** · For more than 70 years, IDB Bank has made it our mission to be the best bank for our clients by putting their needs first, and the success we've enjoyed fundamentally comes down to our people. Here at IDB, you'll work side by side with some of the most t ...


  • Toll International LLC New York, United States

    The **Project Risk Manager** will assume a pivotal role in overseeing risk management efforts associated with the development, management, and delivery of Capital and Non-Capital projects across various Port Authority facilities. The Project Risk Manager will collaborate closely ...

  • DataAxxis

    Market Risk Manager

    1 week ago


    DataAxxis New York, United States

    **Duration**:6+ months strong potential to be extended or converted to Full-time. · **Location**:Jersey City - 3 days onsite and 2 WFH · **Rate: $980 per day C2C /$850 per day W2** · **Description**: · Fixed Income Market Risk Manager focusing on Interest Rate products. The core ...


  • NYC Health + Hospitals New York, United States

    **About NYC Health + Hospitals**: · Sea View Hospital and Rehabilitation Center and Home is a 304-bed long term care facility located in Staten Island's lush Greenbelt. Serving the metropolitan area, it is easily accessible from all points by car and bus. Like many HHC facilities ...


  • Quantum Solutions New York, United States

    **RESPONSIBILITIES**: · Work with the team to strategize and create meaningful metrics designed to measure progress, impacts, and find opportunities for improvement across the Digital Workplace Portfolio · - Implement a framework that produces Key Portfolio Risk Indicator Metrics ...


  • The Clearing House New York, United States

    **Qualifications Required**: · - Bachelor's degree in risk management, business administration, finance, or a related area. · - At least 6-8 years of first or second line risk management experience (preferably related to Operations, Technology, or Product management). · - 8+ year ...


  • WTW New York, United States

    We know how companies can unlock potential through effective risk management. Our clients rely on us to craft strategies to identify, assess, mitigate, and transfer risk, taking advantage of our specialist industry experience and unparalleled market know-how. The result is a new ...


  • Citi New York, United States

    The Compliance Anti-Money Laundering (AML) Risk Management Director is a senior management level position responsible for establishing internal procedures to prevent money laundering and assist in all matters concerning financial crimes in coordination with the broader AML team. ...


  • Quantum Solutions New York, United States

    Digital Workplace Governance, Risk and Compliance Team is responsible embedding Governance, Risk & Compliance program/processes into the Digital Workplace operating model. · **RESPONSIBILITIES**: · Work with the team to strategize and create meaningful metrics designed to measure ...


  • Klarna New York, United States

    **We are on a mission **to liberate humanity from all the meaningless time spent managing their purchases and finances, so they can do more of what they love. Klarna was founded on a bold belief: that people are capable of achieving the extraordinary, even when faced with the see ...


  • Quantum Solutions New York, United States

    **ABOUT**: · Digital Workplace Governance, Risk and Compliance Team is responsible embedding Governance, Risk & Compliance program/processes into the Digital Workplace operating model. · **RESPONSIBILITIES**: · Work with the team to strategize and create meaningful metrics design ...


  • BizTek People, Inc. | APA International Placement Consultants New York, United States

    Responsibilities: · • Compile a suite of daily and monthly liquidity risk related reports for the US Operations, with a key focus on banking entities as well as broker dealer and derivative swap dealer entities. · • Monitor liquidity risk and ensure adherence to the liquidity rep ...


  • NOMURA New York, United States

    Region · - Americas · Division · - Corporate · Location · - New York · Program type · - Internship · Level · - Analyst · Job description · **2025 Risk Management Summer Analyst Program** · **Company Overview** · **Risk Management Overview** · The Americas Risk Management Division ...


  • Citi New York, United States

    The UDCS Risk Intmd Analyst is a developing professional role. Deals with most problems independently and has some latitude to solve complex problems. Integrates in-depth specialty area knowledge with a solid understanding of industry standards and practices. Good understanding o ...


  • Mai Placement Brooklyn, United States

    **About us** · We are professional, agile and professional. · Our work environment includes: · - Modern office setting · - Food provided · - Work-from-home days · - Growth opportunities · **Director of Risk Management Co.** · **NY, NJ Hybrid** · **200-250k** · Job Overview: The D ...


  • Mount Sinai Astoria, United States

    **Description** · The Clinical Risk Manager in the Department of Risk Management is responsible for the day to day risk management activities at Mount Sinai Queens including investigating, managing, and analyzing risk management data; complying with risk management standards of t ...