Logo for BMO Harris Bank

Control Tester and Advisor - Data & AI Governance

Roles & Responsibilities

  • 3-5 years of relevant experience in control testing, risk management, audit, governance, or advisory functions
  • Demonstrated experience performing control design and operating effectiveness testing
  • Experience supporting or contributing to risk assessments and control evaluations; strong analytical and communication skills
  • CISA, CRISC or CGRC certification (required)

Requirements:

  • Execute design effectiveness (DE) and operating effectiveness (OE) testing of Data Governance and AI Governance controls, including data quality, data management, AI lifecycle governance, and ethical AI controls; develop test steps and scripts; perform reperformance, sampling, and evidence validation; apply professional judgment to identify control gaps and residual risk
  • Provide risk, control, and process advisory support to business and technology partners; advise on control design, enhancements, and process improvements; support risk assessments and governance standards; share best practices
  • Lead process walkthroughs with control owners and stakeholders; document process flows, control descriptions, and key risks; maintain understanding of data and AI controls within business and technology processes
  • Analyze governance artifacts (policies, data lineage, metadata, data quality documentation, AI governance artifacts) to assess design and operating effectiveness; provide advisory feedback and identify issues and remediation recommendations

Job description

Application Deadline:

04/29/2026

Address:

320 S Canal Street

Job Family Group:

Business Management

Role Summary

The Control Tester and Advisor – Data & AI Governance is responsible for executing and leading control testing activities and providing risk and control advisory support related to Data Governance and AI Governance.

This role assesses design effectiveness and operating effectiveness of controls, performs end-to-end process walkthroughs, analyzes governance artifacts, and identifies, documents, and communicates control issues. In addition, the role partners with business, technology, and risk teams to provide advisory support on risk identification, control design, process improvements, and risk assessment activities related to data and AI governance.

The role requires strong testing judgment, the ability to develop and execute test steps, and the ability to provide practical, risk-based advice while maintaining independence and objectivity.

Key Responsibilities

Control Testing & Assessment

  • Execute design effectiveness (DE) and operating effectiveness (OE) testing of controls related to Data Governance and AI Governance, including data quality, data management, AI lifecycle governance, and ethical AI controls.
  • Develop and document test steps and test scripts aligned to approved testing methodologies and risk frameworks.
  • Perform reperformance testing, sampling, and evidence validation to assess control execution.
  • Apply professional judgment to determine control effectiveness, identify control gaps, and assess residual risk.

Advisory, Risk & Control Support

  • Provide risk, control, and process advisory support to business and technology partners related to Data and AI governance.
  • Advise on control design, control enhancements, and process improvements to address identified risks or emerging governance expectations.
  • Support and provide input into risk assessments, including identification of inherent risks, evaluation of mitigating controls, and assessment of control coverage.
  • Assist stakeholders in understanding risk and control expectations, governance standards, and testing outcomes.
  • Offer guidance on data and AI governance best practices, including alignment to internal policies, standards, and risk frameworks.
  • Support proactive risk management efforts by identifying potential control weaknesses or governance gaps outside of formal testing cycles.

Process Understanding & Walkthroughs

  • Lead and conduct walkthroughs with control owners and stakeholders to understand end-to-end processes related to in-scope control activities.
  • Document process flows, control descriptions, and key risks based on walkthroughs and artifact reviews.
  • Develop and maintain a working understanding of how data and AI controls operate within business and technology processes, enabling both testing and advisory activities.

Artifact Review & Analysis

  • Analyze and assess business and governance artifacts, including:
    • Data governance policies, standards, and procedures
    • Data lineage, metadata, and data quality documentation
    • AI governance artifacts (e.g., model lifecycle documentation, approvals, monitoring evidence)
  • Evaluate whether artifacts sufficiently demonstrate control design, operating effectiveness, and risk mitigation.
  • Provide advisory feedback to stakeholders where artifacts or documentation do not fully support risk and control expectations.

Issue Identification, Risk Insight & Communication

  • Identify, document, and clearly articulate control deficiencies, design gaps, and operating issues, including root cause analysis.
  • Draft clear, risk-based issue descriptions and contribute to discussions on risk severity and impact.
  • Provide actionable, practical recommendations that balance risk mitigation with business and operational considerations.
  • Communicate testing results, risk insights, and advisory recommendations to stakeholders in a clear and professional manner.

