Role OverviewThe Director, Application & Data Technology Risk provides senior leadership for identifying, assessing, and managing technology risks across the enterprise application landscape. This role focuses on application-driven risks throughout the software development lifecycle (SDLC), including design, development, deployment, and ongoing operations, while maintaining strong awareness of data risk, sensitive data exposure, and risks associated with the use of artificial intelligence (AI), automation, and emerging technologies.
What You Will Do
Lead the identification and management of application-level technology risks, including secure design, SDLC controls, configuration weaknesses, dependency risks, and operational resilience. Provide risk oversight across the end-to-end application lifecycle, including requirements, architecture, development, testing, release, and production support. Assess risks introduced through modern engineering practices, including agile delivery, DevOps, CI/CD pipelines, APIs, cloud-native services, and third-party integrations.
Why It Might Be a Fit
The successful candidate will have a strong working knowledge of application architectures, SDLC, DevOps practices, and CI/CD pipelines. They will be able to communicate effectively with senior leaders and translate technical issues into executive-level insights.
Requirements
- 10+ years of experience in technology risk management, application security, IT audit, engineering, or related domains.
- Strong working knowledge of application architectures, SDLC, DevOps practices, and CI/CD pipelines.
- Demonstrated experience assessing data risks and data exposure within application environments.
- Practical understanding of AI and automation risks, including model governance, data usage, and control considerations.
- Solid familiarity with cloud and infrastructure control domains (IAM, logging, encryption, network security, resiliency).
- Proven ability to communicate effectively with senior leaders and translate technical issues into executive-level insights.
- Experience working with industry frameworks (e.g., NIST, CIS Controls, COBIT, secure SDLC standards).
Benefits
- Short-term or annual bonuses
- Long-term incentives
- On-the-spot recognition
- Paid holidays
- Healthcare
- PTO
- Retirement
- Learning budget
- Parental leave
- Wellness
- Visa/relocation
- Remote flexibility
- Stipends
- Bonus/commission
]]>