Cybersecurity Risk Management

Cybersecurity Risk Management

Posted 1 week ago by 1752738649

Negotiable
Outside
Remote
USA

Summary: The role of Cybersecurity Risk Management involves driving risk assessment engagements and managing risk acceptance documentation processes. The candidate will lead risk assessments, interact with stakeholders, and ensure compliance with risk management frameworks. Additionally, the position requires proactive monitoring of risks and maintaining accurate reporting for stakeholders. The ideal candidate will have extensive experience in cybersecurity risk management and familiarity with industry best practices.

Key Responsibilities:

  • Drive overall Risk Assessment engagement and execution.
  • Guide and interact with app owners and critical stakeholders on all Risk Management processes.
  • Process Risk Assessments using approved Risk Acceptance documentation.
  • Monitor risks in the risk register to ensure active engagement and security posture.
  • Maintain and develop Risk Management documentation.
  • Support onboarding of RM processes to GRC tooling (Service Now or other).
  • Ensure accurate weekly reporting to stakeholders and team leadership.
  • Perform any other assigned duties pertinent to the overall program.

Key Skills:

  • Minimum 10 years of experience with Cybersecurity Risk Management.
  • Understanding of risk management control frameworks: NIST RMF, ISO 27005, ISO 31000.
  • Experience in leading and providing guidance on Risk Assessments.
  • Proficiency in risk monitoring and reporting.
  • Knowledge of industry best practices in Risk Management, including healthcare standards.

Salary (Rate): undetermined

City: undetermined

Country: USA

Working Arrangements: remote

IR35 Status: outside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Need experienced resource that will help drive overall Risk Assessment engagement and executions and our Risk Acceptance/Documentation processes.

Skills:

Minimum 10 years of experience with Cybersecurity Risk Management (RM) Experience and understanding of risk management control frameworks: NIST RMF (Risk Management Framework), ISO 27005, and ISO 31000 Review and route, and provide guidance on Risk Assessments Lead, provide guidance, and interact with app owners and critical stakeholders on all Risk Management processes Process Risk Assessments using approved Risk Acceptance process/documentation Proactively monitor risks in risk register to ensure active engagement and ensure overall targeted level of security posture Maintain existing and develop any new required Risk Management documentation Work with RM Team for support onboarding any RM process to GRC tooling (Service Now or other) Reporting maintain accurate and complete data to ensure accurate weekly reporting, to stakeholders, team, LT. Any other assigned duties as deemed pertinent to overall program.

Nice to haves:

Knowledge of industry best practices in Risk Management, including but not limited to Risk Assessment, healthcare standards