1

Director Technology Risk Management Jobs in Florida

Being a member of IT FinSight Delivery team, An IT ERM Associate Director has primary ... The incumbent will execute and support day-to-day IT risk management activities (such as risk and ...

The IT Risk Associate will support the organization's technology risk management and cybersecurity compliance programs. Reporting to the Senior Director of IT and Cybersecurity Risk, this position ...

Job Summary The IT Risk Associate will support the organization's technology risk management and cybersecurity compliance programs. Reporting to the Senior Director of IT and Cybersecurity Risk, this ...

Job Summary The IT Risk Associate will support the organization's technology risk management and cybersecurity compliance programs. Reporting to the Senior Director of IT and Cybersecurity Risk, this ...

next page

Showing results 1-20

Director Technology Risk Management information

What are the key skills and qualifications needed to thrive as a Director of Technology Risk Management, and why are they important?

To excel as a Director of Technology Risk Management, a strong background in information security, risk assessment, regulatory compliance, and a relevant degree such as in computer science or information systems is essential. Familiarity with risk management frameworks (such as NIST, ISO 27001), GRC (Governance, Risk, and Compliance) platforms, and certifications like CISSP or CISM are commonly required. Leadership, strategic thinking, and effective communication skills are vital for driving risk initiatives and collaborating across business units. These competencies ensure robust risk mitigation, regulatory adherence, and alignment of technology strategies with organizational goals.

How does a Director of Technology Risk Management typically collaborate with other departments to ensure effective risk mitigation?

A Director of Technology Risk Management works closely with IT, compliance, legal, and business operations teams to identify and address technology risks. This involves leading cross-functional risk assessments, facilitating communication between technical and non-technical stakeholders, and ensuring that risk mitigation strategies align with organizational goals. Regular meetings, workshops, and reporting structures are established to maintain transparency and drive a culture of risk awareness across departments. Effective collaboration is essential for implementing controls and responding proactively to emerging threats.

What does a Director of Technology Risk Management do?

A Director of Technology Risk Management is responsible for identifying, assessing, and mitigating technology-related risks within an organization. They develop and implement policies, frameworks, and strategies to ensure that IT systems and processes comply with regulatory requirements and best practices. Their work helps protect the company's data, assets, and reputation from threats such as cyberattacks, data breaches, and system failures. They also collaborate with other departments to promote a culture of risk awareness and provide guidance on risk-related matters.

What is the difference between Director Technology Risk Management vs Cybersecurity Manager?

AspectDirector Technology Risk ManagementCybersecurity Manager
Primary FocusOverseeing technology risk strategies and enterprise risk mitigationManaging cybersecurity operations and security measures
CertificationsCRISC, CISSP, CISMCISSP, CISA, CEH
Work EnvironmentStrategic, cross-departmental, executive levelOperational, technical teams, security operations centers
Industry UsageFinancial, healthcare, large enterprisesIT security firms, corporate IT departments

The main difference is that the Director Technology Risk Management focuses on broad technology risk strategies across the organization, while the Cybersecurity Manager concentrates on implementing and managing cybersecurity measures. Both roles require similar certifications but differ in scope and strategic versus operational responsibilities.

What are the most commonly searched types of Technology Risk Management jobs in Florida? The most popular types of Technology Risk Management jobs in Florida are:
What are popular job titles related to Director Technology Risk Management jobs in Florida? For Director Technology Risk Management jobs in Florida, the most frequently searched job titles are:
What job categories do people searching Director Technology Risk Management jobs in Florida look for? The top searched job categories for Director Technology Risk Management jobs in Florida are:
What cities in Florida are hiring for Director Technology Risk Management jobs? Cities in Florida with the most Director Technology Risk Management job openings:
Director of Emerging Technology Risk

