1

Vice President Technology Risk Management Jobs in Houston, TX

... fleet management, drayage, and depot throughput and our proprietary technology ecosystem. The ... Build robust risk-mitigation frameworks to safeguard against market capacity disruptions, weather ...

Regional Vice President - Multifamily Operations Location: Houston, TX Job Type: Full-Time Industry ... Risk Management, and other internal teams. * Support organizational growth while ensuring ...

VP Information Security

Houston, TX

$149K - $187K/yr

The Vice President, Information Security will build the company's enterprise security program from ... This position will own the company's security posture, mature our risk management capabilities, and ...

next page

Showing results 1-20

Vice President Technology Risk Management information

See Houston, TX salary details

$41.5K

$150.4K

$265K

How much do vice president technology risk management jobs pay per year?

As of Sep 1, 2026, the average yearly pay for vice president technology risk management in Houston, TX is $150,439.00, according to ZipRecruiter salary data. Most workers in this role earn between $109,800.00 and $181,400.00 per year, depending on experience, location, and employer.

What is a vice president technology risk management?

A Vice President of Technology Risk Management is a senior executive responsible for identifying, assessing, and mitigating technology-related risks within an organization. This role oversees the development and implementation of risk management policies, ensures regulatory compliance, and collaborates with IT, cybersecurity, and business units to protect the organization’s digital assets. The VP also leads teams in conducting risk assessments, managing incident responses, and reporting to senior leadership on risk exposure and mitigation strategies.

What are the key skills and qualifications needed to thrive as a vice president technology risk management?

To thrive as a Vice President Technology Risk Management, you need deep expertise in IT risk assessment, regulatory compliance, and cybersecurity frameworks, usually supported by a relevant degree and significant leadership experience. Familiarity with risk management tools (such as Archer or MetricStream), common control frameworks (like NIST, ISO 27001), and certifications (such as CISSP, CISM, or CRISC) is highly valuable. Strong leadership, strategic thinking, and effective communication are critical soft skills for managing teams and influencing stakeholders. These competencies are essential to mitigate technology risks, ensure regulatory compliance, and safeguard organizational assets in a constantly evolving threat landscape.

How does a vice president technology risk management typically collaborate with other departments to ensure comprehensive risk oversight?

A Vice President of Technology Risk Management works closely with various departments such as IT, compliance, legal, and business units to identify, assess, and mitigate technology-related risks. This collaboration often involves leading cross-functional risk committees, facilitating regular risk assessments, and ensuring that risk management frameworks align with organizational objectives. Effective communication and partnership with stakeholders help ensure that emerging risks are addressed proactively and that risk mitigation strategies are integrated into business processes. This role requires both strategic oversight and hands-on involvement to promote a strong risk-aware culture throughout the organization.

What is the difference between Vice President Technology Risk Management vs Chief Information Security Officer?

AspectVice President Technology Risk ManagementChief Information Security Officer
Primary FocusOverseeing technology risk policies, compliance, and mitigation strategies across IT systemsLeading cybersecurity strategy, threat management, and security operations
CertificationsRisk management, cybersecurity, or related certifications (e.g., CRISC, CISSP)CISSP, CISM, or equivalent security certifications
Work EnvironmentStrategic risk oversight within IT departments, collaborating with risk and compliance teamsSecurity operations centers, incident response teams, and executive security leadership
Industry UsageCommon in financial, healthcare, and technology sectors

The Vice President Technology Risk Management focuses on identifying and mitigating technology-related risks across the organization, while the Chief Information Security Officer primarily manages cybersecurity threats and security policies. Both roles require risk management certifications and work closely with executive teams, but their core responsibilities differ in scope and focus.

What are the most commonly searched types of Technology Risk Management jobs in Houston, TX?

The most popular types of Technology Risk Management jobs in Houston, TX are:

What are popular job titles related to Vice President Technology Risk Management jobs in Houston, TX?

For Vice President Technology Risk Management jobs in Houston, TX, the most frequently searched job titles are:

What cities near Houston, TX are hiring for Vice President Technology Risk Management jobs?

Cities near Houston, TX with the most Vice President Technology Risk Management job openings:

Senior Director, Information and Cybersecurity

Houston, TX • On-site

Pattern Energy Group LP
Clean Energy Semiconductors Manufacturing • 501 - 1,000 employees

Other

Re-posted 4 days ago


Job description

Overview
Company Overview
Pattern Energy is a leading renewable energy company that develops, constructs, owns, and operates high-quality wind and solar generation, transmission, and energy storage facilities. Our mission is to transition the world to renewable energy through the sustainable development and responsible operation of facilities with respect for the environment, communities, and cultures where we have a presence.
Our approach begins and ends with establishing trust, accountability, and transparency. Our company values of creative spirit, pride of ownership, follow-through, and a team-first attitude drive us to pursue our mission every day. Our culture supports our values by fostering innovative and critical thinking and a deep belief in living up to our promises.
Headquartered in the United States, Pattern has a global portfolio of more than 30 power facilities and transmission assets, serving various customers that provide low-cost clean energy to millions of consumers.
Responsibilities
JOB PURPOSE
The Senior Director, Information and Cybersecurity is accountable for supporting SVP, Enterprise Technology in establishing, operating, and continuously improving the cybersecurity, technology risk, operational resilience, AI governance, and critical infrastructure protection capabilities that enable Pattern Energy to operate safely, reliably, and securely.
This role, with guidance from the SVP, Enterprise Technology, provides enterprise leadership across cybersecurity governance, cyber risk management, security operations, operational technology (OT) security, cyber resilience, identity and access governance, third-party risk management, AI security, and regulatory compliance activities. The role is responsible for protecting Pattern's corporate, cloud, operational technology, generation, storage, and transmission environments while supporting business growth, operational reliability, and technology modernization.
The Senior Director, Information and Cybersecurity partners closely with Enterprise Technology, Power Operations, Engineering, EPC, Legal, Compliance, Internal Audit, Enterprise Excellence, and executive leadership teams to ensure cybersecurity, resilience, and technology risk management capabilities are embedded into enterprise operations and strategic decision-making.
Success in the role requires balancing operational reliability, safety, regulatory compliance, cybersecurity risk reduction, enterprise scalability, and disciplined execution while enabling innovation and reducing unnecessary complexity.
The Senior Director, Information and Cybersecurity is also accountable for ensuring the resilience, recoverability, and cybersecurity readiness of enterprise and operational technology environments supporting Pattern's generation, storage, and transmission assets. This includes executive accountability for cybersecurity governance supporting NERC CIP obligations, cyber crisis management, operational resilience, and AI security governance.
This role helps drive enterprise prioritization, governance, and operational execution discipline in partnership with business leadership, Enterprise Excellence, and other enterprise stakeholders. The role is expected to build durable internal cybersecurity capability, improve cyber governance maturity, and reduce organizational dependency on fragmented processes and external implementation coordination.
The role serves as an advisor to the CEO, COO, Executive Leadership Team, and Board on cybersecurity, technology risk, operational resilience, AI governance, and critical infrastructure protection.
Key Accountabilities
Cybersecurity Strategy, Risk & Governance
  • Develop and execute a multi-year cybersecurity, resilience, technology risk, and AI governance strategy aligned with enterprise objectives, operational priorities, and growth plans.
  • Establish enterprise cybersecurity governance, risk management, and reporting processes that improve accountability, transparency, and decision quality.
  • Ensure cybersecurity, resilience, AI, and technology risks are appropriately incorporated into enterprise planning, investment decisions, acquisitions, integrations, and strategic initiatives.
  • Develop and manage cybersecurity operating and capital budgets, ensuring investments align with enterprise priorities, risk reduction objectives, resilience requirements, and regulatory obligations.
  • Develop cybersecurity investment plans and assess initiatives based on risk reduction, operational resilience, business value, and long-term sustainability.
  • With support from the SVP, Enterprise Technology, provide regular reporting to executive leadership and the Board regarding cyber risk posture, material incidents, resilience capabilities, emerging threats, regulatory developments, NERC CIP readiness, and strategic priorities.
  • Conduct periodic cyber maturity assessments, benchmarking exercises, and independent reviews to support continuous improvement and strategic planning.
  • Establish enterprise security awareness, education, executive cyber literacy, and AI awareness programs that promote a culture of security, resilience, and responsible technology use across the organization.

Cybersecurity Operations & Resilience
  • Lead enterprise cybersecurity capabilities across threat detection, threat intelligence, vulnerability management, identity security, cloud security, incident response, cyber defense, and attack surface management.
  • Ensure effective security governance and protection capabilities across enterprise infrastructure, cloud platforms, operational technology environments, and critical business systems.
  • Ensure effective capabilities exist to identify, assess, respond to, and recover from cyber threats affecting enterprise and operational technology environments.
  • Establish cyber crisis management, cyber recovery, business continuity, and disaster recovery capabilities appropriate for a critical infrastructure operating environment.
  • Support incident response, disaster recovery, operational resilience, and technology risk management activities across the enterprise.
  • Leverage automation and AI-enabled capabilities to improve cybersecurity effectiveness, operational efficiency, threat detection, investigation, response, and resilience outcomes.
  • Ensure third-party cyber risk management capabilities appropriately address vendors, contractors, cloud providers, operational technology suppliers, EPC partners, and strategic service providers.

Operational Technology & Critical Infrastructure Security
  • Lead cybersecurity strategy and governance supporting operational technology environments associated with generation, storage, transmission, SCADA, plant communications, industrial control systems, and operational support systems.
  • Establish cybersecurity and resilience standards supporting operational technology architecture, remote access, network segmentation, monitoring, asset visibility, vendor connectivity, and secure operations.
  • Support operational readiness, secure operations, recoverability, and resilience across critical infrastructure environments.
  • Coordinate with operational stakeholders to ensure technology environments meet reliability, safety, resilience, and compliance expectations.
  • Support secure integration of new facilities, operational technologies, acquisitions, and strategic growth initiatives.
  • Ensure cybersecurity capabilities evolve in alignment with emerging threats affecting operational technology and critical infrastructure environments.

