Early Warning Logo

Early Warning

Technical Policy Program Director

Posted 21 Days Ago
Be an Early Applicant
In-Office
New York City, NY, USA
221K-276K Annually
Expert/Leader
In-Office
New York City, NY, USA
221K-276K Annually
Expert/Leader
The Technical Policy Program Director oversees the Cybersecurity and Technology Risk Oversight Program, managing policy governance, establishing frameworks, and ensuring compliance with regulatory standards across multiple domains.
The summary above was generated by AI

At Early Warning, we’ve powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle®, Paze℠, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.

Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.

Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.

Overall Purpose

The Director, Technical Policy Program Oversight, will support the Cybersecurity and Technology Risk Oversight Center of Excellence (CTRO-COE) Program within the Second Line of Defense (2LOD). This role is responsible for overseeing the 2LOD Policy Program.

Essential Functions

Center of Excellence Operations

  • Define and operationalize the enterprise second-line policy oversight strategy, establishing a scalable center-of-excellence model that standardizes governance, accountability, and execution across cybersecurity and technology risk domains.

  • Drive integration of first- and second-line policy oversight activities to ensure consistent risk interpretation, control expectations, and enterprise-wide coverage.

  • Establish executive-level reporting and metrics that provide transparency into policy health, adoption, exceptions, and emerging risk themes.

  • Lead continuous improvement initiatives to mature the 2LOD policy governance framework, incorporating lessons learned, regulatory developments, and industry leading practices.

Policy Program Facilitation, Architecture & Oversight

  • Own the end-to-end enterprise lifecycle governance for all technology and security policies, establishing standards for drafting, review, approval, exception management, publication, and attestation.

  • Architect and maintain a cohesive, risk-aligned policy framework that clearly delineates policies, standards, procedures, and technical controls across lines of defense.

  • Provide strategic direction to ensure policy content reflects evolving regulatory requirements and industry frameworks, including PCI DSS, NIST 800-53a, SIG, FFIEC handbooks, SSAE No.18, GLBA, NYDFS, and FCRA.

  • Establish governance forums and decision-making structures to ensure appropriate challenge, approval authority, and accountability at the executive level.

  • Oversee policy rationalization efforts to eliminate redundancy, resolve ambiguity, and enhance clarity and enforceability across the enterprise.

Control Framework Mapping & Harmonization

  • Sponsor and govern a centralized enterprise control catalog that maps policy requirements to regulatory and industry frameworks, ensuring traceability and audit defensibility.

  • Drive harmonization across overlapping regulatory frameworks to reduce complexity and streamline control expectations for first-line execution.

  • Provide strategic oversight of control alignment efforts, ensuring consistency between documented requirements, implemented controls, and risk assessments.

Technical Subject Matter Collaboration

  • Provide executive-level oversight and strategic direction in partnership with domain leaders across cybersecurity and technology functions including Cloud, IAM, DevSecOps, and Threat Management.

  • Translate emerging technical, regulatory, and business risks into forward-looking policy strategy and governance enhancements.

  • Oversee second-line assessments focused on policy design adequacy and alignment with operational execution, escalating systemic issues to senior leadership as appropriate.

  • Evaluate new technologies, strategic initiatives, and business ventures for policy impact and ensure proactive governance adaptation.

Advisory & Partnership

  • Serve as a senior trusted advisor to first-line executives and functional leaders, providing balanced challenge and credible oversight while enabling strategic business outcomes.

  • Influence enterprise risk governance by collaborating with Enterprise Risk, Operational Risk, Enterprise Compliance, Technology & Security Risk, and Legal to ensure an integrated and consistent approach to policy oversight.

  • Establish clear accountability frameworks that reinforce first-line ownership of risk and control execution.

  • Represent the 2LOD policy program in executive forums, regulatory discussions, and enterprise governance committees as needed.

The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.

Minimum Qualifications

  • Education and/or experience typically obtained through completion of a Bachelor’s degree or equivalent.

  • Minimum of 10+ years of governance, risk and compliance management experience, preferably in financial services or other highly regulated industries.

  • Familiarity with frameworks, regulations, and standards, including but not limited to: Cyber Risk Institute Profile, ISO Standards, PCI DSS, NIST 800-53a, SIG, Federal Financial Examination Council (FFIEC) handbooks, Service Organization Controls in accordance with SSAE No.18, GLBA, NYDFS, and FCRA.

