Principal Technology Risk Manager
BECUAbout the role
Is it surprising to hear that a financial institution of 1.5 million members and over $30 billion in managed assets say that success comes from focusing on people, not profits?
Our “people helping people” philosophy has guided us since 1935, driving our deep commitment to serving our members, communities, and each other. When you join our team, you become part of a purpose-driven organization where your work makes a real difference.
While we’re proud of our history, we’re even more excited about our future. With business and technology transformation on the horizon, there’s never been a better time to be part of BECU.
PAY RANGE
The Target Pay Range for this position is $171,700.00-$209,800.00 annually. The full Pay Range is $133,100.00 - $248,300.00 annually. At BECU, compensation decisions are determined using factors such as relevant job-related skills, experience, and education or training. Should an offer for employment be made, we will consider individual qualifications. In addition to your salary, compensation incentives are available for the hired applicant. Incentives are performance based and targets vary by role.BENEFITS – because people helping people starts with supporting you
401(k) Company Match (up to 3%)
4% annual contribution to your 401(k) by BECU
Medical, Dental and Vision (family contributions as well)
PTO Program + Exchange Program
Tuition Reimbursement Program
BECU Cares volunteer time off + donation match
IMPACT YOU’LL MAKE:
As the Principal Technology Risk Manager, you will elevate and unify BECU’s technology risk management capabilities across our full tech ecosystem. You’ll strengthen how we identify, manage, and mitigate risk—improving resilience, transparency, and risk-based decision-making across the organization. You will partner closely with Technology, Cybersecurity, and enterprise risk teams to mature frameworks, reduce vulnerabilities, and simplify remediation processes. Your work will directly influence senior leadership and Board-level insights while shaping a forward‑thinking, proactive risk culture. You’ll play a pivotal role in advancing BECU’s overall technology risk posture and operational excellence.
To join our dynamic team, we require candidates to be residents of WA, OR, ID, AZ, TX, GA, SC, NC, CA or VA. If you’re located in Washington state and within a reasonable driving distance from Tukwila, we are requesting that you come into our HQ on Tuesdays & Wednesdays. For those candidates that live outside the commute distance of TFC and in any of our approved remote work locations, this role will be remote. Remote or onsite, we are committed to ensuring you are fully engaged and included in our collaborative environment.
WHAT YOU’LL DO:
- Vulnerability Governance Leadership: Lead the design and execution of a unified vulnerability risk framework that streamlines grouping, strengthens remediation cycles, and reduces recurring issues across applications and systems.
- Cross‑Functional Remediation Partnership: Partner with Cybersecurity, Tech Infrastructure & Operations, and system owners to drive sustainable remediation, support SLA adherence, and promote structural, long-term solutions.
- Technology Audit Readiness Management: Serve as the central point of coordination for technology audits, ensuring consistency in interpretation, response, evidence collection, and remediation activities.
- Code‑Based Risk Assessment: Apply your understanding of coding practices and system architecture to evaluate risks across tech stacks and recommend controls that improve stability, security, and resilience.
- KRI Development & Alignment: Collaborate with technology and risk leaders to build, refine, and monitor Key Risk Indicators (KRIs) that align to the Board‑approved Enterprise Risk Appetite.
- Executive & Board Reporting: Develop and deliver clear, actionable risk reporting that translates performance, exposures, and emerging risks for Executives, the Board of Directors, and Regulators.
- Enterprise Risk & Optimization Initiatives: Lead strategic, cross‑functional initiatives that enhance risk processes, optimize operations, and inform recommendations for senior and executive leaders.
- Risk Communication & Coordination: Partner with ERM, Compliance, Legal, Cyber, Fraud, and Internal Audit teams to ensure visibility into emerging risks and strengthen mitigation strategies.
- Third‑Party Risk Collaboration: Work with Vendor Management and Technology owners to ensure external partners meet BE
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s