> Markdown version of [/jobs/ext/1006779-manager-it-risk-governance-assessment](https://www.wearedevelopers.com/jobs/ext/1006779-manager-it-risk-governance-assessment). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Manager, IT Risk Governance & Assessment - **Company:** Toyota Financial Services - **Location:** Plano, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Agile Methodology, Control Objectives for Information and Related Technology (COBIT), Cyber Security, Data Governance, Scrum Methodology, Information Technology - **Published:** June 5, 2026 - **Apply:** https://www.dice.com/job-detail/e15e7ed7-b1ae-476b-9b35-7fc1ddc99348 ## About the Role * Bachelor's Degree in Information Technology, Cybersecurity, Risk Management, or a related field that provides a strong foundation for this work * 7 or more years of experience in IT risk management, cybersecurity, compliance, or a related discipline within a large, regulated financial services environment * Proven experience developing and managing IT risk governance frameworks, policies, standards, and controls such as NIST, ISO 27001, or COBIT * Strong analytical skills with hands-on experience in risk identification, assessment methodologies, and root cause analysis * Ability to translate complex regulatory requirements into clear, practical policies and controls that teams can execute * Excellent communication skills with the ability to explain complex concepts clearly to senior executives and diverse stakeholders * Experience managing both direct reports and matrixed teams in a dynamic, high-pressure environment * A track record of mentoring and developing talent, including helping junior team members grow into more strategic roles Added bonus if you have * An advanced degree that deepens your expertise in IT risk, cybersecurity, or governance * Additional experience in enterprise risk management within a large financial services organization * Familiarity with Agile execution environments and Scrum leadership * Experience working within or alongside first line of defense risk functions * Certifications or specialized knowledge that strengthen your ability to lead governance and control design ## Description Toyota Financial Services Data Governance Office is looking for a passionate and highly motivated Manager, IT Risk Governance & Assessment. The primary responsibility of this role is to lead the foundational activities that establish and strengthen Toyota Financial Services' IT risk management framework, ensuring the organization can proactively identify, assess, and mitigate risk across the enterprise. In this role, you will shape the policies, standards, and control documentation that define how IT risk is managed, while continuously improving the framework through incident learnings and emerging threat insights. Reporting to the Data Governance Office leadership, the person in this role will support the Data Governance Office's objective to build a resilient, risk-aware IT environment that enables strong governance, regulatory alignment, and sound executive decision-making. What you'll be doing A typical day in this role may include partnering with business and technology leaders to strengthen IT risk controls, guiding your team through complex assessments, and translating regulatory requirements into practical governance actions. Success means helping the organization stay ahead of risks, building trust with senior executives, and creating frameworks that are both effective and sustainable. * Develop, maintain, and enhance IT risk management policies, standards, and control frameworks that guide Toyota Financial Services' approach to managing technology risk * Own and maintain the enterprise IT Control Library, ensuring controls are aligned to regulatory expectations and industry frameworks * Lead enterprise-wide IT risk identification and assessment efforts to uncover emerging risks, vulnerabilities, and control gaps before they become issues * Use incident investigation insights to strengthen controls and continuously improve the organization's risk posture * Manage and develop direct reports and matrix resources by delegating effectively, coaching for growth, and removing barriers to success * Build trusted partnerships with senior executives, including the CRO, CIO, CISO, CPO, and CTO, by communicating clearly and delivering credible, business-focused recommendations * Collaborate closely with control execution teams to ensure policies and standards are implemented consistently and effectively * Partner with governance, audit, and compliance teams to keep risk frameworks aligned with regulatory requirements and industry best practices * Promote a strong risk-aware culture through guidance, training, and communication on core IT risk principles * Monitor regulatory changes and emerging threats to keep the risk framework current, relevant, and effective * Lead with a strategic mindset while supporting operational excellence in a highly regulated environment * Foster teamwork, resilience, and professional development across your organization ## Related Videos - [Agile work at CARIAD – Creating a customer web application for controlling the vehicle ](https://www.wearedevelopers.com/videos/200-agile-work-at-cariad-creating-a-customer-web-application-for-controlling-the-vehicle) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Data Governance in the Era of AI](https://www.wearedevelopers.com/videos/1622-data-governance-in-the-era-of-ai) - [ShapeShift: Reinventing Agile for a B2B SaaS Scale-Up](https://www.wearedevelopers.com/videos/1655-shapeshift-reinventing-agile-for-a-b2b-saas-scale-up) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [How software is steering vehicle technology](https://www.wearedevelopers.com/magazine/515-how-software-is-steering-vehicle-technology) - [From developer to manager – what does it take to become an engineering manager?](https://www.wearedevelopers.com/magazine/42-from-developer-to-manager-what-does-it-take-to-become-an-engineering-manager) - [How to Write a CV and Interview if You Don't Fully Qualify For The Job](https://www.wearedevelopers.com/magazine/183-how-to-write-a-cv-and-interview-if-you-don-t-fully-qualify-for-the-job)