Senior Technology Governance Consultant - IT Asset Risk Classification Governance

Truist Bank
Atlanta, GA, United States
27 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Control Objectives for Information and Related Technology (COBIT) Cyber Security Data Governance Information Technology Data Management

Job description

The IT Asset Risk Classification (ITARC) Governance Lead is responsible for the design, governance, and continuous improvement of the enterprise technology asset risk classification methodology. This role partners across Cybersecurity, Operational Resilience, Data Governance, Technology Risk, and business stakeholders to establish risk-based criteria, define scoring models, and ensure consistent assessment of technology assets based on their inherent and residual risk characteristics.

The position leads the development and maintenance of a comprehensive risk scoring framework that incorporates cybersecurity, resilience, data sensitivity, business criticality, and regulatory considerations into a consolidated ITARC score. The individual is responsible for defining risk indicators, establishing weighting methodologies, validating scoring outcomes, and providing governance oversight to ensure the methodology remains accurate, auditable, and aligned with enterprise risk management objectives.

This role requires a strong understanding of technology governance, risk management, cybersecurity, resilience, and data management principles, along with the analytical skills necessary to translate complex risk factors into meaningful and actionable risk classifications. The successful candidate will support executive reporting, risk prioritization, audit and regulatory inquiries, and strategic decision-making by providing reliable and defensible technology risk insights across the enterprise., Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

  1. Implements and continuously improves technology governance frameworks, policies, and procedures.
  2. Provides detailed and timely reporting on technology risk posture and compliance to senior management and regulatory bodies.
  3. Collaborates with cross-functional teams to integrate governance into technology projects, operations, and governance processes.
  4. Supports internal and external reporting by preparing documentation, responding to inquiries, and may facilitae control testing.
  5. Monitors emerging technology risks and regulatory changes, recommending proactive adjustments to governance strategies.
  6. Manages large, complex technology governance projects and assignments and provides guidance and coaching to junior professionals and project teams within the technology governance domain.
  7. Drives risk awareness and compliance culture across technology teams through training and communication initiatives.
  8. Directs comprehensive technology governance assessments and control testing to identify vulnerabilities and ensure effective risk mitigation.

Requirements

The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  1. Bachelor’s degree in Information Technology, Information Security, Engineering, or related field.

  2. Minimum of 7 years of professional experience in technology governance.
  3. Strong knowledge of regulatory requirements and compliance frameworks.
  4. Experience applying governance assessment methodologies and control frameworks., 1. Master’s degree in a relevant technical or business discipline.
  5. Experience in the financial services industry.
  6. Professional certifications such as CRISC, COBIT, CGEIT, CISM3, or equivalent.
  7. Strong knowledge of cybersecurity capabilities and frameworks and financial industry regulations.
  8. Proven ability to manage complex technology governance projects, programs, and initiatives.

Benefits & conditions

Pulled from the full job description

  • AD&D insurance
  • Health insurance
  • Vision insurance
  • Dental insurance
  • Life insurance
  • Pension plan
  • Paid holidays, General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman ¡ World Congress 2022

1:53 min

Reinventing data governance as a collaborative business foundation

Farooq Sheikh Farooq Sheikh +3 ¡ World Congress 2025

3:43 min

Data management for stateful cloud-native workloads

Michael Cade ¡ World Congress 2022

2:39 min

Navigating strict environments for enterprise banking

Lea Fragner ¡ LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger ¡ LIVE

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell ¡ World Congress 2026 Europe

Videos

See all

Related articles

See all