- Salary
- $142k – $203k
- Location
- Washington, United States of America · Chicago · Denver
- Workplace
- Onsite
- Type
- Full-time
- Department
- Security
- Seniority
- Lead
- Education
- Bachelor
- Source
- Workday
Description
Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.
We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.
Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
The AI Security Controls Standard Lead is a hands-on strategy and governance role within the Global Information Security (GIS) Business Information Security Office (BISO) AI Design & Enforcement team responsible for maintaining and operationalizing the AI Controls across cyber security. This role is accountable for developing and delivering a comprehensive controls roadmap across GIS, including identifying where controls require AI components, assessing control strength, and defining necessary process and tooling improvements.
The role will establish and maintain guardrails for AI use cases, models and tools used across GIS, ensuring responsible, secure, and compliant use aligned with GIS risk appetite and regulatory expectations.
This individual will operate at the intersection of cyber security controls, AI risk, and operational execution — converting strategy into tangible deliverables including control requirements, governance frameworks, and sustainable operating processes.
This role operates within GIS and partners extensively across cyber security verticals, including Cyber Threat Defense, Cyber Security Operations, Cyber Security Assurance, and Identity & Access Management.
AI Control Strategy & Roadmap Development.
Build and maintain an end-to-end roadmap of cyber security controls across GIS, including:
• Control ownership by vertical/team
• Identification of where AI components are required or should be enhanced
• Assessment of control strength and maturity
• Identification of process and tooling improvements needed
• Translate findings into prioritized actions and delivery plans
• AI Guardrails and Governance
• Build, consolidate, and maintain enterprise guardrails for AI models, including approved and prohibited use cases, required controls and conditions for use, and governance expectations and accountability.
• Ensure alignment with GIS and enterprise policies, regulatory expectations, and emerging best practices in AI governance
• Monitors information security trends internal and external to the bank and keeps leadership informed
• Design and implement scalable, repeatable processes that integrate security, governance, and risk management into the AI lifecycle, ensuring consistency and auditability.
Required Qualifications
• Information Security & Technology professional with 10+ years’ experience
• Working understanding of AI/ML concepts and associated risks
• 5+ years of risk management experience with proven ability to effectively apply risk principles to challenging business situations
• Experience evaluating cyber security controls and providing guidance for platform or distributed computing platforms (Cloud, PaaS)
• Exceptional executive presentation and communication skills
• Excellent influencing and problem resolution skills
• Strong leadership skills and qualities which enable you to work with peers and various levels of management
• Ability to decompose complex issues and drive timely decisions, knowing when to engage others for additional input, and when to act independently
Desired Qualifications
• Bachelors and/or Master’s degree in Computer Science, Information Technology or related field
Required Skills:
1. Customer and Client Focus
2. Cyber Security
3. Data Governance
4. Executive Presence
5. Information Systems Management
6. Architecture
7. Business Intelligence
8. Risk Management
9. Threat Analysis
10. Vendor Management
Shift:
1st shift (United States of America)Hours Per Week:
40Pay Transparency details
US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540)Pay and benefits informationPay range$141,700.00 - $202,700.00 annualized salary, offers to be determined based on experience, education and skill set.Discretionary incentive eligibleThis role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.BenefitsThis role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.