Stakeholder, Business & Risk Partner Engagement

  • Act as a primary testing and advisory contact for business partners, technology teams, and risk partners for assigned areas.
  • Partner with stakeholders to clarify control intent, evidence expectations, risk ownership, and remediation approaches.
  • Support ongoing governance forums, working groups, or risk discussions related to Data and AI governance.
  • Contribute to continuous improvement of Data & AI governance testing and advisory practices.

Documentation & Quality

  • Create and maintain high-quality testing and advisory documentation, including workpapers, test scripts, walkthrough notes, risk assessments, and conclusions.
  • Ensure work meets quality standards, methodology requirements, and service level expectations while maintaining appropriate independence.

Qualifications

Required

  • 3–5 years of relevant experience in control testing, risk management, audit, governance, or advisory functions.
  • Demonstrated experience performing control design and operating effectiveness testing.
  • Experience supporting or contributing to risk assessments and control evaluations.
  • Strong analytical skills with the ability to interpret complex governance, risk, and technical artifacts.
  • Strong written and verbal communication skills, including issue write-ups and advisory discussions.
  • Required: CISA, CRISC or CGRC. Preferred: CDMP or AIGP

Preferred

  • Experience in Data Governance, AI Governance, Model Risk Management, or Technology Risk.
  • Familiarity with data management concepts, AI/ML model lifecycles, and governance frameworks.
  • Experience balancing independent testing responsibilities with advisory and consultative support.

Salary:

$57,500.00 - $106,500.00

Pay Type:

Salaried

The above represents BMO Financial Group’s pay range and type.

Salaries will vary based on factors such as location, skills, experience, education, and qualifications for the role, and may include a commission structure. Salaries for part-time roles will be pro-rated based on number of hours regularly worked. For commission roles, the salary listed above represents BMO Financial Group’s expected target for the first year in this position.

BMO Financial Group’s total compensation package will vary based on the pay type of the position and may include performance-based incentives, discretionary bonuses, as well as other perks and rewards. BMO also offers health insurance, tuition reimbursement, accident and life insurance, and retirement savings plans. To view more details of our benefits, please visit: https://jobs.bmo.com/global/en/Total-Rewards

About Us

At BMO we are driven by a shared Purpose: Boldly Grow the Good in business and life. It calls on us to create lasting, positive change for our customers, our communities and our people. By working together, innovating and pushing boundaries, we transform lives and businesses, and power economic growth around the world.

As a member of the BMO team you are valued, respected and heard, and you have more ways to grow and make an impact.  We strive to help you make an impact from day one – for yourself and our customers.  We’ll support you with the tools and resources you need to reach new milestones, as you help our customers reach theirs. From in-depth training and coaching, to manager support and network-building opportunities, we’ll help you gain valuable experience, and broaden your skillset.

To find out more visit us at http://jobs.bmo.com/us/en

BMO is proud to be an equal employment opportunity employer. We evaluate applicants without regard to race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or any other legally protected characteristics. We also consider applicants with criminal histories, consistent with applicable federal, state and local law.

BMO is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please send an e-mail to BMOCareers.Support@bmo.com and let us know the nature of your request and your contact information.

Note to Recruiters: BMO does not accept unsolicited resumes from any source other than directly from a candidate. Any unsolicited resumes sent to BMO, directly or indirectly, will be considered BMO property. BMO will not pay a fee for any placement resulting from the receipt of an unsolicited resume. A recruiting agency must first have a valid, written and fully executed agency agreement contract for service to submit resumes.

Data Governance Manager Related jobs

Other jobs at BMO Harris Bank

We help you get seen. Not ignored.

We help you get seen faster — by the right people.

🚀

Auto-Apply

We apply for you — automatically and instantly.

Save time, skip forms, and stay on top of every opportunity. Because you can't get seen if you're not in the race.

AI Match Feedback

Know your real match before you apply.

Get a detailed AI assessment of your profile against each job posting. Because getting seen starts with passing the filters.

Upgrade to Premium. Apply smarter and get noticed.

Upgrade to Premium

Join thousands of professionals who got noticed and hired faster.