Supports Independent Technology Risk Management (ITRM) in planning and executing the ITRM program and corresponding communication strategies.
Leverages subject matter expertise in technology environments (infrastructure, network, MIS, & cyber) and technology governance and control frameworks to oversee and challenge first line ability to identify, assess, and mitigate technology and cybersecurity risk.
Translates cybersecurity and threat intelligence to the current technology and control environments.
Responsible for development of qualitative and quantitative risk analytics approaches to independently evaluate technology and cybersecurity risks.
Manages relationships with Technology & Operations and the Lines of Business to ensure that technology risk issues are monitored and communicated to the appropriate level of management.
Coordinates and implements ITRM program to meet regulatory expectations and manage risks within PNCs risk appetite.
Coordinates the timely and proper execution of the ITRM program within and across the lines of business.
Includes consultation to execute the ITRM program components.
Leverages subject matter expertise in technology environments (infrastructure, network, MIS, & cyber) and risk expertise while working with the businesses and other risk partners (e.g., Compliance, Cyber Security, Technology and Operations Risk, etc.) to proactively identify risk exposures across PNC.
Leverages subject matter expertise in and technology governance and control frameworks to challenges business self-assessment results (including new initiatives, business as usual activities, and risk management program) and reviews and reports applicable independent analyses.
Translates cybersecurity and threat intelligence to the current technology and control environments and develops qualitative and quantitative risk analytics approaches to independently evaluate technology and cybersecurity risks.
Requirements
5+ years of industry-relevant experience
Subject matter expertise in identifying, assessing, and remediating technology risk concerns
Ability to effectively challenge internal partners on risk assessment outcomes, testing scenarios, and controls limitations
Exposure to data analytics, software/application engineering, or data management functions and the project management lifecycle
Understanding of how to apply data to monitor risk program effectiveness – Using data to identify changes in risk occurrences and emerging threats
Involvement in projects to increase efficiency and effectiveness of departmental standard operating procedures
Understanding of preparing documentation and drafting responses to regulatory agency bodies, such as the OCC
Prior experience supporting technology risk assessment and remediation within physical and/or digital technology infrastructure for data storage highly preferred
Benefits
medical/prescription drug coverage (with a Health Savings Account feature)
dental and vision options
employee and spouse/child life insurance
short and long-term disability protection
401(k) with PNC match
pension and stock purchase plans
dependent care reimbursement account
back-up child/elder care
adoption, surrogacy, and doula reimbursement
educational assistance, including select programs fully paid
a robust wellness program with financial incentives
maternity and/or parental leave
up to 11 paid holidays each year
8 occasional absence days each year, unless otherwise required by law
between 15 to 25 vacation days each year, depending on career level; and years of service
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
communicationrelationship managementconsultationproblem-solvingcritical thinkingcollaborationanalytical thinkingattention to detailability to challengeadaptability