Engineering Division-New York-Vice President, Risk Governance-10424173

Goldman Sachs, Inc.
New York, NY, United States
10 days ago
Apply on us.experteer.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Excel Data Analysis Software System Penetration Testing Cloud Computing Security Code Review Cyber Security Computer Engineering Information Systems Security Architecture Professional Cloud Services Software Security Information Technology Cyber Warfare

Job description

Experteer Overview Lead a transformation of the Technology Risk function to enhance the effectiveness of information and cyber security. Align transformation efforts with divisional objectives and regulatory drivers in collaboration with Technology Risk and Engineering leadership. Conduct Application Security Assessments and communicate findings to engineers, while shaping secure architecture, policies, and standards. Identify software and process vulnerabilities and explore secure cloud adoption. Partner with stakeholders on design security, remediate issues, and contribute to a world-class cyber defense program with incident response and forensics teams. Compensation / Benefits * Drive transformation of the Technology Risk function to improve information and cyber security effectiveness * Partner with Technology Risk and Engineering leadership to set measurable goals aligned with strategy and regulatory requirements * Perform Application Security Assessments (code review, penetration testing, design review, threat modeling) and report results to application engineers * Review securing architecture, policies, and standards; document related artifacts * Identify vulnerabilities in software products and development processes to reduce risk * Research and evaluate secure use of new cloud services * Analyze security threats and risks by understanding software component designs with stakeholders * Communicate issues and recommendations to component owners and guide secure remediation * Contribute to an advanced cyber defense program with incident management and forensics teams * Provide security consulting within the Firm as needed Tasks * Master’s degree in Computer Science, Computer Engineering, Cyber Security Engineering or related field with 3 years of relevant experience OR Bachelor’s degree in same fields with 5 years of relevant experience * Experience in technical Project Management or Program Management within financial services or technology * Knowledge of target Operating Model, control frameworks, process engineering, automation, and location strategy * Software engineering fundamentals, risk identification, mitigating controls, and improving control environments * Experience in engineering or cybersecurity environments with risk, compliance, regulatory, or information technology/security * Familiarity with risk management methodologies and frameworks * Data analysis and visualization experience including Microsoft Excel Key requirements *

Requirements

testing, design review, threat modeling) and report results to application engineers * Review securing architecture, policies, and standards; document related artifacts * Identify vulnerabilities in software products and development processes to reduce risk * Research and evaluate secure use of new cloud services * Analyze security threats and risks by understanding software component designs with stakeholders * Communicate issues and recommendations to component owners and guide secure remediation * Contribute to an advanced cyber defense program with incident management and forensics teams * Provide security consulting within the Firm as needed Tasks * Master’s degree in Computer Science, Computer Engineering, Cyber Security Engineering or related field with 3 years of relevant experience OR Bachelor’s degree in same fields with 5 years of relevant experience * Experience in technical Project Management or Program Management within financial services or technology * Knowledge of aaaav _ Operating Model, control frameworks, process engineering, automation, and location strategy * Software engineering fundamentals, risk identification, mitigating controls, and improving control environments * Experience in engineering or cybersecurity environments with risk, compliance, regulatory, or information technology/security * Familiarity with risk management methodologies and frameworks * Data analysis and visualization experience including Microsoft Excel Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:48 min

Automating exploratory data analysis within training pipelines

Dora Petrella · World Congress 2023

3:39 min

Addressing code review surrender and process exploitation

Laura Tacho Laura Tacho · World Congress 2026 Europe

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:36 min

Performing exploratory data analysis to uncover underlying patterns

Julian Joseph · LIVE

56 sec

The hidden costs of delayed peer code reviews

Tim Gilboy Tim Gilboy

1:49 min

Evaluating risk profiles through the eyes of different stakeholders

Ingo Philipp · LIVE

Videos

See all

Related articles

See all