Early Warning Logo

Early Warning

Technical Policy Program Director

Posted 3 Hours Ago
Be an Early Applicant
In-Office
New York City, NY, USA
221K-276K Annually
Expert/Leader
In-Office
New York City, NY, USA
221K-276K Annually
Expert/Leader
Leads the second-line cybersecurity and technology risk policy program, overseeing policy lifecycle governance, control catalog mapping, regulatory framework harmonization, executive reporting, assessments, and governance forums. Advises senior leaders across cybersecurity, technology, risk, compliance, and legal; translates emerging risks and regulatory changes into policy strategy; and ensures accountability, traceability, audit defensibility, and alignment between policies, controls, and operational execution.
The summary above was generated by AI

At Early Warning, we’ve powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle®, Paze℠, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.

Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.

Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.

    Overall Purpose

    The Technical Policy Program Director will support the Cybersecurity and Technology Risk Oversight Center of Excellence (CTRO-COE) Program within the Second Line of Defense (2LOD). This role is responsible for overseeing the 2LOD Policy Program.

    Essential Functions

    Center of Excellence Operations

    • Define and operationalize the enterprise second-line policy oversight strategy, establishing a scalable center-of-excellence model that standardizes governance, accountability, and execution across cybersecurity and technology risk domains.

    • Drive integration of first- and second-line policy oversight activities to ensure consistent risk interpretation, control expectations, and enterprise-wide coverage.

    • Establish executive-level reporting and metrics that provide transparency into policy health, adoption, exceptions, and emerging risk themes.

    • Lead continuous improvement initiatives to mature the 2LOD policy governance framework, incorporating lessons learned, regulatory developments, and industry leading practices.

    Policy Program Facilitation, Architecture & Oversight

    • Own the end-to-end enterprise lifecycle governance for all technology and security policies, establishing standards for drafting, review, approval, exception management, publication, and attestation.

    • Architect and maintain a cohesive, risk-aligned policy framework that clearly delineates policies, standards, procedures, and technical controls across lines of defense.

    • Provide strategic direction to ensure policy content reflects evolving regulatory requirements and industry frameworks, including PCI DSS, NIST 800-53a, SIG, FFIEC handbooks, SSAE No.18, GLBA, NYDFS, and FCRA.

    • Establish governance forums and decision-making structures to ensure appropriate challenge, approval authority, and accountability at the executive level. Oversee policy rationalization efforts to eliminate redundancy, resolve ambiguity, and enhance clarity and enforceability across the enterprise.

    Control Framework Mapping & Harmonization

    • Sponsor and govern a centralized enterprise control catalog that maps policy requirements to regulatory and industry frameworks, ensuring traceability and audit defensibility.

    • Drive harmonization across overlapping regulatory frameworks to reduce complexity and streamline control expectations for first-line execution.

    • Provide strategic oversight of control alignment efforts, ensuring consistency between documented requirements, implemented controls, and risk assessments.

    Technical Subject Matter Collaboration

    • Provide executive-level oversight and strategic direction in partnership with domain leaders across cybersecurity and technology functions including Cloud, IAM, DevSecOps, and Threat Management.

    • Translate emerging technical, regulatory, and business risks into forward-looking policy strategy and governance enhancements.

    • Oversee second-line assessments focused on policy design adequacy and alignment with operational execution, escalating systemic issues to senior leadership as appropriate.

    • Evaluate new technologies, strategic initiatives, and business ventures for policy impact and ensure proactive governance adaptation.

    Advisory & Partnership

    • Serve as a senior trusted advisor to first-line executives and functional leaders, providing balanced challenge and credible oversight while enabling strategic business outcomes.

    • Influence enterprise risk governance by collaborating with Enterprise Risk, Operational Risk, Enterprise Compliance, Technology & Security Risk, and Legal to ensure an integrated and consistent approach to policy oversight.

    • Establish clear accountability frameworks that reinforce first-line ownership of risk and control execution.

    • Represent the 2LOD policy program in executive forums, regulatory discussions, and enterprise governance committees as needed.

    • The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.

    Minimum Qualifications

    • Education and/or experience typically obtained through completion of a Bachelor’s degree or equivalent.

    • Typically, 15+ years of governance, risk and compliance management experience, preferably in financial services or other highly regulated industries.

    • Familiarity with frameworks, regulations, and standards, including but not limited to: Cyber Risk Institute Profile, ISO Standards, PCI DSS, NIST 800-53a, SIG, Federal Financial Examination Council (FFIEC) handbooks, Service Organization Controls in accordance with SSAE No.18, GLBA, NYDFS, and FCRA.

    • Required certification in one of CISA, CISSP, CISM, CCSP, CRISC, CGEIT, GSNA, GCIH, or equivalent or ability to sit for one of the certifications within the first 12 months of hire.

    • Exceptional communication skills with ability to synthesize and present complex risk issues clearly and persuasively.

    • Creative problem solver who also demonstrates strong attention to detail and efficiency.

