Senior Technology Governance Analyst

Geode Capital Management

Boston (MA)

Hybrid

USD 140,000 - 190,000

Full time

10 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health coverage
401(k) matching
Profit sharing
Parental leave
Tuition reimbursement

Job summary

Geode Capital Management seeks a Senior Technology Governance Analyst to design, implement, and maintain IT standards, policies, and procedures while tracking assets from procurement to retirement.

The role bridges technology and compliance, working with security, risk, and audit teams to ensure regulatory alignment, adequate controls, and proactive governance improvements in a hybrid in-office setting.

Qualifications

  • 5-8 years of experience in IT governance, tech audit, information security, or IT risk management.
  • Bachelor’s or Master’s degree in Computer Science, Information Systems, Cyber Security, or a related field.
  • Preferred certifications: CISA, CRISC, CISSP.
  • Deep knowledge of NIST, ISO/IEC 27001, COBIT, ITIL.
  • Hands-on ITAM/ITSM tools experience (ServiceNow, Jira, Flexera).
  • Strong ability to translate complex concepts into policy language.

Responsibilities

  • Draft, review, and update IT policies, procedures, and standards.
  • Align IT frameworks with ISO, COBIT, NIST, ITIL.
  • Drive adoption of standards via training and documentation.
  • Assess governance, compliance, and risk processes for gaps and improvements.
  • Oversee Technology Lifecycle Management (TLM) and asset management.

Skills

IT governance
Information security
Risk management
SSDLC
Policy writing
Regulatory compliance
Stakeholder management

Education

Bachelor's or Master's in CS/IS/Cyber Security

Tools

ServiceNow
Jira
Flexera

Job description

Position: Senior Technology Governance Analyst

Location: Boston, MA

Job Id: 466

# of Openings: 1

Geode Capital Management, LLC is seeking a highly skilled Senior Technology Governance Analyst to oversee our technology governance framework and lifecycle management processes. In this role, you will design, implement, and maintain IT standards, policies, and procedures while ensuring all technology assets are tracked from procurement to retirement. Utilizing your background in technology audit, risk management, and information security, you will bridge the gap between technical operations and compliance, ensuring our infrastructure remains secure, resilient, and fully aligned with regulatory requirements

This role is based in our office in Boston, Massachusetts. You are required to follow the firm’s policy on in-office attendance. Our current policy requires in-office attendance on Tuesday, Wednesday, and Thursday, and then provides an option to work remotely on Monday and Friday. Please note that Geode may alter this policy at any time.

Responsibilities
  • Draft, review, and update comprehensive IT policies, procedures, and technical standards
  • Align IT frameworks with industry best practices and standards such as ISO, COBIT, NIST, and ITIL
  • Drive organization-wide adoption of technology standards through training and documentation
  • Evaluate existing technology governance, compliance and risk processes regularly to identify gaps, inefficiencies, and areas for governance improvement
  • Technology Lifecycle Management (TLM):
    • Manage the end-to-end lifecycle of hardware, software, and enterprise applications
    • Track asset health, support status, and obsolescence risks to prevent operational disruptions
    • Collaborate with Engineering, Finance, Vendor Risk management groups to identify, track and plan upgrades, migrations, and decommissioning of legacy systems, and act as vendor relationship manager for selected vendor partners.
    • Maintain the definitive software asset management (SAM) and hardware configuration management database (CMDB)
  • Technology Risk & Information Security:
    • Conduct technical risk assessments on existing infrastructure and newly proposed technologies
    • Identify vulnerability patterns and ensure security baselines are integrated into the deployment lifecycle
    • Partner with Information Security team to validate that policies meet strict data protection regulations
    • Develop risk mitigation strategies and maintain the details of known risks, mitigation plans, risk acceptance criteria, periodic renewal & closure of risks, in partnership with Enterprise Risk
  • Technology & Internal Audit Collaboration:
    • Act as a liaison for internal and external technology audit teams during reviews
    • Gather, validate, and organize audit evidence to demonstrate continuous compliance
    • Track audit findings and remediation plans, ensuring technical teams resolve deficiencies on schedule
    • Perform pre-audit readiness assessments to proactively identify and fix compliance gaps
  • Other Governance activities:
    • Assist in the ongoing execution and enhancement of Access Management processes, including maintaining and updating job profiles and supporting the user community with access-related requests
    • Provide support for periodic access reviews for both user and service/operational accounts, ensuring completeness and accuracy
Skills You Bring
  • 5-8 years of experience in IT governance, technology audit, information security, or IT risk management
  • Bachelor’s or Master’s degree in Computer Science, Information Systems, Cyber Security, or a related field
  • Preferred certifications: Certified Information Systems Auditor (CISA) or Certified in Risk and Information Systems Control (CRISC) or Certified Information Systems Security Professional (CISSP)
  • Deep knowledge of NIST, ISO/IEC 27001, COBIT, and ITIL frameworks
  • Hands-on experience with ITAM/ITSM tools (e.g., ServiceNow, Jira, Flexera)
  • Solid understanding of internal audit standards, risk testing, and control validation
  • Exceptional ability to translate complex technical concepts into clear, written policy language
  • Strong problem-solving skills with high attention to regulatory and procedural details
  • Experience implementing review and approval processes within a Secure Software Development Lifecycle (SSDLC), including use of modern fully integrated and automated processes within the CI/CD pipeline
  • Excellent verbal and written communication skills
  • Strong relationship building, organization, and critical thinking skills
Company Overview

