Bank of America Corporation

Compliance and Operational Risk Manager - Application Security and Technology Risk Oversight

Bank of America Corporation$97K — $195K *
Plano, TX 75025In-Person
Finance & Insurance
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of experience in operational risk, technology risk, information security, or compliance, preferably in financial institutions.
  • Expertise in cybersecurity, application security, and third-party technology risk management.
  • Ability to influence and build partnerships with senior leadership.
  • Experience managing regulatory examinations and audit activities.
  • Familiarity with the Global Compliance & Operational Risk program and relevant regulations.
  • Strong communication skills to engage effectively at the executive level.
  • Understanding of AI-related risks and technology governance.

Responsibilities

  • Assess risks of Front-Line Unit processes for regulatory compliance.
  • Provide independent compliance oversight aligned with global policies.
  • Identify and escalate compliance and operational risk issues timely.
  • Monitor risk appetite metrics and report compliance violations.
  • Develop independent risk management reports for governance routines.
  • Provide practical advice and risk management insights to stakeholders.
  • Review FLU/Control Function processes and emerging regulatory changes.

Benefits

  • Access to industry-leading benefits and paid time off.
  • Support resources for employee well-being and impact.
  • Opportunities to contribute to sustainable growth in communities.
Full Job Description
Job Description:

This job is responsible for executing second line of defense compliance and operational risk oversight for a Front Line Unit, Control Function, and/or Third Parties. Key responsibilities include ensuring requirements of the Global Compliance Enterprise Policy, the Operational Risk Management Enterprise Policy (collectively "the Policies"), the Compliance and Operational Risk Management Program and Standard Operating Procedures are implemented and identifying, challenging, escalating, and mitigating risks in a timely manner.

This role is responsible for providing independent second line of defense compliance and operational risk oversight across Front Line Units, Control Functions, and Third Parties. The position ensures adherence to the Global Compliance and Operational Risk Management framework, delivers effective challenge, and supports the timely identification, assessment, escalation, and mitigation of compliance and operational risks.

We are seeking an experienced Compliance & Operational Risk Manager to provide independent second line oversight of the Bank's most highest risk technology environments, including Application and Technology Security Assessments, Technology Third Party Risk Management, and emerging technology risks. This role serves as a trusted advisor and effective challenger to senior technology leaders, providing risk oversight, governance, and strategic advisory to support the Bank's cybersecurity, operational resilience, and regulatory objectives.

Responsibilities:
  • Assesses risks and effectiveness of Front-Line Unit (FLU) processes and controls to ensure compliance with applicable laws, rules, and regulations, while responding to regulatory inquiries, other audits, and examinations
  • Engages in activities to provide independent compliance and operational risk oversight of FLU or Control Function (CF) performance and any related third party/vendor relationships in alignment with the Global Compliance - Enterprise Policy, the Operational Risk Management - Enterprise Policy (collectively the Policies) and the Compliance and Operational Risk Management Program and Standard Operating Procedures
  • Identifies and escalates problems or issues that arise and drives actions to address the root causes that lead to compliance risk issues and/or operational risk losses
  • Monitors inventory of processes, risks, controls, and associated metrics for risk appetite and limits, reporting violations of compliance or regulatory activities
  • Assists in the development of independent risk management reporting for respective area(s) of coverage as input into country/regional governance and management routines
  • Analyzes and interprets applicable laws, rules, and regulations to provide clear and practical advice to stakeholders, and identify and manage risks
  • Reviews and challenges FLU/CF process, risk, Single Process Inventory, and FLU/CF Risk and Control Self-Assessment related to themes or trends, while monitoring the regulatory environment to identify regulatory changes applicable to area(s) of coverage
  • Monitor and assess adherence to Global Technology policies and standards
  • Perform inline review of ITGPST issue management activities, including remediation of regulatory issues
  • Providing independent second line oversight of the Bank's Application and Technology Security Assessment program, including assessment of control effectiveness, risk identification, issue management, and regulatory compliance.
  • Assessing technology and cyber risks across critical applications, business processes, and technology environments.
  • Reviewing and challenging risk acceptance decisions, remediation strategies, and control design associated with application security risks.
  • Monitoring emerging technology and AI-related risks, evaluating evolving cyber threats, governance frameworks, and control environments to ensure appropriate risk management practices.
  • Supporting executive reporting, governance routines, and strategic communications for senior leadership audiences.
  • Evaluating adherence to enterprise risk management standards, technology policies, and regulatory expectations.
  • Partnering across technology, cybersecurity, risk, audit, and business teams to strengthen operational resilience and risk management practices.


Required Qualifications:
  • 7+ years of experience in operational risk, technology risk, information security, cybersecurity, , compliance, audit, or related risk management disciplines preferably within a large financial institution
  • Demonstrated expertise in cybersecurity, application security, technology governance, third-party technology risk management, or operational resilience.
  • Proven ability to influence and challenge senior leaders and executive stakeholders while maintaining effective partnerships.
  • Experience supporting regulatory examinations, audit engagements, issue remediation programs, and risk governance activities.
  • Proven background in risk-related disciplines; strong experience with the Global Compliance & Operational Risk program from a 1st or 2nd line perspective.
  • Communicates with clarity and impact; comfortable engaging at the executive level and shaping outcomes.
  • Understanding of AI-related risks, governance considerations, cybersecurity implications, and the application of technology-enabled solutions to support risk management activities.
  • Familiarity with GCOR programs, Global Technology policies, and ITGPST processes and risks
  • Skilled in identifying, assessing, and remediating operational risks and issues.
  • Proficient in generating actionable insights through data analysis and reporting tools.
  • Builds trust, challenges constructively, and partners effectively across the enterprise.
  • Proficient in industry security frameworks (e.g., NIST CSF) and applicable Laws, Rules and Regulations.


Desired Qualifications:
  • Familiarity with Application Technology Security Assessments, vulnerability management, software development lifecycle controls, or application security testing programs.
  • Understanding of emerging technology risks, including AI governance, model risk considerations, and cybersecurity implications of AI-enabled technologies.
  • Professional certifications such as CISSP, CISM, CRISC, CISA, or equivalent risk and technology certifications.
  • Second or third line of defense experience or experience in a business risk and controls role
  • Strong familiarity with the Global Compliance & Operational Risk (GCOR) program and related tools / applications
  • Familiarity with the Issues Management program and tools
  • Demonstrated success leading targeted assessments, audits, or regulatory exam engagements, including authoring responses, report outs and observations
  • Constructively challenges; supports opinion and recommendations with facts and data
  • Demonstrates productive partnering with various stakeholders across the enterprise at all levels


Skills:
  • Advisory
  • Monitoring, Surveillance, and Testing
  • Regulatory Compliance
  • Reporting
  • Risk Management
  • Critical Thinking
  • Influence
  • Interpret Relevant Laws, Rules, and Regulations
  • Issue Management
  • Policies, Procedures, and Guidelines Management
  • Business Process Analysis
  • Decision Making
  • Negotiation
  • Process Management
  • Written Communications


Shift:
1st shift (United States of America)

Hours Per Week:
40

Pay Transparency details

US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540), US - NJ - Pennington - 1600 American Blvd - Hopewell Bldg 6 (NJ2600)

Pay and benefits information

Pay range

$97,200.00 - $195,000.00 annualized salary, offers to be determined based on experience, education and skill set.

Discretionary incentive eligible

This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.

Benefits

This role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.

About Bank of America Corporation

Bank of America Merrill Lynch is the corporate and investment banking division of Bank of America. It provides services in mergers and acquisitions, equity and debt capital markets, lending, trading, risk management, research, and liquidity and payments management. It was formed through the combination of the corporate and investment banking activities of Bank of America and Merrill Lynch following the acquisition of the latter by the former in January 2009. Bank of America completed the acquisition of Merrill Lynch & Co on 1 January 2009. Bank of America began rebranding all of its corporate and investment banking activities under the Bank of America Merrill Lynch name in September 2009. In April 2010, Bank of America Merrill Lynch appointed Christian Meissner as head of investment banking for Europe, Middle East and Africa. In April 2011, Bank of America Merrill Lynch integrated its corporate and investment banking operations into a single division. In October 2013, Bank of America Merrill Lynch was recognised as the Most Innovative Investment Bank of the Year in The Banker's Investment Banking Awards.

Bank of America Corporation Careers

Join the dynamic team at Bank of America Corporation, a premier global financial institution where innovation, leadership, and growth go hand in hand. As one of the largest banks in the world, we offer unparalleled job opportunities and a culture that values diversity, inclusion, and professional growth. Work You’ll Do At Bank of America Corporation, you’ll be part of a team that’s dedicated to making a real difference. Whether you’re helping families buy their first home, advising businesses on expansion, or developing cutting-edge financial technologies, your work will have an impact. Our commitment to leadership in the financial industry has never been stronger, and we need passionate, skilled professionals to lead our journey. Explore a World of Opportunities From entry-level positions to leadership roles, Bank of America Corporation offers a variety of career paths in areas such as investment banking, technology, marketing, and risk management. Our job opportunities span the globe, providing the chance to work alongside the best in the industry and develop skills that will propel your career forward. Internship Programs Kickstart your career with Bank of America Corporation’s internship programs. These opportunities provide hands-on experience and a chance to engage in meaningful work that complements your academic studies. Interns gain invaluable networking opportunities, receive mentorship from seasoned professionals, and learn about the culture and operations of a global financial leader. Benefits and Growth Bank of America Corporation is committed to the well-being and continuous professional development of our team members. We offer a competitive benefits package that supports the health, financial stability, and work-life balance of our employees. Our training programs and development initiatives ensure that every team member has the opportunity to grow and advance within the company. Inclusive Culture We believe our strength lies in our diversity. Bank of America Corporation fosters an inclusive environment where all employees can thrive. Through diversity training and a commitment to equal opportunities, we cultivate leadership and innovation that reflect the wide-ranging communities we serve. Join Our Team Are you ready to advance your career at a company that’s at the forefront of the financial industry? Explore the positions available at Bank of America Corporation and find where your skills and interests align with our needs. We are continuously hiring and looking for individuals who are curious, creative, and eager to drive change. Stay Connected Keep up to date with the latest from Bank of America Corporation Careers by subscribing to our job alert emails. Tailor your subscription to receive updates that match your career interests and get insider tips that can help you during your application and interview process. Bank of America Corporation is not just a company—it’s a place where you can shape your future and the future of finance. Join us and be part of a team that’s redefining what a bank can be.
Learn more about Bank of America Corporation
Size
208,000 employees
Market Cap
$260.3 billion
Industry
Net Income
$17.8 billion
Founded
1998
5 Year Trend
-1.4%
NASDAQ

Similar Jobs

More Jobs at Bank of America Corporation

More Finance & Insurance Jobs

Find similar Compliance and Operational Risk Manager - Application Security and Technology Risk Oversight jobs: