Data Security Governance Manager

KeyBank•Brooklyn, OH
•$96,000 - $181,000•Hybrid

About The Position

The Data Security Governance Manager will lead a team responsible for protecting KeyBank and client data through enterprise data security governance, monitoring, encryption, certificate management, key management, cryptographic asset awareness, and data protection controls. This role provides leadership across data security functions aligned to internal IT standards, operational control procedures, regulatory expectations, and enterprise risk management objectives. The Senior Manager will guide daily operations, mature governance processes, partner with technology and business teams, and drive a program to understand the organization’s cryptographic assets and prepare key services, processes, and stakeholders for post-quantum cryptography readiness.

Requirements

  • Bachelor’s degree in Information Security, Cybersecurity, Information Technology, Computer Science, Data Management, or a related field, or equivalent work experience.
  • Experience leading information security, data security, data governance, infrastructure security, or related technology teams.
  • Strong understanding of data protection principles, encryption concepts, certificate management, key management, data security posture management requirements, sensitive data governance, and security control operations.
  • Experience working with enterprise security processes, risk management frameworks, audit expectations, control procedures, and regulatory or compliance requirements.
  • Demonstrated ability to manage cross-functional initiatives, influence stakeholders, prioritize competing demands, and deliver measurable outcomes.
  • Strong written and verbal communication skills, including the ability to translate complex security topics into clear business, risk, and executive-level messaging.
  • Experience building or improving operational metrics, governance documentation, procedures, reporting, and service management practices.

Nice To Haves

  • Experience with database activity monitoring, SecuPi, Microsoft Purview, BigID, Google Key Management Services, encryption key services, DigiCert, AppViewX, or hardware security modules such as Atalla.
  • Knowledge of certificate lifecycle automation, SSH key management, cryptographic asset inventory, crypto-agility, post-quantum cryptography readiness, data loss prevention, data retention, and sensitive data discovery programs.
  • Experience managing security services in a financial services or other regulated environment.
  • Professional security or governance certifications such as CISSP, CISM, CISA, CRISC, CDPSE, or similar credentials.
  • Experience developing team talent, coaching technical professionals, improving operating models, and leading through ambiguity.

Responsibilities

  • Lead and develop a data security governance team responsible for database activity monitoring, centralized encryption key management, certificate lifecycle management, hardware security module support, and encryption and masking governance.
  • Provide direction for database activity monitoring capabilities, including alert tuning, detection methodology development, monitoring use cases, whitelist governance, session monitoring, deployment support, and production issue resolution.
  • Support teams responsible for data security posture management by helping establish data protection requirements, governance expectations, control considerations, and implementation guidance that align with enterprise security standards and risk management objectives.
  • Manage centralized encryption key management governance, including review and approval of key requests, lifecycle oversight, key health monitoring, failover planning, automation improvements, and support for application teams.
  • Oversee certificate lifecycle management processes, including certificate enrollments, renewals, re-issuances, revocations, expiration monitoring, outage prevention, certificate authority relationships, and alignment to industry standards.
  • Provide governance and operational oversight for hardware security module capabilities, including Atalla support, master key management, security policy configuration, cryptographic key generation, and related control procedures.
  • Lead efforts to improve understanding of the organization’s cryptographic assets, including keys, certificates, cryptographic services, algorithms, dependencies, ownership, and lifecycle considerations needed to support risk-based planning and governance.
  • Drive a post-quantum cryptography readiness program by coordinating inventory, prioritization, stakeholder engagement, governance requirements, migration planning, and capabilities needed to prepare key services and cryptographic processes for future quantum-resistant standards.
  • Collaborate closely with Security Architects to develop and maintain a capabilities roadmap for the team, ensuring governance processes, services, and tooling continue to align with enterprise security priorities and future-state data protection needs.
  • Provide direction and oversight for data encryption and masking governance, including field-level encryption, key management requirements, application encryption processes, and related control procedure execution.
  • Partner with Security Engineering, Cyber Defense, Cloud, Infrastructure, application teams, DAO stakeholders, vendors, and business partners to drive effective delivery of data security controls and remediation activities.
  • Develop and maintain governance procedures, metrics, reporting, and executive-ready updates that demonstrate control effectiveness, operational health, risk reduction, and program maturity.
  • Support audit, regulatory, risk, and compliance inquiries by providing clear evidence of control design, operating effectiveness, issue remediation, and adherence to internal standards.
  • Drive continuous improvement through automation, process maturity, service reliability, documentation quality, and adoption of scalable data security tools and operating models.

Benefits

  • Base salary in the range of $96,000.00 - $181,000.00 annually
  • Eligibility for incentive compensation which may include production, commission, and/or discretionary incentives
  • List of benefits available (link provided in original posting)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service