Prepare governance and risk management materials, executive dashboards, scorecards, metrics, and ... This position requires strong analytical, communication, stakeholder management, and problem ...
New
Prepare governance and risk management materials, executive dashboards, scorecards, metrics, and ... This position requires strong analytical, communication, stakeholder management, and problem ...
New
Prepare governance and risk management materials, executive dashboards, scorecards, metrics, and ... This position requires strong analytical, communication, stakeholder management, and problem ...
New
Business Risk Analyst ABOUT US: Biodesix is a leading diagnostic solutions company, driven to ... Cybersecurity Governance * Partner with Infrastructure Engineering and Cybersecurity teams to ...
Business Risk Analyst ABOUT US: Biodesix is a leading diagnostic solutions company, driven to ... Cybersecurity Governance * Partner with Infrastructure Engineering and Cybersecurity teams to ...
... governance processes * Facilitate cross-functional risk assessments involving cybersecurity ... Strong analytical and problem-solving capabilities involving technology, cybersecurity, operational ...
... governance processes * Facilitate cross-functional risk assessments involving cybersecurity ... Strong analytical and problem-solving capabilities involving technology, cybersecurity, operational ...
Atlanta, GA · On-site
$121K - $162K/yr
We are seeking an experienced Vice President of Cybersecurity Governance, Risk & Compliance to build and lead Acrisure's global cybersecurity governance, risk, and regulatory assurance function ...
Atlanta, GA · On-site
$121K - $162K/yr
We are seeking an experienced Vice President of Cybersecurity Governance, Risk & Compliance to build and lead Acrisure's global cybersecurity governance, risk, and regulatory assurance function ...
New York, NY · On-site +1
Jane Street Group, LLC has multiple openings for the position of Senior Cybersecurity Governance ... Provide strategic leadership in vendor security risk analysis, mentoring junior team members, and ...
New York, NY · On-site +1
Jane Street Group, LLC has multiple openings for the position of Senior Cybersecurity Governance ... Provide strategic leadership in vendor security risk analysis, mentoring junior team members, and ...
Atlanta, NE · On-site
$150K - $201K/yr
We are seeking an experienced Vice President of Cybersecurity Governance, Risk & Compliance to build and lead Acrisure's global cybersecurity governance, risk, and regulatory assurance function ...
Atlanta, NE · On-site
$150K - $201K/yr
We are seeking an experienced Vice President of Cybersecurity Governance, Risk & Compliance to build and lead Acrisure's global cybersecurity governance, risk, and regulatory assurance function ...
New York, NY · On-site
Jane Street Group, LLC has multiple openings for the position of Senior Cybersecurity Governance ... Provide strategic leadership in vendor security risk analysis, mentoring junior team members, and ...
New York, NY · On-site
Jane Street Group, LLC has multiple openings for the position of Senior Cybersecurity Governance ... Provide strategic leadership in vendor security risk analysis, mentoring junior team members, and ...
Coral Gables, FL · On-site
... analysis * Policy and standards governance * Cross-functional partnership with Technology, Risk, and Business teams Qualifications * 5-7 years of of applied work experience in cyber security ...
Coral Gables, FL · On-site
... analysis * Policy and standards governance * Cross-functional partnership with Technology, Risk, and Business teams Qualifications * 5-7 years of of applied work experience in cyber security ...
Baltimore, MD · On-site
$110K - $149K/yr
Maintain the company's technology and cybersecurity risk and controls matrix in alignment with ... Sound analytical, problem solving and research skills. * Proficient in computer skills in Microsoft ...
Baltimore, MD · On-site
$110K - $149K/yr
Maintain the company's technology and cybersecurity risk and controls matrix in alignment with ... Sound analytical, problem solving and research skills. * Proficient in computer skills in Microsoft ...
