Associate Director, Embedded Risk Manager - Application Development

Talon
Jersey City, NJ, United States
18 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Confluence JIRA Systems Development Life Cycle Release Management Power BI Secure Coding Software Engineering Systems Integration Tableau (Software) Working Model 2D IT General Controls (ITGC)
+4 more
Large Language Models RSA Archer Platform Devsecops Servicenow

Job description

Join a leading organization as an Embedded Risk Manager within the Application Development space, where your expertise will be pivotal in integrating risk management practices into the software development lifecycle. This critical role involves collaborating with development teams, risk stakeholders, audit professionals, and external partners to strengthen controls, enhance risk awareness, and promote a robust risk culture. If you are passionate about technology risk, have a proven track record in audit and control management, and thrive in complex, regulated environments, this opportunity offers a platform to make a significant impact in shaping effective risk strategies and ensuring operational resilience.

Requirements

  • Minimum of 8+ years experience in technology risk, application development risk, IT controls, cybersecurity risk, or related fields within a complex environment.
  • Deep knowledge of the software development lifecycle (SDLC), application controls, change management, and secure development practices.
  • Proven ability to support audit readiness, issue management, remediation planning, and risk reporting processes.
  • Strong stakeholder management skills capable of influencing senior application development and risk stakeholders.
  • Experience analyzing risk, controls, audit data, incidents, and remediation activities to derive actionable insights.
  • Familiarity with GRC platforms like Archer, ServiceNow, Power BI, Tableau, Jira, or Confluence is advantageous.
  • Excellent verbal and written communication skills with the ability to produce clear, concise risk reports and executive summaries.

Nice to Have Skills

  • Experience in financial services, banking, insurance, or regulated industries.
  • Knowledge of DevSecOps, secure SDLC, change, and release management.
  • Familiarity with AI, large language models, and automation for risk insights and control analysis.
  • Professional certifications such as CRISC, CISA, CISM, CISSP, CGEIT, ITIL, or SAFe.

Preferred Education and Experience

  • Bachelor’s degree is required.
  • Extensive experience in technology and application development environments, ideally in highly regulated sectors.

Other Requirements

  • This role requires a hybrid working model with three days onsite at our Jersey City location.
  • Candidates must possess a strong understanding of risk culture cultivation and proactive control issue identification.

Eager to leverage your expertise at a dynamic organization committed to operational excellence? Apply now and take the next step in your career to drive meaningful risk management solutions!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:58 min

Scaling security teams through developer advocates

Tanya Janca · World Congress 2021

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:24 min

Moving the semantic layer upstream to avoid vendor lock-in

Piotr Menclewicz Piotr Menclewicz · Europe 2026 Virtual

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

3:40 min

Macro global risks shaping the future of work

Nazim Unlu Nazim Unlu · World Congress 2025

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all