The Cybersecurity Risk Oversight Professional serves as a key member of the Cybersecurity Risk ... governance, risk assessments, controls, metrics, and issue management. * Perform riskbased ...
The Cybersecurity Risk Oversight Professional serves as a key member of the Cybersecurity Risk ... governance, risk assessments, controls, metrics, and issue management. * Perform riskbased ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Developing AI-enabled capabilities that accelerate governance, risk, and compliance and cyber operations, including evidence summarization, control testing assist, policy question-and-answer ...
Experience with governance, risk, and compliance (GRC) processes. * Security certifications such as ... Cybersecurity collaboration with software or product development teams. * Security risk assessment ...
Quick apply
Experience with governance, risk, and compliance (GRC) processes. * Security certifications such as ... Cybersecurity collaboration with software or product development teams. * Security risk assessment ...
Information System Security Officer (Cybersecurity Assessment & Authorization)
Saint Paul, MN · On-site
Oversee validation, accreditation, and documentation utilizing Governance, Risk, and Compliance ... Minimum 5+ years of direct experience in Cybersecurity Assessment & Authorization (A&A ...
New
Quick apply
Information System Security Officer (Cybersecurity Assessment & Authorization)
Saint Paul, MN · On-site
Oversee validation, accreditation, and documentation utilizing Governance, Risk, and Compliance ... Minimum 5+ years of direct experience in Cybersecurity Assessment & Authorization (A&A ...
New
Oversee validation, accreditation, and documentation utilizing Governance, Risk, and Compliance ... Minimum 5+ years of direct experience in Cybersecurity Assessment & Authorization (A&A ...
New
Oversee validation, accreditation, and documentation utilizing Governance, Risk, and Compliance ... Minimum 5+ years of direct experience in Cybersecurity Assessment & Authorization (A&A ...
New
Oversee validation, accreditation, and documentation utilizing Governance, Risk, and Compliance ... Minimum 5+ years of direct experience in Cybersecurity Assessment & Authorization (A&A ...
Oversee validation, accreditation, and documentation utilizing Governance, Risk, and Compliance ... Minimum 5+ years of direct experience in Cybersecurity Assessment & Authorization (A&A ...
TEMP_NEO_Cybersecurity
Saint Paul, MN · On-site
Cybersecurity Sr. Specialist The Cybersecurity Sr. Specialist support cybersecurity operations by ... Experience with implementation and operational use of GRC toolsets (Governance Risk and Compliance)
TEMP_NEO_Cybersecurity
Saint Paul, MN · On-site
Cybersecurity Sr. Specialist The Cybersecurity Sr. Specialist support cybersecurity operations by ... Experience with implementation and operational use of GRC toolsets (Governance Risk and Compliance)
Provide direct oversight of governance, risk, and control functions to ensure controls are designed and operating effectively to mitigate operational, financial, regulatory, and compliance risk
Provide direct oversight of governance, risk, and control functions to ensure controls are designed and operating effectively to mitigate operational, financial, regulatory, and compliance risk
VP of Cybersecurity & Information Security
Eagan, MN · On-site
$160K - $225K/yr
... and IT Risk & Compliance. Provide strategic and operational leadership to protect enterprise ... Establish and maintain security policies, standards, control frameworks, and governance practices ...
VP of Cybersecurity & Information Security
Eagan, MN · On-site
$160K - $225K/yr
... and IT Risk & Compliance. Provide strategic and operational leadership to protect enterprise ... Establish and maintain security policies, standards, control frameworks, and governance practices ...
Sr Director, Business Unit Risk & Compliance Liaison - Wealth Management
Minneapolis, MN · On-site
$150 - $206.30/hr
Provide direct oversight of governance, risk, and control functions to ensure controls are designed and operating effectively to mitigate operational, financial, regulatory, and compliance risk
Sr Director, Business Unit Risk & Compliance Liaison - Wealth Management
Minneapolis, MN · On-site
$150 - $206.30/hr
Provide direct oversight of governance, risk, and control functions to ensure controls are designed and operating effectively to mitigate operational, financial, regulatory, and compliance risk
Provide direct oversight of governance, risk, and control functions to ensure controls are designed and operating effectively to mitigate operational, financial, regulatory, and compliance risk
Provide direct oversight of governance, risk, and control functions to ensure controls are designed and operating effectively to mitigate operational, financial, regulatory, and compliance risk
Sr. Manager, Business Unit Risk & Compliance Liaison - Wealth Management
Minneapolis, MN · On-site
$93K - $128K/yr
Support governance, risk, and control routines to help ensure controls are designed, documented, and operating effectively to mitigate operational, financial, regulatory, and compliance risk
Sr. Manager, Business Unit Risk & Compliance Liaison - Wealth Management
Minneapolis, MN · On-site
$93K - $128K/yr
Support governance, risk, and control routines to help ensure controls are designed, documented, and operating effectively to mitigate operational, financial, regulatory, and compliance risk
Support governance, risk, and control routines to help ensure controls are designed, documented, and operating effectively to mitigate operational, financial, regulatory, and compliance risk
Support governance, risk, and control routines to help ensure controls are designed, documented, and operating effectively to mitigate operational, financial, regulatory, and compliance risk
... risk, compliance, and operational needs into scalable platform solutions. The Cybersecurity ... Knowledgeable in security design, technical governance, and third-party auditing practices.
