DTCC

Director IT Embedded Risk

DTCC$120K — $150K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Minimum of 10 years of related experience in infrastructure risk or cybersecurity.
  • Bachelor's degree preferred or equivalent practical experience.
  • Strong understanding of infrastructure domains like networks and data centers.
  • Experience in designing and assessing infrastructure controls in regulatory environments.
  • Knowledge of critical cybersecurity practices including incident response and data protection.
  • Ability to define and communicate KPIs, KRIs, and KCIs effectively.

Responsibilities

  • Serve as embedded risk advisor to IT Infrastructure leadership with a focus on strategic priorities.
  • Oversee risk and control activities across various enterprise infrastructure domains.
  • Influence risk practices related to vulnerability management and operational resilience.
  • Collaborate with cross-functional teams to ensure secure delivery of technology services.
  • Lead development and monitoring of infrastructure controls and remediation plans.
  • Partner with Capability Owners to complete RCSA activities for IT Infrastructure.
  • Report key risk and control metrics to support transparency and accountability.
  • Represent IT Infrastructure in governance forums and regulatory interactions.

Benefits

  • Support for modernization, automation, and continuous improvement initiatives.
  • Opportunities for professional development and talent growth.
  • Culture of accountability and collaboration promoted within the team.
Full Job Description
Job Description

The Impact you will have in this role:

Being a member of IT FinSight Delivery team, the IT Risk Management works closely with technology leaders to strengthen risk awareness, enhance the control environment, and support the resilient, secure, and compliant delivery of technology services. Within this framework, the IT Embedded Risk team works directly with IT Infrastructure to provide risk advisory, effective challenge, and governance support across critical platforms, services, and change initiatives.
  • Support the ongoing enhancement of the infrastructure risk and control environment by helping identify emerging risks, monitor changes in exposure, and elevate significant control concerns.
  • Provide advisory support and effective challenge to infrastructure leadership and teams on control design, control effectiveness, and risk mitigation approaches.
  • Collaborate with Information Security and other partners to ensure infrastructure risks, control priorities, and remediation activities are assessed, communicated, and governed effectively.


Your Principal Responsibilities:
  • Serve as the embedded risk advisor to IT Infrastructure leadership, providing credible challenge and practical guidance on strategic priorities, control decisions, and risk acceptance.
  • Oversee risk and control activities across enterprise infrastructure domains, including networks, servers, storage, endpoints, data centers, and hybrid cloud platforms.
  • Influence and strengthen infrastructure risk practices related to vulnerability management, incident response, access controls, data protection, and operational resilience.
  • Partner across engineering, security, operations, and business teams to support the secure, stable, and high-performing delivery of critical technology services.
  • Lead the development, enhancement, and monitoring of infrastructure controls, standards, procedures, and remediation plans in support of regulatory, audit, and policy requirements.
  • Partner with Capability Owners to complete RCSA activities for IT Infrastructure, ensuring risks, controls, and remediation priorities are appropriately identified, assessed, documented, and escalated.
  • Own and report key risk and control metrics, including KRIs and KCIs, to support transparency, decision-making, and accountability.
  • Represent IT Infrastructure in governance forums, management committees, audits, and regulatory interactions as a senior point of contact for embedded risk matters.
  • Provide strategic people leadership by setting direction for the team, building organizational capability, developing talent, and driving a culture of accountability, collaboration, and high performance.
  • Support modernization, automation, and continuous improvement initiatives while helping ensure service quality and operational efficiency.

**NOTE: The Primary Responsibilities of this role are not limited to the details above. **

Qualifications:
  • Minimum of 10 years of related experience
  • Bachelor's degree preferred and/or equivalent experience

Talents Needed for Success:
  • 10+ years of experience in infrastructure risk, infrastructure engineering, cybersecurity, or a related discipline.
  • Strong understanding of enterprise infrastructure domains, including networks, servers, storage, endpoints, data centers, and hybrid cloud environments.
  • Experience designing, assessing, or overseeing infrastructure controls and driving remediation in audit or regulatory-driven environments.
  • Knowledge of core cybersecurity practices, including vulnerability management, incident response, access management, and data protection.
  • Ability to define, interpret, and communicate KPIs, KRIs, and KCIs to technical, business, and governance stakeholders.
  • Preferred: Experience in financial services and familiarity with FFIEC and other relevant U.S. regulatory standards.


The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations.

About DTCC

The Depository Trust & Clearing Corporation (DTCC) is a financial services company that provides clearing, settlement, and information services for the global financial industry. DTCC was founded in 1999 and is headquartered in New York City. The company operates through subsidiaries that provide services such as trade matching, risk management, and asset servicing. DTCC is owned by its users, which include broker-dealers, banks, and other financial institutions. The company is committed to reducing risk and increasing efficiency in the financial markets.
Learn more about DTCC
Size
4,000 employees
Industry
Founded
1973

Similar Jobs

More Jobs at DTCC

More Information Technology Jobs

Find similar Director IT Embedded Risk jobs: