Senior Cybersecurity Risk Management Analyst
Madison, OH - USA
Job Summary
Help us change lives
At Exact Sciences were helpingchange how the world prevents detects and guides treatment for cancer. We give patients and clinicians the clarity needed to make confident decisions when they matter most. Join our team to find a purpose-driven career an inclusive culture and robust benefits to support your life while youre working to help others.
Position Overview
At Exact Sciences we are cancer fighters. We are united by our mission to change lives by providing earlier smarter answers. Through advances in cancer detection and treatment guidance we will help eradicate the disease and the suffering it causes. Exact Sciences Cybersecurity organization supports this mission by defending the millions of digital patient practitioner and employee lives within ourenvironments. Defending today and securing tomorrow is no small feat. To help achieve this the team is in search of a cybersecurity risk management subject matter expert to join our collaborative team comprised of passionate experts.
The Senior Cybersecurity Risk Management Analyst reporting to the Director of Cybersecurity Strategy & GRC is responsible for supporting and advancing the organizations cybersecurity risk management program. This role requires a deep understanding of security and IT risk principles processes and practices combined with the ability to integrate security into business operations. The position demands both technical expertise and strong cultural awareness to effectively identify assess monitor and report cybersecurity risks across the enterprise.
This role requires regular onsite work in Madison WI.
Essential Duties
Include but are not limited to the following:
- Support cybersecurity risk management activities by assisting with defined stages of the risk management lifecycle and completing assigned analyses under established methodologies.
- Maintain and contribute to the global cybersecurity risk register.
- Assist management by providing input to cybersecurity risk appetite discussions and support implementation and enforcement effortsmaking it relevant to the business on a day-to-day basis.
- Aggregate and evaluate cybersecurity risks to support management and leadership reporting ensuring accuracy and consistency for various global audiences.
- Build trust and effectively facilitate risk identification/analysis/treatment discussions.
- Proactively obtain information on emerging risks and threats and effectively analyze against the risk posture.
- Support the delivery of risk management education by preparing materials reinforcing frameworks and responding to stakeholder questions.
- Work with leadership to support the prioritization of initiatives aligned with strategic goals.
- Act as a resource providing training guidance and mentoring to less experienced staff.
- Collaborate with stakeholders to remediate visibility and capability gaps and breakdown roadblocks standing in the way of a robust security posture.
- Enable the maturation of the security program functions within the cybersecurity team and with key business partners.
- Research and summarize industry insights and best practices along with interpreting impact of requirements from governing authorities.
- Uphold company mission and values through accountability innovation integrity quality and teamwork.
- Support and comply with the companys Quality Management System policies and procedures.
- Maintain regular and reliable attendance.
- Ability to act with an inclusion mindset and model these behaviors for the organization.
- Ability to travel 10% of working time away from work location may include overnight/weekend travel.
Minimum Qualifications
- Bachelors Degree in field related to essential duties; or Associate Degree and 2 years of relevant experience; or High School Diploma or General Education Degree (GED) and 4 years of relevant experience.
- 6 years of professional experience in a cybersecurity or IT governance risk compliance or operations role.
- 1 years of experience with cybersecurity risk management.
- Demonstrated experience with security risk management and compliance frameworks (e.g. NIST ISO HIPAA).
- Experience evaluating risk rating methodologies to appropriately convey the enterprise cybersecurity posture.
- Demonstrable experience conducting risk assessments and facilitating executive level risk discussions.
- Experience managing cybersecurity risks through the risk management lifecycle in a globally regulated enterprise a plus.
- Solid grasp of security governance risk and compliance concepts.
- Technically proficient in performing assigned duties at a high-level of independence under minimal supervision while working within a team environment.
- Demonstrated leadership skills ability to influence outcomes in a complex environment where you may/may not have formal reporting responsibility.
- Excellent communication skills appropriately adapting based on audience needs through all mediumsverbal written presentation and listening.
- Able to be agile and work with ambiguity.
- Proficient in Microsoft Office programs such as PowerPoint Excel Outlook and Word.
- Demonstrated ability to perform the essential duties of the position with or without accommodation.
- Authorization to work in the United States without sponsorship.
Preferred Qualifications
- Relevant certification(s) in the field of cybersecurity risk audit or program/project management.
- Experience contributing to the build and continuous improvement of the risk management environment in a globally regulated enterprise strongly preferred.
- Experience with enterprise GRC management platforms (e.g. ServiceNow OneTrust); implementation experience a plus.
- Advanced proficiency in program/project management to drive program build efficiently and effectively.
- Experience in healthcare or biotech industries.
Salary Range:
$101000.00 - $172000.00The annual base salary shown is for this position located in US - WI - Madison on a full-time addition this position is bonus eligible.
Exact Sciences is proud to offer an employee experience that includes paid time off (including days for vacation holidays volunteering and personal time) paid leave for parents and caregivers a retirement savings plan wellness support and health benefits including medical prescription drug dental and vision coverage. Learn more about our benefits.
Our success relies on the experiences and perspectives of a diverse team and Exact Sciences fosters a culture where all employees can develop personally and professionally with a sense of respect and belonging. If you require an accommodation please contact us here.
Not ready to apply Join our Talent Community to stay updated on the latest news and opportunities at Exact Sciences.
We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to disability protected veteran status and any other status protected by applicable local state or federal law.
To view the Right to Work E-Verify Employer and Pay Transparency notices and Federal Federal Contractor and State employment law posters visit our compliance hub. The documents summarize important details of the law and provide key points that you have a right to know.
Required Experience:
Senior IC
About Company
Exact Sciences’ products, services, mission, and people all work together to support early cancer detection and smarter treatment decisions.