New
... risk, compliance, and operational needs into scalable platform solutions. The Cybersecurity ... Knowledgeable in security design, technical governance, and third-party auditing practices.
New
... risk, compliance, and operational needs into scalable platform solutions. The Cybersecurity ... Knowledgeable in security design, technical governance, and third-party auditing practices.
New
... risk, compliance, and operational needs into scalable platform solutions. The Cybersecurity ... Knowledgeable in security design, technical governance, and third-party auditing practices.
New
Governance, Risk & Compliance * Ensure all AI initiatives comply with enterprise AI governance, cybersecurity, data privacy, and regulatory standards. * Monitor AI solution reliability, performance ...
Governance, Risk & Compliance * Ensure all AI initiatives comply with enterprise AI governance, cybersecurity, data privacy, and regulatory standards. * Monitor AI solution reliability, performance ...
Risk, Compliance & Controls Define, maintain, and monitor learning governance policies, procedures, controls, and standards. Provide consultation and guidance regarding risk management and control ...
Risk, Compliance & Controls Define, maintain, and monitor learning governance policies, procedures, controls, and standards. Provide consultation and guidance regarding risk management and control ...
Participate in Governance, Risk and Compliance (GRC) assessments of risks, changes to role and ... by adhering to cybersecurity policies, standards, and best practices, recognizing that ...
New
Participate in Governance, Risk and Compliance (GRC) assessments of risks, changes to role and ... by adhering to cybersecurity policies, standards, and best practices, recognizing that ...
New
Information Security Analyst
Minneapolis, MN · Hybrid
$94K - $129K/yr
Working knowledge of cybersecurity governance, risk, and compliance practices, including the development or maintenance of security policies, standards, procedures, and control documentation.
Information Security Analyst
Minneapolis, MN · Hybrid
$94K - $129K/yr
Working knowledge of cybersecurity governance, risk, and compliance practices, including the development or maintenance of security policies, standards, procedures, and control documentation.
Participate in Governance, Risk and Compliance (GRC) assessments of risks, changes to role and ... by adhering to cybersecurity policies, standards, and best practices, recognizing that ...
New
Participate in Governance, Risk and Compliance (GRC) assessments of risks, changes to role and ... by adhering to cybersecurity policies, standards, and best practices, recognizing that ...
New
Cybersecurity Governance Risk Compliance information
What is the difference between Cybersecurity Governance Risk Compliance vs Cybersecurity Analyst?
| Aspect | Cybersecurity Governance Risk Compliance | Cybersecurity Analyst |
|---|---|---|
| Certifications | CISA, CISSP, CISM | CompTIA Security+, CISSP, CEH |
| Work Environment | Policy development, audits, compliance frameworks | Monitoring security systems, incident response |
| Employer & Industry Usage | Organizations with compliance needs, regulatory bodies | IT security teams, cybersecurity firms |
While Cybersecurity Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing risks, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential in a comprehensive cybersecurity strategy but differ in scope and daily responsibilities.
What are the key skills and qualifications needed to thrive as a cybersecurity governance, risk, and compliance (GRC) professional?
What are some typical challenges faced by professionals in cybersecurity governance, risk, and compliance (GRC) roles?
Is cybersecurity governance risk compliance a good career?
Is cybersecurity governance risk compliance a good job?
What is cybersecurity governance, risk, and compliance (GRC)?

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 22 days ago
U.S. Bank rating
8.2
Based on 360 frontline employees who took The Breakroom Quiz
51st of 170 rated banks
Job description
At U.S. Bank, we're on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career. Try new things, learn new skills and discover what you excel at-all from Day One.
Job DescriptionNOTE: This position is not eligible for current or future visa sponsorship.
The Cybersecurity Risk Oversight Professional serves as a key member of the Cybersecurity Risk Oversight team within the Second Line of Defense (2LoD). This role is accountable for providing independent oversight and credible challenge of the First Line to ensure risks are appropriately identified, assessed, managed, monitored, and reported in alignment with regulatory requirements, industry standards, and internal risk appetite.
This position is intentionally designed for a senior, autonomous professional who can manage their own program portfolio, prioritize work based on material risk, and engage effectively with Information Security Services, Technology teams, and senior leadership.
Key Responsibilities
Provide independent oversight and credible challenge across multiple security and technology pillars, including governance, risk assessments, controls, metrics, and issue management.
Perform riskbased assessments of first line security practices, identifying gaps, weaknesses, thematic concerns, emerging risks, and control deficiencies.
Develop and articulate independent risk opinions supported by sound analysis, evidence, and professional judgment.
Evaluate alignment of first line activities with applicable laws, regulations, regulatory guidance, industry standards (e.g., NIST 800-53, FFIEC, PCI, NIST CSF 2.0, etc), and internal policies.
Monitor key risk indicators, security metrics, assessment results, and issue trends to identify systemic risks or areas requiring escalation.
Escalate material risks, control weaknesses, or ineffective risk management practices through appropriate governance and reporting channels.
Act as a subject matter expert on technology and information security risk, providing insights and guidance to stakeholders while maintaining 2LoD independence.
Build and maintain strong, professional relationships with first line stakeholders while confidently challenging assumptions, conclusions, and risk positions when necessary.
Contribute to executivelevel risk reporting by clearly summarizing risk posture, trends, and areas of concern in a concise and defensible manner.
Stay current on evolving cybersecurity threats, regulatory expectations, and industry best practices to continuously strengthen oversight effectiveness.
Basic Qualifications
Bachelor's degree, or equivalent work experience
Typically more than eight years of applicable experience
Preferred Skills/Experience
Strong foundational understanding of information security domains (e.g., vulnerability management, identity and access management, application security, cloud security, security governance, incident management).
Demonstrated ability to perform risk assessments and oversight activities with depth, critical thinking, and professional skepticism.
Experience operating in or with a Second Line of Defense, audit, or regulatory environment is strongly preferred.
Proven ability to work independently and autonomously, managing priorities and delivering highquality work with limited direction.
Strong written and verbal communication skills, including the ability to translate technical risk into clear, executiveready insights.
Ability to engage confidently with senior stakeholders while maintaining independence, objectivity, and professionalism.
Relevant certifications (e.g., CISSP, CISA, CRISC, CISM) are preferred but not required.
LOCATION EXPECTATIONS: This role requires working from a U.S. Bank Location three (3) or more days per week.
NOTE: This position is not eligible for current or future visa sponsorship.
If there's anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to ourdisability accommodations for applicants.
Benefits:
Our approach to benefits and total rewards considers our team members' whole selves and what may be needed to thrive in and outside work. That's why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind. Our benefits include the following:
Healthcare (medical, dental, vision)
Basic term and optional term life insurance
Short-term and long-term disability
Pregnancy disability and parental leave
401(k) and employer-funded retirement plan
Paid vacation (from two to five weeks depending on salary grade and tenure)
Up to 11 paid holiday opportunities
Adoption assistance
Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law
Review our full benefits available by employment status here.
U.S. Bank is an equal opportunity employer. We consider all qualified applicants without regard to race, religion, color, sex, national origin, age, sexual orientation, gender identity, disability or veteran status, and other factors protected under applicable law.
E-Verify
U.S. Bank participates in the U.S. Department of Homeland Security E-Verify program in all facilities located in the United States and certain U.S. territories. The E-Verify program is an Internet-based employment eligibility verification system operated by the U.S. Citizenship and Immigration Services. Learn more about theE-Verify program.
The salary range reflects figures based on the primary location, which is listed first. The actual range for the role may differ based on the location of the role. In addition to salary, U.S. Bank offers a comprehensive benefits package, including incentive and recognition programs, equity stock purchase 401(k) contribution and pension (all benefits are subject to eligibility requirements). Pay Range: $119,765.00 - $140,900.00U.S. Bank will consider qualified applicants with arrest or conviction records for employment. U.S. Bank conducts background checks consistent with applicable local laws, including the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act as well as the San Francisco Fair Chance Ordinance. U.S. Bank is subject to, and conducts background checks consistent with the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA). In addition, certain positions may also be subject to the requirements of FINRA, NMLS registration, Reg Z, Reg G, OFAC, the NFA, the FCPA, the Bank Secrecy Act, the SAFE Act, and/or federal guidelines applicable to an agreement, such as those related to ethics, safety, or operational procedures.
Applicants must be able to comply with U.S. Bank policies and procedures including the Code of Ethics and Business Conduct and related workplace conduct and safety policies.
Posting may be closed earlier due to high volume of applicants.
What U.S. Bank employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About U.S. Bank
Sourced by ZipRecruiter
U.S. Bank is a reputable and established financial institution that plays a significant role in the banking sector. With a history spanning over 150 years, U.S. Bank has built a strong foundation of trust and reliability. As a comprehensive bank, they offer a wide array of financial products and services to cater to the diverse needs of their customers, including individuals, businesses, and communities. Customer satisfaction is of utmost importance to U.S. Bank. They prioritize delivering exceptional service and fostering long-term relationships with their clients. Through their extensive network of branches and advanced digital banking platforms, U.S. Bank ensures convenient access to their services, empowering customers to manage their finances efficiently and securely.
Industry
Banking and credit intermediation
Company size
10,000+ Employees
Headquarters location
Minneapolis, MN, US
Year founded
1863