Director Application & Data Technology Risk
Columbus, OHAll locationsColumbus, OHHartford, CTCharlotte, NC Hybrid
Salary not listedJobFig found this opening at its original source and checks that it remains available.
About the role
The Director, Application & Data Technology Risk provides senior leadership for identifying, assessing, and managing technology risks across the enterprise application landscape. This role focuses on application‑driven risks throughout the software development lifecycle (SDLC), including design, development, deployment, and ongoing operations, while maintaining strong awareness of data risk, sensitive data exposure, and risks associated with the use of artificial intelligence (AI), automation, and emerging technologies. This role will have a Hybrid work schedule, with the expectation of working in an office (Columbus, OH, Hartford, CT or Charlotte, NC) 3 days a week. Candidates must be eligible to work in the US without company sponsorship
What you'll bring
- Required Experience & Qualifications
- 10+ years of experience in technology risk management, application security, IT audit, engineering, or related domains.
- Strong working knowledge of application architectures, SDLC, DevOps practices, and CI/CD pipelines.
- Demonstrated experience assessing data risks and data exposure within application environments.
- Practical understanding of AI and automation risks, including model governance, data usage, and control considerations.
- Solid familiarity with cloud and infrastructure control domains (IAM, logging, encryption, network security, resiliency).
- Proven ability to communicate effectively with senior leaders and translate technical issues into executive‑level insights.
- Experience working with industry frameworks (e.g., NIST, CIS Controls, COBIT, secure SDLC standards).
- not limited to performance, proficiency and demonstration of competencies required for the role.
- Prior hands‑on experience in software engineering, application architecture, platform operations, or DevOps.
- Experience managing risk in high-growth, technology-driven organizations with evolving governance expectations
- Relevant certifications such as CISSP, CISM, CRISC, CISA, or cloud security certifications.