Who we are
Corebridge Financial helps people make some of the most meaningful decisions they’re ever going to make. We help them plan and take action to protect the future they envision and respond to some of life’s most difficult moments through the solutions and services we provide. We do this through our broad portfolio of life insurance, retirement, and institutional products, offered through an extensive, multichannel distribution network. We provide solutions for a brighter future through our client centered service, breadth of product expertise, deep distribution relationships, and outstanding team of hardworking and passionate employees.
The Information Technology (IT) organization is the technological foundation of our business and works in collaboration with our partners from across the company. The team drives technology and digital transformation, partners with business leaders to design and execute new strategies through IT and operations services and ensures the necessary IT risk management and security measures are in place and aligned with enterprise architecture standards and principles.
This role will manage a team to identify, assess, respond to, and monitor Technology Risk. He/she will need to ensure that regulatory / risk policies and standards and their impact on business operations are understood and addressed consistently across Corebridge as well as third party facilities, are assessed, monitored, and remediated as necessary. They will help to provide coverage for regulatory issues with our technology partners and assist with regulatory exams, requests, and meetings.
About the role
What you need to know:
The Head of Technology Risk and Controls will be responsible for the following:
- Manages the development of technology risk processes and procedures, and actively contributes to the strategic planning process for IT Develop programs to assess and monitor control impacts as change initiatives progress.
- Provides domain expertise to business units around emerging technology risk topics.
- Leads development of a technology risk management framework that defines how people, process & technology provide a secure environment and support business objectives.
- Develops technology risk management goals and objectives, and establishes standards and process/procedures, cost analysis, and controls by working collaboratively with key stakeholders to ensure that all regulatory mandates and requirements are addressed. Regulatory considerations including but are not limited to SOX, NYDFS, SOC1/2, and State Regulatory requirements.
- Manages control issue remediation processes to ensure that the underlying risk to the organization is being managed.
- Develops strong relationships and interacts with Enterprise Risk Management Senior Leadership, Business Unit Heads, Regional Leadership, Internal Audit, External Regulators, Legal and Compliance, Privacy, and IT teams to coordinate activities.
- Develop strategies and operating model to identify, assess, report, and manage Third Party risk.
- Ensures IT Standards and Policies are fit for purpose and are appropriate from a regulatory, risk and compliance perspective.
- Manages escalation of issues relating to the overall Technology Risk environment.
- Works with applicable business, operational and IT organizations to help ensure that business and IT projects are appropriately monitored for IT risks.
- Develops and delivers executive-level IT risk presentations to describe program approach and status and consults on key technology risks.
- Secures appropriate resources for the Technology Risk and other departments that can be leveraged to carry out strategy, plans, and programs.
- Manages Technology Risk awareness and training programs to encourage the use of appropriate information practices by Corebridge staff, contractors, service providers, third party and offshore vendors.
- Develops and implements risk reporting on progress for achieving and implementing Technology Risk strategies, plans, products, and controls.
- Acts as the audit interface to manage scope, quality of responses, and interactions.
- Represents Corebridge interests to industry and standards forums and advises senior leadership concerning topics and trends pertaining to information technology risks.
What we’re looking for:
Experience:
- 15+ years of experience within technology risk, control and governance, Internal Audit or SOX disciplines with increasing responsibility and work complexity to include progressive management roles in large, complex organizations.
- Strong expertise in collaboration, facilitation, and coordination of the mitigation of risks.
- Adept at navigating governance structures.
- Experience raising awareness of information and technology risk throughout an organization.
- Significant experience working with Financial Industry regulators and regulations (E.G., SEC, NYSDFS, State Regulators).
Technology Risk & Controls Skills:
- Extensive knowledge of information and technology risk management policies, methods, standards, tools, and processes (e.g., ISO, COSO, COBIT, NIST) as well as knowledge of compliance, legal, internal / external audit & regulatory requirements.
- In-depth understanding of information technology and business continuity principles and best practices across the industry as well as project management principles.
Core Skills
- Demonstrate effective leadership skills.
- Understanding of metrics development and reporting. Strong problem solving and program execution skills. Ability to prioritize and drive difficult decisions among business partners.
- Ability to solve very complex risk issues that span legal, compliance and regulatory obligations across various lines of business and shared service areas of the company.
- Strong interpersonal and oral/written communication skills, able to build relationships with people at all levels. Experience developing and delivering presentations to all levels of management. Strong ability to develop, lead and manage a professional staff.
- Executes through the team — manages to high standards, empowers others, and holds them accountable while actively engaging and inspiring them at the same time.
- Utilizes strong negotiation and influencing skills to align interests across diverse constituencies, including suppliers, internal business partners, and regulators.
- Drives for results — shows urgency and takes initiative, doesn’t let problem situations linger, and ensures service excellence and efficiency objectives are met.
- Ability to work under pressure and meet close deadlines.
- Experience leading complex, major change initiatives; demonstrated skills in change management.
We are an Equal Opportunity Employer
Corebridge Financial, Inc., its subsidiaries and affiliates are committed to be an Equal Opportunity Employer and its policies and procedures reflect this commitment. We provide equal opportunity to all qualified individuals regardless of race, color, religion, age, gender, gender expression, national origin, veteran status, disability or any other legally protected categories such as sexual orientation. At Corebridge Financial, we believe that diversity and inclusion are critical to our future and our mission – creating a foundation for a creative workplace that leads to innovation, growth, and profitability. Through a wide variety of programs and initiatives, we invest in each employee, seeking to ensure that our people are not only respected as individuals, but also truly valued for their unique perspectives.
To learn more please visit: www.corebridgefinancial.com
Corebridge Financial is committed to working with and providing reasonable accommodations to job applicants and employees with physical or mental disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to complete any part of the application or hiring process, please send an email to TalentandInclusion@corebridgefinancial.com. Reasonable accommodations will be determined on a case-by-case basis.
Functional Area:
IT - Information Technology
Estimated Travel Percentage (%): No Travel
Relocation Provided: No
American General Life Insurance Company