Five years of experience in risk management, controls, compliance, audit, or governance.
Undergraduate degree or equivalent training and experience.
Strong grasp of enterprise control frameworks and risk assessment.
Knowledge of data governance and technology risk.
Superior leadership and analytical abilities.
Certifications like CIA or CRISC are a plus.
Responsibilities
Lead control projects with wide-ranging complexity across divisions.
Implement and test internal control frameworks, identifying and addressing gaps.
Provide expert consultation and support for complex control-related issues.
Create and distribute management reporting data, including dashboards.
Cultivate relationships with internal and external stakeholders for best practices.
Educate teams on audit and control issues to promote compliance.
Engage in special projects and other assigned duties.
Benefits
Comprehensive health and wellness programs.
Retirement savings plan with company matching.
Professional development opportunities and training.
Generous paid time off and holidays.
Employee discounts and perks.
Full Job Description
Responsibilities
Lead the identification, design, documentation, implementation, and testing of AI and data controls across the AI and data lifecycle, translating emerging risks, governance standards, and regulatory requirements into effective and measurable control activities.
Define new AI and data control objectives, develop risk-to-control mappings, and document control procedures to address evolving governance, regulatory, privacy, model, and operational risks.
Assess existing AI and data governance frameworks to identify control gaps, recommend enhancements, and drive remediation efforts that strengthen enterprise control effectiveness.
Provide expert consultation and analytical leadership on complex AI and data risk and control matters, partnering across stakeholders to strengthen control alignment, support audit activities, and mitigate risk.
Lead the development and execution of controls monitoring and testing programs, including effectiveness assessments, attribute-level testing, and control health reporting.
Develop management reporting and dashboards on AI and data control effectiveness, issue status, monitoring outcomes, and remediation progress using GRC platforms such as Archer.
Build strong cross-functional relationships and translate technical AI, model, and data risk concepts into practical control requirements and guidance for business stakeholders.
Educate and influence stakeholders on AI and data governance expectations, controls design principles, and emerging industry and regulatory developments including NIST AI RMF, EU AI Act, data privacy regulations, and related frameworks.
Participate in special projects and perform other duties as assigned.
Required Qualifications
Five or more years of experience in risk management, controls, compliance, audit, governance, technology risk, model risk management, data governance, or related disciplines.
Demonstrated experience identifying risks, designing controls, documenting control frameworks, and implementing control solutions in complex business or technology environments.
Experience developing risk-to-control mappings, control objectives, control narratives, standards, procedures, and testing methodologies.
Hands-on experience with, or strong understanding of, AI risk, model risk, data governance, data privacy, technology risk, or related governance disciplines.
Working knowledge of governance and control frameworks such as NIST AI RMF, EU AI Act, CDMC, COBIT, NIST, or comparable industry standards, including the ability to translate framework requirements into operational controls.
Experience designing, documenting, assessing, or testing controls within a Governance, Risk, and Compliance (GRC) platform such as Archer, ServiceNow GRC, or similar tools.
Strong analytical, problem-solving, and critical-thinking skills with the ability to operate effectively in ambiguous and rapidly evolving environments.
Excellent written and verbal communication skills with demonstrated ability to influence stakeholders and clearly articulate risk and control concepts to technical and non-technical audiences.
Bachelor's degree or an equivalent combination of training and experience.
Preferred Qualifications
Direct experience supporting AI governance, AI risk management, model governance, or enterprise data governance programs.
Experience developing controls for emerging technologies, including artificial intelligence, machine learning, advanced analytics, cloud platforms, or data management environments.
Financial services, asset management, banking, insurance, or highly regulated industry experience.
Experience supporting regulatory examinations, internal audits, or external audits.
Certifications such as CIA, CRISC, CDPSE, CISA, CISSP, or AI governance-related credentials including IAPP AIGP.
Special Factors
Sponsorship Vanguard is not offering visa sponsorship for this position.
How We Work
Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.