Technology Risk Management Manager
Listed on 2026-02-05
-
IT/Tech
Cybersecurity, IT Consultant
Our vision for the future is based on the idea that transforming financial lives starts by giving our people the freedom to transform their own. We have a flexible work environment, and fluid career paths. We not only encourage but celebrate internal mobility. We also recognize the importance of purpose, well-being, and work-life balance. Within Empower and our communities, we work hard to create a welcoming and inclusive environment, and our associates dedicate thousands of hours to volunteering for causes that matter most to them.
Chart your own path and grow your career while helping more customers achieve financial freedom. Empower Yourself.
As a key contributor within the Enterprise Risk Management team, the Technology Risk Management Manager will support the Technology Risk Management ("TRM") Director in executing the second line of defense ("2nd LOD") responsibilities for technology and AI-related risks. This role is responsible for operationalizing the Company's Technology Risk Management Framework, performing independent risk assessments, monitoring key technology and AI risks, and driving effective challenge across the Technology organization.
What you will do
Support the execution and ongoing enhancement of the Company's Technology Risk Management Framework, ensuring alignment with the 2nd LOD strategy and overall enterprise risk governance.
Conduct targeted technology risk assessments to identify control gaps, assess risks, recommend mitigations, and track remediation through closure.
Perform independent reviews of technology controls across IT domains, including security controls, access management, change management, ITSM processes, data protection, and cloud controls.
Monitor the organization's technology risk profile by evaluating emerging risks, industry trends, incidents, and changes to the technology landscape.
Support issue management activities, including root cause analysis, remediation planning, and validation of implemented solutions.
Review technology-related process and project changes to identify associated risks and provide 2nd LOD risk challenge.
Assist with preparing TRM reporting and risk insights for senior management and board risk committees.
Build and maintain strong working relationships with the Technology organization, fostering a collaborative risk culture
Support ongoing enhancement of the Company's AI Risk Management Framework, ensuring alignment with applicable regulatory expectations, responsible AI practices, and enterprise risk policies.
Maintain the enterprise AI Use Case Inventory, perform 2nd LOD review and challenge of AI models and AI use cases
Develop and deliver regular reporting on the AI Governance Program, including AI risk metrics, inventory changes etc.
What you will bring
Bachelor's Degree required.
6-10 years of experience in Technology, Information Security, IT Audit, Technology Risk Governance, or related fields.
Working knowledge of technology risk management frameworks (e.g., ISO 27001/27002, NIST CSF, COBIT, ITIL) and understanding of core IT risk domains such as cybersecurity, data protection, infrastructure, and cloud.
Experience conducting risk assessments, control testing, model governance
Strong analytical skills, with the ability to evaluate complex technical risks and articulate them clearly to both technical and business audiences.
Demonstrated ability to build effective relationships, collaborate with cross-functional teams, and influence stakeholders to drive remediation and strengthen control environments.
What will set you apart
Excellent written and verbal communication skills, with the ability to prepare clear and concise risk reporting.
Ability to manage multiple priorities, operate with a high degree of ownership, and work both independently and collaboratively.
*** Applicants must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment visa at this time, including CPT/OPT.***
What we offer you
We offer an array of diverse and inclusive benefits regardless of where you are in your career. We believe that providing our employees with the means to lead healthy balanced lives…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).