At T. Rowe Price, we identify and actively invest in opportunities to help people thrive in an evolving world. As a premier global asset management organization with more than 85 years of experience, we provide investment solutions and a broad range of equity, fixed income, and multi-asset capabilities to individuals, advisors, institutions, and retirement plan sponsors. We take an active, independent approach to investing, offering our dynamic perspective and meaningful partnership so our clients can feel more confident.
We believe doing the right thing for our clients and our associates is good business. With a career at the firm, you can expect opportunities to create real impact at work and in your community. You’ll enjoy resources to support your career path, as well as compensation, benefits, and flexibility to enrich your life. Here, you’ll find a collaborative culture that respects and values differences and colleagues who share a spirit of generosity.
Join us for the opportunity to grow and make a difference in ways that matter to you.
Role Summary
We are seeking a Senior Manager, Technology & Cyber Risk Management, to join the AI, Model and Technology risk team in the Chief Risk Officer organization. This second-line role provides independent oversight and credible challenges of technology, cyber, cloud, data, third-party, resilience, and AI-related risks across the enterprise. The role partners with technology, cybersecurity, business, compliance, operational risk, legal, and internal audit stakeholders to ensure risks are identified, assessed, monitored, reported, and managed in line with enterprise risk appetite and regulatory expectations.
Responsibilities
- Provide second-line oversight and credible challenge to management of technology, cyber, cloud, resilience, third-party technology, data protection, and AI-related risks across the enterprise.
- Lead and support risk assessments, control reviews, thematic deep dives, and oversight of major technology change, cyber, and AI-enabled initiatives.
- Lead or support AI, model & technology incident management program ensuring timely identification, reporting, escalation, root cause analysis, remediation and lessons learned for technology, cyber, data and AI incidents.
- Assess whether risks, controls, remediation plans, exceptions, and risk acceptances are appropriately identified, challenged, escalated, and managed.
- Develop risk reporting, KRIs, dashboards, and committee materials that provide senior leaders with clear insight into technology, cyber, and AI risk trends.
- Support enhancements to technology, cyber, and AI risk frameworks, policies, standards control frameworks, assessment methodologies, and governance routines, including alignment to recognized AI governance and GenAI security frameworks.
- Monitor regulatory developments, industry guidance, threat trends, audit findings, incidents, and emerging technology risks to inform second-line oversight priorities.
- Collaborate with Technology, Cybersecurity, Compliance, Operational Risk, Third-Party Risk, Business Resilience, Legal, and Internal Audit to drive consistent risk coverage and effective remediation.
- Partner with business risk managers to support broader technology, data, and operations business risk initiatives
Business knowledge
- Strong understanding of the three-lines-of-defense model and the role of a second-line risk function in oversight, challenge, aggregation, and reporting.
- Understanding of enterprise risk and business risk domains, and demonstrated success of integrating technology & cyber risk management activities into overall business unit and enterprise risk management plans
- Knowledge of technology and cyber risk domains, including information security, cloud, infrastructure, application security, data protection, resilience, incident management, third-party technology risk, identity and access management, and AI risk management.
- Understanding of financial services regulatory expectations related to technology, cyber, operational resilience, third-party risk, data governance, and AI/model risk intersections.
- Familiarity with risk and control frameworks such as NIST CSF 2.0, NIST 800-53, ISO 27001/27002, COBIT, COSO, FFIEC guidance, NIST AI Risk Management Framework, ISO/IEC 42001, ISO/IEC 23894, SR 11-7 model risk management guidance, and OWASP Top 10 for Large Language Model Applications.
Qualifications
Required:
- Typically requires 8+ years of relevant experience in technology risk, cyber risk, information security, technology audit, operational risk, enterprise risk management, regulatory supervision, or related financial services risk disciplines.
- Bachelor’s degree or the equivalent combination of education and relevant experience in information technology, cybersecurity, computer science, engineering, risk management, finance, business, or a related field; advanced degree preferred.
- Experience providing independent risk oversight, credible challenge, risk advisory, or assurance for technology, cyber, cloud, third-party technology, or AI-enabled processes in a complex, regulated environment.
- Ability to synthesize complex technical and risk issues into clear executive-ready narratives, dashboards, committee materials, and recommendations.
- Strong stakeholder management, analytical, communication, and prioritization skills, including the ability to influence outcomes without direct authority.
- Relevant certifications preferred, such as CISSP, CISM, CISA, CRISC, CGEIT, cloud security certifications, or AI governance/risk credentials.
FINRA Requirements
FINRA licenses are not required and will not be supported for this role.
Work Flexibility
This role is eligible for hybrid work, with up to one day per week from home.
Base Salary Ranges
Please review the job posting for the location of this specific opportunity.
$122,000.00 - $209,000.00 for the location of: Maryland, Colorado, Washington and remote workers$135,000.00 - $230,000.00 for the location of: Washington, D.C.
$153,000.00 - $261,000.00 for the location of: New York, California
Placement within the range provided above is based on the individual’s relevant experience and skills for the role. Base salary is only one component of our total compensation package. Employees may be eligible for a discretionary bonus, which is determined upon company and individual performance.
Commitment to Diversity, Equity, and Inclusion
At T. Rowe Price, our associates are our greatest asset. We thrive because our company culture is built on inclusion and because we sustain a work environment where associates can bring their best selves to work every day. The backgrounds, talents, and experiences of our global associates allow us to embrace new ideas and perspectives that move our business priorities forward and enable us to deliver strong client outcomes. Here, you can expect equal opportunity and fair and consistent treatment for all.
Benefits
We value your goals and needs, at work and in life. As an associate, you’ll be supported with resources, benefits, and work-life balance so you can thrive in ways that matter to you.
Featured employee benefits to enrich your life:
Competitive compensation
Annual bonus eligibility
A generous retirement plan
Hybrid work schedule
Health and wellness benefits, including online therapy
Paid time off for vacation, illness, medical appointments, and volunteering days
Family care resources, including fertility and adoption benefits
Learn more about our benefits.
Skills Required
- 8+ years of relevant experience in technology risk, cyber risk, information security, technology audit, operational risk, enterprise risk management, regulatory supervision, or related financial services risk disciplines
- Bachelor's degree or equivalent combination of education and relevant experience in information technology, cybersecurity, computer science, engineering, risk management, finance, business, or a related field
- Experience providing independent risk oversight, credible challenge, risk advisory, or assurance for technology, cyber, cloud, third-party technology, or AI-enabled processes in a complex, regulated environment
- Ability to synthesize complex technical and risk issues into executive-ready narratives, dashboards, committee materials, and recommendations
- Strong stakeholder management, analytical, communication, and prioritization skills, including the ability to influence without direct authority
- Advanced degree
- Relevant certifications such as CISSP, CISM, CISA, CRISC, CGEIT, cloud security certifications, or AI governance/risk credentials
T. Rowe Price Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about T. Rowe Price and has not been reviewed or approved by T. Rowe Price.
-
Retirement Support — Retirement offerings are positioned as a standout, including strong 401(k) matching/contributions and related long-term savings features. Employee stock purchase options are also cited as part of the overall rewards structure that adds value beyond base pay.
-
Leave & Time Off Breadth — Time-off benefits are repeatedly framed as generous, including sizeable PTO allotments and multiple paid-leave categories. This breadth of leave is described as a meaningful component of the overall rewards package.
-
Career-Linked Recognition & Rewards — Annual bonuses and performance-linked rewards are described as common components of total compensation. Tuition assistance and development support are also presented as rewards that reinforce longer-term career growth.
T. Rowe Price Insights
What We Do
T. Rowe Price is an asset management firm focused on delivering global investment management excellence and retirement services that investors can rely on—now, and over the long term. Headquartered in Baltimore, Maryland, we provide an array of mutual funds, subadvisory services, separate account management, recordkeeping, and related services for individuals, advisors, institutions, and retirement plan sponsors. At T. Rowe Price, we believe in strategic investing. It has guided how we do business for more than 80 years, and it’s driven by independent thinking and rigorous research. So our clients can be confident that we’ll strive to select the right investments as we help them achieve their objectives. Strategic investing means that we don’t stop at surface level analysis. Instead, we go beyond the numbers. Our investment professionals travel the world, visiting the companies they evaluate. It’s this passion for exploration and understanding that has helped inform better decision-making and prudent risk management for our clients since its founding by Thomas Rowe Price Jr. in 1937.







