Executive Director, Technology Business Risk and Controls - Data and AI

Posted Yesterday
Be an Early Applicant
7 Locations
In-Office
170K-306K Annually
Expert/Leader
Insurance
The Role
Leads enterprise technology risk and controls programs covering cybersecurity, data, AI, cloud, software development, resiliency, and third-party technology. Advises senior executives, oversees risk assessments, control monitoring, regulatory examinations, audits, issue remediation, governance, and risk reporting. Builds a high-performing risk and controls team while advancing AI governance, data risk management, automation, continuous monitoring, and sustainable compliance practices across a highly regulated organization.
Summary Generated by Built In

Why USAA?

At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families.

Embrace a fulfilling career at USAA, where our core values – honesty, integrity, loyalty and service – define how we treat each other and our members. Be part of what truly makes us special and impactful.

We are proud to support active-duty military spouses. USAA roles may offer remote or hybrid flexibility for active-duty military spouses consistent with applicable policy and business needs.

The Opportunity

As the Executive Director, Technology Business Risk & Controls – Data & AI, you will serve as a senior leader within the First Line of Defense, providing strategic direction and oversight of the technology risk and control environment across critical technology functions. In this highly visible role, you will partner with executive technology leaders, business stakeholders, and risk partners to strengthen governance frameworks, enhance control effectiveness, and ensure alignment with risk management objectives and regulatory expectations.

You will lead a high-performing team of Business Risk & Controls professionals responsible for identifying, assessing, monitoring, and mitigating risks associated with data, analytics, artificial intelligence, and emerging technologies. This role is accountable for driving association-wide risk and control programs, strengthening regulatory and audit readiness, overseeing issue management and remediation efforts, and advancing governance processes that foster a strong risk culture while enabling innovation, operational excellence, and business growth.

As a trusted advisor to senior executives, you will influence strategic decision-making by providing expert guidance on technology risk, control design, regulatory compliance, and the evolving risk landscape surrounding data and AI. Success in this role requires a visionary leader who can effectively balance risk management with business priorities, embedding sustainable and scalable controls that protect the organization while accelerating responsible innovation, resilience, and long-term value creation.

We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in one of the following locations: San Antonio, TX, Plano, TX, Phoenix, AZ, Colorado Springs, CO, Charlotte, NC, or Tampa, FL Relocation assistance is available for this position.

What you'll do:

  • Leads the implementation and advancement of Technology Business Risk and Controls programs, operating models, and roadmaps across assigned technology organizations, ensuring alignment with enterprise objectives, risk appetite, and regulatory expectations.

  • Serves as a trusted advisor to senior technology leaders on information technology, cyber, data, AI, resiliency, and operational risk matters, influencing business decisions and risk mitigation strategies.

  • Oversees association-scale risk identification, assessment, measurement, monitoring, and control activities related to technology infrastructure, software development, cloud environments, information security, data governance, third-party technology services, and emerging technologies.

  • Accountable for the design, implementation, and continuous improvement of first-line technology risk and control programs, including risk and control self-assessments, issue management, control monitoring, risk indicators, loss event management, and governance processes.

  • Partners with senior leaders and key control partners, including Risk Management, Compliance, Audit, Legal, to address complex risk matters, drive remediation efforts, and ensure sustainable control effectiveness.

  • Leads first-line engagement activities for regulatory examinations, internal audits, external audits, and risk reviews, ensuring timely responses, effective remediation plans, and sustainable issue resolution.

  • Drives identification of emerging technology, cyber, data, and operational risk themes and systemic control weaknesses through analytics, trend analysis, and industry intelligence, driving proactive mitigation strategies.

  • Oversees the development, monitoring, and reporting of technology risk metrics and key risk indicators for senior leadership and governance committees to support informed decision-making and risk transparency.

  • Builds and oversees a high performing team through ongoing execution of recruiting, development, retention, coaching and support, performance management, and managerial activities.

  • Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.

What you have:

  • Bachelor's degree in Business, Information Technology, Information Security, Information Management, Risk Management, Finance, or a related field.

