Full-Time

Director – Enterprise Cybersecurity Risk

Confirmed live in the last 24 hours

Fidelity Investments

Fidelity Investments

10,001+ employees

Investment management and financial services provider

No salary listed

Senior, Expert

No H1B Sponsorship

Boston, MA, USA + 4 more

More locations: Westlake, TX, USA | Smithfield, RI, USA | Merrimack, NH, USA | Cincinnati, OH, USA

Most hybrid roles require associates to work onsite every other week (all business days, M-F) in a Fidelity office.

Category
Cybersecurity
IT & Security
Required Skills
Microsoft Azure
AWS
Risk Management
Requirements
  • 8-10 years’ experience in information technology risk, cyber security, controls or audit roles
  • Experience in fraud risk frameworks a plus
  • Prior experience in team management and leadership is preferred
  • Bachelor’s Degree in Computer Science, Technology, or a related field of study preferred
  • Professional technology and associated risk certifications (CISSP, CISA, CRISC, CISM), Certified risk/fraud examiners (CRE, CFE), and/or Cloud Certification(s) (CCSP, CCSK, AWS) preferred
  • Experience performing Technology risk assessments, Control assessments or IT Audits or implementing Cybersecurity controls for large scale financial service organizations (cloud, distributed, vendor solutions, mainframe, and network environments)
  • Demonstrated technical abilities in multiple areas (e.g., technology infrastructure and application controls, cyber security, access management, network and cloud, resiliency, etc.)
  • Working knowledge of Cloud security and controls and cloud technology environments (AWS/Azure, SaaS, PaaS)
  • Strong knowledge of information technology processes and controls and a comprehensive understanding of risk, quality control and assurance functions
  • Ability to build and maintain collaborative working relationships with Information Technology and Business personnel to design and assist in the execution of appropriate controls design and monitoring
  • Process orientation and understanding of operations and technology enabling support in the analysis, development and monitoring of controls
  • Knowledge of Industry standards, frameworks and best practices, such as NIST SP 800-53, COBIT, AICPA Trust Principles, ISO27001, HITRUST is preferred
  • Knowledge of Governance, Risk, and Compliance (GRC) tools, such as Archer or Open Pages is preferred
  • Excellent verbal and written communication skills enabling preparation and presentation of recommendations to senior management
Responsibilities
  • Providing technical direction and professional guidance to technology risk associates that fosters individual growth and development as well as team and organizational deliverables
  • Assessing the various information technology risks that the business faces in its operations and implement action plans, policy and procedural changes for risk avoidance and mitigation
  • Evaluating control maturity by performing control design and operating effectiveness reviews and peer reviewing as needed
  • Conducting in-depth information technology risk assessments including documenting controls, identifying potential gaps and/or inconsistencies and making sound recommendations for improvement and/or mitigation
  • Assisting with developing and monitoring controls related to cybersecurity and to meet applicable security, audit, and regulatory requirements
  • Providing technical assistance on risk related systems issues, and serving as a liaison for technology risk management
  • Determining appropriate KPIs/KRIs for IT risk monitoring
  • Understanding and consulting on information security standards and industry best practices
  • Managing IT Controls program activities; this includes managing the Controls Inventory in GRC/OpenPages and control documentation, and performing IT Controls Testing to meet internal assurance and external audit requirements
  • Liaison with Internal and External audit teams, tracking of internal and external audit findings, perform issues follow-up, consulting and action plans with owners and issue resolution.
Desired Qualifications
  • Experience in fraud risk frameworks a plus
  • Prior experience in team management and leadership is preferred
  • Bachelor’s Degree in Computer Science, Technology, or a related field of study preferred
  • Professional technology and associated risk certifications (CISSP, CISA, CRISC, CISM), Certified risk/fraud examiners (CRE, CFE), and/or Cloud Certification(s) (CCSP, CCSK, AWS) preferred
  • Knowledge of Industry standards, frameworks and best practices, such as NIST SP 800-53, COBIT, AICPA Trust Principles, ISO27001, HITRUST is preferred
  • Knowledge of Governance, Risk, and Compliance (GRC) tools, such as Archer or Open Pages is preferred

Fidelity Investments provides financial services and tools to help individuals manage their investments and stay updated on market trends. Their products include mobile apps and market monitoring tools that deliver real-time market quotes and trading capabilities. A key difference from competitors is Fidelity's emphasis on integrating new technologies and user-friendly designs into their offerings. The company's goal is to empower users to make informed financial decisions.

Company Size

10,001+

Company Stage

Debt Financing

Total Funding

$127.3B

Headquarters

Boston, Massachusetts

Founded

1946

Simplify Jobs

Simplify's Take

What believers are saying

  • Cryptocurrency trading service launch could attract tech-savvy investors to Fidelity.
  • Managed Futures ETF aligns with growing interest in alternative investment strategies.
  • Zero expense ratio funds enhance Fidelity's competitive edge in the mutual fund market.

What critics are saying

  • Cryptocurrency trading exposes Fidelity to volatile and unpredictable market conditions.
  • Zero expense ratio funds may pressure profit margins if competitors reduce fees.
  • Partnership with MyStonks could lead to regulatory scrutiny in digital asset markets.

What makes Fidelity Investments unique

  • Fidelity offers a Zero lineup of mutual funds with a 0% expense ratio.
  • Fidelity's Managed Futures ETF provides a liquid alternative strategy for market trend investing.
  • Partnership with MyStonks integrates traditional finance with blockchain technology for stock-token custody.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Mental Health Support

Hybrid Work Options

401(k) Retirement Plan

401(k) Company Match

Unlimited Paid Time Off

Parental Leave

Student Loan Assistance

Tuition Reimbursement

Company News

TechCrunch
Jun 12th, 2025
Hotel management platform Canary nabs $80M Series D from BPC, YC, Insight Partners

Canary offers a product suite that encompasses every part of the guest journey, from booking to departure. The company offers services that let hotel guests check in on mobile devices or text the front desk for help. And it's leaning into AI in serving its customers’ guests through voice, web, and text with an LLM, sometimes offering instant responses.

WTOP
Jun 10th, 2025
7 Lowest Expense Ratio ETFs

Fidelity, for instance, introduced its Zero lineup of mutual funds, which charge a 0% expense ratio.

FX News Group
Jun 5th, 2025
Fidelity Investments launches Fidelity Managed Futures ETF

Fidelity Investments today announced the launch of Fidelity Managed Futures ETF (FFUT), a liquid alternative strategy that aims to capitalize on market trends through disciplined, systematic long-short investing.

Business Wire
May 21st, 2025
Acrisure Secures $2.1 Billion Funding Round Led by Bain Capital

Acrisure today announced it has entered into a definitive agreement for the issuance of new convertible senior preferred stock in a $2.1 billion capital rais...

PR Newswire
May 10th, 2025
MyStonks Launches Industry-Leading On-Chain U.S. Stock-Token Marketplace with 100% Custody Backing

To ensure the security of user assets, MyStonks has partnered with Fidelity, which provides custody services (Fidelity Custody) for platform users' U.S. stock holdings.