Security Risk Specialist
Job Summary
Description:
- The mandate targets a liaison profile between the cybersecurity function and the decision-makers of a business portfolio rather than an operational technical execution role.
- The wording of the mandatetactical driver guiding investments ensuring consistency between security requirements and initiatives sustainability of operationspositions the role as strategic support integrated into the portfolio rather than a SOC analyst or security architect position.
- The required experience combines a general IT foundation of 8 to 12 years with at least 5 years of focused specialization in cybersecurity technology risk management or security governance which sets this profile apart from a pure technical specialist.
- A significant portion of the qualifications focuses on simplification influencing without hierarchical authority and building trusting relationships with business partners which underscores the advisory aspect of the role beyond technical expertise.
Required:
- 8 to 12 years of experience in information technology including a minimum of 5 years in cybersecurity technology risk management or security governance
- Experience in risk analysis and integrating cybersecurity into business processes
- Significant experience supporting projects programs or transformation initiatives
- Knowledge of risk management methods and cybersecurity controls
Desired:
- Ability to identify cybersecurity risks in diverse business and technology contexts
- Ability to analyze potential impacts on operations data compliance and business objectives
- Ability to recommend balanced solutions between business needs and an acceptable level of risk
- Ability to manage multiple files cases or initiatives simultaneously in complex transformation environments
Asset:
- Ability to communicate complex technical concepts in a clear and understandable manner to non-technical audiences
- Influencing skills without formal authority and ability to influence multidisciplinary stakeholders
- Ability to build trusted relationships with business partners
Required Skills:
Required: 8 to 12 years of experience in information technology including a minimum of 5 years in cybersecurity technology risk management or security governance Experience in risk analysis and integrating cybersecurity into business processes Significant experience supporting projects programs or transformation initiatives Knowledge of risk management methods and cybersecurity controls Desired: Ability to identify cybersecurity risks in diverse business and technology contexts Ability to analyze potential impacts on operations data compliance and business objectives Ability to recommend balanced solutions between business needs and an acceptable level of risk Ability to manage multiple files cases or initiatives simultaneously in complex transformation environments Asset: Ability to communicate complex technical concepts in a clear and understandable manner to non-technical audiences Influencing skills without formal authority and ability to influence multidisciplinary stakeholders Ability to build trusted relationships with business partners