  • 10 years of progressive experience supporting technology risk, compliance, controls, audit, cybersecurity, information governance, technology operations, or related disciplines within a highly regulated environment, including 5-8 years of direct experience in information technology, information security, data governance, technology operations, infrastructure, engineering, architecture, cloud technologies, or related technical fields.

  • 4 years of direct people leadership experience, including leadership of managers, large teams, or multiple functional areas.

  • Executive-level knowledge of industry-related regulatory requirements, and operational risk concepts.

  • Demonstrated experience leading complex, cross-functional risk, controls, governance, remediation, or regulatory initiatives with significant organizational impact.

  • Strong understanding of technology risk management principles, control frameworks, and industry standards, including NIST, COBIT, ISO 27001, FFIEC guidance, and related regulatory expectations.

  • Deep knowledge of technology and data processes, including software development lifecycle (SDLC), change management, access management, privileged access controls, vulnerability management, incident management, cloud technologies, operational resiliency, and information governance.

  • Experience leading or supporting regulatory examinations, internal audits, external audits, issue management, and remediation programs.

  • Proven ability to leverage data, analytics, and risk intelligence to identify emerging risks, evaluate control effectiveness, and influence risk-based business decisions.

  • Experience leveraging automation, AI, analytics, and continuous monitoring capabilities to modernize assurance and testing programs.

  • Exceptional communication, executive presence, and relationship-management skills, with a demonstrated ability to influence senior leaders and build partnerships across Technology, Risk, Compliance, Audit, and Business organizations.

What sets you apart:

  • Master's degree in Cybersecurity, Computer Science, Data Science, Artificial Intelligence, Information Systems, Risk Management, or a related field.

  • Executive leadership experience at the intersection of Technology Risk, Data Governance, Cybersecurity, Artificial Intelligence, and Operational Risk Management.

  • Deep knowledge of data governance disciplines, including data quality, lineage, metadata management, privacy, classification, retention, and ownership frameworks.

  • Experience establishing and leading AI Governance, Responsible AI, and Data Risk Management programs within highly regulated environments.

  • Expertise assessing and mitigating risks associated with Generative AI, machine learning, advanced analytics, cloud technologies, and emerging technology platforms.

  • Experience implementing automated risk, governance, compliance, and continuous control monitoring capabilities to improve oversight, reporting, and risk visibility.

  • Strong knowledge of industry frameworks and standards, including NIST AI RMF, NIST CSF, COBIT, ISO 27001, and enterprise data governance practices.

  • Demonstrated success partnering with regulators, internal audit, risk management, and executive leadership teams to drive regulatory readiness and sustainable remediation outcomes.

  • Exceptional ability to translate complex technology, data, and AI risks into actionable business insights and executive-level recommendations.

  • Proven track record of building high-performing teams, influencing senior executives, and fostering a culture of accountability, innovation, and risk awareness.

  • Professional certifications such as CISSP, CISM, CRISC, CGEIT, CDPSE, CIPP, CDMP, AIGP, or equivalent.

  • US military experience through military service or a military spouse/domestic partner

Compensation range: The salary range for this position is: $169,880-$305,780.

USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.).

Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position.

 

Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.

 

The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.

Long Term Incentive Plan: Cash payment for Executive level roles only, representing a cash payment which is both time and performance based.

 

Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.

 

For more details on our outstanding benefits, visit our benefits page on USAAjobs.com.

Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.

 

USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Skills Required

  • Bachelor's degree in Business, Information Technology, Information Security, Information Management, Risk Management, Finance, or a related field
  • 10 years of progressive experience in technology risk, compliance, controls, audit, cybersecurity, information governance, technology operations, or related disciplines within a highly regulated environment
  • 5-8 years of direct experience in information technology, information security, data governance, technology operations, infrastructure, engineering, architecture, cloud technologies, or related technical fields
  • 4 years of direct people leadership experience, including leadership of managers, large teams, or multiple functional areas
  • Executive-level knowledge of industry-related regulatory requirements and operational risk concepts
  • Experience leading complex, cross-functional risk, controls, governance, remediation, or regulatory initiatives
  • Strong understanding of technology risk management principles, control frameworks, NIST, COBIT, ISO 27001, FFIEC guidance, and related regulatory expectations
  • Deep knowledge of software development lifecycle, change management, access management, privileged access controls, vulnerability management, incident management, cloud technologies, operational resiliency, and information governance
  • Experience leading or supporting regulatory examinations, internal audits, external audits, issue management, and remediation programs
  • Experience using data, analytics, and risk intelligence to identify emerging risks, evaluate control effectiveness, and influence risk-based decisions
  • Experience using automation, artificial intelligence, analytics, and continuous monitoring to modernize assurance and testing programs
  • Exceptional communication, executive presence, and relationship-management skills
  • Master's degree in Cybersecurity, Computer Science, Data Science, Artificial Intelligence, Information Systems, Risk Management, or a related field
  • Executive leadership experience spanning technology risk, data governance, cybersecurity, artificial intelligence, and operational risk management
  • Deep knowledge of data governance, including data quality, lineage, metadata management, privacy, classification, retention, and ownership frameworks
  • Experience establishing and leading AI Governance, Responsible AI, and Data Risk Management programs in highly regulated environments
  • Expertise assessing and mitigating risks associated with generative AI, machine learning, advanced analytics, cloud technologies, and emerging technology platforms
  • Experience implementing automated risk, governance, compliance, and continuous control monitoring capabilities
  • Strong knowledge of NIST AI RMF, NIST CSF, COBIT, ISO 27001, and enterprise data governance practices
  • Experience partnering with regulators, internal audit, risk management, and executive leadership to drive regulatory readiness and remediation
  • Professional certification such as CISSP, CISM, CRISC, CGEIT, CDPSE, CIPP, CDMP, AIGP, or equivalent
  • US military experience through military service or military spouse/domestic partner status

USAA Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about USAA and has not been reviewed or approved by USAA.

  • Retirement Support Robust retirement programs include a rich 401(k) employer match alongside a company-funded pension, reinforcing long-term financial security. These elements are often singled out as standout features of the total rewards package.
  • Healthcare Strength Comprehensive medical, dental, vision, behavioral health, and telehealth coverage is paired with wellness incentives and onsite or reimbursed fitness resources. These offerings are perceived as meaningfully enhancing overall compensation value.
  • Parental & Family Support Fully paid parental leave, adoption assistance, and childcare reimbursement reflect substantial support for families. These benefits are widely regarded as valuable contributors to the employment proposition.

USAA Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Antonio, TX
35,000 Employees

What We Do

At USAA, our mission is more than just words – it’s the reason we do what we do. Our goal is to be the military community’s provider of choice for insurance, banking, financial products and advice. Take a look back at our history and you’ll see a strong track record of providing members with the highest level of care and support. And we’re proud to continue helping them achieve better financial futures. It’s that kind of dedication that’s helped us grow to more than 35,000 employees. Share our passion for serving those who serve? Whether you’re connected to the military or not, we’re always looking for talented individuals to join our team.

Similar Jobs

Tapestry - Coach and Kate Spade Logo Tapestry - Coach and Kate Spade

Store Manager

eCommerce • Fashion • Retail • Sales • Wearables • Design
Hybrid
Allen, TX, USA
16000 Employees
62K-94K Annually
Hybrid
Austin, TX, USA
1400 Employees

Tapestry - Coach and Kate Spade Logo Tapestry - Coach and Kate Spade

Sales Associate III

eCommerce • Fashion • Retail • Sales • Wearables • Design
Hybrid
The Woodlands, TX, USA
16000 Employees
15-20 Hourly
Hybrid
Plano, TX, USA
289097 Employees

Similar Companies Hiring

Alaffia Health Thumbnail
Payments • Machine Learning • Insurance • Healthtech • Artificial Intelligence
New York, NY
59 Employees
MassMutual India Thumbnail
Big Data • Fintech • Information Technology • Insurance • Financial Services
Hyderabad, Telangana
Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account