Need - Governance Risk and Compliance Risk Register Analyst - Information Security Manager 3 - Austin,Texas(Remote)

Need - Governance Risk and Compliance Risk Register Analyst - Information Security Manager 3 - Austin,Texas(Remote)

Posted Today by Cynosure Technologies LLC

Negotiable
Undetermined
Remote
Remote

Summary: The role of Governance Risk and Compliance Risk Register Analyst - Information Security Manager 3 involves defining governance workflows for risk management, establishing roles and responsibilities, and producing documentation for an enterprise risk register. The position requires extensive experience in risk management processes and stakeholder engagement. The contractor will deliver a comprehensive risk register framework and governance model to support ongoing risk management. This is a remote position with a focus on the State of Texas client.

Key Responsibilities:

  • Define end to end governance workflows for risk identification, review, acceptance, mitigation, and ongoing monitoring.
  • Establish roles and responsibilities for risk owners, reviewers, and governance bodies.
  • Design escalation and reporting processes for high risk and accepted risks.
  • Engage key stakeholders across business, technology, security, and governance functions to validate risk requirements and workflows.
  • Facilitate working sessions or workshops to socialize the risk register and governance processes.
  • Support onboarding of initial risks into the enterprise risk register.
  • Produce clear, audit ready documentation covering risk register structure, risk scoring methodology, and governance workflows.
  • Provide knowledge transfer to designated security staff to ensure sustainability beyond the contract term.
  • Deliver an Enterprise Risk Register Framework, Risk Scoring and Prioritization Model, Risk Governance Model, Initial Population of Risk Register, and Final Documentation Package.

Key Skills:

  • 8 years of experience in Risk Register Design and Framework.
  • 8 years of experience in Risk Scoring and Prioritization Models.
  • 8 years of experience in Governance Processes and Workflows.
  • 8 years of experience in Stakeholder Management and Enablement.
  • 8 years of demonstrated skill in Documentation and Knowledge Transfer.

Salary (Rate): undetermined

City: Austin

Country: United States

Working Arrangements: remote

IR35 Status: undetermined

Seniority Level: undetermined

Industry: Other

Detailed Description From Employer:

Hi,
The Following Requirement are given below

: Kindly share State Client/ Federal Experience Profiles only..

Title: Governance Risk and Compliance Risk Register Analyst - Information Security Manager 3

Job ID: 70126089

Location: Austin, Texas (Remote)
Client: State of Texas

Department: TEA (Texas Education Agency)
Duration: 12 Months
Experience: 12+


  • Define end to end governance workflows for:

o Risk identification and intake

o Risk review and validation

o Risk acceptance, mitigation, or transfer

o Ongoing monitoring and periodic reassessment

  • Establish roles and responsibilities for risk owners, reviewers, and governance bodies.
  • Design escalation and reporting processes for high risk and accepted risks.
  • Engage key stakeholders across business, technology, security, and governance functions to validate risk requirements and workflows.
  • Facilitate working sessions or workshops to socialize the risk register and governance processes.
  • Support onboarding of initial risks into the enterprise risk register.

  • Produce clear, audit ready documentation covering:

o Risk register structure and data definitions

o Risk scoring methodology

o Governance workflows and decision authorities

  • Provide knowledge transfer to designated security staff to ensure sustainability beyond the contract term.

The contractor shall provide the following deliverables during the engagement:

  1. Enterprise Risk Register Framework

o Standardized risk register template and taxonomy

  1. Risk Scoring and Prioritization Model

o Documented likelihood and impact scales

o Scoring methodology and prioritization logic

  1. Risk Governance Model

o Defined workflows for risk intake, review, acceptance, and monitoring

o Roles and responsibilities matrix

  1. Initial Population of Risk Register

o Initial set of documented risks reflecting current cybersecurity and technology risk posture

  1. Final Documentation Package

o Consolidated guidance and operating procedures for ongoing risk management

CANDIDATE SKILLS AND QUALIFICATIONS

  • 8 years of experience in Risk Register Design and Framework, including creating and maintaining structured risk registers for identifying, tracking, and managing organizational risks.
  • 8 years of experience in Risk Scoring and Prioritization Models, with expertise in developing methodologies to assess risk impact, likelihood, and prioritization for effective decision-making.
  • 8 years of experience in Governance Processes and Workflows, including establishing governance standards, workflows, controls, and compliance processes for risk management initiatives.
  • 8 years of experience in Stakeholder Management and Enablement, with the ability to collaborate with cross-functional teams, drive stakeholder engagement, and provide enablement support for risk management practices.
  • 8 years of demonstrated skill in Documentation and Knowledge Transfer, including preparing detailed process documentation, maintaining knowledge repositories, and ensuring effective transfer of knowledge to stakeholders and teams.