Senior Manager, RCSA Taxonomy & Facilitation (PL)
Your Opportunity
Your opportunity
At Schwab, you’re empowered to make an impact on your career. Here, innovative thought meets creative problem solving, helping us “challenge the status quo” and transform the finance industry together.
We believe in the importance of in-office collaboration and fully intend for the selected candidate for this role to work on site in the specified location(s).
The Senior Manager, RCSA Management, Taxonomy & Facilitation is a People Leader responsible for leading a team that strengthens, sustains, and continuously matures STS Risk Services’ RCSA practices. This role oversees process taxonomy, risk and control alignment, facilitation standards, quality management, reporting, stakeholder guidance, and governance routines that enable consistent execution of the STS Risk and Control Self-Assessment program. The leader will partner across STS leadership, technology and business teams, first- and second-line risk partners, Internal Audit, Sarbanes-Oxley Compliance, and enterprise oversight functions to drive credible RCSA outcomes, improve control quality, and support risk-informed decision making. The role also supports responsible innovation by safely developing and adopting AI-enabled business process changes through appropriate governance, controls, transparency, human oversight, monitoring, and alignment to enterprise standards.
Position Responsibilities:
- Lead, coach, and develop a high-performing team responsible for RCSA management, taxonomy, facilitation, reporting, and quality routines, ensuring clear priorities, effective execution, and continued professional growth.
- Maintain and mature the STS RCSA process, risk, control, and taxonomy catalog in MyGRC, ensuring alignment with corporate requirements, industry frameworks, enterprise taxonomy expectations, and STS risk management objectives.
- Define, maintain, and continuously improve RCSA practice guidance, facilitation standards, quality expectations, and scalable ways of working based on enterprise requirements, stakeholder needs, recurring execution themes, and program maturity opportunities.
- Oversee routines to identify controls, processes, and risk statements requiring refinement; partner with STS disciplines, control owners, and risk partners to improve control design, evidence quality, issue linkage, and alignment to corporate standards, regulatory expectations, and recognized technology risk frameworks.
- Develop and maintain procedures, templates, decision criteria, and operating routines that support consistent execution of RCSA, control refinement, issue management alignment, quality assurance, and annual or quarterly certification activities.
- Establish, enhance, and maintain centralized reporting and executive-ready insights that communicate RCSA status, control quality themes, risk trends, issue linkages, progress against commitments, and areas requiring leadership attention.
- Develop and maintain strong partnerships across STS leadership, technology and business management, Technology Risk Management, Cybersecurity, Internal Audit, Sarbanes-Oxley Compliance, Enterprise Operational Risk Management, and other oversight partners to support aligned risk practices and credible RCSA outcomes.
- Promote the safe adoption of AI in business processes by helping the team and STS partners identify AI-enabled process changes, assess related technology and operational risks, align usage with enterprise AI governance expectations, and incorporate appropriate controls, transparency, human oversight, and monitoring into RCSA practices.
- Build trusted relationships with business, technology, risk, compliance, and audit partners across Charles Schwab Corporation and its affiliates to influence effective risk decisions and drive consistent adoption of RCSA practices.
- Develop and mature internal processes, tools, workflows, automation opportunities, and approved AI capabilities that improve team efficiency, strengthen risk outcomes, reduce manual effort, and support sustainable execution of RCSA management responsibilities.
- May travel minimally as part of training and ongoing program developments and improvements.
What you have
Required Qualifications:
- 7+ years of experience in technology risk management, cybersecurity risk, operational risk, audit, compliance, or related first- or second-line risk disciplines, with demonstrated experience leading complex risk programs or governance routines.
- 3+ years of people leadership experience, including coaching, performance management, prioritization, workload management, and development of risk professionals in a matrixed environment.
- Strong understanding of technology risk, cybersecurity risk, control design, control evaluation, and industry frameworks such as NIST, ISO, COBIT, and other relevant standards used to assess technology and cybersecurity control environments.
- Broad understanding of enterprise technology environments, cybersecurity practices, third-party dependencies, data considerations, emerging technologies, and related risk implications in a largescale financial services environment.
- Demonstrated ability to influence, negotiate, and align priorities across first-line technology teams, second-line oversight functions, audit partners, and senior stakeholders while maintaining risk discipline and constructive partnership.
- Experience developing risk metrics, quality indicators, executive dashboards, reporting narratives, and insights that clearly communicate control performance, program health, risk trends, and management actions.
- Strong analytical and problem-solving skills, with the ability to assess complex risk and control issues, identify root causes, evaluate alternatives, and translate findings into practical recommendations and measurable improvements.
- Proven ability to design, implement, and sustain scalable business processes, governance routines, reporting capabilities, and supporting tools across multiple technology, risk, and business disciplines.
- Experience owning or materially contributing to RCSA methodology, practice guidance, control taxonomy, facilitation materials, quality assurance standards, and program procedures.
