The Hartford Financial Services Group, Inc. Logo

The Hartford Financial Services Group, Inc.

Director Application & Data Technology Risk

Posted Yesterday
Be an Early Applicant
In-Office
Charlotte, NC, USA
154K-230K Annually
Senior level
In-Office
Charlotte, NC, USA
154K-230K Annually
Senior level
The Director of Application & Data Technology Risk leads risk management for technology, focusing on application security, data exposure, AI risks, and emerging technologies. They partner with technology leaders to ensure risks align with business and regulatory expectations.
The summary above was generated by AI
Director Information Security - IS06AE

We’re determined to make a difference and are proud to be an insurance company that goes well beyond coverages and policies. Working here means having every opportunity to achieve your goals – and to help others accomplish theirs, too. Join our team as we help shape the future.   

         

The Director, Application & Data Technology Risk provides senior leadership for identifying, assessing, and managing technology risks across the enterprise application landscape. This role focuses on application‑driven risks throughout the software development lifecycle (SDLC), including design, development, deployment, and ongoing operations, while maintaining strong awareness of data risk, sensitive data exposure, and risks associated with the use of artificial intelligence (AI), automation, and emerging technologies.The Director serves as a trusted risk advisor to CIOs and senior technology leaders, partnering to enable modern application delivery while ensuring risks are understood, clearly communicated, and managed in alignment with enterprise risk appetite, regulatory expectations, and business priorities.This role will have a Hybrid work schedule, with the expectation of working in an office (Columbus, OH, Hartford, CT or Charlotte, NC) 3 days a week. Candidates must be eligible to work in the US without company sponsorshipKey ResponsibilitiesApplication & Technology Risk Leadership
  • Lead the identification and management of application‑level technology risks, including secure design, SDLC controls, configuration weaknesses, dependency risks, and operational resilience.
  • Provide risk oversight across the end‑to‑end application lifecycle, including requirements, architecture, development, testing, release, and production support.
  • Assess risks introduced through modern engineering practices, including agile delivery, DevOps, CI/CD pipelines, APIs, cloud‑native services, and third‑party integrations.
  • Partner with application, platform, and security teams to promote adherence to security, infrastructure, and engineering control expectations.
Data Risk & AI Exposure
  • Evaluate data risk and sensitive data exposure within applications, including unauthorized access, data leakage, improper transmission, retention weaknesses, and aggregation risk.
  • Provide risk guidance on AI, GenAI, and automation use cases, with emphasis on data sourcing, access governance, explainability, monitoring, and emerging regulatory or ethical risks related to technology.
  • Maintain awareness of evolving risks associated with AI adoption and emerging technologies, ensuring they are incorporated into application risk assessments and governance.
Infrastructure & Cloud Dependencies
  • Maintain strong understanding of infrastructure and cloud dependencies (e.g., identity and access management, logging and monitoring, network security, encryption, resiliency) that directly influence application risk.
  • Partner with infrastructure, cloud, and cybersecurity teams to assess shared‑responsibility risk impacts on applications.
Executive Partnership & Risk Storytelling
  • Serve as a trusted risk partner to CIOs and senior technology leaders, supporting informed decision‑making while enabling delivery.
  • Translate complex technical risks into clear, business‑relevant risk narratives that articulate impact, likelihood, trends, and tradeoffs.
  • Present concise risk perspectives to senior leadership, technology governance forums, and risk committees, focusing on decision‑oriented insights rather than issue listings.
  • Influence prioritization decisions by balancing business value, delivery timelines, and risk exposure.
Risk Reporting & Governance
  • Own and deliver application and data technology risk reporting for senior leadership, highlighting trends, concentration risk, and systemic control gaps.
  • Define, monitor, and mature risk metrics, KRIs, and leading indicators related to application security, data exposure, DevOps maturity, and AI.
  • Identify patterns across findings and assessments to surface root causes and enterprise‑level risk themes.
  • Support audit, regulatory, and internal governance activities by representing application, data, and AI risk topics with credibility and consistency.
People Leadership
  • Lead, coach, and develop a team of technology risk professionals focused on application and emerging technology risk.
  • Promote a culture of partnership, transparency, and accountability across technology and risk teams.
Required Experience & Qualifications
  • 10+ years of experience in technology risk management, application security, IT audit, engineering, or related domains.
  • Strong working knowledge of application architectures, SDLC, DevOps practices, and CI/CD pipelines.
  • Demonstrated experience assessing data risks and data exposure within application environments.
  • Practical understanding of AI and automation risks, including model governance, data usage, and control considerations.
  • Solid familiarity with cloud and infrastructure control domains (IAM, logging, encryption, network security, resiliency).
  • Proven ability to communicate effectively with senior leaders and translate technical issues into executive‑level insights.
  • Experience working with industry frameworks (e.g., NIST, CIS Controls, COBIT, secure SDLC standards).
Preferred Qualifications
  • Prior hands‑on experience in software engineering, application architecture, platform operations, or DevOps.
  • Experience managing risk in high-growth, technology-driven organizations with evolving governance expectations
  • Relevant certifications such as CISSP, CISM, CRISC, CISA, or cloud security certifications.

Compensation

The listed annualized base pay range is primarily based on analysis of similar positions in the external market. Actual base pay could vary and may be above or below the listed range based on factors including but not limited to performance, proficiency and demonstration of competencies required for the role. The base pay is just one component of The Hartford’s total compensation package for employees. Other rewards may include short-term or annual bonuses, long-term incentives, and on-the-spot recognition. The annualized base pay range for this role is:

$153,600 - $230,400

Equal Opportunity Employer/Sex/Race/Color/Veterans/Disability/Sexual Orientation/Gender Identity or Expression/Religion/Age

About Us | Our Culture | What It’s Like to Work Here | Perks & Benefits

Similar Jobs

An Hour Ago
Easy Apply
In-Office
Easy Apply
Junior
Junior
Edtech • Fintech • Sports
The Sales Contractor will leverage existing networks to prospect and secure partnerships with schools and community groups, handling relationship management and presentations while transitioning deals to an Account Manager.
3 Hours Ago
Remote or Hybrid
USA
55K-121K Annually
Mid level
55K-121K Annually
Mid level
Machine Learning • Payments • Security • Software • Financial Services
The Business Systems Analyst Consultant analyzes client requirements, provides IT solutions to enhance business applications, and improves business processes through senior-level consulting.
Top Skills: Business ManagementProcess ImprovementsSoftware SolutionsUser Experience Design
6 Hours Ago
Remote or Hybrid
United States
80K-108K Annually
Senior level
80K-108K Annually
Senior level
Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
The Senior Consultant will deliver financial advisory services to FQHCs, focusing on improving financial operations, compliance, and client relationships while managing project deliverables and strategies.
Top Skills: AthenaEcwEpicGreat PlainsExcelMicrosoft OutlookMicrosoft TeamsMicrosoft WordMipNextgenQuickbooksSage

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account