Cybersecurity, Information Security and Technology risk management is critical to ensure the ... at the Director level. The CTIS Standards team enables the firm to manage and comply with CTIS ...
Cybersecurity, Information Security and Technology risk management is critical to ensure the ... at the Director level. The CTIS Standards team enables the firm to manage and comply with CTIS ...
Cybersecurity, Information Security and Technology risk management is critical to ensure the ... at the Director level. The CTIS Standards team enables the firm to manage and comply with CTIS ...
Cybersecurity, Information Security and Technology risk management is critical to ensure the ... at the Director level. The CTIS Standards team enables the firm to manage and comply with CTIS ...
The qualified candidate should be well versed in identifying, managing and monitoring technology ... Risk Identification: Collaborate with IT leaders, Enterprise Process Owners, and First Line of ...
The qualified candidate should be well versed in identifying, managing and monitoring technology ... Risk Identification: Collaborate with IT leaders, Enterprise Process Owners, and First Line of ...
Director, Third Party Risk Management Apply ( locations Baltimore, MD Owings Mills, MD time type ... Lead assessment of emerging third party risks and technologies, including AI, and integrate ...
Director, Third Party Risk Management Apply ( locations Baltimore, MD Owings Mills, MD time type ... Lead assessment of emerging third party risks and technologies, including AI, and integrate ...
Direct IT risk assessments, manage IT risk register, supplier security evaluations, penetration testing and assist with audits across operations * Partner with Legal, Privacy, Compliance, Information ...
Direct IT risk assessments, manage IT risk register, supplier security evaluations, penetration testing and assist with audits across operations * Partner with Legal, Privacy, Compliance, Information ...
Director - Investment Risk Management
Baltimore, MD · Hybrid
$175K - $220K/yr
How you will add value as an Investment Risk Director * You will own the Liquidity Risk Management Program under SEC Rule 22e-4. * You will oversee liquidity risk globally across registered ...
Director - Investment Risk Management
Baltimore, MD · Hybrid
$175K - $220K/yr
How you will add value as an Investment Risk Director * You will own the Liquidity Risk Management Program under SEC Rule 22e-4. * You will oversee liquidity risk globally across registered ...
Director - Investment Risk Management
Baltimore, MD · On-site
$175K - $220K/yr
How you will add value as an Investment Risk Director * You will own the Liquidity Risk Management Program under SEC Rule 22e-4. * You will oversee liquidity risk globally across registered ...
Director - Investment Risk Management
Baltimore, MD · On-site
$175K - $220K/yr
How you will add value as an Investment Risk Director * You will own the Liquidity Risk Management Program under SEC Rule 22e-4. * You will oversee liquidity risk globally across registered ...
Role Summary TheDirector- ThirdParty Risk Management is aSecond Line of Defense (2LoD)leadership ... Lead assessment of emergingthird partyrisks and technologies, including AI, andintegratefindings ...
Role Summary TheDirector- ThirdParty Risk Management is aSecond Line of Defense (2LoD)leadership ... Lead assessment of emergingthird partyrisks and technologies, including AI, andintegratefindings ...
... therapies; and technologies that expand the availability of transplantable organs. United ... The Senior Risk Management Director leads the vision and strategic direction for the company's risk ...
... therapies; and technologies that expand the availability of transplantable organs. United ... The Senior Risk Management Director leads the vision and strategic direction for the company's risk ...
Role Summary TheDirector- ThirdParty Risk Management is aSecond Line of Defense (2LoD)leadership ... Lead assessment of emergingthird partyrisks and technologies, including AI, andintegratefindings ...
Role Summary TheDirector- ThirdParty Risk Management is aSecond Line of Defense (2LoD)leadership ... Lead assessment of emergingthird partyrisks and technologies, including AI, andintegratefindings ...
Role Summary TheDirector- ThirdParty Risk Management is aSecond Line of Defense (2LoD)leadership ... Lead assessment of emergingthird partyrisks and technologies, including AI, andintegratefindings ...
Role Summary TheDirector- ThirdParty Risk Management is aSecond Line of Defense (2LoD)leadership ... Lead assessment of emergingthird partyrisks and technologies, including AI, andintegratefindings ...
Emphasizes organization, execution discipline, and communication effectiveness rather than direct ... Qualifications * Bachelor's degree (accounting, finance, IT, risk management, actuarial ...
Emphasizes organization, execution discipline, and communication effectiveness rather than direct ... Qualifications * Bachelor's degree (accounting, finance, IT, risk management, actuarial ...
Emphasizes organization, execution discipline, and communication effectiveness rather than direct ... Qualifications * Bachelor's degree (accounting, finance, IT, risk management, actuarial ...
Emphasizes organization, execution discipline, and communication effectiveness rather than direct ... Qualifications * Bachelor's degree (accounting, finance, IT, risk management, actuarial ...
