DTCC

Director IT Embedded Risk

DTCC$150K — $180K *
Finance & Insurance
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Minimum of 10 years of related experience
  • Bachelor's degree preferred and/or equivalent experience
  • 10+ years of experience in infrastructure risk, engineering, cybersecurity, or a related field
  • Strong understanding of enterprise infrastructure domains such as networks and cloud environments
  • Experience designing, assessing, or overseeing infrastructure controls in regulatory settings
  • Knowledge of cybersecurity practices like vulnerability management and incident response
  • Ability to communicate KPIs, KRIs, and KCIs effectively

Responsibilities

  • Serve as embedded risk advisor to IT Infrastructure leadership.
  • Oversee risk and control activities across infrastructure domains.
  • Influence infrastructure risk practices related to security and resilience.
  • Partner with various teams to ensure stable technology service delivery.
  • Lead development and monitoring of infrastructure controls and procedures.
  • Collaborate on RCSA activities to identify and assess risks and controls.
  • Report key risk and control metrics to support decision-making and accountability.
  • Represent IT Infrastructure in governance and regulatory forums.
  • Provide strategic leadership and development for the team.
  • Support initiatives for modernization and operational efficiency.

Benefits

  • Collaborative work environment
  • Opportunities for professional development
  • Support for modernization and automation initiatives
  • Commitment to service quality and operational efficiency
  • Engagement with senior leaders in governance forums
Full Job Description
Job Description

The Impact you will have in this role:

Being a member of IT FinSight Delivery team, the IT Risk Management works closely with technology leaders to strengthen risk awareness, enhance the control environment, and support the resilient, secure, and compliant delivery of technology services. Within this framework, the IT Embedded Risk team works directly with IT Infrastructure to provide risk advisory, effective challenge, and governance support across critical platforms, services, and change initiatives.
  • Support the ongoing enhancement of the infrastructure risk and control environment by helping identify emerging risks, monitor changes in exposure, and elevate significant control concerns.
  • Provide advisory support and effective challenge to infrastructure leadership and teams on control design, control effectiveness, and risk mitigation approaches.
  • Collaborate with Information Security and other partners to ensure infrastructure risks, control priorities, and remediation activities are assessed, communicated, and governed effectively.


Your Principal Responsibilities:
  • Serve as the embedded risk advisor to IT Infrastructure leadership, providing credible challenge and practical guidance on strategic priorities, control decisions, and risk acceptance.
  • Oversee risk and control activities across enterprise infrastructure domains, including networks, servers, storage, endpoints, data centers, and hybrid cloud platforms.
  • Influence and strengthen infrastructure risk practices related to vulnerability management, incident response, access controls, data protection, and operational resilience.
  • Partner across engineering, security, operations, and business teams to support the secure, stable, and high-performing delivery of critical technology services.
  • Lead the development, enhancement, and monitoring of infrastructure controls, standards, procedures, and remediation plans in support of regulatory, audit, and policy requirements.
  • Partner with Capability Owners to complete RCSA activities for IT Infrastructure, ensuring risks, controls, and remediation priorities are appropriately identified, assessed, documented, and escalated.
  • Own and report key risk and control metrics, including KRIs and KCIs, to support transparency, decision-making, and accountability.
  • Represent IT Infrastructure in governance forums, management committees, audits, and regulatory interactions as a senior point of contact for embedded risk matters.
  • Provide strategic people leadership by setting direction for the team, building organizational capability, developing talent, and driving a culture of accountability, collaboration, and high performance.
  • Support modernization, automation, and continuous improvement initiatives while helping ensure service quality and operational efficiency.

**NOTE: The Primary Responsibilities of this role are not limited to the details above. **

Qualifications:
  • Minimum of 10 years of related experience
  • Bachelor's degree preferred and/or equivalent experience

Talents Needed for Success:
  • 10+ years of experience in infrastructure risk, infrastructure engineering, cybersecurity, or a related discipline.
  • Strong understanding of enterprise infrastructure domains, including networks, servers, storage, endpoints, data centers, and hybrid cloud environments.
  • Experience designing, assessing, or overseeing infrastructure controls and driving remediation in audit or regulatory-driven environments.
  • Knowledge of core cybersecurity practices, including vulnerability management, incident response, access management, and data protection.
  • Ability to define, interpret, and communicate KPIs, KRIs, and KCIs to technical, business, and governance stakeholders.
  • Preferred: Experience in financial services and familiarity with FFIEC and other relevant U.S. regulatory standards.


The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations.

About DTCC

The Depository Trust & Clearing Corporation (DTCC) is a financial services company that provides clearing, settlement, and information services for the global financial industry. DTCC was founded in 1999 and is headquartered in New York City. The company operates through subsidiaries that provide services such as trade matching, risk management, and asset servicing. DTCC is owned by its users, which include broker-dealers, banks, and other financial institutions. The company is committed to reducing risk and increasing efficiency in the financial markets.
Learn more about DTCC
Size
4,000 employees
Industry
Founded
1973

Similar Jobs

More Jobs at DTCC

More Finance & Insurance Jobs

Find similar Director IT Embedded Risk jobs: