Haystack
← Back to Jobs
Full time
Technology

Enterprise Manager, Technology & Cybersecurity Risk

GenworthRichmond, VA🇺🇸United StatesPosted 22 Jul 2026

Why This Role Stands Out

Leverage your expertise to enhance technology and cybersecurity risk management at Genworth, a company dedicated to empowering families and fostering a supportive, inclusive culture. This hybrid role offers significant growth potential with a competitive salary range of USD 109,000 - 169,000 yearly, perfect for an experienced professional eager to make a meaningful impact.

Quick Overview

Salary
$109k - $169k/yr
Work Type
Hybrid
Schedule
Full Time
Level
Mid Senior

Job Description

At Genworth, we empower families to navigate the aging journey with confidence. We are compassionate, experienced allies for those navigating care with guidance, products, and services that meet families where they are. Further, we are the spouses, children, siblings, friends, and neighbors of those that need care—and we bring those experiences with us to work in serving our millions of policyholders each day. 

We apply that same compassion and empathy as we work with each other and our local communities. Genworth values all perspectives, characteristics, and experiences so that employees can bring their full, authentic selves to work to help each other and our company succeed. We celebrate our diversity and understand that being intentional about inclusion is the only way to create a sense of belonging for all associates. We also invest in the vitality of our local communities through grants from the Genworth Foundation, event sponsorships, and employee volunteerism.

Our four values guide our strategy, our decisions, and our interactions:

  • Make it human. We care about the people that make up our customers, colleagues, and communities.
  • Make it about others. We do what's best for our customers and collaborate to drive progress. 
  • Make it happen. We work with intention toward a common purpose and forge ways forward together. 
  • Make it better. We create fulfilling purpose-driven careers by learning from the world and each other.

    

POSITION TITLE

Enterprise Manager, Technology & Cybersecurity Risk

POSITION LOCATION

Richmond, Virginia

This position is available to Virginia residents as Richmond, Virginia in-office applicants

*A Hybrid schedule of both Remote and In-Office days is required. In office days are Tuesday, Wednesday and Thursday with working hours targeting our core business hours of 9am-5pm EST.

YOUR ROLE

The Enterprise Manager, Technology Risk & Cybersecurity Risk is a senior individual contributor responsible for leading risk identification, assessment, and mitigation activities across the organization’s technology environment, with a strong emphasis on technology and cybersecurity risk management and supporting oversight of third-party risk.

This role serves as a subject matter expert in technology risk, partnering closely with Technology, Cybersecurity, and Business teams to ensure risks are effectively managed, controls are appropriately designed, and regulatory and industry expectations are met.

This role operates with minimal supervision, significant independent judgment, and cross-functional influence, contributing to enterprise risk objectives and strengthening the organization’s overall risk posture.

What you will be doing

1. Technology Risk Management

  • Lead and execute enterprise-wide technology risk assessments across applications, infrastructure, cloud platforms, and data environments
  • Identify, evaluate, and prioritize risks related to system availability, security, resilience, and data integrity
  • Maintain and manage the technology risk register, including risk identification, scoring, and remediation tracking
  • Evaluate and challenge the design and effectiveness of IT general controls (ITGCs) and application controls
  • Align risk and control frameworks to industry standards (e.g., NIST, ISO 27001, COBIT, SOC 2, CIS Controls)
  • Partner with Technology and Security teams to drive control improvements and remediation of identified risk
  • Support risk appetite and tolerance definition, including development and monitoring of key risk indicators (KRIs)
  • Provide oversight and challenge to ensure risks are properly identified and managed within technology initiatives, projects, and change efforts
  • Support regulatory, audit, and compliance activities by providing documentation, evidence, and subject matter expertise
  • Monitor emerging technology risks (e.g., cloud, AI, cyber threats) and translate them into actionable mitigation strategies

