Vice President – Information Technology & Cyber Risk Mgmt

Crédit Agricole CIB

New York (NY)

Hybrid

USD 170,000 - 210,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

The Vice President, Information Technology and Cyber Risk Management (ITCRM) role sits in Credit Agricole’s Risk Division with 2nd Line oversight across IT, cyber and operational resiliency risk for the Combined U.S. Operations (CUSO).

The position offers hybrid work from Iselin, NJ or New York City, with travel to NYC for essential meetings. Reporting to the Head of IT and Cyber Risk for CUSO, you will assess, monitor, and test the 1st Line to ensure ICT risk is identified, measured, managed,

Qualifications

  • CRISC Certification required; additional CISSP/CISM/CISA/CBCP are a plus.
  • Familiarity with FFIEC booklets and NIST/ISO27001 frameworks a plus.
  • Must communicate well to Sr. Management.

Responsibilities

  • Oversee and provide effective challenge of 2nd Line ICT risk controls.
  • Monitor risk and performance indicators and escalate breaches.
  • Support regulatory exams and prepare materials for regulators.

Skills

CRISC certification
Regulatory knowledge
Strong communication
Leadership

Education

BA/BS

Job description

The Vice President, Information Technology and Cyber Risk Management (ITCRM) position is an individual contributor role within Credit Agricole’s Risk Division with 2nd Line of Defence oversight responsibilities across all business lines and activities of Credit Agricole’s Combined U.S. Operations (CUSO) for Information and Communications Technology (ICT) Risk, which includes IT Risk, Cyber Risk, and Operational Resiliency Risk.

The Position can be based out of Iselin, New Jersey or New York City on a hybrid work schedule with requirements to travel to NYC as needed for essential meetings (regulatory, team meetings, collaboration, etc.)

Reporting to the Head of IT and Cyber Risk for CUSO, you will be responsible for assessing, monitoring, and testing 1st Line of Defence to ensure ICT risk is appropriately identified, measured, managed, and reported in accordance to US Regulatory requirements and frameworks.

Responsibilities
  • Oversee and provide effective challenge of First Line of Defence implementation of enterprise and operational risk management frameworks for ICT Risks.
  • Monitor Key Risk, Key Performance, and Key Control Indicators for Information and Communications Technology across all business units, aggregate reporting to Risk Committees and **escalate** any breaches of established tolerances and thresholds.
  • Support regulatory exams by preparing materials, responding to regulatory inquiries, and presenting on continuous monitoring sessions to regulators.
  • Perform analysis on quarterly reports from various US operations and create a consolidated quarterly risk reports to be presented at various risk committees on ICT Risk.
  • Manage issues across the issue management lifecycle
  • Monitor regulatory rule changes and conduct training and awareness sessions as needed to business leaders across the 1st line.
  • Collaborate with other Risk Management functions to identify top and emerging risks to ensure appropriate visibility of the evolving landscape within Information and Communications Technology.

Contract type: Permanent contract

SPECIAL ROLE REQUIREMENTS
  • Candidate must have obtained a Certification in Risk and Information Systems Control (CRISC) Additional certifications in CISA, CISM, CBCP, and/or CISSP are a plus.
  • Familiarity with the Federal Financial Institutions Examination Council (FFIEC) booklets with the ability to assess against them.Additional knowledge of NIST 800-53, NIST CSF, CRI, ISO27001, COBIT, and/or CIS frameworks are a plus.
  • Must possess the ability to communicate well; translating technology terminology and issues to non-technical audiences within Sr. Management.
Qualifications/Education Required
  • College Degree BA/BS
Qualifications/Education Desired
  • Management Information Systems (MIS), Information Technology, or Cybersecurity
Experience Required
  • 5+ years of experience with oversight responsibilities in Operational Risk, Information Technology, Cybersecurity and/or Operational Resilience within a 2nd Line of Defence function such as Risk Management or Compliance.

OR

  • 8-15 years of experience in risk related functions such as 1st line Governance Risk, and Compliance (GRC) or 3rd Line Internal Audit functions focused on Information Technology, Cyber Security, and/or Operational Resilience.
Experience Desired
  • Prior experience in a US Large or Foreign Banking Organization (LFBO)
  • Experience in evaluating and/or implementing US regulatory requirements.
  • Experience with or at a state or federal agency is a plus.
Specialist Training Required
  • Certified in Risk and Information Systems Control (CRISC)
  • CISSP, CISM, CISA, CBCP
  • Regulatory experience
  • Detailed Oriented, articulate and possessing good communication skills
  • Excellent Analytical Skills
  • Resourceful in identifying, following up and resolving issues.
  • Strong team spirit and work ethic
  • Strong written and verbal communication skills
  • Ability to collaborate across the organization and manages relationships
  • Leadership ability, able to drive action within the organization.
  • Ability to manage up
  • Ability to manage horizontally across multiple businesses and risk disciplines.
Skills & Knowledge Requirements
  • Strong Risk Management knowledge is required including working knowledge of Enterprise Risk Management, Operational Risk Management, and familiarity with Third Party Risk Management.
  • Knowledge of technology environments and processes is also required.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vice President - Information Technology and Cyber Risk Management
Vice President - Information Technology and Cyber Risk Management

Crédit Agricole Group • New York (NY)

On-site
USD 150,000 - 185,000
Senior IT & Cyber Risk Executive - Hybrid (NYC/Iselin)
Senior IT & Cyber Risk Executive - Hybrid (NYC/Iselin)

Crédit Agricole CIB • New York (NY)

Hybrid
USD 170,000 - 210,000
CRO - Information Security & Risk Oversight Lead
CRO - Information Security & Risk Oversight Lead

Bloomberg • New York (NY)

On-site
USD 140,000 - 180,000
Technology Operational Risk Management Lead (Cybersecurity) - Vice President
Technology Operational Risk Management Lead (Cybersecurity) - Vice President

JPMorgan Chase & Co. • Jersey City (NJ)

On-site
USD 150,000 - 200,000
Vice President, IT Risk Governance
Vice President, IT Risk Governance

Selby Jennings • New York (NY)

On-site
USD 180,000 - 240,000
Technology Risk, Cyber Governance & Third-Party Risk Manager
Technology Risk, Cyber Governance & Third-Party Risk Manager

Socket.dev • Town of Florida (NY)

On-site
USD 120,000 - 160,000
Senior Manager, Technology Risk
Senior Manager, Technology Risk

Jobtailor • Minneapolis (MN)

On-site
USD 140,000 - 190,000
Senior Cybersecurity Consultant, Financial Services
Senior Cybersecurity Consultant, Financial Services

Jobtailor • California (MO)

On-site
USD 120,000 - 180,000
SVP & Director of IT Governance - Cyber Security
SVP & Director of IT Governance - Cyber Security

Socket.dev • Uniontown (OH)

On-site
USD 120,000 - 180,000
Director Cybersecurity Operational Risk Oversight
Director Cybersecurity Operational Risk Oversight

Citizens Bank • Westwood (MA)

On-site
USD 178,000 - 220,000
Medical, dental and vision coverage
Retirement benefits
Education reimbursement
+1