Skip to content

Open nowPosted 13 days ago

Data Security Governance Manager

KeyBank21 open roles

Pay
$96,000 – $181,000 a year
Where
Brooklyn OH
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowData Security Governance ManagerKeyBank · Brooklyn OH
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on KeyBank's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. KeyBank postings stay open a median of 4 days.

Share of postings closed within
  1. 1.8%1 day
  2. 3.5%3 days
  3. 8.1%7 days
  4. 15.1%14 days
  5. 33.9%30 days
This job: posted 13 days ago

KeyBank median: 4 days open

The posting

Location:

4910 Tiedeman Road, Brooklyn Ohio

Job Summary

The Data Security Governance Manager will lead a team responsible for protecting KeyBank and client data through enterprise data security governance, monitoring, encryption, certificate management, key management, cryptographic asset awareness, and data protection controls. This role provides leadership across data security functions aligned to internal IT standards, operational control procedures, regulatory expectations, and enterprise risk management objectives. The Senior Manager will guide daily operations, mature governance processes, partner with technology and business teams, and drive a program to understand the organization’s cryptographic assets and prepare key services, processes, and stakeholders for post-quantum cryptography readiness.

Primary Responsibilities

  • Lead and develop a data security governance team responsible for database activity monitoring, centralized encryption key management, certificate lifecycle management, hardware security module support, and encryption and masking governance.
  • Provide direction for database activity monitoring capabilities, including alert tuning, detection methodology development, monitoring use cases, whitelist governance, session monitoring, deployment support, and production issue resolution.
  • Support teams responsible for data security posture management by helping establish data protection requirements, governance expectations, control considerations, and implementation guidance that align with enterprise security standards and risk management objectives.
  • Manage centralized encryption key management governance, including review and approval of key requests, lifecycle oversight, key health monitoring, failover planning, automation improvements, and support for application teams.
  • Oversee certificate lifecycle management processes, including certificate enrollments, renewals, re-issuances, revocations, expiration monitoring, outage prevention, certificate authority relationships, and alignment to industry standards.
  • Provide governance and operational oversight for hardware security module capabilities, including Atalla support, master key management, security policy configuration, cryptographic key generation, and related control procedures.
  • Lead efforts to improve understanding of the organization’s cryptographic assets, including keys, certificates, cryptographic services, algorithms, dependencies, ownership, and lifecycle considerations needed to support risk-based planning and governance.
  • Drive a post-quantum cryptography readiness program by coordinating inventory, prioritization, stakeholder engagement, governance requirements, migration planning, and capabilities needed to prepare key services and cryptographic processes for future quantum-resistant standards.
  • Collaborate closely with Security Architects to develop and maintain a capabilities roadmap for the team, ensuring governance processes, services, and tooling continue to align with enterprise security priorities and future-state data protection needs.
  • Provide direction and oversight for data encryption and masking governance, including field-level encryption, key management requirements, application encryption processes, and related control procedure execution.
  • Partner with Security Engineering, Cyber Defense, Cloud, Infrastructure, application teams, DAO stakeholders, vendors, and business partners to drive effective delivery of data security controls and remediation activities.
  • Develop and maintain governance procedures, metrics, reporting, and executive-ready updates that demonstrate control effectiveness, operational health, risk reduction, and program maturity.
  • Support audit, regulatory, risk, and compliance inquiries by providing clear evidence of control design, operating effectiveness, issue remediation, and adherence to internal standards.
  • Drive continuous improvement through automation, process maturity, service reliability, documentation quality, and adoption of scalable data security tools and operating models.

Required Qualifications

  • Bachelor’s degree in Information Security, Cybersecurity, Information Technology, Computer Science, Data Management, or a related field, or equivalent work experience.
  • Experience leading information security, data security, data governance, infrastructure security, or related technology teams.
  • Strong understanding of data protection principles, encryption concepts, certificate management, key management, data security posture management requirements, sensitive data governance, and security control operations.
  • Experience working with enterprise security processes, risk management frameworks, audit expectations, control procedures, and regulatory or compliance requirements.
  • Demonstrated ability to manage cross-functional initiatives, influence stakeholders, prioritize competing demands, and deliver measurable outcomes.
  • Strong written and verbal communication skills, including the ability to translate complex security topics into clear business, risk, and executive-level messaging.
  • Experience building or improving operational metrics, governance documentation, procedures, reporting, and service management practices.

Preferred Qualifications

  • Experience with database activity monitoring, SecuPi, Microsoft Purview, BigID, Google Key Management Services, encryption key services, DigiCert, AppViewX, or hardware security modules such as Atalla.
  • Knowledge of certificate lifecycle automation, SSH key management, cryptographic asset inventory, crypto-agility, post-quantum cryptography readiness, data loss prevention, data retention, and sensitive data discovery programs.
  • Experience managing security services in a financial services or other regulated environment.
  • Professional security or governance certifications such as CISSP, CISM, CISA, CRISC, CDPSE, or similar credentials.
  • Experience developing team talent, coaching technical professionals, improving operating models, and leading through ambiguity.

Key Competencies

  • Leadership and talent development
  • Risk-based decision making
  • Data security governance and control discipline
  • Cryptographic asset management and post-quantum cryptography readiness leadership
  • Operational execution and service reliability
  • Stakeholder management and cross-functional collaboration
  • Executive communication and reporting
  • Continuous improvement and automation mindset

Measures of Success

  • Data security services are delivered reliably, with clear ownership, documented procedures, and measurable operational health.
  • Database monitoring, certificate, encryption, key management, and HSM processes reduce risk and prevent avoidable control gaps or service disruptions.
  • Cryptographic assets are better understood, governed, and prioritized through an evolving inventory, ownership model, and roadmap that supports post-quantum cryptography readiness.
  • Governance processes provide timely guidance, approvals, escalation, remediation support, and evidence for audit and compliance needs.
  • Metrics and reporting clearly communicate sensitive data protection posture, control effectiveness, and program maturity.
  • The team continues to mature through improved automation, stronger documentation, effective stakeholder engagement, and ongoing talent development.

COMPENSATION AND BENEFITS

This position is eligible to earn a base salary in the range of $96,000.00 - $181,000.00 annually. Placement within the pay range may differ based upon various factors, including but not limited to skills, experience and geographic location. Compensation for this role also includes eligibility for incentive compensation which may include production, commission, and/or discretionary incentives.

Please click here for a list of benefits for which this position is eligible.

Key has implemented an approach to employee workspaces which prioritizes in-office presence, while providing flexible options in circumstances where roles can be performed effectively in a mobile environment.

Job Posting Expiration Date: 10/30/2026

KeyCorp is an Equal Opportunity Employer committed to sustaining an inclusive culture. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other characteristic protected by law.

Qualified individuals with disabilities or disabled veterans who are unable or limited in their ability to apply on this site may request reasonable accommodations by emailing [email protected].

#LI-Remote

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against KeyBank's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on KeyBank's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    KeyBank's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.