About this role:Wells Fargo is seeking a Senior Lead Operational Risk Officer in Technology Information Security Risk Management (TISRM) Oversight as part pf the Technology and Information Security Authoritative Source Oversight team.
TISRM acts as an Independent Risk Management (IRM) function with the following oversight accountability:
- Oversight across the enterprise for technology risk and information security risk
- Oversight through Risk Type Coverage over technology and information security laws, rules, regulations, enforceable guidance and industry standards
In this role, you will:- Lead the oversight of adherence to authoritative sources. (Technology laws, rules, regulations, enforceable guidance and industry standards (i.e., FFIEC, NIST, COBIT)
- Influence and drive the design for how technology and information security laws, rules and regs that are not covered by compliance are incorporated into IRM / TISRM oversight activities
- Contribute to companywide oversight and governance of an integrated operational risk program or initiative.
- Generate strategic and tactical solutions to ensure successful validation and closure of regulatory issues and audit matters for TISRM and FL.
- Ability to create dynamic presentations and materials summarizing key challenges for executives and senior stakeholders in the front line
- Beneficial to have experience with how Wells Fargo creates Major Compliance Requirements as the process may be somewhat similar to the ENGIN process in the final target operating model.
- Lead the writing of requirements across a variety of tech / info sec related laws rules and regulations.
- Work in collaboration with compliance on "Inventory Build" process for tech and info sec
- Provide companywide oversight and governance of an integrated operational risk program or initiatives
- Review and challenge front line mapping of regulatory requirements to controls and RAU's
- Write operational risk reviews, execute monitoring activities, and raise challenges in the context of oversight of front line activities incorporating best practice in technology, information security, technology governance, cloud and technology third party vendor management
- Identify potential operational risks and compliance risks related to technology and information security
- Constructively and independently challenge existing risk management fundamentals or assumptions and develop alternative approaches and solutions
- Evaluate long term implications and consequences of strategic business decisions and recommend appropriate alternatives for risk management
- Lead oversight of technology change initiatives with focus on implementation of complex initiatives with high technology and cyber risk, generally spanning multiple business lines
- Consult to the business on corrective action plans and effectively managing change
- Influence and negotiate with executive management and business heads as high-level stakeholders both within and outside Wells Fargo
- Be well versed on technology laws, rules and regulations to oversee how front line is applying the Potential Violation of Law to technology issues
- Provide oversight of how front line technology vendor management is meeting expected requirements in technology laws, rules and regulations regarding the technology vendors (i.e., how is technology complying with the DORA - Digital Operational Resiliency Act - that focuses on management of Technology 3rd parties
- Lead initiatives and virtual teams across the organization to deliver companywide business risk management transformations driving for a global operating model
- Collaborate and consult with peers, colleagues, and managers to resolve issues and achieve goals
- Lead project or virtual teams and mentor less experienced staff
Required Qualifications:- 7+ years of Operational Risk experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education.
Desired Qualifications:- Experience with Technology Change Management processes and oversight programs
- Familiarity with the Wells Fargo RCSA process
- Excellent verbal, written, and interpersonal communication skills
- Senior stakeholder management experience
- Enjoys working on detailed activities that include reviewing regulations and associated controls
- Strong understanding of the technology controls
- Experience with technology and information laws, rules and regulations such as FFIEC, GLBA
- Experience working in a global environment familiar with key international regulators such as FCA, PRA, CBI, HKMA, MAS, OSFI etc.
- Experience with industry standards such as COBIT, NIST, PCI, CCGC (cloud)
- Certified Information Systems Auditor (CISA) or Certified in Risk and Information Systems Control (CRISC)
Job Expectations:- This position offers a hybrid work schedule
- This position is not eligible for Visa sponsorship
- Ability to work at one of the approved locations in the job posting
Work Locations - 401 S Tryon St - Charlotte, NC 28202
Posting End Date: 23 Dec 2024
*Job posting may come down early due to volume of applicants. We Value DiversityAt Wells Fargo, we believe in diversity, equity and inclusion in the workplace; accordingly, we welcome applications for employment from all qualified candidates, regardless of race, color, gender, national origin, religion, age, sexual orientation, gender identity, gender expression, genetic information, individuals with disabilities, pregnancy, marital status, status as a protected veteran or any other status protected by applicable law.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
Candidates applying to job openings posted in US: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Candidates applying to job openings posted in Canada: Applications for employment are encouraged from all qualified candidates, including women, persons with disabilities, aboriginal peoples and visible minorities. Accommodation for applicants with disabilities is available upon request in connection with the recruitment process.
Applicants with DisabilitiesTo request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo .
Drug and Alcohol PolicyWells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more.
Wells Fargo Recruitment and Hiring Requirements:a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.