Familiarity with risk and control frameworks such as NIST CSF 2.0, NIST 800-53, ISO 27001/27002, COBIT, COSO, FFIEC guidance, NIST AI Risk Management Framework, ISO/IEC 42001, ISO/IEC 23894, SR 11-7 model risk management guidance, and OWASP Top 10 for Large Language Model Applications. The role partners with technology, cybersecurity, business, compliance, operational risk, legal, and internal audit stakeholders to ensure risks are identified, assessed, monitored, reported, and managed in line with enterprise risk appetite and regulatory expectations.