Lead, Information Risk and GRC
USD 104K-159K (estimate) Senior-level Full Time
Tasks
- Conduct cyclical policy reviews
- Configure and optimize TPRM workflows in GRC platforms
- Create standardized assessment templates
- Define and enhance third party risk methodologies
- Develop risk scoring models
- Develop third party risk policies standards and procedures
- Embed security requirements in vendor selection and contracting
- Handle offboarding and risk closure
- Identify automation opportunities for onboarding and assessment
- Lead third-party risk management program
- Maintain and enhance GRC platform and workflows
- Manage third-party risk lifecycle
- Oversee vendor onboarding and inherent risk tiering
- Partner to define GRC and TPRM platform roadmap
- Perform security due diligence and cyber risk assessments
- Provide executive risk reporting
- Provide guidance and training on third party risk processes
- Run continuous monitoring and reassessment
- Serve as SME during audits and regulatory reviews
- Support escalation management for high risk vendors
- Validate controls and review evidence
Perks/Benefits
- N/A
Skills/Tech-stack
Automated risk scoring | Continuous Monitoring | Control Validation | Cyber Risk | Cyber Risk Assessment | Due Diligence | Evidence Tracking | Evidence review | GRC | GRC workflows | ISO 27001 | Information security | Issue Remediation | MetricStream | NIST CSF | RSA Archer | Risk Acceptance | Risk Assessment | Risk Management | Risk Mitigation | Risk Tiering | Risk scoring | Security Due Diligence | ServiceNow GRC | Third Party | Third-Party Risk | Third-party risk management | Threat modeling | Vendor Offboarding | Vendor Risk | Vendor Risk Tiering | Vendor onboarding
Education
Related jobs
-
365 Security | Access Control | Automation | Cloud Security | Confluence401k retirement plan match | Employee stock purchase plan | Flexible health insurance | Paid time off | Tuition assistance programsSenior-level Full Time601 S. Tryon Street, NC R1d ago
-
Information Security Officer USD 88K-131KISO 27001 | Incident Response | Information security | Network Monitoring | Risk Assessment401k matching | Commuter benefits | Dental insurance | Disability insurance | Employee assistance programMid-level Full TimeLouisville, KY, US, KY 402192d ago
-
Application Architecture | Automated testing | Control Assessment | Cybersecurity | Infrastructure architectureBackup childcare | Financial coaching | Health care coverage | Mental health support | Retirement savings planSenior-level Full TimeJersey City, NJ, United States2d ago
-
Technology Operational Risk Management Lead (Blockchain / Cryptocurrency) - Vice President USD 176K-201KApplication Architecture | Blockchain | Controls | Cryptography | CybersecuritySenior-level Full TimeJersey City, NJ, United States2d ago
-
Information Security Operation Center Analyst USD 110K-165KAnomaly Detection | Best practices | Continuous Monitoring | Detection engineering | Endpoint Security401k match | Dental insurance | Employee assistance program | Fitness discounts | Health insuranceMid-level Full TimeUS, Washington, Seattle2d ago
-
Senior Engineering Manager - Security Engineering USD 185K-250KAWS | Access Management | Authentication | Azure | Decision MakingFlexible time off | Global gatherings | Healthcare employer contribution | Home office setup | Remote-friendlySenior-level Full TimeUnited States (remote) R2d ago
-
Senior Cyber Security Engineer (Job 1384) USD 157K-171K800-53 | AWS | Access Management | Authorization to Operate | Azure401k retirement plan | Dental insurance | Education assistance | Flexible spending accounts | Health insuranceSenior-level Full TimeBaltimore, Maryland2d ago
-
Alteryx | Business Continuity | Cybersecurity | Data Visualization | Data analyticsSenior-level Full TimeTulsa, OK, United States2d ago
-
Information Systems Security Officer USD 113K-170KAccess Rights | Access Rights Review | Audit preparation | Awareness Training | CIS Baselines401k | Disability coverage | Health insurance | Life insurance | Paid time offSenior-level Full TimeFarmers Branch, Texas, United States2d ago
-
Enterprise Risk Manager USD 100K-125KArtificial Intelligence | Audit planning | Dashboarding | Data Analysis | Data platforms401k | Dental insurance | Health insurance | Health savings account | Leave of absence benefitsSenior-level Full TimeRemote, United States R2d ago
-
Team Lead, Security Operations Center (SOC) - 2nd Shift USD 121K-152KCyber Security | Detection engineering | EDR | Evidence Based Investigation | Incident Response401(k) plan matching | Bereavement leave | Employee assistance program | Employee discount program | Health and wellbeing benefitsSenior-level Full TimeRemote - Nationwide, United States R2d ago
-
Change Management | Coaching | Communication | Organizational Change | Organizational Change Management401k | Dental insurance | Medical insurance | Paid Holidays | Paid sick leaveSenior-level Full TimeNorth Chicago, IL, United States R2d ago
-
Cyber A&A Engineer (26-205) USD 105K-122K800-53 | ACAS | Code Analysis | ConfigOS | Cybersecurity controls401k employer match | Dental insurance | Health insurance | Health savings account | Life insuranceEntry-level Full TimeColorado Springs, CO2d ago
-
Director, IT Security USD 187K-225KAI Security | Access Governance | Access Management | Application Security | Audit LoggingExecutive-level Full TimePhiladelphia, PA, United States2d ago
-
Cybersecurity Operations Lead USD 110K-195K800-53 | Access Controls | Access Management | Compliance Auditing | Configuration ComplianceHybrid workSenior-level Full TimeFt Meade, MD2d ago
-
Mgr, Risk Monitor & Intel USD 107K-171KAudit trails | Change Management | Compliance | DAX | Data IntegritySenior-level Full TimeSan Antonio, TX, United States2d ago
-
Access Control | Air Force | Air Force Regulations | Classification management | Clearance processingCareer growth | Professional developmentSenior-level Full TimeFort Carson, CO, United States3d ago
-
Information Security Analyst – Business Integration Lead USD 105K-144KAwareness Training | Compliance | Cybersecurity | Cybersecurity reporting | DashboardsSenior-level Full TimeFort Wayne, IN, United States3d ago
-
Information Security Risk and Compliance Analyst USD 65K-75KAccess reviews | Analytical Skills | Audit Support | Compliance | Continuous ImprovementFitness reimbursement | Hybrid work option | Paid Holidays | Paid time off | Tuition reimbursementMid-level Full TimeDenver, CO, US3d ago
-
Information Security Risk and Compliance Analyst USD 63K-76KAccess Review | Audit Support | Compliance | Control Tracking | Control Validation401k match | Dental insurance | Fitness reimbursement | Health insurance | Life insuranceMid-level Full TimeDallas, TX, US3d ago
-
Director - Portfolio Risk Management & Analytics USD 120K-198KActuarial Science | Business Intelligence | Data Analysis | Financial Services | Loss development401k match | Free counseling | Health insurance | Matching gifts program | Paid HolidaysExecutive-level Full TimeHartford - Tower, United States3d ago
-
Lead Engineer – Operational Technology Network Security USD 100K-151KAccess Management | Armis | Asset visibility | Check Point | CiscoAdoption Assistance | Backup dependent care | Employee resource groups | Infertility coverage | Mentorship programsSenior-level Full TimeUSA - PA - Conshohocken - …3d ago
-
Cybersecurity Manager/ISSO USD 124K-165K800-53 | ACAS | Continuous Monitoring | Control Validation | DISA SCAPSenior-level Full TimeUSA MD Andrews AFB - Andrews …3d ago
-
Controls management | Data Analysis | Data Governance | Data Privacy | Exception managementMid-level Full TimeAddison, United States3d ago
-
Information System Security Officer - TS/SCI w/Polygraph USD 158K-214K800-37 | 800-53 | AWS | Certification and accreditation | Cloud Security401k company match | Health and wellness packages | Internal mobility opportunities | Paid education and certifications | Paid parental leaveSenior-level Full TimeUSA VA McLean - Customer Proprietary …3d ago