Technology Risk Advisor

Technology Risk Advisor

29 Mar 2024
New York, Buffalo, 14201 Buffalo USA

Technology Risk Advisor

Overview:This role is position is within the Technology and Cybersecurity Risk Operations (TCRO) organization and is focused on Technology Risk Oversight.This role functions with a moderate level of autonomy, leveraging team peer connections, support from Risk Specialists and more senior members in the oversight of the Technology and Cybersecurity division regarding risk management. The functions of this role are primarily focused on a proactive risk management activities for assigned areas within the Technology and Cybersecurity division; serving as subject matter expert in gathering evidence, analyzing information, and documentation while providing oversight, effective challenge, assessment and/or advisory services. This will be accomplished through documenting engagement activities, areas of concern, and measuring the potential risk to the organization as it relates to the organizations risk appetite. This may include issuance of findings, review of remediation plans and validation of closure evidence. In addition, the functions of this role include:Primary Responsibilities:

Appropriate management of the Technology and Cybersecurity risk activities (findings/validations, remediation plans/updates, closure and closure validation).

Execute independent/annual Targeted Review(s); planning, execution and reporting of detailed fieldwork regarding high/medium-high risk areas within the Technology/Cybersecurity division.

Assist with oversight of Technology and Cybersecurity Risk Control Self Assessments (RCSAs) and other risk management reporting; this includes gap and delta assessments.

Engage with assigned oversight areas; understanding the technology, overseeing and advising project/product work prior to implementation leveraging past experience and expertise, risk management practices, existing risk register and validation of controls.

Identify and assess emerging risks and risks associated with new products/ services/ markets/ channels or changes to existing products/ services/ markets/ channels.

Responsible for fieldwork (analysis, investigations, incidents, KRI/KPI metrics breaches, etc.) where some of this may be supported by team Risk Specialists.

Participate in audits and in-depth reviews of Technology/Cybersecurity business line efforts and risk management activities.

Adhere to applicable operational risk controls in accordance with Company or regulatory standards and policies and standards.

Leverage existing hands on experience in Technology and/or Cybersecurity roles and knowledge of industry frameworks utilized by the by the organization such as NIST, FFIEC AIO, and ITIL to provide guidance and build trusted partnerships with internal staff and third parties.

Develop and analyze Technology & Cybersecurity metrics (KRIs, KPIs)

Education and Experience Required:Bachelor’s degree and six years' experience in compliance, legal, audit, risk or other relevant function,OR in lieu of degree,A combined minimum ten years’ higher education and/or work experience including six years’ experience in compliance, legal, audit, risk or other relevant function.Proficient computer skills (including spreadsheet and word processing software), analytical skills, working knowledge of applicable laws, written and verbal communications w/ all levels.Education and Experience Preferred:2-5 years of relevant hands on or risk management work experience in technology and/or cybersecurity fields preferred or 5-10 years of experience in Technology or Cybersecurity.Proven understanding of risk practices related to technology and/or cybersecurity.Technology or Cyber Certifications preferred but not required (Examples such as CISSP, CISA, CSM, ITIL or CRISC)M&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $110,635.01 - $184,391.68 Annual (USD). The successful candidate’s particular combination of knowledge, skills, and experience will inform their specific compensation.LocationBuffalo, New York, United States of AmericaM&T Bank Corporation is an Equal Opportunity/Affirmative Action Employer, including disabilities and veterans.

Related jobs

  • Overview:

  • Overview:

  • Overview:

  • Specialty/Competency: General Tax Consulting

  • Work Arrangement/Location: This is a hybrid position requiring in-office work multiple times every week and will be based in Buffalo, NY, Wilmington, DE, or Bridgeport, CT.

  • Title: Associate General Counsel, Technology TransferJob Type:RegularCompany:Roswell Park Cancer InstituteDepartment: General Counsel & ComplianceTime Type: Full timeWeekly Hours: 40FTE:1Shift: First Shift (United States of America)Summary: Roswell Park is seeking an Associate General Counsel to work in the General Counsel and Compliance Department, reporting to the Vice President and General Counsel or the Deputy General Counsel. This position will be primarily assigned to support Roswell Park\'s research mission, Office of Technology Transfer, and GMP Engineering & Cell Manufacturing Facility (the \"Facility\"). The selected candidate will work closely with research leadership, Facility leadership, the Office of Technology Transfer (\"OTT\"), the Office of Clinical Research Services, the Office of Research Subject Protection, the Privacy and Compliance Office, as well as research faculty and physician investigators. The selected candidate will be responsible for reviewing and negotiating a wide variety of contracts, which may include: (i) research related agreements (clinical trial, collaborative research, sponsored research, material transfer and data use agreements); (ii) technology transfer, license agreements, research and development, and other agreements having significant intellectual property implications; (iii) production and manufacturing agreements (for the manufacture/production of investigational cellular therapy products and intermediates, viral and non-viral vectors, and other related products) ); and (iv) procurement contracts (equipment and product purchase and service agreements). The selected candidate will assist with other legal matters as needed to support the areas referenced above, which matters may include providing regulatory guidance, contract interpretation, and other legal support as requested. The Associate General Counsel interfaces with management of various clinical, research, and administrative departments and provides timely legal guidance to facilitate Roswell Park objectives and support operations while minimizing potential legal risk and exposure. Must develop and maintain knowledge of relevant intellectual property law, FDA regulations, research subject protection regulations, New York laws applicable to public entities and hospitals, and general health and privacy laws to support legal practice. At least three (3) years, five (5) years preferred, experience handling a minimum of one (1) of the categories of agreements listed in (i) through (iv) above is required. Experience with technology transfer, cell and gene therapy, clinical research, and/or intellectual property matters in a health care or life science setting is strongly preferred. This position qualifies for a hybrid remote work arrangement.Starting salary of $137,322 commensurate with experience.Qualifications:Required Education and ExperienceLicense RequirementJ.D. degree from an accredited U.S. law school and admitted to practice law by the State of New York Bar.Education and ExperienceFour (4) years of full-time responsible private practice or in-house legal experience, including general corporate and/or business related matters.NOTE:Required degrees must have been granted by an accredited college or university or one recognized by Roswell Park Comprehensive Cancer Center as following acceptable educational practices.Equal Employment Opportunity StatementRoswell Park Cancer Institute Corporation (RPCIC) and Health Research Inc. (HRI) Roswell Park Division believe that all persons are entitled to equal employment opportunities, and we do not discriminate against our employees, applicants or job seekers because of their race, color, religion, sex, sexual orientation, gender identity or expression, national origin, creed, age, disability, pregnancy-related condition, military or veteran status, marital or familial status, domestic violence victim status, citizenship status, genetic information, individual\'s relationship or association with a member of a protected category or any other protected group status as defined by law.Reasonable Accommodation RequestRPCIC and HRI are committed to working with and providing reasonable accommodation to individuals with disabilities. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the employment process, please email HR-PayAndBenefits@RoswellPark.org and let us know the nature of your request and your contact information.Our Core ValuesRPCIC and HRI are committed to providing an environment where patients, families, employees and community are treated with courtesy and respect. We support an inclusive environment that nurtures the talents, skills and abilities of each individual to embody and reflect our core values: Innovation, Integrity, Teamwork, Commitment, Compassion and Respect.Historical Compensation Information Statement Pursuant to Executive Order 161, no State entity, as defined by the Executive Order, is permitted to ask, or mandate, in any form, that an applicant for employment provide his or her current compensation, or any prior compensation history, until such time as the applicant is extended a conditional offer of employment with compensation. If such information has been requested from you before such time, please contact the Governor\'s Office of Employee Relations at (518) 474-6988 or via email at info@goer.ny.gov.

  • This role follows a hybrid work schedule; offering the flexibility to work remotely two days a week, while providing the opportunity for onsite and in person collaboration the other three days.

Job Details

Jocancy Online Job Portal by jobSearchi.