CardWorks · 1 day ago
VP, IT Risk Management Governance & Policy
CardWorks is a diversified consumer finance service provider, and they are seeking a Vice President, IT Risk – Governance & Policy. The role is responsible for developing and implementing the Technology Risk Management Framework, ensuring alignment with enterprise risk strategy and regulatory expectations, while leading governance and reporting efforts across technology risk domains.
Financial Services
Responsibilities
Develop, implement, and maintain the Technology Risk Management Framework aligned with enterprise risk strategy, regulatory expectations, and industry frameworks (e.g., NIST, ISO, COBIT)
Establish governance structures, processes, and routines to ensure consistent identification, assessment, monitoring, and escalation of technology risks
Ensure alignment between technology risk governance and enterprise risk management programs
Support Board and executive reporting by delivering clear, concise, and risk-based insights and recommendations
Prepare quarterly, monthly and as needed technology risk reports for senior management and Board committees
Translate complex technical and regulatory risk topics into business-relevant narratives for appropriate audiences
Contribute to IT risk-related policies and standards, including but not limited to Security Policy and supporting standards
Ensure policies align with internal control frameworks and applicable regulatory requirements (e.g., FDIC, SOC, SOX)
Manage policy review cycles, updates, and approvals according to a defined governance schedule
Drive consistent interpretation of technology policies across technology teams
Develop and maintain key risk indicators (KRIs), metrics, and dashboards across technology risk domains
Leverage metrics, incident data, and control performance to identify risk trends and emerging threats
Continuously enhance risk metrics to improve transparency and decision-making
Stay current on applicable regulations, supervisory guidance, and industry standards (e.g., FDIC, SOX, NIST)
Assess regulatory changes for impact to technology risk governance, policies, and reporting
Partner with Technology, Audit, and Risk teams to ensure readiness for exams, audits, and reviews
Qualification
Required
12+ years of experience in Technology, Technology Risk, IT Risk Management, Audit, or Regulatory
Proven experience developing and operating technology risk governance frameworks and executive reporting
Strong knowledge of regulatory requirements and control frameworks (e.g., FDIC, SOX, SOC, NIST)
Demonstrated ability to communicate risk effectively to all levels of the organization
Preferred
Experience in highly regulated environments
Prior Big 4 or advisory experience a plus
Experience designing KRIs, dashboards, and risk reporting
Benefits
Competitive Pay, including a Bonus Target or Variable Pay Incentive Program
Benefits Package -Medical, Dental, and Vision (plus much more)
401(k) Plan with Company Match
Short- & Long-Term Disability
Wellness Programs
Group Life and AD&D Insurance
Paid Vacation, Sick Days and bank Holidays
Employee Engagement Activities including Employee Appreciation Day, DEI Employee Resource Groups, Corporate Social Responsibility, Service Recognition
Company
CardWorks
Cardworks is a service provider provides comprehensive service and support to bankcard issuers.
H1B Sponsorship
CardWorks has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (2)
2022 (2)
2021 (2)
Funding
Current Stage
Late StageTotal Funding
unknownKey Investors
Parthenon Capital Partners
2022-02-15Private Equity
2017-08-01Private Equity
Recent News
2025-10-03
2025-10-01
2025-05-10
Company data provided by crunchbase