Founded in 2001, Geode is headquartered in Boston’s financial district, the center of one of the world’s most vibrant finance and technology hubs and employs approximately 200 employees.

Geode is an institutional asset manager providing core beta exposures across a range of equity and niche asset classes, with over $2 trillion. With a robust infrastructure and experienced investment professionals, Geode offers the scale of a large asset management firm with the benefits of a smaller organization.

Our compensation philosophy is designed to attract, motivate, and retain top talent. We are committed to ensuring that compensation reflects the value our employees bring to Geode. Employees at all levels are eligible to receive a combination of base salary, variable compensation, and a comprehensive benefits package. Compensation decisions are informed by a range of factors including role, experience, education, and skillset.

Our benefits program is designed to support employees both professionally and personally, offering comprehensive health coverage, 401(k) matching, annual profit sharing, paid parental leave, and generous time off. We also provide tuition and certification reimbursement, student loan support, fitness reimbursement, commuter subsidy, charitable donation matching, family care assistance including a backup care benefit, adoption and surrogacy support. Hybrid work arrangements and a culture that encourages community engagement through volunteer opportunities and employee events further enhance the employee experience at Geode.

Geode is proud to be an equal opportunity employer and support a diversified work environment. Learn more about Geode at www.geodecapital.com/careers .

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director, Solution Architect
Director, Solution Architect

Geode Capital Management • Boston (MA)

On-site
USD 160,000 - 210,000
Hybrid working arrangements
Commuter benefits
Employee discount programs
Manager, Portfolio Analytics
Manager, Portfolio Analytics

Geode Capital Management • Boston (MA)

Hybrid
USD 145,000 - 165,000
401(k) Matching
$2,500 annual charitable match
Health Savings Accounts
+5
Data Engineer
Data Engineer

Geode Capital Management • Boston (MA)

Hybrid
USD 120,000 - 170,000
Health coverage
401(k) matching
Annual profit sharing
+2
Tech Governance Senior Analyst (Hybrid)
Tech Governance Senior Analyst (Hybrid)

Geode Capital Management • Boston (MA)

Hybrid
USD 140,000 - 190,000
Health coverage
401(k) matching
Profit sharing
+2
Senior Data Engineer
Senior Data Engineer

Geode Capital Management • Boston (MA)

Hybrid
USD 140,000 - 190,000
Health coverage
401(k) matching
Profit sharing
+3
Technology Risk and Governance
Technology Risk and Governance

Arrowstreet Capital, Limited Partnership • Boston (MA)

On-site
USD 110,000 - 315,000
Competitive compensation
Discretionary bonuses
Robust benefits package
Compensation Manager
Compensation Manager

Fidelity TalentSource • Boston (MA)

Hybrid
USD 103,000 - 138,000
Senior Linux System Administrator 3
Senior Linux System Administrator 3

Geon Technologies • Columbia (MD)

On-site
USD 195,000 - 250,000
Medical Insurance
Dental Insurance
Vision Insurance
+7
Senior Enterprise Services Associate
Senior Enterprise Services Associate

GeoWealth • Chicago (IL)

Hybrid
USD 100,000 - 120,000
Casual work environment
Hybrid work schedule
Medical, Dental, and Vision insurance
+1
Senior Geotechnical Engineer – Hybrid, Dams & Foundations
Senior Geotechnical Engineer – Hybrid, Dams & Foundations

Gannett Fleming • Boston (MA)

On-site
USD 120,000 - 175,000