Cyber Regulatory Reporting Obligation Lead

Bank of America

Denver (CO)

On-site

USD 135,000 - 182,000

Full time

8 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Bank of America is seeking a Cyber Regulatory Reporting Obligation Lead to govern cybersecurity reporting obligations across applicable laws and regulations. The role collaborates with Legal, Compliance, Risk, Incident Management, and GIS leadership to ensure timely decision-making and regulatory notification fulfillment.

The position emphasizes governance routines, risk management, process maturity, and scalable improvements within GIS’s non-financial regulatory reporting function.

Qualifications

  • 5+ years of experience with impact or risk assessments in complex enterprise environments.
  • Ability to navigate global and cross-functional teams and collaborate across the organization.
  • Exceptional communication skills tailored to diverse audiences including executive stakeholders.
  • Experience owning or supporting risk management for the team across first/second/third lines.
  • Demonstrated critical thinking and problem solving with risk-focused outcomes.

Responsibilities

  • Analyze and apply cybersecurity laws, rules, regulations to determine reporting requirements.
  • Assess incidents, data breaches, disruptions, and control failures to identify obligations.
  • Lead development and review of regulatory communications for accuracy and clarity.
  • Coordinate cross-functional stakeholders to meet reporting deadlines and SLAs.
  • Drive process improvements to enhance quality, consistency, and timeliness.

Skills

Risk assessments
Cross-functional collaboration
Decision making under pressure
Independent judgment
Time management
Executive communication
Regulatory reporting
Cybersecurity knowledge
MS Office (Excel/PowerPoint/Word)

Job description

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits. We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve. Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

The Cyber Regulatory Reporting Obligation Lead is responsible for leading the governance, interpretation, assessment, and execution of cybersecurity-related reporting obligations arising from applicable laws, rules, and regulations (LRRs).

This role serves as the central coordinator for driving consistency, transparency, and regulatory compliance.

The role partners closely with Legal, Compliance, Risk, Incident Management, GIS leadership, and business stakeholders to facilitate timely decision-making, executive reporting, and fulfillment of regulatory notification obligations to regulators, clients, and customers.

In addition to managing regulatory reporting obligations, the role is responsible for establishing governance routines, strengthening risk management practices, driving process maturity, and implementing strategic improvements that enhance the effectiveness and scalability of the non-financial regulatory reporting function within GIS.

Responsibilities
  • Analyze and apply cybersecurity-related laws, rules, regulations, regulatory expectations, and contractual obligations to determine reporting and notification requirements.
  • Assess cyber incidents, data breaches, operational disruptions, and control failures to identify reporting obligations and support timely reporting decisions.
  • Lead the development and review of regulatory communications, ensuring accuracy, clarity, and consistency.
  • Manage escalations and coordinate cross-functional stakeholders to meet reporting deadlines and service level commitments.
  • Drive continuous improvement of regulatory reporting processes to enhance quality, consistency, efficiency, and timeliness.
  • Identify and implement automation, technology, and process enhancements to improve operational effectiveness.
  • Support strategic initiatives, including new regulatory requirements and reporting infrastructure enhancements.
  • Develop executive-level reports, dashboards, and presentations to support informed risk and business decisions.
  • Communicate, influence, and negotiate effectively across functions and levels to secure partnership and drive delivery of program objectives.
  • Represent the program in governance forums, foster strong stakeholder partnerships, and manage core operational routines across global responsibilities.
Required Qualifications
  • 5+ years of experience with impact or risk assessments (ideally related to information security) within complex enterprise environments, or similar experience.
  • Ability to navigate across global and cross-functional teams and to collaborate, manage, and expand relationships across the organization.
  • Highly collaborative and supportive team member, with the ability to work equally well independently to drive outcomes.
  • Demonstrates the ability to remain composed and make sound decisions in high pressure environments.
  • Exercise independent judgment in methods, techniques and evaluation criteria for obtaining results.
  • Capable of managing multiple competing priorities in a fast paced environment, taking timely and effective action without unnecessary delay.
  • Exceptional communication skills, with the ability to tailor messaging effectively to diverse audiences, including technical and executive stakeholders.
  • Experience with owning / supporting risk management for the team, including engagement with first, second line, and third line.
  • Demonstrated critical thinking and problem solving skills, with the ability to develop creative, pragmatic solutions to complex challenges while maintaining a strong focus on risk management and objectivity.
  • Ability to independently manage critical routines and provide leadership continuity across global operations as needed.
  • Attention to detail and drive quality assurance.
  • Knowledge of cybersecurity industry.
  • Proficient in Microsoft Office applications (Excel, PowerPoint, and Word), with demonstrated ability to develop executive-level presentations and effectively communicate.
Desired Qualifications
  • Prior experience with Law, Rules and Regulation.
  • Prior audit, regulatory, and issue management experience.
  • Project management skills.
Required Skills
  1. Customer and Client Focus
  2. Interpret Relevant Laws
  3. Rules
  4. and Regulations
  5. Policies
  6. Procedures
  7. and Guidelines
  8. Problem Solving
  9. Quality Assurance
  10. Business Process Analysis
Shift

1st shift (United States of America)

Hours Per Week

40

Pay Transparency details

US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540)

Pay and benefits information

Pay range $135,000.00 - $182,100.00 annualized salary, offers to be determined based on experience, education and skill set. Discretionary incentive eligible This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.

Benefits

We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve. Bank of America is committed to help employees through the transition period when they're displaced as a result of a workforce reduction, realignment or similar measure.

Pay Transparency - https://careers.bankofamerica.com/en-us/pay-transparency

Privacy Statement - https://careers.bankofamerica.com/en-us/privacy-notice

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cyber Security Risk & Resolution Analyst
Senior Cyber Security Risk & Resolution Analyst

Bank of America • Denver (CO)

On-site
USD 140,000 - 200,000
Information Security Officer
Information Security Officer

Bank of America • Denver (CO)

Hybrid
USD 99,000 - 145,000
Information Security Officer
Information Security Officer

Bank of America • Washington

On-site
USD 99,000 - 145,000
Benefits eligible
Discretionary incentive
Information Security Officer
Information Security Officer

Hobbsnews • Chicago (IL)

On-site
USD 99,000 - 145,000
Discretionary incentive
Benefits eligibility
Senior Resolution Analyst - Cyber Security
Senior Resolution Analyst - Cyber Security

Bank of America • Denver (CO)

On-site
USD 140,000 - 200,000
Controls Mapping Governance Lead - Global Information Security
Controls Mapping Governance Lead - Global Information Security

Bank of America • United States

On-site
USD 78,000 - 136,000
Discretionary incentive eligible
Benefits eligible
Regulatory Reporting Operations Professional
Regulatory Reporting Operations Professional

Bank of America • Jacksonville (FL)

On-site
USD 70,000 - 110,000
Controls Mapping Governance Lead - Global Information Security
Controls Mapping Governance Lead - Global Information Security

Bank of America • Addison (TX)

On-site
USD 78,000 - 136,000
Information Security Officer - Global Banking & Markets (GBAM)
Information Security Officer - Global Banking & Markets (GBAM)

Bank of America • Washington

On-site
USD 99,200 - 145,000
Annual discretionary plan
Benefits eligible
Controls Mapping Governance Lead - Global Information Security
Controls Mapping Governance Lead - Global Information Security

Bank of America • Denver (CO)

On-site
USD 78,000 - 136,000
Discretionary incentive eligible
Benefits eligible
Paid time off