Regulatory Compliance & NERC CIP
  • Ensure cybersecurity operations align with applicable regulatory, cybersecurity, operational risk management, and NERC CIP requirements.
  • Serve as the executive sponsor for NERC CIP cybersecurity governance, audit readiness, compliance activities, and remediation programs.
  • Oversee compliance reporting, evidence management, remediation tracking, control validation, and regulatory readiness activities.
  • Partner with Legal, Compliance, Internal Audit, Enterprise Technology, and operational stakeholders to maintain effective governance and regulatory alignment.
  • Monitor evolving regulatory requirements and industry standards and ensure timely adaptation of policies, controls, and operating procedures.
  • Establish metrics and reporting that provide visibility into compliance posture, control effectiveness, audit readiness, and remediation progress.

AI Security & Governance
  • Establish enterprise governance, risk management, and security practices supporting responsible adoption of AI technologies.
  • Ensure AI systems, AI agents, autonomous workflows, and third-party AI services are appropriately inventoried, governed, monitored, and secured.
  • Establish governance and security requirements for AI systems, AI agents, and autonomous workflows used across enterprise and operational environments, ensuring appropriate human oversight, accountability, and risk management.
  • Protect AI-enabled business processes, models, training data, prompts, retrieval data, and outputs from unauthorized access, misuse, manipulation, or disclosure.
  • Support adoption of AI technologies while maintaining appropriate cybersecurity, privacy, operational, and regulatory safeguards.
  • Drive adoption of AI-enabled cybersecurity capabilities that improve operational efficiency, threat detection, vulnerability management, response, and resilience outcomes.

Enterprise Architecture & Technology Modernization
  • Partner with Enterprise Technology leadership to ensure cybersecurity, resilience, AI governance, and regulatory requirements are embedded into enterprise architecture, cloud transformation, operational technology initiatives, and digital modernization programs.
  • Support scalable technology architectures that improve resilience, security, maintainability, and operational effectiveness.
  • Reduce fragmentation, unnecessary complexity, and inconsistency of cybersecurity controls across the enterprise technology landscape.
  • Support enterprise technology modernization, integration activities, and strategic operational initiatives.
  • Ensure cybersecurity requirements are integrated into technology acquisition, development, deployment, and operational support processes.

Third-Party Risk Management
  • Establish and govern a risk-based third-party cybersecurity and supply chain risk management program.
  • Ensure cybersecurity risks are appropriately assessed and managed across vendors, contractors, cloud providers, EPC partners, operational technology suppliers, and strategic service providers.
  • Support cybersecurity due diligence activities associated with acquisitions, integrations, strategic partnerships, and major technology investments.
  • Ensure cybersecurity requirements are embedded throughout procurement, contracting, onboarding, monitoring, and offboarding processes.
  • Monitor concentration risk and dependencies associated with critical suppliers and service providers.

Enterprise Execution & Governance
  • Partner with business leadership and Enterprise Excellence to support enterprise prioritization, portfolio governance, operational execution, and risk-based decision-making.
  • Improve execution discipline, transparency, accountability, operational metrics, and value realization across cybersecurity and resilience initiatives.
  • Contribute to enterprise governance processes that improve scalability, operational effectiveness, and decision quality.
  • Support enterprise operating rhythms and governance forums that strengthen accountability and cross-functional collaboration.

Talent & Organizational Leadership
  • Build and lead high-performing cybersecurity teams with strong governance, operational, resilience, architecture, OT security, AI security, and risk management capabilities.
  • Develop internal cybersecurity capability and reduce over-reliance on external implementation and coordination models where practical.
  • Foster a culture of accountability, systems thinking, operational excellence, continuous improvement, and enterprise partnership.
  • Build durable organizational capability through succession planning, workforce development, leadership coaching, and talent development.

Strategic Leadership
  • Serve as an advisor to executive leadership and the Board on cybersecurity, technology risk, operational resilience, AI governance, and critical infrastructure protection.
  • Support enterprise scaling initiatives, acquisitions, integration activities, major operational changes, and strategic business priorities.
  • Assess cybersecurity investments with focus on enterprise value, operational resilience, risk reduction, scalability, and long-term sustainability.
  • Build trusted relationships with executive leadership, business stakeholders, regulators, strategic vendors, and operational partners.
  • Represent Pattern Energy in relevant industry forums, NERC-related working groups, cybersecurity communities, and critical infrastructure engagements.

Qualifications
Qualifications
Experience/Qualifications/Education Required
  • Bachelor's or Master's degree in Computer Science, Cybersecurity, Engineering, Information Systems, Business Administration, or related discipline.
  • 15+ years of progressive leadership experience across cybersecurity, technology risk, operational technology, critical infrastructure security, resilience, or related operational environments.
  • Experience leading cybersecurity programs within complex, highly regulated, or critical infrastructure industries preferred.
  • Strong understanding of cybersecurity governance, technology risk management, operational resilience, cyber defense, regulatory compliance, and critical infrastructure protection.
  • Demonstra