Demo

Head of IT Risk & Governance

Arrowstreet Capital
Boston, MA Full Time
POSTED ON 1/14/2025
AVAILABLE BEFORE 3/25/2025

Job Overview

Is this your next job Read the full description below to find out, and do not hesitate to make an application.

The Head of IT Risk & Governance reports to a Co-Head of IT (the Head of Enterprise IT) and is responsible for leading enterprise-wide information technology risk assessment and mitigation activities. The individual in this role will work closely and collaboratively with business leaders and compliance teams to develop, implement, and ensure adherence to policies, procedures and controls.

The individual in this role will work closely with senior leadership to communicate identified risks and ensure our internal controls are optimally aligned with business goals. They will set out to proactively identify technical risks (both quantitively and qualitatively) and prioritize mitigation activity based on potential impact.

The position will be responsible for policy development related to all aspects of the technical environment. It will oversee all technical aspects of our third-party oversight program, including vendor onboarding, and will work closely with compliance teams in evolving continued diligence processes.

This position will play a key role in enterprise risk management, working closely with the Chief Compliance Officer and risk owners to ensure identified technical risks are understood and mitigated, as appropriate. It will also review opportunities to onboard tooling as needed to support the enterprise risk program.

Responsibilities :

  • Responsible for the identification, assessment and management of technical risk across IT systems and services.
  • Works closely with business and IT leaders to ensure risks are understood, managed and mitigated aligned with our current risk posture.
  • Coordinate and communicate technical risk related events to senior leadership.
  • Create, maintain and implement policies related to IT risk management (vulnerability management, access and identity management, etc.).
  • Collaborate with IT and Business stakeholders to enhance firm wide data governance program (classification, retention, and handling).
  • Collaborates closely with business leaders to identify and discuss technical risks and their potential impact on day-to-day operations.
  • Develop and report on key risk metrics and performance metrics.
  • Collaborate with Compliance to oversee third-party IT risk assessments and with business leaders to discuss and address identified weaknesses (e.g. SOC-1, tabletop exercises, etc.).
  • Work closely with Cyber Security team to ensure our controls to identify, respond and remediate threats is aligned to current threat landscape.
  • Standardize the incident management process to cover incident review, root cause analysis, and oversee implementation of mitigating controls.
  • Create, develop and maintain operational risk documentation.
  • Play an active role in responding to client inquiries regarding all technical risk related matters.

Qualifications :

  • Broad technical knowledge and expertise covering the conduct of business matters, corporate governance matters, cyber security and regulatory risk.
  • History of implementing technical risk frameworks which consist of acceptance, transference, avoidance and reduction of risk.
  • Proven experience directly managing, and being accountable for, IT risk (identification, assessment, mitigation).
  • Demonstrated success effectively influencing and collaborating with technical and business teams as well as senior leadership.
  • Understanding of MITRE or similar attack frameworks.
  • Strong presentation and written and verbal communication skills, including communicating with senior leadership.
  • Experience with SOC 1, SOC 2, and other control-based reviews.
  • ITIL certifications or equivalent work experience.
  • Experience implementing controls aligned to industry standard frameworks (NIST, ISO 27001).
  • We maintain a friendly, team-oriented environment and place a high value on professionalism, attitude and initiative.

    J-18808-Ljbffr

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Head of IT Risk & Governance?

    Sign up to receive alerts about other jobs on the Head of IT Risk & Governance career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $142,209 - $179,056
    Income Estimation: 
    $177,932 - $225,503
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $220,784 - $286,649
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $152,549 - $188,894
    Income Estimation: 
    $194,072 - $240,547
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Arrowstreet Capital

    Arrowstreet Capital
    Hired Organization Address Boston, MA Full Time
    We seek an experienced and innovative, hands on Senior Data Engineer to design, optimize, and implement a cutting-edge d...
    Arrowstreet Capital
    Hired Organization Address Boston, MA Full Time
    The Administration and Facilities Team is the face and first point of contact at Arrowstreet. We strive to maintain a po...
    Arrowstreet Capital
    Hired Organization Address Boston, MA Full Time
    The Senior Cloud Data Engineer is responsible for the fidelity of Arrowstreet Capital's Data-Driven Investment Process. ...
    Arrowstreet Capital
    Hired Organization Address Boston, MA Full Time
    Associate Director, Software Engineering Find out if this opportunity is a good fit by reading all of the information th...

    Not the job you're looking for? Here are some other Head of IT Risk & Governance jobs in the Boston, MA area that may be a better fit.

    Head of IT Risk & Governance

    Arrowstreet Capital, Limited Partnership, Boston, MA

    AI Assistant is available now!

    Feel free to start your new journey!