Director of Emerging Technology Risk

Santander

Miami, FL • On-site

Full-time

Posted 17 days ago


Job description

Director of Emerging Technology Risk
Country: United States of America
It Starts Here:
Santander is a global leader and innovator in the financial services industry and is evolving from a high-impact brand into a technology-driven organization. Our people are at the heart of this journey and together, we are driving a customer-centric transformation that values bold thinking, innovation, and the courage to challenge what's possible. This is more than a strategic shift. It's a chance for driven professionals to grow, learn, and make a real difference.
If you are interested in exploring the possibilities We Want to Talk to You!
The Difference You Make:
The Director of Emerging Technology Risk within the Technology and Information Risk Management organization at Santander US and Santander Bank NA is responsible for ongoing oversight, assessment, management and reporting of technology and cybersecurity risks associated with the adoption and implementation of Cloud, AI and Digital Assets (e.g. Blockchain, Crypto etc.) across all operating entities. This role is established in the second line of defense and requires collaboration across both IT, CISO, Data Office, Operational Risk, Internal Audit and other relevant functional stakeholders within the organization in the management of Emerging Technology risks. An excellent understanding of the evolving regulatory landscape in the US and EU is vital for success in this role.
Director, Emerging Technology Risk monitors activities to minimize the company's exposure to emerging technology and information risk. Activities may include technical risk analysis, risk identification and remediation. Represents or supports the reputation of the company to minimize compliance and regulatory risk by resolving issues and ensuring adherence to company and legal standards. Responsible for ensuring that all the company's activities adhere to the necessary rules and regulations, and that the company complies with legal/regulatory statutes and jurisdictions.
The day-to-day focus may vary depending on the requirements of the overall second line of defense program priorities directed by the Head of Technology Risk and may include: planned or ad-hoc technical risk reviews, review of IT or Business initiatives, Review and challenge activities, Risk reporting, development of technical risk framework and methodologies.
Essential Functions/Responsibility Statements:
  • Establish themselves as the second line of defense subject matter expert for key stakeholders in the management of emerging technology risks across all operating entities
  • Prepare information to enable governance committees / working groups in the management oversight of emerging technology risks
  • Participate in relevant governance committees and working groups as a delegate of the Head of Technology
  • Initiate timely escalations to the Head of Technology and to the leadership team
  • Identify and assess technology and cybersecurity risks associated with emerging technologies including Cloud, AI, IoT, Blockchain and others and counsel business units managers, CISO and/or IT GRC stakeholders on risk management issues to ensure awareness and accountability for emerging technology risks
  • Develop and implement a technical risk management governance, framework to enable the strategic business direction of the organization
  • Ensure the updating of existing policies and framework or develop new ones that steer the safe and sound adoption of emerging technologies across the organization
  • Participate in the independent and ongoing risk oversight of key technology components of the firm's digital transformation initiatives. Additionally, coordinate oversight of key emerging technology risks
  • Work across the lines of defense to recommend strategies that effectively treat risks within the risk appetite
  • Monitor emerging technology trends and evaluate potential impacts to business strategy; provide documented analytical insights of the risk horizon, while ensuring a sound operational and compliance control environment through establishment of a system of effective and sustainable internal controls
  • Participate in evaluation of new products / Business changes / projects and assess related emerging technology risks and impact to the technology risk profile
  • Participate in the evaluation and management of risks related to third-party suppliers involved in technology projects related to the deployment of emerging technology or where emerging technologies introduced by third parties are a key component of the business activities
  • Advice on remediation of regulatory findings, correction of any inconsistencies and monitors resolution.
  • Manage, oversee and contribute to targeted risk reviews designed to evaluate emerging technology risks and their effective and sustainable mitigation
  • Perform review and challenge of first line of defense risk management processes, data and outcomes (e.g. risk assessments, control evaluations, risk metrics, mitigation plans, risk acceptances etc.) and communicate risk opinions at various levels of management
  • Analyze risk data from various sources (e.g. external events, control deficiencies, risk register etc.) to identify and measure levels of risk, concentration, trends and patterns
  • Support process for constructive engagement across the Lines of Defense regarding differences or conflicts in risk appetite, risk metric determination or evaluation, issue severity or other areas of dispute
  • Manage delivery timelines and develop materials to ensure second line of defense independent opinion appropriately represented during committee meetings, external exams and internal audits.
  • Ensure all activities and deliverables achieve their timeliness, quality and accuracy service levels.
  • Collaborate with other second line of defense functions such as Operational Risk, Model Risk, Compliance etc. on common priorities and strategic initiatives
  • Provides second line of defense leadership and subject matter expertise during response to major technology or cyber incidents and coordinates second line of defense engagement and response of incident / crisis managers
  • Recruits, develops, and manages talent to create within the organization a culture of leadership, performance, and accountability.

What You Bring:
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Education:
  • Bachelor's Degree in a technical discipline or equivalent work experience: Computer Science, Information Technology, Information Systems, Information Security.
  • Master's Degree in related technical disciplines. Pref

Work Experience:
  • Practitioner and management experience in one or more areas of Emerging Technology Risks
  • Overall professional experience of 10+ years or more in emerging technology or cybersecurity risk management roles in a matrix organization
  • Experience within a highly regulated environment such as the financial services industry

Technical Skills:
  • Cloud Security Architecture Patterns
  • Secure Application Development / DevSecOps / Containerization
  • Encryption / Tokenization
  • Identity and Access Management
  • Network / Firewall Management
  • Vulnerability Management / Patching
  • Artificial Intelligence
  • Digital assets

Competencies and Abilities:
  • Demonstrated expertise and track record in technology risk management segment, and ability to perform at an advanced level of competence.
  • Advanced knowledge of technical risk management best practices and how to implement them.
  • Ability to engage effectively with both senior management and operational teams
  • A keen sense of risk anticipation with attention to details and an ingrained ability to connect the dots and challenge status quo
  • An execution and solution focus risk mindset with an ability to push the needle forward even with ambiguous or incomplete information
  • Ability to direct, train and guide peers, subordinates and management.
  • A team player who can coordinate and drive consensus among different teams and stakeholders having varying viewpoints
  • Ability to build relationships, influencing and negotiations across diverse stakeholders across the lines of defense, handle conflict resolution with other groups to ensure appropriate risk management decisions are made.
  • Ability to adjust to new developments/changing circumstances.
  • Ability to effectively communicate and build relationships with multiple levels of the organizational structure, including senior level management.
  • Ability to collaborate with multidisciplinary teams.
  • Ability to multi-task and adapt/adjust to multiple demands and competing priorities.
  • Ability to maintain and report on confidential information in an appropriate manner.
  • Ability to convey a sense of urgency and drive issues/projects to closure.
  • Ability to effectively interact with the executive management and vendors.
  • Ability to demonstrate sound judgement and critical thinking
  • Excellent written and oral communication skills.
  • Excellent analytical, organizational and project management skills.
  • Strong leadership, supervisory, and customer service skills.
  • Strong risk, process, and control validation and/or assessment skills.

Certifications:
  • Professional Certifications in Cloud Security required
  • Professional Certifications in one or more Emerging technology areas, preferred

It Would Be Nice For You To Have:
  • Established work history or equivalent demonstrated through a combination of work experience, training, military service, or education.

What Else You Need To Know:
The base pay range for this position is posted below and represents the annualized salary range. For hourly positions (non-exempt), the annual range is based on a 40-hour work week. The exact compensation may vary based on skills, experience, training, licensure and certifications and location.
Base Pay Range:
Minimum:
$123,750.00 USD
Maximum:
$220,000.00 USD
We Value Your Impact:
Your contribution matters and it's recognized. You can expect a fair and competitive rewards package that reflects the impact you create and the value you deliver. We know rewards go beyond numbers. Offering more than just a paycheck our benefits are designed to support you, your family and your well-being, now and into the future. Santander Benefits - 2026 Santander OnGoing/NH eGuide (foleon.com)
Risk Culture:
We embrace a strong risk culture and all of our professionals at all levels are expected to take a proactive and responsible approach toward risk management.
EEO Statement:
At Santander, we value and respect differences in our workforce. We actively encourage everyone to apply. Santander is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, genetics, disability, age, veteran status or any other characteristic protected by law.
Working Conditions:
Frequent minimal physical effort such as sitting, standing and walking is required for this role. Depending on location, occasional moving and lifting light equipment and/or furniture may be required.
Employer Rights:
This job description does not list all of the job duties of the job. You may be asked by your supervisors or managers to perform other duties. You may be evaluated in part based upon your performance of the tasks listed in this job description. The employer has the right to revise this job description at any time. This job description is not a contract for employment and either you or the employer may terminate your employment at any time for any reason.
What To Do Next:
If this sounds like a role you are interested in, then please apply.
We are committed to providing an inclusive and accessible application process for all candidates. If you require any assistance or accommodation due to a disability or any other reason, please contact us at TAOps@santander.us to discuss your needs.