Business Control Manager- GT Model Governance Portfolio Manager at Bank of America
United States
<p><b>Job Description:</b></p><p></p><p></p><p>At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.<br><br>Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates’ physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.<br><br>Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.<br><br>At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!<br><br>This job is responsible for leading and executing on internal control discipline and operational excellence within a Line of Business (LOB) or Enterprise Control Function (ECF). Key responsibilities include executing LOB or ECF processes and tools to drive adherence to enterprise-wide standards. Job expectations include supporting the implementation of quality assurance and quality control processes within the LOB or ECF through ongoing monitoring and testing of controls, identifying issues and control improvements for remediation, and building out actions plans and milestones.</p><p></p><p>The <b>GT Model Governance Portfolio Manager</b> plays a critical leadership role in strengthening the governance, oversight, and risk management of AI models, traditional models, and critical-use spreadsheets across <b>Global Technology – Global Information Security (GT‑GIS)</b>, while also supporting broader CIO divisions. This role is responsible for ensuring end‑to‑end compliance with <b>Enterprise AI, Model Risk Management (MRM), and Critical Use Spreadsheet Policies</b>, including documentation, inventory management, health monitoring, reporting, and quarterly attestations. The Portfolio Manager drives the model risk strategy for Global Technology by enabling strong governance practices, proactive risk identification, and continuous improvement. As a trusted partner across technology, risk, and business stakeholders, this individual champions the <b>responsible, compliant, and effective use of models</b> to mitigate cyber risk and support the bank’s <b>Defense in Depth</b> strategy. The role blends strategic thinking with hands‑on execution and offers the opportunity to influence enterprise‑wide risk outcomes in a fast‑evolving technology and threat landscape.</p><p></p><p><b>Responsibilities:</b></p><ul><li><p>Leads the assessment of the design and effectiveness of the risk and control environment to support Client Operational Services and ensure adherence to enterprise-wide standards</p></li><li><p>Performs monitoring and testing of controls, identifying issues and control improvements for remediation</p></li><li><p>Leads the implementation of optimized controls and enhanced Quality Assurance (QA) practices to support business continuity efforts</p></li><li><p>Manages the performance and productivity of team members that conduct quality inspection reviews</p></li><li><p>Ensures timely execution of QA activities including control execution, case management, and results reporting</p></li><li><p>Manages and reviews all operations front line unit responses for regulatory exams, internal audits, and other monitoring and inspection reviews</p></li><li><p>Ensures accuracy of data and that relevant information is captured for inspection metrics to support governance for dashboard reporting</p></li><li><p><b>Lead and execute model governance strategy</b> for Global Technology, ensuring alignment with Enterprise Model Risk Management and Artificial Intelligence policies, standards, and regulatory expectations</p></li><li><p><b>Oversee the AI, model, and critical-use spreadsheet portfolio</b>, including model identification, health assessments, inventory management, and quarterly attestations</p></li><li><p><b>Drive risk mitigation strategies</b> to proactively address model risk issues, control gaps, and emerging risks across technology and information security domains</p></li><li><p><b>Review, maintain, and enhance model documentation</b>, tracking, reporting, and ongoing compliance processes</p></li><li><p><b>Translate enterprise MRM requirements</b> into Global Technology–specific procedures, controls, and governance frameworks</p></li><li><p><b>Partner closely with technology leaders, GIS teams, and lines of business</b> to coordinate deliverables, priorities, and governance routines</p></li><li><p><b>Prepare and quality‑review executive‑level materials</b>, metrics, and reporting for senior management and governance forums</p></li><li><p><b>Coordinate cross‑divisional timelines and deliverables</b>, ensuring commitments are met accurately and on schedule</p></li><li><p><b>Define, monitor, and manage Model Risk Key Risk Indicators (KRIs)</b> to support risk transparency and informed decision‑making</p></li><li><p><b>Participate in governance forums</b> to assess model inventory health, developer activity, and adherence to policy expectations</p></li><li><p><b>Support audits, regulatory exams, issues management, and remediation efforts</b> related to model risk and governance</p></li><li><p><b>Identify and implement opportunities to streamline and enhance model risk management processes</b>, partnering across teams to drive execution</p></li><li><p><b>Manage cross‑functional governance programs and projects</b>, balancing strategic objectives with operational excellence</p></li></ul><p></p><p><b>Required Qualifications:</b></p><p></p><ul><li><p><b>3+ years of recent experience</b> in a Risk & Control, Governance, Compliance, or related environment</p></li><li><p>Strong ability to <b>communicate complex technical and risk concepts</b> in clear, concise language tailored to diverse audiences</p></li><li><p>Demonstrated <b>accountability, ownership, and execution excellence</b> in delivering results</p></li><li><p>Proven experience acting as a <b>change agent</b>, driving adoption and alignment across diverse stakeholder groups</p></li><li><p>Excellent <b>collaboration and influencing skills</b>, with the ability to motivate teams without direct authority</p></li><li><p>Comfort operating in <b>ambiguous and evolving environments</b>, with strong analytical and problem‑solving capabilities</p></li><li><p>Strategic, self‑directed, organized, and capable of operating with <b>minimal supervision</b></p></li><li><p>Ability to <b>prioritize, coordinate, and execute</b> against deadlines while adhering to enterprise policies and standards</p></li><li><p>Strong critical‑thinking skills, including the ability to <b>“connect the dots” and perform thematic risk analysis</b></p></li><li><p>Proficiency in <b>Microsoft Office</b> (Outlook, Word, PowerPoint, Excel)</p></li></ul><p></p><p><b>Desired Qualifications:</b></p><ul><li><p>Familiarity with the <b>Global Technology organization</b> and enterprise technology operating models</p></li><li><p>Strong understanding of <b>Information Security principles, technologies, attack vectors, and associated risks</b></p></li><li><p>Prior experience in <b>Cybersecurity Operations</b>, including exposure to incident response, privacy, or threat management disciplines</p></li><li><p>Infrastructure domain experience within <b>Risk, CTO, and/or Global Information Security</b> organizations</p></li><li><p>Strong working knowledge of the <b>NIST Cybersecurity Framework</b></p></li><li><p>Advanced understanding of <b>security threats, vulnerabilities, exploits, malware, and digital forensics</b> to support informed risk decisions</p></li><li><p>Proven experience implementing <b>Compliance and Operational Risk Program requirements</b>, including risk assessments, control design, and issues management</p></li></ul><div><p></p><p><b>Why This Role:</b></p><p>This is a high‑visibility opportunity to influence how models and AI are governed across a complex global technology environment. You will work at the intersection of <b>technology, cybersecurity, and enterprise risk</b>, helping ensure innovation is deployed responsibly, securely, and in alignment with regulatory and policy expectations.</p></div><p></p><p><b>Skills:</b></p><ul><li><p>Controls Management</p></li><li><p>Oral Communications</p></li><li><p>Risk Management</p></li><li><p>Stakeholder Management</p></li><li><p>Strategy Planning and Development</p></li><li><p>Continuous Improvement</p></li><li><p>Drives Engagement</p></li><li><p>Influence</p></li><li><p>Strategic Thinking</p></li><li><p>Talent Development</p></li><li><p>Data and Trend Analysis</p></li><li><p>Decision Making</p></li><li><p>Monitoring, Surveillance, and Testing</p></li><li><p>Problem Solving</p></li><li><p>Quality Assurance</p></li></ul><p></p><p></p><p></p><p><b>Shift:</b></p>1st shift (United States of America)<p></p><p></p><p><b>Hours Per Week: </b></p>40
Apply Now