Full Job Description
The FVP, Technology Strategy & Governance is a senior leader responsible for overseeing the Credit Union's first-line technology risk and control environment. The role provides strategic direction for IT risk management, technology compliance, governance, and operational controls across infrastructure, cybersecurity, cloud services, data management, and technology operations. Partnering with technology, risk, audit, compliance, and business stakeholders, this position ensures technology risks are effectively identified, managed, monitored, and reported, while maintaining regulatory compliance and a strong control framework. The role supports organizational growth by balancing innovation, operational efficiency, member experience, and risk management, while fostering a culture of accountability and risk awareness.
Core Contributions
• Technology Risk Governance & Oversight
- Provide executive leadership for first-line IT risk management activities across all technology functions, including application development, infrastructure, cloud services, digital platforms, data management, and technology operations.
- Establish and maintain a comprehensive technology risk management framework aligned with the Credit Union's risk appetite and strategic objectives.
- Identify, assess, monitor, and mitigate technology-related risks through effective governance, controls, reporting, and issue management processes.
- Ensure technology risks are appropriately escalated, documented, and communicated to executive management and risk committees.
• Technology Controls Management
- Design, implement, and oversee key first-line technology controls supporting operational resilience, security, compliance, system availability, and technology delivery.
- Maintain an effective risk and control inventory across technology functions.
- Evaluate the effectiveness of technology controls through monitoring, testing, metrics, and ongoing assessments.
- Drive remediation efforts for identified control weaknesses and ensure timely resolution of issues.
• Compliance & Regulatory Management
- Monitor compliance with internal policies, regulatory requirements, industry standards, and technology governance expectations.
- Ensure adherence to applicable regulations and guidance governing financial institutions, including technology risk, cybersecurity, data privacy, third-party risk, operational resiliency, and business continuity requirements.
- Lead technology-related responses to regulatory examinations, audits, and compliance reviews.
- Maintain documentation and evidence necessary to demonstrate compliance and control effectiveness.
• Technology Transformation & Insourcing Risk
- Assess technology risks associated with new products, platforms, system implementations, operational changes, and strategic initiatives.
- Adapt and enhance control frameworks as new capabilities, services, and technology functions are insourced or brought under internal management.
- Ensure governance, controls, staffing models, and risk management practices evolve appropriately to support organizational growth and changing technology capabilities.
- Partner with technology leaders to embed risk management into project delivery and operational processes.
• Risk Monitoring & Reporting
- Develop meaningful technology risk dashboards, key risk indicators (KRIs), key performance indicators (KPIs), and executive reporting.
- Monitor trends, emerging risks, control performance, and remediation activities.
- Provide regular reporting and recommendations to executive leadership, Enterprise Risk Management, and Board-level committees.
- Develop and present reporting on technology financial performance, budget adherence, project portfolio health, and resource utilization to executive leadership.
• Audit, Examination & Issue Management
- Serve as the primary technology risk liaison for Internal Audit, external auditors, regulatory agencies, and risk management partners.
- Coordinate audit and examination activities, ensuring timely responses, remediation plans, and sustainable corrective actions.
- Monitor audit findings and compliance issues through resolution and closure.
• Leadership & Talent Development
- Build and lead a high-performing IT Risk & Compliance team.
- Foster a strong culture of risk ownership, accountability, compliance, and continuous improvement throughout the technology organization.
- Provide coaching, mentorship, and professional development to direct and indirect reports.
- Establish performance objectives and ensure alignment with organizational goals.
- Provide leadership and oversight for the IT Project Management Office (PMO), including project governance, portfolio management, delivery standards, resource planning, project reporting, and continuous improvement of project management practices.
- Ensure PMO methodologies, controls, and execution frameworks are aligned with technology governance, risk management, regulatory expectations, and organizational strategic objectives.
• Strategic Partnership
- Partner with executive leadership to support enterprise growth, digital transformation, operational scalability, and member experience initiatives.
- Collaborate with Information Security, Compliance, Enterprise Risk Management, Legal, and business units to strengthen enterprise governance and resilience.
- Support budget planning, resource allocation, technology investment decisions, and strategic business planning activities.
- Own and manage the overall IT operating and capital budgets, including forecasting, financial performance monitoring, variance management, and alignment of technology spending with organizational objectives.
Assets You Will Bring
• Bachelor's Degree required in Information Technology, Cybersecurity, Information Systems, Risk Management, Business Administration, or related field; Master's degree preferred.
• 10+ years of progressive leadership experience in Information Technology, Technology Risk, IT Governance, Operational Risk, Compliance, Information Security, or related disciplines.
• 5+ years in a senior leadership role.
• Demonstrated experience managing regulatory examinations, audits, technology governance programs, and risk control frameworks.
• Experience supporting large-scale technology transformations, digital initiatives, and operating model changes.
• Certifications: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISSP (Certified Information Systems Security Professional), CGEIT (Certified in the Governance of Enterprise IT), CISM (Certified Information Security Manager) are all preferred.
• Computer Skills: Microsoft Office (Excel, Word, PowerPoint, Outlook, Teams), Governance, Risk & Compliance (GRC) Platforms, Information Security & Cybersecurity Tools, IT Audit & Compliance Management Systems, Risk Monitoring & Reporting Tools, Microsoft Azure, Amazon Web Services (AWS), Data Analytics & Reporting Tools.
The estimated salary for this role is $215,000.00 -$245,000.00 annually. (FourLeaf Federal Credit Union offers a comprehensive benefits package, including medical, dental, and vision coverage; life and disability insurance; voluntary benefit programs; a 401(k) plan with employer match; reimbursement and wellness programs; and an annual performance-based bonus.) In addition to the salary or hourly rate listed above there may be other compensation & benefits available.
In addition to our comprehensive benefits, we invest in employee connection and well-being through:
• Competitive 401(k)
• Tuition and fitness reimbursement programs
• Flexible work options
• Volunteer opportunities
• Executive "Water Cooler Chats"
• Clubs, sports, and social events
• Food truck days
....and more!