    • Ability to drive change in a dynamic business environment.

    • Strong relationship building skills.

    • Excellent organizational, analytical and project management skills.

    • Background and drug screen.

    Preferred Qualifications

    • Multiple certifications in any of the following: CISA, CISSP, CISM, CCSP, CRISC, CGEIT, GSNA, GCIH, or equivalent.

    • Experience with security-related technologies including Identity and Access Management tools, single-sign-on technologies, and technology systems.

    • Cybersecurity and technology consulting or advisory background at a top firm (Deloitte, PwC, Accenture, or equivalent).

    • Additional related education and/or experience preferred.

    Physical Requirements

    Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling, and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers. Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.

    Candidates responding to this posting must independently possess the eligibility to work in the United States at the date of hire.

    The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.

    The base pay scale for this position in:
    New York, NY/ San Francisco, CA in USD per year is: $221,000 - $276,000.

    Additionally, candidates are eligible for a discretionary incentive plan and benefits. This pay scale is subject to change and is not necessarily reflective of actual compensation that may be earned, nor a promise of any specific pay for any specific candidate, which is always dependent on legitimate factors considered at the time of job offer. Early Warning Services takes into consideration a variety of factors when determining a competitive salary offer, including, but not limited to, the job scope, market rates and geographic location of a position, candidate’s education, experience, training, and specialized skills or certification(s) in relation to the job requirements and compared with internal equity (peers). The business actively supports and reviews wage equity to ensure that pay decisions are not based on gender, race, national origin, or any other protected classes.

    Some of the Ways We Prioritize Your Health and Happiness 

    •  Healthcare Coverage – Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.

    • 401(k) Retirement Plan – Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.

    • Paid Time Off – Flexible Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.

    • 12 weeks of Paid Parental Leave

    • Maven Family Planning – provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.

     

    And SO much more! We continue to enhance our program, so be sure to check our Benefits page here for the latest. Our team can share more during the interview process!

     

    Early Warning Services, LLC (“Early Warning”) considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees. 

    Early Warning Services LLC is a proud participant in E-Verify, a federal program to help ensure a legal and authorized workforce. As part of our hiring process, we electronically verify the employment eligibility of all new hires through E-Verify. For more information on your rights and responsibilities under E-Verify please visit Home | E-Verify.

    Early Warning New York, New York, USA Office

    New York, United States

    Similar Jobs

    15 Minutes Ago
    Easy Apply
    Remote or Hybrid
    United States
    Easy Apply
    162K-170K Annually
    Mid level
    162K-170K Annually
    Mid level
    Artificial Intelligence • Computer Vision • Greentech • Machine Learning • Robotics • Industrial • Automation
    Develops and productionizes deep learning and machine learning perception models for robotics and recycling sortation. Responsibilities include experimenting with neural network architectures, designing computer vision solutions, conducting statistical experiments, deploying successful models, collaborating with data, modeling, and cloud infrastructure teams, and improving ML infrastructure.
    Top Skills: Computer VisionData PipelinesDeep LearningMachine LearningNeural NetworksPythonPyTorchSQLStatistical ModelingTensorrt
    35 Minutes Ago
    Remote or Hybrid
    USA
    151K-323K Annually
    Senior level
    151K-323K Annually
    Senior level
    Consumer Web • Coupons • Healthtech • Social Impact • Pharmaceutical
    Lead and grow a security engineering team to design and operate cloud-native security controls, drive DevSecOps practices, conduct threat modeling and incident response, partner cross-functionally on security roadmaps, and ensure compliance with frameworks (NIST, SOC 2, ISO, etc.). Responsible for vulnerability management, identity and access controls, observability/SIEM, and security automation.
    Top Skills: AWSBashCi/CdContainerizationDescopeGCPGoJavaKubernetesOauthObservability PlatformsOidcOktaPythonRustSAMLSecrets ManagementSIEM
    An Hour Ago
    Hybrid
    New York, NY, USA
    131K-154K Annually
    Senior level
    131K-154K Annually
    Senior level
    Big Data • Information Technology • Productivity • Software • Analytics • Business Intelligence • Consulting
    Lead AI- and data-driven business transformations for Life Sciences customers using the Celonis Platform. Own value realization from discovery through ROI, manage executive stakeholders, facilitate business value workshops, and oversee global transformation programs. Develop account strategies, CoE roadmaps, adoption plans, and AI-assisted project management processes while partnering with sales and technical teams. Apply expertise across supply chain, finance, commercial, and clinical R&D domains to deliver measurable process improvements.
    Top Skills: Artificial IntelligenceCelonis PlatformOracleProcess Intelligence GraphProcess MiningSalesforceSAPWorkday

    What you need to know about the NYC Tech Scene

    As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

    Key Facts About NYC Tech

    • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
    • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
    • Key Industries: Artificial intelligence, Fintech
    • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
    • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
    • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

    Sign up now Access later

    Create Free Account

    Please log in or sign up to report this job.

    Create Free Account