2. Cybersecurity Risk Oversight

  • Lead cybersecurity risk assessments across enterprise environments (on-prem, cloud, hybrid)
  • Partner with Information Security leadership to identify and prioritize cyber risks
  • Evaluate cybersecurity controls across key domains:
    • Identity & Access Management (IAM)
    • Data protection & encryption
    • Network and endpoint security
    • Incident response capabilities
  • Assess alignment to frameworks (NIST CSF, NIST 800-53, ISO 27001/27002, CIS Controls)
  • Oversee vulnerability management, penetration testing, and remediation tracking
  • Support cyber incident readiness (tabletop exercises, post-incident reviews)
  • Evaluate risks in emerging areas (cloud, AI, ransomware, supply chain threats)
  • Monitor evolving threat landscape and regulatory expectations
  • Develop cybersecurity KRIs and executive reporting
  • Provide independent risk challenge to security initiatives and control designs
  • Contribute to AI / generative AI cybersecurity risk management

3. Risk Reporting & Insights (Supporting)

  • Develop and deliver clear, concise risk reporting for leadership, including risk summaries, key issues, and trends
  • Support development of risk dashboards and reporting artifacts, with less emphasis on building tools and more focus on interpretation and insight
  • Translate complex technology risks into business-relevant narratives for executive stakeholders.
  • Contribute to risk committee materials and presentations

4. AI Enablement

  • Leverage AI and Generative AI tools to enhance reporting, summarization, and analysis
  • Implement continuous improvement initiatives to increase efficiency and reduce cycle time
  • Support responsible use of AI by identifying and mitigating associated risks (e.g., data privacy, bias, accuracy)

What you bring

Education

  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, Risk Management, Business, or a related field
  • 5+ years of experience in:
    • Technology Risk / IT Risk
    • Cybersecurity Risk
    • IT Audit / Controls
    • Risk Management / GRC
  • Strong experience conducting technology risk assessments and control evaluations
  • Familiarity with IT control frameworks and regulatory expectations

Technical & Risk Expertise

  • Deep understanding of:
    • IT General Controls (ITGCs)
    • Application controls
    • Cybersecurity principles and practices
  • Experience with frameworks such as:
  • NIST, ISO 27001, COBIT, SOC 2, CIS Controls
  • Strong understanding of risk identification, assessment, and mitigation methodologies

Communication Skills

  • Ability to clearly communicate technical risks to non-technical stakeholders
  • Strong written and verbal communication skills
  • Experience preparing executive-level risk summaries and presentations

Nice to have

  • Professional certifications such as:
    • CISA, CRISC, CISM, CISSP
  • Experience with GRC platforms (e.g., Archer, ServiceNow GRC, OneTrust)
  • Experience in cloud risk management (AWS, Azure, GCP)
  • Background in internal audit or regulatory compliance
  • Exposure to third-party risk management frameworks and practices

Employee Benefits & Well-Being

Genworth employees make a difference in people’s lives every day. We’re committed to making a difference in our employees’ lives.

  • Competitive Compensation & Total Rewards Incentives
  • Comprehensive Healthcare Coverage
  • Multiple 401(k) Savings Plan Options
  • Auto Enrollment in Employer-Directed Retirement Account Feature (100% employer-funded!)
  • Generous Paid Time Off – Including 12 Paid Holidays, Volunteer Time Off and Paid Family Leave
  • Disability, Life, and Long Term Care Insurance
  • Tuition Reimbursement, Student Loan Repayment and Training & Certification Support
  • Wellness support including gym membership reimbursement and Employee Assistance Program resources (work/life support, financial & legal management)
  • Caregiver and Mental Health Support Services

ADDITIONAL

  • At this time, Genworth will not sponsor a new applicant for employment authorization for this position.

National Range: $109,000 – $169,000

Disclaimer: This role is aligned to a national market-based pay range. Actual compensation will vary based on geographic location, experience, skills, and other job-related factors. In addition to base salary, this role is eligible to participate in a bonus incentive plan. Incentive compensation is based on individual and company performance and is not guaranteed.

Skills

GCP
AWS
Encryption
SOC 2
Azure
Generative AI
LESS
Penetration Testing

Similar jobs