- Ability to translate business, technology, and risk needs into clear requirements, operating procedures, reporting capabilities, and practical solutions that support consistent risk management execution.
- Relevant certifications such as CISSP, CISM, CISA, CRISC, CGEIT, or other technology risk, cybersecurity, audit, or governance credentials are a plusSelf-directed leader who can operate independently, lead through ambiguity, manage competing priorities, facilitate cross-functional working groups, and drive outcomes through others
- Bachelor’s degree in technology, cybersecurity, risk management, business, or a related field.
- Experience supporting responsible innovation or AI-enabled business process changes through risk assessment, governance alignment, control identification, data handling expectations, validation, monitoring, and human oversight.
- Demonstrated ownership mindset, sound judgment, accountability, and commitment to delivering high-quality risk outcomes in a complex, fast-paced environment.
In addition to the salary range, this role is also eligible for bonus or incentive opportunities.
What’s in it for you
At Schwab, you’re empowered to shape your future. We champion your growth through meaningful work, continuous learning, and a culture of trust and collaboration—so you can build the skills to make a lasting impact. Our Hybrid Work and Flexibility approach balances our ongoing commitment to workplace flexibility, serving our clients, and our strong belief in the value of being together in person on a regular basis.
We offer a competitive benefits package that takes care of the whole you – both today and in the future:
- 401(k) with company match and Employee stock purchase plan
- Paid time for vacation, volunteering, and 28-day sabbatical after every 5 years of service for eligible positions
- Paid parental leave and family building benefits
- Tuition reimbursement
- Health, dental, and vision insurance
What you are good at
What you have
Required Qualifications:
- 7+ years of experience in technology risk management, cybersecurity risk, operational risk, audit, compliance, or related first- or second-line risk disciplines, with demonstrated experience leading complex risk programs or governance routines.
- 3+ years of people leadership experience, including coaching, performance management, prioritization, workload management, and development of risk professionals in a matrixed environment.
- Strong understanding of technology risk, cybersecurity risk, control design, control evaluation, and industry frameworks such as NIST, ISO, COBIT, and other relevant standards used to assess technology and cybersecurity control environments.
- Broad understanding of enterprise technology environments, cybersecurity practices, third-party dependencies, data considerations, emerging technologies, and related risk implications in a largescale financial services environment.
- Demonstrated ability to influence, negotiate, and align priorities across first-line technology teams, second-line oversight functions, audit partners, and senior stakeholders while maintaining risk discipline and constructive partnership.
- Experience developing risk metrics, quality indicators, executive dashboards, reporting narratives, and insights that clearly communicate control performance, program health, risk trends, and management actions.
- Strong analytical and problem-solving skills, with the ability to assess complex risk and control issues, identify root causes, evaluate alternatives, and translate findings into practical recommendations and measurable improvements.
- Proven ability to design, implement, and sustain scalable business processes, governance routines, reporting capabilities, and supporting tools across multiple technology, risk, and business disciplines.
- Experience owning or materially contributing to RCSA methodology, practice guidance, control taxonomy, facilitation materials, quality assurance standards, and program procedures.
- Ability to translate business, technology, and risk needs into clear requirements, operating procedures, reporting capabilities, and practical solutions that support consistent risk management execution.
- Relevant certifications such as CISSP, CISM, CISA, CRISC, CGEIT, or other technology risk, cybersecurity, audit, or governance credentials are a plusSelf-directed leader who can operate independently, lead through ambiguity, manage competing priorities, facilitate cross-functional working groups, and drive outcomes through others
- Bachelor’s degree in technology, cybersecurity, risk management, business, or a related field.
- Experience supporting responsible innovation or AI-enabled business process changes through risk assessment, governance alignment, control identification, data handling expectations, validation, monitoring, and human oversight.
- Demonstrated ownership mindset, sound judgment, accountability, and commitment to delivering high-quality risk outcomes in a complex, fast-paced environment.
In addition to the salary range, this role is also eligible for bonus or incentive opportunities.
Why Schwab?
At Schwab, “Own Your Tomorrow” embodies everything we do! We are committed to helping our employees unleash their potential and achieve their dreams. Our employees get to play a central role in disrupting a multi-trillion-dollar industry, creating a better, more modern way to build and manage wealth. We’re a modern financial services firm that stands apart from the industry, where you can go as far as your ambition takes you.
Hear from employees: What’s it like to work at Schwab!
The benefits of working at Schwab : a package designed to empower your health, wealth, career and life. Schwab is committed to building a diverse and inclusive workplace where everyone feels valued.
As an equal employment opportunity employer, our policy is to provide equal employment opportunities to all employees and applicants without regard to any status that is protected by law. (Please click here to see policy.)
Schwab is also an affirmative action employer, focused on advancing women, minorities, veterans, and individuals with disabilities in the workplace. We believe diversity and inclusion are part of our success as a company and our purpose of serving every client with passion and integrity.


