Toyota

TFSB Information Security Risk Manager

Toyota • $110K — $130K *
Plano, TX 75025In-Person
Finance & Insurance
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years experience in Information Security, IT Audit, or Technology Risk Management, with 3 years in leadership roles.
  • Expertise in developing risk management frameworks, especially NIST Risk Management Framework (NIST 800-37).
  • In-depth knowledge of security control frameworks like NIST 800-53.
  • Strong grasp of banking regulations such as FDIC and FFIEC examination requirements.
  • Ability to communicate complex security risks to executive leadership.
  • Bachelor's degree or equivalent professional experience.

Responsibilities

  • Develop and maintain cyber risk management policies and standards aligned with the NIST framework.
  • Lead the cyber risk management lifecycle for information systems, including security control selection.
  • Manage the system authorization process with risk-based recommendations for senior leadership.
  • Maintain a current security control catalog in response to emerging threats and regulations.
  • Establish a continuous monitoring strategy to maintain security posture.
  • Configure and administer the GRC platform supporting the RMF program.
  • Develop KPIs and KRIs to communicate the risk landscape to leadership.

Benefits

  • Teamwork-oriented work environment emphasizing flexibility and respect.
  • Professional growth programs including tuition reimbursement.
  • Team Member Vehicle Purchase Discount.
  • Comprehensive health care and wellness plans for families.
  • 401(k) Savings Plan with company match and annual contribution.
  • Paid holidays and time off.
  • Referral services for various family-related needs.
  • Tax-advantaged accounts (HSA, FSA).
  • Relocation assistance when applicable.
Full Job Description
Overview

Who we're looking for

The Toyota Financial Savings Bank is looking for a passionate and highly motivated TFSB Information Security Risk Manager.

Reporting to the TFSB Chief Information Security Officer (CISO), this person will be the primary owner responsible for building, implementing, and managing the bank's enterprise-wide Cyber Risk Management Framework (RMF).

The ideal candidate will be a strategic leader who can establish a structured, repeatable, and transparent process for managing cyber risk across the organization. You will serve as the central point of authority for Cyber Risk Management, interfacing with senior leadership, internal audit, and regulators to ensure the program's effectiveness and drive a mature, risk-aware culture throughout the bank.

What you'll be doing

  • Develop, document, and maintain all cyber risk management policies, standards, procedures, and methodologies based on the NIST Risk Management framework.
  • Lead the execution of the cyber risk management lifecycle for all in-scope information systems, including system categorization, security control selection, implementation guidance, and effectiveness assessments.
  • Manage the formal system authorization process, preparing risk-based recommendations and authorization packages for senior leadership to review and approve.
  • Oversee the bank's master security control catalog and ensure it is kept current with emerging threats and regulatory requirements.
  • Establish and mature a continuous monitoring strategy to ensure systems maintain an acceptable security posture.
  • Administer and configure the Governance, Risk, and Compliance (GRC) platform that underpins the RMF program.
  • Develop and report on Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) to provide leadership with a clear view of the enterprise risk landscape.
  • Serve as the primary liaison between system owners, IT teams, and security functions to facilitate risk assessments and track remediation activities.


What you bring

  • A core understanding of banking-specific Information Technology & Security regulations, including deep familiarity with FDIC and FFIEC Examination Handbooks.
  • Minimum 7 years of previous experience in Information Security, IT Audit, or Technology Risk Management, with at least 3 years in a program management or leadership capacity.
  • Demonstrable expertise in developing and implementing risk management frameworks, specifically the NIST Risk Management Framework (NIST 800-37).
  • In-depth knowledge of security control frameworks, particularly NIST 800-53.
  • Strong understanding of FFIEC, GLBA, and SOX and their applicability to technologies and applications.
  • Proven ability to engage with and present complex security risk concepts to executive leadership to encourage prioritization and drive decision-making.
  • Bachelor's Degree from an accredited institution, or equivalent professional experience.


Added bonus if you have

  • Relevant security certification (CGRC, CRISC, CISSP, or CISM).
  • Hands-on experience building a risk management program from the ground up.
  • Experience implementing or serving as the primary administrator for a GRC platform (e.g., ServiceNow GRC, Archer).
  • Advanced degree with a concentration in an IT or Cybersecurity-related area.


What we'll bring

During your interview process, our team can fill you in on all the details of our industry-leading benefits and career development opportunities. A few highlights include:

  • A work environment built on teamwork, flexibility, and respect
  • Professional growth and development programs to help advance your career, as well as tuition reimbursement
  • Team Member Vehicle Purchase Discount
  • Toyota Team Member Lease Vehicle Program (if applicable)
  • Comprehensive health care and wellness plans for your entire family
  • Toyota 401(k) Savings Plan featuring a company match, as well as an annual retirement contribution from Toyota regardless of whether you contribute (if applicable)
  • Paid holidays and paid time off
  • Referral services related to prenatal services, adoption, childcare, schools and more
  • Tax Advantaged Accounts (Health Savings Account, Health Care FSA, Dependent Care FSA)
  • Relocation assistance (if applicable)


About Toyota

Toyota Motor Corporation is a Japanese multinational automotive manufacturer headquartered in Toyota City, Aichi, Japan. The company was founded in 1937 by Kiichiro Toyoda and has since grown to become the world's largest automotive manufacturer. Toyota Motor Corporation produces a wide range of vehicles including cars, trucks, and buses. The company is committed to sustainability and has set a goal of achieving zero carbon emissions by 2050. Toyota Motor Corporation has operations in over 170 countries and regions around the world.
Learn more about Toyota
Size
372,817 employees
Market Cap
$225.1 billion
Industry
Net Income
$1,531.2 billion
Founded
1937
5 Year Trend
+2.6%
Revenue
$26,625.1 billion
NASDAQ

Similar Jobs

More Jobs at Toyota

More Finance & Insurance Jobs

Find similar TFSB Information Security Risk Manager jobs: