Jobs and Careers
AT

Director-Cybersecurity - Tech Risk- Data Management & Tech Human Capital Risk Advisor

AT&T
Bedminster, United Statesfull_timeVerifiedPosted 2 Oct 2024
💰 $287,200/yr($171,000/yr$287,200/yr)

About the role

Job Description:

Join AT&T and reimagine the communications and technologies that connect the world. Our Chief Security Office ensures that our assets are safeguarded through truthful transparency, enforce accountability and master cybersecurity to stay ahead of threats. Bring your bold ideas and fearless risk-taking to redefine connectivity and transform how the world shares stories and experiences that matter. When you step into a career with AT&T, you won’t just imagine the future-you’ll create it.

Job Summary:

You will report to the Vice President of Technology Risk and lead a team responsible for identifying, assessing, responding to, and monitoring risks pertaining to the use of data and deployment of human capital to achieve business objectives. You will ensure that regulatory / risk policies and standards and their impact on business operations are understood and addressed consistently across AT&T, and that technology risks of new and existing technology facilities, as well as third party facilities, are assessed, monitored, and remediated as necessary. You will help to provide coverage for regulatory issues with our global technology partners and assist with regulatory exams, requests, and meetings.

Responsibilities:

  • Lead the Data and Technology Human Capital risk advisory team in accordance with the Technology Risk Program and in support of compliance initiatives within respective business units / functions

  • Manage the development of Technology Risk policies, processes, frameworks and oversee the integration and implementation of proposed solutions

  • Ensure IT Standards and Policies are fit for purpose and are appropriate from a regulatory, risk and compliance perspective

  • Provide expertise to business units around emerging technology risk topics

  • Support Tech Risk teams responsible for risk monitoring, periodic controls testing, evidence collection, remediation and audit readiness efforts

  • Support efforts to improve the Technology Risk Program’s onboarding capabilities, with the goal of facilitating and streamlining Program adoption, and simplifying the process for business units to understand and comply with Program requirements/controls

  • Periodically assess Technology Program capabilities and associated maturity levels to identify Program enhancement opportunities

  • Develop strong relationships and interact with Senior Leadership, Business Unit Heads, Global Functions, Internal Audit, External Regulators, Legal and Compliance, Privacy and IT teams to coordinate activities

  • Develop and deliver executive-level IT risk presentations to describe risk exposures and actions required

  • Support Vice President of Technology Risk with escalation of high risk observations to executive leadership

  • Support teams conducting risk and control assessments of new and existing business capabilities

  • Represent AT&T’s interests to appropriate industry and standards forums and advise the Vice President of Technology Risk concerning topics and trends pertaining to information technology risks

Qualifications:

  • Preferred Master's degree in Information Systems, Engineering, Mathematics or Cyber Security related fields

  • 8- 10 years of work experience in technology, operational risk management, or a related discipline at a global company

  • 7+ years of experience in multiple industry risk, control and governance disciplines (e.g. Audit, Information Security, and Regulatory Compliance)

  • Deep experience in data risk and data management control capabilities in an ownership or oversight capacity and human capital risk management within technology organizations or in an oversight capacity

  • Experience designing, implementing, and sustaining programs that effectively manage risk throughout the risk management lifecycle.

  • Demonstrated success in remediating self-identified, internal / external audit, and regulatory / compliance issues

  • In-depth understanding of information technology and best practices across the industry as well as project management principles

  • Extensive knowledge of information and technology risk management policies, methods, standards, tools, and processes (e.g. ISO, COSO, COBIT) as well as knowledge of compliance, legal, internal / external audit & regulatory requirements

  • Ability to weigh business needs against risk concerns and effectively articulate issues to different audiences

  • Strong expertise in the collaboration, facilitation and coordination of the mitigation of risks. Adept at navigating governance structures. Ability to manage and analyze data. Experience raising awareness of informat

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

AT&T

View company profile →