The Senior Information Security Specialist within Technology Risk Management & Information Security(TRM&IS) is responsible for ensuring technology controls are sufficiently protecting business risk ...
The Senior Information Security Specialist within Technology Risk Management & Information Security(TRM&IS) is responsible for ensuring technology controls are sufficiently protecting business risk ...
Lead Security, Risk, and Compliance Specialist
Silver Spring, MD · On-site
$162.30K/yr
Direct IT risk assessments, manage IT risk register, supplier security evaluations, penetration testing and assist with audits across operations * Partner with Legal, Privacy, Compliance, Information ...
Lead Security, Risk, and Compliance Specialist
Silver Spring, MD · On-site
$162.30K/yr
Direct IT risk assessments, manage IT risk register, supplier security evaluations, penetration testing and assist with audits across operations * Partner with Legal, Privacy, Compliance, Information ...
Company Description The Senior Information Security Specialist within Technology Risk Management & Information Security(TRM&IS) is responsible for ensuring technology controls are sufficiently ...
Company Description The Senior Information Security Specialist within Technology Risk Management & Information Security(TRM&IS) is responsible for ensuring technology controls are sufficiently ...
Director, Fixed Income Risk
Baltimore, MD · On-site
... technology resources in the US and UK. As of December31, 2024, T ... Rowe Pricehad $1.61 trillionin assets under management, serving millions of clients globally who ...
Director, Fixed Income Risk
Baltimore, MD · On-site
... technology resources in the US and UK. As of December31, 2024, T ... Rowe Pricehad $1.61 trillionin assets under management, serving millions of clients globally who ...
... technology resources in the US and UK. T.Rowe Price is a leading global asset manager,entrusted ... The Equity Risk Director also provides risk consultancy for investment teams, which includes deep ...
... technology resources in the US and UK. T.Rowe Price is a leading global asset manager,entrusted ... The Equity Risk Director also provides risk consultancy for investment teams, which includes deep ...
... technologies, and introduce new controls and processes to bolster the existing Theft and Fraud ... Management works with the business units and control groups to help ensure Morgan Stanley has a ...
... technologies, and introduce new controls and processes to bolster the existing Theft and Fraud ... Management works with the business units and control groups to help ensure Morgan Stanley has a ...
... technologies, and introduce new controls and processes to bolster the existing Theft and Fraud ... Management works with the business units and control groups to help ensure Morgan Stanley has a ...
... technologies, and introduce new controls and processes to bolster the existing Theft and Fraud ... Management works with the business units and control groups to help ensure Morgan Stanley has a ...
Director Technology Risk Management information
See Baltimore, MD salary details
$53.7K - $72.3K
6% of jobs
$72.3K - $90.9K
6% of jobs
$104.2K is the 25th percentile. Wages below this are outliers.
$90.9K - $109.5K
17% of jobs
$109.5K - $128.1K
16% of jobs
The median wage is $131.5K / yr.
$128.1K - $146.7K
23% of jobs
$156.9K is the 75th percentile. Wages above this are outliers.
$146.7K - $165.3K
11% of jobs
$165.3K - $183.9K
6% of jobs
$183.9K - $202.5K
4% of jobs
$202.5K - $221.1K
4% of jobs
$221.1K - $239.7K
2% of jobs
$239.7K - $258.3K
3% of jobs
$53.7K
$142.3K
$258.3K
How much do director technology risk management jobs pay per year?
What are the key skills and qualifications needed to thrive as a Director of Technology Risk Management, and why are they important?
How does a Director of Technology Risk Management typically collaborate with other departments to ensure effective risk mitigation?
What does a Director of Technology Risk Management do?
What is the difference between Director Technology Risk Management vs Cybersecurity Manager?
| Aspect | Director Technology Risk Management | Cybersecurity Manager |
|---|---|---|
| Primary Focus | Overseeing technology risk strategies and enterprise risk mitigation | Managing cybersecurity operations and security measures |
| Certifications | CRISC, CISSP, CISM | CISSP, CISA, CEH |
| Work Environment | Strategic, cross-departmental, executive level | Operational, technical teams, security operations centers |
| Industry Usage | Financial, healthcare, large enterprises | IT security firms, corporate IT departments |
The main difference is that the Director Technology Risk Management focuses on broad technology risk strategies across the organization, while the Cybersecurity Manager concentrates on implementing and managing cybersecurity measures. Both roles require similar certifications but differ in scope and strategic versus operational responsibilities.
