Control Management Director
Wells FargoAbout the role
Why Wells Fargo
Are you looking for more? Find it here. At Wells Fargo, we're more than a financial services leader – we’re a global trailblazer committed to driving innovation, empowering communities, and helping our customers succeed.
We believe that a meaningful career is much more than just a job – it’s about finding all of the elements to help you thrive, in one place.
Living the Well Life means you’re supported in life, not just work. It means having robust benefits, competitive compensation, and programs designed to help you find work-life balance and well-being. You’ll be rewarded for investing in your community, celebrated for being your authentic self, and empowered to grow. Join us!
About this role:
The Wells Fargo Chief Development Office (CDO) is seeking a Technology Control Management Director, serving as a critical member of the Technology, SDI, GTM Control Management organization, ensuring that technology risks are identified, assessed, and managed throughout the software development process. You will work closely with development teams, risk management, and compliance functions to implement effective controls that align with regulatory requirements and industry best practices.
Key Responsibilities:
Risk & Control Oversight: Ensure that technology controls are embedded within the SDLC to mitigate risks related to software development, deployment, and maintenance.
Policy & Compliance Alignment: Collaborate with stakeholders to ensure adherence to internal policies, regulatory requirements, and industry frameworks.
Control Design & Implementation: Assist in designing and implementing controls to address security, data integrity, and operational risks within the software development process.
Audit & Compliance Support: Support internal and external audits by providing documentation, control evidence, and remediation plans for any identified gaps.
Secure Development Practices: Advocate for secure coding principles and integration of security testing (e.g., SAST, DAST) within CI/CD pipelines.
Change Management Oversight: Monitor and assess technology changes to ensure appropriate risk assessments and approvals are in place before deployment.
Incident & Issue Management: Investigate control failures, conduct root cause analysis, and recommend corrective actions to strengthen controls.
Training & Awareness: Provide guidance to development teams on control requirements, best practices, and emerging risks in software development.
Required Qualifications
8+ years of Risk Management or Business Controls experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
4+ years of Management or leadership experience
Desired Qualifications:
Strong understanding of the software development lifecycle (SDLC) and technology risk management principles.
Experience with technology control frameworks (e.g., NIST, COBIT, ITIL) and regulatory compliance requirements.
Knowledge of application security principles, DevSecOps, and secure coding best practices.
Familiarity with cloud computing controls, infrastructure security, and CI/CD pipeline security.
Ability to work cross-functionally with developers, risk teams, and compliance stakeholders.
Strong analytical, problem-solving, and communication skills.
Effective understanding and execution of risk management programs, including Risk and Control Self-Assessment (RCSA), Enterprise Risk Identification & Assessment (ERIA) and Issues Management.
Demonstrates the ability to make subjective and informed decisions based upon output, influence stakeholders and justify decision making.
Strong analytical ability used to identify risks and confidently raise issues and through proper statue and authority will counsel and escalate early and when necessary.
Design a control and ways to measure effectiveness.
Meaningful knowledge across the enterprise risk management framework, including: risk identification, risk appetite and strategy, risk-related decisions, processes and controls, risk analytics and governance.
Strong interpersonal, influencing, and communications skills with an ability to interact effectively with stakeholders and regulators, to include virtual, matrixed leadership experience and the ability to effectively ma
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s