  • Required certification in one of CISA, CISSP, CISM, CCSP, CRISC, CGEIT, GSNA, GCIH, or equivalent or ability to sit for one of the certifications within the first 12 months of hire.

  • Exceptional communication skills with ability to synthesize and present complex risk issues clearly and persuasively.

  • Creative problem solver who also demonstrates strong attention to detail and efficiency.

  • Ability to drive change in a dynamic business environment.

  • Strong relationship building skills.

  • Excellent organizational, analytical and project management skills.

  • Background and drug screen.

Preferred Qualifications

  • Multiple certifications in any of the following: CISA, CISSP, CISM, CCSP, CRISC, CGEIT, GSNA, GCIH, or equivalent.

  • Experience with security-related technologies including Identity and Access Management tools, single-sign-on technologies, and technology systems.

  • Cybersecurity and technology consulting or advisory background at a top firm (Deloitte, PwC, Accenture, or equivalent).

  • Additional related education and/or experience preferred.

The base pay scale for this position in:
New York, NY/ San Francisco, CA in USD per year is: $221,000 - $276,000.

Additionally, candidates are eligible for a discretionary incentive plan and benefits.

This pay scale is subject to change and is not necessarily reflective of actual compensation that may be earned, nor a promise of any specific pay for any specific candidate, which is always dependent on legitimate factors considered at the time of job offer. Early Warning Services takes into consideration a variety of factors when determining a competitive salary offer, including, but not limited to, the job scope, market rates and geographic location of a position, candidate’s education, experience, training, and specialized skills or certification(s) in relation to the job requirements and compared with internal equity (peers). The business actively supports and reviews wage equity to ensure that pay decisions are not based on gender, race, national origin, or any other protected classes.

#LI-AV

#Dice

Some of the Ways We Prioritize Your Health and Happiness 

  •  Healthcare Coverage – Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.

  • 401(k) Retirement Plan – Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.

  • Paid Time Off – Flexible Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.

  • 12 weeks of Paid Parental Leave

  • Maven Family Planning – provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.

 

And SO much more! We continue to enhance our program, so be sure to check our Benefits page here for the latest. Our team can share more during the interview process!

 

Early Warning Services, LLC (“Early Warning”) considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees. 

Early Warning Services LLC is a proud participant in E-Verify, a federal program to help ensure a legal and authorized workforce. As part of our hiring process, we electronically verify the employment eligibility of all new hires through E-Verify. For more information on your rights and responsibilities under E-Verify please visit Home | E-Verify.

Similar Jobs

An Hour Ago
Easy Apply
In-Office or Remote
2 Locations
Easy Apply
148K-175K Annually
Senior level
148K-175K Annually
Senior level
Healthtech • Pharmaceutical • Telehealth
Lead audit readiness and continuous compliance automation: manage Vanta, perform risk assessments and vendor reviews, support SOC 2/HIPAA/HITRUST audits, maintain cyber risk register, and build GRC reporting dashboards with BI tools.
Top Skills: APIsAWSAzureDrataGCPHexHipaaHitrustJavaScriptLookerNistPciPythonSecureframeSoc 2TinesVanta
2 Hours Ago
Hybrid
New York, NY, USA
150K-175K Annually
Mid level
150K-175K Annually
Mid level
Legal Tech • Other • Professional Services
The Business Systems Developer designs and builds SharePoint Online solutions, integrates systems, develops APIs, and enhances intranet features while collaborating with stakeholders.
Top Skills: .Net 8AzureAzure DevopsC#Github ActionsJavaScriptMicrosoft 365Microsoft Graph ApiPower AppsPower AutomatePower BIPower PlatformReactRest ApisSharepoint OnlineSpfxTypescript
2 Hours Ago
Hybrid
New York, NY, USA
140K-160K Annually
Senior level
140K-160K Annually
Senior level
Legal Tech • Other • Professional Services
The Senior Systems Specialist will manage the business development technology stack, support CRM platforms, and enhance marketing tools while collaborating with cross-functional teams.
Top Skills: CRMIntapp DealcloudInteractionIntrohiveLitera FoundationPower AutomatePower BISalesforceSQLVuture

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account