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 14 days ago
Morgan Stanley rating
8.3
Based on 147 frontline employees who took The Breakroom Quiz
37th of 138 rated financial services
Job description
The NFR Cyber, Technology and Information Security (CTIS) Department is focused specifically on managing cyber, technology and information security risks. NFR CTIS brings together rules management, standard setting, assessing risk, process and controls by technology domains, advising the business, and an oversight and testing function to provide a comprehensive risk management decision for cyber, technology and information security related risks. Cybersecurity, Information Security and Technology risk management is critical to ensure the confidentiality, integrity and availability of Firm Information, Systems and Assets. Cybersecurity risk refers to managing and protecting the Firm's information assets and operations from cyber threats, e.g., cyber events or attacks resulting from inadvertent or intentional acts involving deception, falsification, destruction, etc. Information Security risk refers to protecting the confidentiality, integrity and availability of Firm's information and systems, e.g., internal and external threats that could result in unauthorized disclosure, misuse, alteration or destruction of confidential information and systems. Technology risk refers to ensuring and protecting the availability, stability, capacity and recovery capabilities of the Firm's key systems, e.g., loss, damage or business disruption resulting from inadequate or failed processes, people and systems or from external events.
Position Description
Morgan Stanley is seeking a Risk professional to join the Cyber, Technology and Information Security (CTIS) Standards team within the Non-Financial Risk Organization in Baltimore at the Director level. The CTIS Standards team enables the firm to manage and comply with CTIS Rules and Risks by setting standards for controls and risk measurement. It defines the overall framework and standards for effective management of CTIS risks, including monitoring of framework activities.
Primary Responsibilities
The role includes the following primary responsibilities:
- Policy, Framework and Procedure: Support the documentation of CTIS Risk Management approaches across Cyber, Technology and Information Security for both Firm and Banks. Support the review and providing of feedback on any CTIS-relevant aspects of NFR Policies, Frameworks and Procedures.
- Control Domains: Support the identification and management of the list CTIS control domains necessary to manage CTIS Risks, which feeds into the categorization of rules and regulations and drive the scoping of Control standards as well as associated risk measurement, assessment and testing.
- Metrics/ Key Risk Indicators: Assist with relevant central coordination/ management aspects around Second Line-governed metrics, which may include working with the NFR and first line stakeholders on data automation and tooling.
- Cross-Functional Collaboration: Work closely with other departments to ensure the alignment of risk management activities with broader organizational risk management frameworks. Build and maintain strong positive relationships with the broader risk community.
Qualifications and Essential Skills
- Degree required with a focus in Risk Management, Compliance, Computer Science, Information Technology or Cybersecurity preferred
- 5+ years of relevant experience would be expected to find the skills required for this role, preferably risk management or compliance experience in the financial services industry, a regulator, a self-regulatory organization, or other heavily regulated industries
- Good understanding of risk management principles. Familiarity with risk management best practices (e.g., CRI, NIST CSF, ISO 27001, CIS Controls) preferred
- Self-motivated with strong analytical, organizational, and problem-solving skills; ability to work independently, demonstrate resourcefulness, and develop well-structured proposals
- Ability to work effectively in a cross-functional, global team
- Excellent communication skills, both verbal and written; ability to tailor communication to technical vs non-technical, senior vs junior audiences
WHAT YOU CAN EXPECT FROM MORGAN STANLEY:
At Morgan Stanley, we raise, manage and allocate capital for our clients - helping them reach their goals. We do it in a way that's differentiated - and we've done that for 90 years. Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren't just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you'll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There's also ample opportunity to move about the business for those who show passion and grit in their work.
To learn more about our offices across the globe, please copy and paste https://www.morganstanley.com/about-us/global-offices into your browser.
Salary range for the position: $70,000 and $125,000 per year. The successful candidate may be eligible for an annual discretionary incentive compensation award. The successful candidate may be eligible to participate in the relevant business unit's incentive compensation plan, which also may include a discretionary bonus component. Morgan Stanley offers a full spectrum of benefits, including Medical, Prescription Drug, Dental, Vision, Health Savings Account, Dependent Day Care Savings Account, Life Insurance, Disability and Other Insurance Plans, Paid Time Off (including Sick Leave consistent with state and local law, Parental Leave and 20 Vacation Days annually), 10 Paid Holidays, 401(k), and Short/Long Term Disability, in addition to other special perks reserved for our employees. Please visit mybenefits.morganstanley.com to learn more about our benefit offerings.
Morgan Stanley's goal is to build and maintain a workforce that is diverse in experience and background but uniform in reflecting our standards of integrity and excellence. Consequently, our recruiting efforts reflect our desire to attract and retain the best and brightest from all talent pools. We want to be the first choice for prospective employees.
It is the policy of the Firm to ensure equal employment opportunity without discrimination or harassment on the basis of race, color, religion, creed, age, sex, sex stereotype, gender, gender identity or expression, transgender, sexual orientation, national origin, citizenship, disability, marital and civil partnership/union status, pregnancy, veteran or military service status, genetic information, or any other characteristic protected by law.
Morgan Stanley is an equal opportunity employer committed to diversifying its workforce (M/F/Disability/Vet).
What Morgan Stanley employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom