Continuous Control Monitoring (CCM) Lead, VP
Company: Mitsubishi UFJ Financial Group
Location: Jersey City
Posted on: April 1, 2026
|
|
|
Job Description:
Do you want your voice heard and your actions to count? Discover
your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of
the world’s leading financial groups. Across the globe, we’re
150,000 colleagues, striving to make a difference for every client,
organization, and community we serve. We stand for our values,
building long-term relationships, serving society, and fostering
shared and sustainable growth for a better world. With a vision to
be the world’s most trusted financial group, it’s part of our
culture to put people first, listen to new and diverse ideas and
collaborate toward greater innovation, speed and agility. This
means investing in talent, technologies, and tools that empower you
to own your career. Join MUFG, where being inspired is expected and
making a meaningful impact is rewarded. The selected colleague will
work at an MUFG office or client sites four days per week and work
remotely one day. A member of our recruitment team will provide
more details. Job Summary: We are seeking a Vice President to lead
our Continuous Control Monitoring (CCM) program within the
Cybersecurity GRC organization. This role will design and implement
automated control testing capabilities that provide real-time
assurance across critical technology and security domains. The
ideal candidate combines deep knowledge of regulatory frameworks
(e.g., CRI 2.1, NIST CSF, FFIEC) with hands-on experience in
data-driven control automation, dashboards, and GRC integration.
Key Responsibilities: Build and scale CCM capabilities to
continuously test key technology and security controls across
infrastructure, cloud, and application environments. Develop
monitoring use cases by onboarding systems of record and telemetry
sources (IAM, vulnerability, logging, CMDB, cloud posture) into
automated pipelines. Translate control requirements and CRI
Diagnostic Statements into machine-testable rules with clear
pass/fail logic and evidence capture. Aggregate automated test
results into dashboards and scorecards for executives, control
owners, and risk partners; integrate results into GRC platforms for
issue management and regulatory reporting. Maintain a traceability
model from control objectives to automated tests and evidence
artifacts to support audits and regulatory exams. Partner with
Compliance, Internal Audit, and Technology teams to ensure CCM
outputs meet attestation and examination standards. Drive
continuous improvement by monitoring emerging threats, regulatory
expectations, and industry best practices for CCM. Qualifications:
8 years in cybersecurity, technology risk, or IT audit, with at
least 3 years in control automation or CCM programs. Strong
understanding of CRI 2.1, NIST CSF, and financial sector regulatory
requirements. Hands-on experience with data pipelines, APIs, and
automation tools for control testing; familiarity with SIEM, CSPM,
vulnerability management, and identity platforms. Proficiency in
dashboarding and reporting tools (Power BI, Tableau) and
integration with GRC solutions (ServiceNow, Archer, MetricStream).
Strong technical skills including ability to write SQL and script
or code in any of the following: PowerShell, DAX/MDX, Python.
Knowledge of cloud security controls across AWS, Azure, or GCP.
Excellent communication skills with the ability to influence senior
stakeholders and regulators. Relevant certifications are preferred:
CISSP, CISM, CISA, or cloud security certifications. Education:
•Bachelor's degree in Computer Science or a closely-related
discipline, or an equivalent combination of formal education and
experience “Visa sponsorship/support is based on business needs. We
do not anticipate providing visa sponsorship/support for this
position.” The typical base pay range for this role is between
$121k - $173k depending on job-related knowledge, skills,
experience, and location. This role may also be eligible for
certain discretionary performance-based bonuses and/or incentive
compensation. Additionally, our Total Rewards program provides
colleagues with a competitive benefits package (in accordance with
the eligibility requirements and respective terms of each) that
includes comprehensive health and wellness benefits, retirement
plans, educational assistance and training programs, income
replacement for qualified employees with disabilities, paid
maternity and parental bonding leave, and paid vacation, sick days,
and holidays. For more information on our Total Rewards package,
please click the link below. MUFG Benefits Summary We will consider
for employment all qualified applicants, including those with
criminal histories, in a manner consistent with the requirements of
applicable state and local laws (including (i) the San Francisco
Fair Chance Ordinance, (ii) the City of Los Angeles’ Fair Chance
Initiative for Hiring Ordinance, (iii) the Los Angeles County Fair
Chance Ordinance, and (iv) the California Fair Chance Act) to the
extent that (a) an applicant is not subject to a statutory
disqualification pursuant to Section 3(a)(39) of the Securities and
Exchange Act of 1934 or Section 8a(2) or 8a(3) of the Commodity
Exchange Act, and (b) they do not conflict with the background
screening requirements of the Financial Industry Regulatory
Authority (FINRA) and the National Futures Association (NFA). The
major responsibilities listed above are the material job duties of
this role for which the Company reasonably believes that criminal
history may have a direct, adverse and negative relationship
potentially resulting in the withdrawal of conditional offer of
employment, if any. The above statements are intended to describe
the general nature and level of work being performed. They are not
intended to be construed as an exhaustive list of all
responsibilities duties and skills required of personnel so
classified. We are proud to be an Equal Opportunity Employer and
committed to leveraging the diverse backgrounds, perspectives and
experience of our workforce to create opportunities for our
colleagues and our business. We do not discriminate on the basis of
race, color, national origin, religion, gender expression, gender
identity, sex, age, ancestry, marital status, protected veteran and
military status, disability, medical condition, sexual orientation,
genetic information, or any other status of an individual or that
individual’s associates or relatives that is protected under
applicable federal, state, or local law.
Keywords: Mitsubishi UFJ Financial Group, Scranton , Continuous Control Monitoring (CCM) Lead, VP, IT / Software / Systems , Jersey City, Pennsylvania