Washington, DC · On-site
$125 - $150/hr
The ideal candidate possesses strong analytical, research, technical writing, and organizational ... NIST Risk Management Framework (RMF) * CNSSI 1253 * DHS Sensitive Systems Policy Directive 4300C
Washington, DC · On-site
$125 - $150/hr
The ideal candidate possesses strong analytical, research, technical writing, and organizational ... NIST Risk Management Framework (RMF) * CNSSI 1253 * DHS Sensitive Systems Policy Directive 4300C
Working under the direction of the Senior Security Governance and Policy Analyst, this position ... NIST Risk Management Framework (RMF) * CNSSI 1253 * DHS Sensitive Systems Policy Directive 4300C
Quick apply
Working under the direction of the Senior Security Governance and Policy Analyst, this position ... NIST Risk Management Framework (RMF) * CNSSI 1253 * DHS Sensitive Systems Policy Directive 4300C
Job Summary This position supports the organization's cybersecurity governance, risk, and ... The Cybersecurity GRC Analyst works closely with IT, Internal Audit, Compliance, Procurement, and ...
Job Summary This position supports the organization's cybersecurity governance, risk, and ... The Cybersecurity GRC Analyst works closely with IT, Internal Audit, Compliance, Procurement, and ...
The ideal candidate possesses strong analytical, research, technical writing, and organizational ... NIST Risk Management Framework (RMF) * CNSSI 1253 * DHS Sensitive Systems Policy Directive 4300C
The ideal candidate possesses strong analytical, research, technical writing, and organizational ... NIST Risk Management Framework (RMF) * CNSSI 1253 * DHS Sensitive Systems Policy Directive 4300C
Job Summary This position supports the organization's cybersecurity governance, risk, and ... The Cybersecurity GRC Analyst works closely with IT, Internal Audit, Compliance, Procurement, and ...
Job Summary This position supports the organization's cybersecurity governance, risk, and ... The Cybersecurity GRC Analyst works closely with IT, Internal Audit, Compliance, Procurement, and ...
Washington, DC · On-site
Classified Supply Chain Risk Management (C-SCRM) guidance * Conduct policy gap analyses and ... Develop cybersecurity governance strategies supporting emerging technologies, including Zero Trust ...
Washington, DC · On-site
Classified Supply Chain Risk Management (C-SCRM) guidance * Conduct policy gap analyses and ... Develop cybersecurity governance strategies supporting emerging technologies, including Zero Trust ...
Bloomington, MN · On-site
$158K - $211K/yr
The Director, Global Cybersecurity Governance, Risk, Compliance & Identity is accountable for defining and executing Donaldson's enterprise cybersecurity governance and risk management strategy ...
Bloomington, MN · On-site
$158K - $211K/yr
The Director, Global Cybersecurity Governance, Risk, Compliance & Identity is accountable for defining and executing Donaldson's enterprise cybersecurity governance and risk management strategy ...
Beavercreek, OH · On-site
$145K - $170K/yr
The Manager owns Riverside's Cybersecurity Maturity Model Certification (CMMC) program, leading ... Lead and mentor a team of GRC Analysts, establishing priorities, developing staff, and fostering a ...
Beavercreek, OH · On-site
$145K - $170K/yr
The Manager owns Riverside's Cybersecurity Maturity Model Certification (CMMC) program, leading ... Lead and mentor a team of GRC Analysts, establishing priorities, developing staff, and fostering a ...
We are seeking an experienced Cybersecurity GRC Analyst for a 6-month engagement to support our ... Strong understanding of cybersecurity governance, risk, and compliance practices * Ability to ...
Quick apply
We are seeking an experienced Cybersecurity GRC Analyst for a 6-month engagement to support our ... Strong understanding of cybersecurity governance, risk, and compliance practices * Ability to ...
Tempe, AZ · On-site
$60 - $80/hr
Cybersecurity Analyst 1Job Family:IT CybersecurityTime Type:Full timeApply before 11:59 PM Arizona ... Assist with governance, risk, and compliance activities, including control assessments, policy and ...
Tempe, AZ · On-site
$60 - $80/hr
Cybersecurity Analyst 1Job Family:IT CybersecurityTime Type:Full timeApply before 11:59 PM Arizona ... Assist with governance, risk, and compliance activities, including control assessments, policy and ...
Beavercreek, OH · On-site
$145K - $170K/yr
The Manager owns Riverside's Cybersecurity Maturity Model Certification (CMMC) program, leading ... Lead and mentor a team of GRC Analysts, establishing priorities, developing staff, and fostering a ...
Beavercreek, OH · On-site
$145K - $170K/yr
The Manager owns Riverside's Cybersecurity Maturity Model Certification (CMMC) program, leading ... Lead and mentor a team of GRC Analysts, establishing priorities, developing staff, and fostering a ...
$43K - $52.7K
1% of jobs
$52.7K - $62.5K
6% of jobs
$62.5K - $72.2K
10% of jobs
$78.8K is the 25th percentile. Wages below this are outliers.
$72.2K - $81.9K
12% of jobs
$81.9K - $91.6K
15% of jobs
The median wage is $95.8K / yr.
$91.6K - $101.4K
15% of jobs
$101.4K - $111.1K
10% of jobs
$115.3K is the 75th percentile. Wages above this are outliers.
$111.1K - $120.8K
16% of jobs
$120.8K - $130.5K
7% of jobs
$130.5K - $140.3K
5% of jobs
$140.3K - $150K
3% of jobs
$43K
$99.4K
$150K
For Cyber Security Governance Risk Analyst jobs, the most frequently searched job titles are:
Miami, FL
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted yesterday
New
6.2
Based on 20 frontline employees who took The Breakroom Quiz
7th of 9 rated cruise lines
The Cybersecurity Risk Specialist is responsible for supporting the organization's cybersecurity first-party risk management and third party risk management program. The role supports risk management processes that enable the organization to manage, control and report on cybersecurity risk in alignment with business objectives, regulatory requirements, and enterprise risk appetite. The ideal candidate possesses a broad understanding of IT cybersecurity governance, risk and compliance and people, process, and technology controls used to manage cybersecurity risk.
Essential Functions:
Support the identification, assessment and monitoring of inherent and residual cybersecurity risks (first and third party), help recommend mitigation strategies, assist with monitoring mitigation activities, and support risk escalation and acceptance processes.
Support the maintenance of cybersecurity risk registers and help ensure risks are appropriately identified, documented, updated, tracked, and escalated. Assist in identifying emerging threats, trends, and systemic risks that may impact organizational objectives.
Support enterprise risk management integration and cybersecurity risk reporting activities. Monitor cybersecurity key risk indicators (KRIs), key performance indicators (KPIs), and programming maturity metrics. Prepare governance and risk management materials, executive dashboards, scorecards, metrics, and reports for senior leadership and business stakeholders.
Collaborate with Cybersecurity Risk Management team, Operational Technology (OT) Cybersecurity Risk Management, Cybersecurity Governance, Cybersecurity Compliance, IT, Maritime Cybersafety, Global Cybersecurity Services (GCS) Domain Leads, Sourcing, Legal, Privacy, and business stakeholders regarding cybersecurity requirements and contractual obligations.
Identify opportunities to improve cybersecurity risk management services programs, capabilities, effectiveness, operational resilience, and maturity. Support annual cybersecurity planning, strategic roadmap development, and maturity assessments.
Knowledge, Skills & Abilities:
Scope: The position supports the global Cybersecurity Risk Management programs (first party and supply chain) and Global Cybersecurity Services to promote effective cybersecurity risk management across the enterprise.
Problem-solving: This position requires strong analytical, communication, stakeholder management, and problem-solving skills.
Impact: Role helps facilitate risk-based decisioning by key stakeholders and the organization. Ability to act as a champion of cybersecurity and risk management best practices.
Leadership: Supports cross-collaboration across Global Cybersecurity Services and the brands.
For all roles:
Knowledge: Understanding of workplace policies and procedures / Familiarity with team collaboration tools and techniques.
Skills: Strong time management and organizational skills
Abilities: Ability to maintain reliable and consistent attendance / Capacity to be punctual and meet deadlines / Ability to collaborate effectively with colleagues and work as part of a team / Demonstrated professionalism in all interactions and tasks.
Essential/Minimum qualifications:
Core Competencies:
Knowledge of governance, risk and compliance (GRC). cybersecurity principles, risk management principles and methodologies, and security control frameworks.
Understanding of security concepts: security awareness, identity and access management (including privileged access, segregation of duties principles, and least privilege principles), vulnerability management, data protection, application security, network security, security architecture, and security operations.
Strong written and verbal communication skills.
Strong analytical, organizational, and documentation skills.
Essential experience required:
Bachelor's degree in Cybersecurity, Information Security, Information Technology, Computer Science, Risk Management, Business Administration, or a related field.
1-2 years of experience in cybersecurity, information security, IT risk management, governance, or related disciplines.
Knowledge of information technology, cybersecurity and risk management.
Preferred Experience:
Professional certifications such as: CRISC (Certified in Risk and Information Systems Control), CISSP (Certified Information Systems Security Professional), CISA (Certified Information Systems Auditor), Security+, CGRC (Certified in Governance, Risk and Compliance)
Experience with GRC platforms such as LogicGate, Archer or ServiceNow IRM.
Familiarity with regulatory and privacy requirements such as SOX, PCI DSS, GDPR, CCPA, CIS, SEC cybersecurity regulations, or other industry-specific requirements.
Knowledge of third-party risk management and supplier cybersecurity assessments.
Travel: No or very little travel likely
Work Conditions: Work primarily in a climate-controlled environment with minimal safety/health hazard potential.
Physical Demands: Must be able to remain in a stationary position at a desk and/or computer for extended periods of time.
This position is classified as "in-office." As an in-office role, it requires employees to work from a designated Carnival office in South Florida Monday through Thursday each week. Employees may work from their homes on Fridays. Candidates must be located in (or willing to relocate to) the Miami/Ft. Lauderdale area.
Offers to selected candidates will be made on a fair and equitable basis, taking into account specific job-related skills and experience.
At Carnival, your total rewards package is much more than your base salary. All non-sales roles participate in an annual cash bonus program, while sales roles have an incentive plan. Director and above roles may also be eligible to participate in Carnival's discretionary equity incentive plan.Plus, Carnival provides comprehensive and innovative benefits to meet your needs, including:
#Corp
#LI-HybridRemote
#LI-SH1
About Us
Carnival Corporation is the world's largest leisure travel company, our mission to deliver unforgettable happiness to our guest through our diverse portfolio of leading cruise brands and island destinations, including Carnival Cruise Line, Holland America Line, Princess Cruises, and Seabourn in North America and Australia; P&O Cruises and Cunard Line in the United Kingdom; AIDA in Germany; Costa Cruises in Southern Europe.
Join us and embark on a career that offers not only the chance to grow professionally but also the opportunity to be part of a global community that makes a difference.
In addition to other duties/functions, this position requires full commitment and support for promoting ethical and compliant culture. More specifically, this position requires integrity, honesty, and respectful treatment of others, as well as a willingness to speak up when they see misconduct or have concerns.
Carnival Corporation and Carnival Cruise Line is an equal employment opportunity/affirmative action employer. In this regard, it does not discriminate against any qualified individual on the basis of sex, race, color, national origin, religion, sexual orientation, age, marital status, mental, physical or sensory disability, or any other classification protected by applicable local, state, federal, and/or international law.
https://www.dol.gov/sites/dolgov/files/WHD/legacy/files/eppac.pdf
https://www.dol.gov/sites/dolgov/files/WHD/legacy/files/fmlaen.pdf
Get the full story on Breakroom
Sourced by ZipRecruiter
Water transportation
10,000+ Employees
Seattle, WA, US
1873