Sr. Manager, Technology Risk Management

Visa hybrid • Bangalorefull_time

The Senior Manager – Technology Risk is a strategic contributor responsible for providing robust second-line oversight across Technology Risk and Cybersecurity. The role ensures adherence to technology and cybersecurity regulatory mandates by independently interpreting regulatory guidelines, assessing their applicability to the organization’s environment, mapping them to existing controls, and identifying gaps. The position works closely with first-line teams to strengthen regulatory compliance, enhance control effectiveness, and embed industry-leading practices in Technology Risk governance.

This role may also support regulatory requirements across additional regions as operational or supervisory needs evolve.

Key Responsibilities:

Technology Risk Second-Line Oversight (Regulatory Compliance):

  • Provide independent second-line oversight to ensure compliance with global and regional technology and cybersecurity regulations issued by relevant regulators.
  • Review, interpret, and evaluate regulatory guidelines to determine applicability to the organization’s technology landscape.
  • Perform structured assessments and map regulatory requirements to the organization’s internal control framework.
  • Identify regulatory compliance gaps, document findings, and track remediation through closure.

Partnering with First-Line Teams on Regulatory Controls:

  • Work closely with first-line technology, cybersecurity, and operations teams to validate regulatory control design and operating effectiveness.
  • Identify compliance gaps and support teams in designing and implementing appropriate control enhancements.
  • Help define and operationalize Key Risk Indicators (KRIs) relevant to regulatory and technology risk themes.
  • Manage KRI governance routines, ensuring accuracy, completeness, and timely updates.

Reporting & Governance (Internal and Regulatory Stakeholders):

  • Prepare periodic reports on KRIs, regulatory compliance posture, and broader Technology Risk themes.
  • Present insights, trends, and risk exposures to senior leadership and relevant governance committees.
  • Perform independent check-and-challenge on risk metrics and compliance assertions before they are reported.
  • Support regulatory reporting requirements and interactions with supervisory bodies.

Industry Standards, Documentation, and Risk Management Practices:

  • Introduce and embed industry-leading practices in Technology Risk and Cybersecurity risk management.
  • Strengthen documentation standards for policies, procedures, control evidence, and regulatory artefacts to ensure efficiency, traceability, and audit-readiness.
  • Benchmark internal practices against external frameworks such as NIST, ISO, COBIT, and emerging global standards.
  • Ensure Technology Risk management practices remain aligned with evolving regulatory and industry expectations.

This is a hybrid position. Expectation of days in office will be confirmed by your hiring manager.