Sr. Manager, Information Security - U.S. Regulatory Remediation Assurance Lead

TDFort Lauderdale, FL
$123,680 - $200,200Hybrid

About The Position

The Senior Manager Information Security manages / leads a team of Technology Controls / Information Security experts in the development and/ or management of relevant strategies, programs, tools, frameworks and policies and provides specialized oversight / control / governance activities for a key business line/segment or transformational (change the bank) strategic initiative / program, liaising across the organization and primarily interfacing with executive and/or functional stakeholders to minimize overall technology risks to the Bank for own area. Provides leadership, oversight, and execution management for the U.S. CISO Regulatory Remediation Assurance program, including objective 1B testing and challenge activities for regulatory remediation commitments, management action plans (MAPs), and associated corrective actions. Responsible for Gate 1 (Design Review), Gate 2 (Design Effectiveness and Operational Readiness), sustainability testing, and closure readiness assessments. Leads a team of Regulatory Remediation Assurance professionals responsible for developing testing strategies, reviewing remediation evidence, executing risk-based assurance testing, and producing defensible conclusions regarding remediation effectiveness and sustainability. Ensures consistent execution of testing standards, methodologies, and quality expectations across all assigned reviews. Reviews and approves all Regulatory Remediation Assurance testing results, observations, and conclusions. Provides objective challenge of remediation design and implementation, identifies potential control gaps, and escalates material risks, testing exceptions, and remediation concerns to U.S. CISO executive leadership and governance forums as appropriate. Partners closely with remediation owners, Enterprise Testing, CRQA, Internal Audit, Governance, Second Line of Defense, and Technology stakeholders to facilitate effective remediation oversight, promote transparency, and ensure testing activities are aligned with regulatory expectations and management commitments. Establishes and maintains forecasting, resource management, quality control, reporting, and governance processes to support the timely execution of assurance reviews and drive continuous improvement across the Regulatory Remediation Assurance program. Provides oversight and reporting on the status, results, observations, and emerging risks associated with Regulatory Remediation Assurance engagements, communicating key developments to U.S. CISO leadership, remediation stakeholders, and governance committees. Oversees the expanding U.S. CISO 1B Assurance Testing program, which is expected to expand to include and challenge of Critical and High-rated Internal Audit findings and Self-Identified (Self-ID) issues (in addition to regulatory remediation activities), applying a consistent risk-based assurance methodology to validate remediation design, implementation, effectiveness, and sustainability.

Requirements

  • Bachelor's degree preferred
  • Information security certification / accreditation an asset
  • 10+ years of relevant experience
  • Bachelor's degree in Information Technology, Cybersecurity, Risk Management, Business Administration, or a related field required.
  • Master's degree preferred.
  • Minimum 10+ years of progressive experience in Information Security, Technology Risk, Internal Audit, Regulatory Remediation, Assurance Testing, Compliance, or related disciplines.
  • Minimum 5+ years of people leadership experience, including managing high-performing teams responsible for assurance, testing, audit, risk, or regulatory programs.
  • Demonstrated experience designing, executing, and overseeing risk-based assurance testing, control assessments, validation reviews, and remediation effectiveness testing.
  • Extensive experience supporting regulatory remediation programs, management action plans (MAPs), regulatory commitments, consent orders, MRAs, MRIAs, or other regulatory enforcement actions.
  • Strong understanding of governance, risk management, internal controls, and assurance methodologies, including control design, operating effectiveness, sustainability validation, and issue closure assessments.
  • Experience engaging with regulatory agencies, Internal Audit, Second Line of Defense functions, and executive governance committees.
  • Proven ability to provide objective challenge, identify control deficiencies, assess remediation effectiveness, and communicate findings to executive leadership.
  • Strong knowledge of cybersecurity, technology risk, identity and access management, data protection, logging and monitoring, technology change management, and other core information security domains.
  • Experience establishing quality assurance, quality control, reporting, resource planning, and governance processes for large-scale testing or assurance programs.
  • Exceptional written and verbal communication skills with the ability to prepare and present executive-level reporting and defensible assurance conclusions.
  • Demonstrated ability to manage multiple complex initiatives simultaneously in a highly regulated environment while balancing competing priorities and stakeholder expectations.
  • Experience within a large financial institution or other highly regulated industry.
  • Experience leading assurance, audit, regulatory remediation, validation, or issue management programs involving regulators such as the OCC, Federal Reserve, FDIC, or equivalent regulatory bodies.
  • Experience overseeing closure readiness assessments and sustainability validation activities for significant regulatory findings and audit issues.
  • Familiarity with Three Lines of Defense models and governance frameworks.

Nice To Haves

  • One or more of the following professional certifications strongly preferred: Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified in Risk and Information Systems Control (CRISC), Certified Information Security Manager (CISM)

Responsibilities

  • Provides leadership, oversight, and execution management for the U.S. CISO Regulatory Remediation Assurance program, including objective 1B testing and challenge activities for regulatory remediation commitments, management action plans (MAPs), and associated corrective actions.
  • Responsible for Gate 1 (Design Review), Gate 2 (Design Effectiveness and Operational Readiness), sustainability testing, and closure readiness assessments.
  • Leads a team of Regulatory Remediation Assurance professionals responsible for developing testing strategies, reviewing remediation evidence, executing risk-based assurance testing, and producing defensible conclusions regarding remediation effectiveness and sustainability.
  • Ensures consistent execution of testing standards, methodologies, and quality expectations across all assigned reviews.
  • Reviews and approves all Regulatory Remediation Assurance testing results, observations, and conclusions.
  • Provides objective challenge of remediation design and implementation, identifies potential control gaps, and escalates material risks, testing exceptions, and remediation concerns to U.S. CISO executive leadership and governance forums as appropriate.
  • Partners closely with remediation owners, Enterprise Testing, CRQA, Internal Audit, Governance, Second Line of Defense, and Technology stakeholders to facilitate effective remediation oversight, promote transparency, and ensure testing activities are aligned with regulatory expectations and management commitments.
  • Establishes and maintains forecasting, resource management, quality control, reporting, and governance processes to support the timely execution of assurance reviews and drive continuous improvement across the Regulatory Remediation Assurance program.
  • Provides oversight and reporting on the status, results, observations, and emerging risks associated with Regulatory Remediation Assurance engagements, communicating key developments to U.S. CISO leadership, remediation stakeholders, and governance committees.
  • Oversees the expanding U.S. CISO 1B Assurance Testing program, which is expected to expand to include and challenge of Critical and High-rated Internal Audit findings and Self-Identified (Self-ID) issues (in addition to regulatory remediation activities), applying a consistent risk-based assurance methodology to validate remediation design, implementation, effectiveness, and sustainability.

Benefits

  • health and well-being benefits
  • savings and retirement programs
  • paid time off (including Vacation PTO, Flex PTO, and Holiday PTO)
  • banking benefits and discounts
  • career development
  • reward and recognition
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service