About The Position

The IT Asset Risk Classification (ITARC) Governance Lead is responsible for the design, governance, and continuous improvement of the enterprise technology asset risk classification methodology. This role partners across Cybersecurity, Operational Resilience, Data Governance, Technology Risk, and business stakeholders to establish risk-based criteria, define scoring models, and ensure consistent assessment of technology assets based on their inherent and residual risk characteristics. The position leads the development and maintenance of a comprehensive risk scoring framework that incorporates cybersecurity, resilience, data sensitivity, business criticality, and regulatory considerations into a consolidated ITARC score. The individual is responsible for defining risk indicators, establishing weighting methodologies, validating scoring outcomes, and providing governance oversight to ensure the methodology remains accurate, auditable, and aligned with enterprise risk management objectives. This role requires a strong understanding of technology governance, risk management, cybersecurity, resilience, and data management principles, along with the analytical skills necessary to translate complex risk factors into meaningful and actionable risk classifications. The successful candidate will support executive reporting, risk prioritization, audit and regulatory inquiries, and strategic decision-making by providing reliable and defensible technology risk insights across the enterprise.

Requirements

  • Bachelor’s degree in Information Technology, Information Security, Engineering, or related field.
  • Minimum of 7 years of professional experience in technology governance.
  • Strong knowledge of regulatory requirements and compliance frameworks.
  • Experience applying governance assessment methodologies and control frameworks.

Nice To Haves

  • Master’s degree in a relevant technical or business discipline.
  • Experience in the financial services industry.
  • Professional certifications such as CRISC, COBIT, CGEIT, CISM3, or equivalent.
  • Strong knowledge of cybersecurity capabilities and frameworks and financial industry regulations.
  • Proven ability to manage complex technology governance projects, programs, and initiatives.

Responsibilities

  • Implements and continuously improves technology governance frameworks, policies, and procedures.
  • Provides detailed and timely reporting on technology risk posture and compliance to senior management and regulatory bodies.
  • Collaborates with cross-functional teams to integrate governance into technology projects, operations, and governance processes.
  • Supports internal and external reporting by preparing documentation, responding to inquiries, and may facilitate control testing.
  • Monitors emerging technology risks and regulatory changes, recommending proactive adjustments to governance strategies.
  • Manages large, complex technology governance projects and assignments and provides guidance and coaching to junior professionals and project teams within the technology governance domain.
  • Drives risk awareness and compliance culture across technology teams through training and communication initiatives.
  • Directs comprehensive technology governance assessments and control testing to identify vulnerabilities and ensure effective risk mitigation.

Benefits

  • medical
  • dental
  • vision
  • life insurance
  • disability
  • accidental death and dismemberment
  • tax-preferred savings accounts
  • 401k plan
  • 10 days of vacation
  • 10 sick days
  • paid holidays
  • defined benefit pension plan
  • restricted stock units
  • deferred compensation plan
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service