Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailWe are looking for an experienced Security Risk Manager to lead and enhance our organizations risk management strategy. In this role you will be responsible for identifying assessing and mitigating security risks across the company. The ideal candidate will have a strong background in risk management security compliance and thirdparty risk assessments with at least 5 years of experience in information security or a related field. Your expertise will be essential in ensuring that security risks are properly managed aligned with business objectives and compliant with industry standards.
Develop and oversee the security risk management framework ensuring alignment with ISO 27001 SOC 2 NIST GDPR and other relevant standards.
Identify assess and prioritize security risks across internal systems thirdparty services and business operations.
Conduct risk assessments and drive risk mitigation strategies in collaboration with crossfunctional teams.
Lead thirdparty risk management processes including security evaluations of vendors and service providers.
Establish and maintain security policies risk registers and controls to reduce overall risk exposure.
Work closely with compliance legal IT and business teams to ensure regulatory and contractual security requirements are met.
Provide regular risk reports to senior management offering clear insights and recommendations.
Continuously monitor emerging threats vulnerabilities and industry trends to proactively adjust risk management strategies.
Support security awareness initiatives by communicating riskrelated findings and recommendations across the organization.
Manage security awareness programs ensuring employees understand cybersecurity risks and best practices.
Define and track key metrics for employee security awareness linking awareness levels to overall risk posture.
Minimum 5 years of experience in Information Security Risk Management or Compliance.
Strong knowledge of ISO 27001 SOC 2 NIST GDPR and other security frameworks.
Proven experience conducting risk assessments security audits and thirdparty risk evaluations.
Handson experience in developing and implementing risk management policies and controls.
Strong analytical and problemsolving skills with the ability to assess complex security risks.
Excellent communication skills with the ability to present risk findings to both technical and nontechnical stakeholders.
Experience working with crossfunctional teams and influencing decisionmaking processes.
Experience in managing security awareness programs understanding methodologies approaches and best practices.
Knowledge of key metrics for measuring awareness effectiveness and the connection between employee awareness levels and security risks.
Relevant certifications such as CISSP CISM CRISC or ISO 27001 Lead Auditor are a plus.
If youre ready to take full ownership of the analytics function and drive highimpact decisions in a fastgrowing environment wed love to hear from you.
.
ISO 27001 SOC 2 NIST
IT
. /
/
:
Big 4
.
ISO27001 SOC2
Deloitte KPMG Kept .
Full Time