ForgeApply · Job listing
Cloud Technology Risk Manager
U.S. Bank
See all 147 open roles at U.S. Bank →
Tailor your resume for this U.S. Bank job in about a minute.
ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for U.S. Bank's site. Free trial, no card required.
About this role
At U.S. Bank, we’re on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at—all from Day One.
Job Description
The Technology, Cybersecurity, and Digital, Data, and AI Risk team provide support to our business partners to maintain an agile, well-controlled environment that can rapidly and reliably deliver services across the enterprise. This Technology Risk Manager position will support the Technology Infrastructure organization. To achieve this, the Technology Risk Manager must develop a deep understanding of the aligned leader’s area and partner to:
• Consult control owners and leaders about the risk profile of their portfolios of processes and applications • Serve as a trusted risk advisor to aligned Technology leaders • Identify and address risks before they impact objectives • Oversee and enable the aligned Technology team’s compliance with existing and new requirements • Evaluate and consult on the risks associated with strategic priorities or major programs and projects • Provide actionable information to help prioritize risk-mitigation actions across the portfolio of platforms/applications managed by the leader • Design and enhance effective control environments for technology products and services • Simplify the existing control environment using process/control re-engineering and automation • Respond to unexpected events and findings
Top 3 Skills
• Technology Risk Management • Cloud Risk Management & Governance (AWS and Azure) — including platform-level control design, service enablement, and cloud migration risk oversight • Control Design, Testing, and Assessment for Infrastructure Platforms — including preventative/detective control frameworks (NIST, FFIEC, CSA CCM), evidence review, and control lifecycle management
Top 3 Responsibilities
• Identify, monitor, and report on processes, risks, and controls within risk appetite • Influence risk-based outcomes within the Technology group’s portfolios • Provide guidance on how to effectively achieve and sustain compliance with regulatory, industry and contractual obligations, as well as information security policies and practices
Other Role responsibilities include
• Collaborate to drive strategic outcomes for the good of the overall team • Consult on strategic initiatives that are defined by the product area owner; ensure risks are appropriately documented, reported, and escalated • Provide advisory and implementation support in the development of management responses to manage associated risk • Perform risk assessments to evaluate compliance with existing policies and procedures and to accurately identify risks and drive remediation processes to ensure that compliance and security gaps are addressed • Use data analysis to help aligned Program Leaders develop proactive and anticipatory approaches to risk management • Support aligned Technology or Business Line team in demonstrating evidence of control effectiveness and identify and escalate control gaps in a timely manner • Deliver targeted and actionable risk reporting across various leadership levels • Serve as a functional liaison between the Business Line and second and third lines of defense
Basic Qualifications
• Bachelor's degree, or equivalent work experience • Typically, more than eight years of applicable experience
Preferred Skills and Experience
• Advanced knowledge of applicable laws, regulations, financial services, and regulatory trends that impact their assigned line of business • Advanced understanding of the business line’s operations, products/services, systems, and associated risks/controls • Thorough knowledge of Risk/Compliance/Audit competencies • Strong management skills in processes, projects and people • Excellent presentation, interpersonal, written, and verbal communication skills • Strong analytical, problem-solving and negotiation skills • Proficient computer skills, especially Microsoft Office applications • Applicable professional certifications (e.g. CRISC, ITIL, CISSP, CGEIT, etc.)
The role requires technical knowledge of
• Agile frameworks and product management practices • Public cloud platforms (AWS and Azure) — service enablement/blueprint processes, IAM models, PaaS/IaaS service patterns, and cloud-native control tooling (e.g., CSPM, config management) • Infrastructure and platform controls — backup/snapshot configuration and retention, encryption and key management, secrets rotation and vaulting (e.g., HashiCorp Vault), and privileged/break-glass access • Risk and control frameworks and regulatory standards relevant to U.S. financial services — NIST CSF / SP 800-53, FFIEC IT Handbook, CSA CCM, PCI DSS 4.0, SOX ITGC, SOC 2, and applicable data-protection regimes (GDPR, IRS Pub 1075, GLBA) • Data classification and data protection — PII/Personal Class 1 handling, tokenization, and information classification frameworks • GRC and workflow tooling — RSA Archer (RCSA, issues, controls), ServiceNow IRM, and JIRA for change/issue tracking • IT Service Management and change/configuration management (ITIL v4) as applied to cloud and hybrid infrastructure • Risk assessment methodologies — RCSA, targeted risk assessments, and control gap/target-state assessments
If there’s anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to our disability accommodations for applicants .
Benefits: Our approach to benefits and total rewards considers our team members’ whole selves and what may be needed to thrive in and outside work. That's why
Salary insight
The midpoint of this range ($130k) is right around the median disclosed salary for Charlotte roles listed on ForgeApply ($126k across 393 jobs).
Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.
Tailor your resume for this U.S. Bank role before you apply.
Tailor my resume for this jobSimilar jobs
- Manager, Technology Risk — Hinge Health · San Francisco-HQ
- Senior Manager, Technology Risk — Upstart · Remote
- Cloud Risk and Management Advisor - Mid Level — Usaa · Tampa Crosstown | Charlotte, NC - CENTS | San Antonio Home Office I
- Security Risk & Engineering - Tech and Cyber Risk & Compliance -Manager — PwC · NY-New York | GA-Atlanta | IL-Chicago
- Risk Manager, Emerging Technology Risk — KeyBank · Remote
- IT Risk Manager — Earlywarning · Scottsdale | Chicago | San Francisco
- Manager Technology Risk — Ameriprise · Minneapolis, Minnesota
- Cybersecurity Risk - Managing Consultant — Guidehouse · US - VA, McLean | US - DC, Washington
Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)