Manager, IT Risk & Security Officer
TravelersAbout the role
Who Are We?
Taking care of our customers, our communities and each other. That’s the Travelers Promise. By honoring this commitment, we have maintained our reputation as one of the best property casualty insurers in the industry for over 160 years. Join us to discover a culture that is rooted in innovation and thrives on collaboration. Imagine loving what you do and where you do it.
Job Category
TechnologyCompensation Overview
The annual base salary range provided for this position is a nationwide market range and represents a broad range of salaries for this role across the country. The actual salary for this position will be determined by a number of factors, including the scope, complexity and location of the role; the skills, education, training, credentials and experience of the candidate; and other conditions of employment. As part of our comprehensive compensation and benefits program, employees are also eligible for performance-based cash incentive awards.
Salary Range
$110,600.00 - $182,400.00Target Openings
1What Is the Opportunity?
Under general supervision, this position is responsible for identifying, assessing and establishing mitigation strategies within a business and across the enterprise. Partnering and maintaining strong working relationship with key constituents (i.e.; IT risk management, security, business continuity, enterprise risk management, corporate audit, compliance, business continuity, and information systems security) while driving solutions to reduce risk. This position works with the IT Risk Management core team to develop and maintain metrics, track and monitor ITRM and Corporate Audit Risk issues, execute the ITRM methodology including IT Risk Management profiling and analysis. This job may lead othersWhat Will You Do?
- Risk Analysis and Risk Assessments:
- Identify and lead the appropriate subject matter experts to participate in the identification and analysis of risk scenarios.
- Direct the completion of risk analysis sessions and risk assessment activity within the Lines of Business (LOB).
- Risk Treatment:
- Support the accountable parties in determining the appropriate treatment of identified risks.
- Identify appropriate action plans for risk remediation.
- Communicate and set direction for the acceptance of risk that is aligned with Travelers risk appetite.
- Control Creation, Optimization and Monitoring:
- Inventory, assess significance, assign accountability, and develop appropriate monitoring for the LOB control environment.
- IT Process, Risk and Control (PRC) Framework:
- Partner with assigned LOB risk managers to ensure alignment and support the LOB in understanding and applying the IT Process, Risk and Control (PRC) framework.
- Align IT Risk Management (ITRM) activity with the IT PRC framework.
- Gain an understanding of how the LOB controls map to the IT PRC framework and gaps in risk and control coverage.
- Metrics & Reporting:
- Direct the LOB to identifying and obtaining the data required for consolidated metrics and reporting.
- Prepare LOB specific reporting dashboards and metrics that are external to the risk management tool.
- Technology Enablement:
- Train the LOB end users to understand the risk management tool and how to leverage its capabilities.
- Identify additional LOB ITRM processes or specific requirements that can be operationalized through the risk management tool.
- Use the risk management tool to support the ITRM activity completed by the LOB.
- IT Risk Management Training:
- Support the education and awareness of LOB personnel across ITRM principles, concepts and methodologies.
- Attend required ITRM training sessions.
- Governance, Policies and Procedures:
- Facilitate the communication, education and awareness of key IT Risk Management initiatives and coordinate feedback to be provided back to IT Risk Management.
- Responsible for compliance with audit planning and tracking, business continuity and records retention.
- Responsible for compliance with the LOB in understanding and applying policies, standards and procedures across the IT environment.
- Responsible for compliance with the LOB in understanding the ITRM taxonomy and ITRM processes.
- Involvement in the IT Risk Management council.
What Will Our Ideal Candidate Have?
- Six years of experience in Risk Management or related fields such as Audit, IT Security, or Business Continuity preferred.
- B.S. in IT related discipline or similar degree preferable
- General knowledge and work experience in Risk Management or rel
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s