ForgeApply · Job listing
Compliance and Operational Risk Manager – Application Security and Technology Risk Oversight
Bank of America
See all 535 open roles at Bank of America →
Tailor your resume for this Bank of America job in about a minute.
ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for Bank of America's site. Free trial, no card required.
About this role
Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.
We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.
Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Job Description: This job is responsible for executing second line of defense compliance and operational risk oversight for a Front Line Unit, Control Function, and/or Third Parties. Key responsibilities include ensuring requirements of the Global Compliance Enterprise Policy, the Operational Risk Management Enterprise Policy (collectively “the Policies”), the Compliance and Operational Risk Management Program and Standard Operating Procedures are implemented and identifying, challenging, escalating, and mitigating risks in a timely manner.
This role is responsible for providing independent second line of defense compliance and operational risk oversight across Front Line Units, Control Functions, and Third Parties. The position ensures adherence to the Global Compliance and Operational Risk Management framework, delivers effective challenge, and supports the timely identification, assessment, escalation, and mitigation of compliance and operational risks.
We are seeking an experienced Compliance & Operational Risk Manager to provide independent second line oversight of the Bank's most highest risk technology environments, including Application and Technology Security Assessments, Technology Third Party Risk Management, and emerging technology risks. This role serves as a trusted advisor and effective challenger to senior technology leaders, providing risk oversight, governance, and strategic advisory to support the Bank’s cybersecurity, operational resilience, and regulatory objectives. Responsibilities: • Assesses risks and effectiveness of Front-Line Unit (FLU) processes and controls to ensure compliance with applicable laws, rules, and regulations, while responding to regulatory inquiries, other audits, and examinations • Engages in activities to provide independent compliance and operational risk oversight of FLU or Control Function (CF) performance and any related third party/vendor relationships in alignment with the Global Compliance - Enterprise Policy, the Operational Risk Management - Enterprise Policy (collectively the Policies) and the Compliance and Operational Risk Management Program and Standard Operating Procedures • Identifies and escalates problems or issues that arise and drives actions to address the root causes that lead to compliance risk issues and/or operational risk losses • Monitors inventory of processes, risks, controls, and associated metrics for risk appetite and limits, reporting violations of compliance or regulatory activities • Assists in the development of independent risk management reporting for respective area(s) of coverage as input into country/regional governance and management routines • Analyzes and interprets applicable laws, rules, and regulations to provide clear and practical advice to stakeholders, and identify and manage risks • Reviews and challenges FLU/CF process, risk, Single Process Inventory, and FLU/CF Risk and Control Self-Assessment related to themes or trends, while monitoring the regulatory environment to identify regulatory changes applicable to area(s) of coverage • Monitor and assess adherence to Global Technology policies and standards • Perform inline review of ITGPST issue management activities, including remediation of regulatory issues • Providing independent second line oversight of the Bank's Application and Technology Security Assessment program, including assessment of control effectiveness, risk identification, issue management, and regulatory compliance. • Assessing technology and cyber risks across critical applications, business processes, and technology environments. • Reviewing and challenging risk acceptance decisions, remediation strategies, and control design associated with application security risks. • Monitoring emerging technology and AI-related risks, evaluating evolving cyber threats, governance frameworks, and control environments to ensure appropriate risk management practices. • Supporting executive reporting, governance routines, and strategic communications for senior leadership audiences. • Evaluating adherence to enterprise risk management standards, technology policies, and regulatory expectations. • Partnering across technology, cybersecurity, risk, audit, and business teams to strengthen operational resilience and risk management practices.
Required Qualifications: • 7+ years of experience in operational risk, technology risk, information security, cybersecurity, , compliance, audit, or related
Salary insight
The midpoint of this range ($146k) is about 9% above the median disclosed salary for Dallas roles listed on ForgeApply ($134k across 879 jobs).
See full Security Engineer salary data for Dallas →
Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.
Tailor your resume for this Bank of America role before you apply.
Tailor my resume for this jobSimilar jobs
- Technology Compliance and Operational Risk Manager — Bank of America · Charlotte | Pennington | Plano
- Process Risk and Compliance Operations Manager — Airbnb · United States
- Security Risk & Engineering - Tech and Cyber Risk & Compliance -Manager — PwC · NY-New York | GA-Atlanta | IL-Chicago
- Senior Manager, Technology Risk — Upstart · Remote
- Operational & Technology Risk Lead — Drivewealth · Office - Chicago; Office - NYC
- Sr. Compliance Manager – Operational Risk Testing — KeyBank · Brooklyn, OH | Chicago, IL | Salt Lake City, UT
- Compliance and Operational Risk Specialist - CFO — Bank of America · Charlotte | Jersey City
- Security Risk & Engineering - Tech and Cyber Risk & Compliance - Senior Manager — PwC · NY-New York | GA-Atlanta | IL-Chicago
More like this: Security & Cybersecurity Jobs · Security & Cybersecurity Jobs in Dallas · Browse all jobs
Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)