Cyber Risk Officer (Remote)
About the position
Responsibilities
• Provides objective oversight of risks through effective challenge using defined methodologies and subject matter expertise.
• Provides leadership, consultation, and support for risk management.
• Fosters business unit relationships and implements training to promote engagement in risk management programs, including compliance with all risk policies and standards.
• Assists with presentations, workshops, and other materials as necessary to communicate risk management tactics.
• Guides less experienced associates in the department.
• Maintains a strong knowledge of risk management developments or changes within the organization, industry, and market.
• Develops active relationships within professional networks to stay current on emerging issues and regulatory requirements.
• Communicates risk vision and regulatory requirements to applicable stakeholders, including less experienced associates in the work group.
• Quantifies risk by assessing the potential financial and operational impacts of cyber incidents.
• Makes informed decisions based on risk assessments and data analysis.
• Provides support for business programs, initiatives, and leaders.
• Serves as a consultant on risk best practices, processes, and regulatory requirements.
• Facilitates reporting and interdepartmental collaboration.
• Partners with IT to identify and solve complex cybersecurity problems.
• Collaborates with IT and various lines of businesses to develop long-term strategies to mitigate cyber risks.
• Effectively communicates complex technical information to both technical and non-technical stakeholders.
• Stays abreast of emerging technologies such as cloud computing, IoT, and artificial intelligence to understand their associated risks and impacts to the business.
Requirements
• Bachelor's Degree and 6 years of experience in Financial Services, Risk Management, Operational Risk Management, Compliance, Audit, Finance or Accounting OR High School Diploma or GED and 10 years of experience in Financial Services, Risk Management, Operational Risk Management, Compliance, Audit, Finance or Accounting.
• Preferred Area of Experience: Cyber Risk Management.
• License or Certification Type: Certified in Risk and Information Systems Control (CRISC) Preferred, Other relevant certification such as CISSP, CISM, CISA.
• Knowledge of risk management techniques and practices.
• Ability to work effectively with associates, managers, senior executives, and committees.
• Knowledge of regulatory compliance pertaining to enterprise risk and operational risk (e.g., GLBA, SOX, PCI DSS).
• Experience with cloud security and data privacy regulations.
• Familiarity with risk management frameworks (e.g., NIST Cybersecurity Framework, ISO 27001).
• Understanding of various cybersecurity threats, vulnerabilities, and attack vectors.
• Basic understanding of IT infrastructure, networks, and applications.
• Basic understanding of cyber security controls, countermeasures, and techniques (e.g., threat modeling, DLP, firewalls, SAST/DAST/SCA, EDR).
Benefits
• Comprehensive benefits program for full-time associates (20+ hours) with customized offerings designed to support families.
Apply tot his job
Apply To this Job