Position Overview The Director, Cyber Risk leads Asurion's cyber and technology risk management discipline and is accountable for a consistent, outcome-driven program the business can rely on for ...
Position Overview The Director, Cyber Risk leads Asurion's cyber and technology risk management discipline and is accountable for a consistent, outcome-driven program the business can rely on for ...
Reporting to the Director of Finance, this position assists in day-to-day risk management operations and serves as a key coordinator between internal stakeholders, external partners, vendors, and ...
Reporting to the Director of Finance, this position assists in day-to-day risk management operations and serves as a key coordinator between internal stakeholders, external partners, vendors, and ...
Risk Management Coordinator
Denver, CO · On-site
$27.27 - $36.78/hr
Reporting to the Director of Finance, this position assists in day-to-day risk management operations and serves as a key coordinator between internal stakeholders, external partners, vendors, and ...
Quick apply
Risk Management Coordinator
Denver, CO · On-site
$27.27 - $36.78/hr
Reporting to the Director of Finance, this position assists in day-to-day risk management operations and serves as a key coordinator between internal stakeholders, external partners, vendors, and ...
Risk Management Coordinator
Denver, CO · On-site
$27.27 - $36.78/hr
Reporting to the Director of Finance, this position assists in day-to-day risk management operations and serves as a key coordinator between internal stakeholders, external partners, vendors, and ...
Risk Management Coordinator
Denver, CO · On-site
$27.27 - $36.78/hr
Reporting to the Director of Finance, this position assists in day-to-day risk management operations and serves as a key coordinator between internal stakeholders, external partners, vendors, and ...
Director Quality Risk Mgmt Safety
Thornton, CO · On-site
$102K - $160K/yr
We are looking for a(an) Director Quality Risk Mgmt Safety for our HCA HealthONE Mountain Ridge team where excellence creates excellence. Benefits HCA HealthONE Mountain Ridge, offers a total rewards ...
Director Quality Risk Mgmt Safety
Thornton, CO · On-site
$102K - $160K/yr
We are looking for a(an) Director Quality Risk Mgmt Safety for our HCA HealthONE Mountain Ridge team where excellence creates excellence. Benefits HCA HealthONE Mountain Ridge, offers a total rewards ...
Director, Global Commodity Programs & Advanced Sourcing
Fort Collins, CO · On-site
$150K - $200K/yr
The Director, Global Commodity Programs & Advanced Sourcing is a critical leadership role ... Risk Management: Proactively identify, assess, and mitigate supply chain risks (e.g., geopolitical ...
Director, Global Commodity Programs & Advanced Sourcing
Fort Collins, CO · On-site
$150K - $200K/yr
The Director, Global Commodity Programs & Advanced Sourcing is a critical leadership role ... Risk Management: Proactively identify, assess, and mitigate supply chain risks (e.g., geopolitical ...
Director, Global Commodity Programs & Advanced Sourcing
Fort Collins, CO · On-site
$150K - $200K/yr
The Director, Global Commodity Programs & Advanced Sourcing is a critical leadership role ... • Risk Management: Proactively identify, assess, and mitigate supply chain risks (e.g ...
Director, Global Commodity Programs & Advanced Sourcing
Fort Collins, CO · On-site
$150K - $200K/yr
The Director, Global Commodity Programs & Advanced Sourcing is a critical leadership role ... • Risk Management: Proactively identify, assess, and mitigate supply chain risks (e.g ...
Manage and monitor the risk and return drivers within the portfolio, including assessing ... asset-backed securities, direct lending, and private infrastructure debt. This includes ...
Manage and monitor the risk and return drivers within the portfolio, including assessing ... asset-backed securities, direct lending, and private infrastructure debt. This includes ...
Own strategy, design, and continuous improvement of the Third-Party/Vendor Risk Management (TPRM ... Direct security, privacy, and resilience assessments using methodologies such as SIG/Shared ...
Own strategy, design, and continuous improvement of the Third-Party/Vendor Risk Management (TPRM ... Direct security, privacy, and resilience assessments using methodologies such as SIG/Shared ...
Director, Business Risk & Controls Transformation - Property & Casualty Insurance
Colorado Springs, CO · On-site +1
Build and manage a high performing team of risk and internal control professionals through ... Direct analysis and data mining initiatives that identify, validate, and manage emerging risk ...
Director, Business Risk & Controls Transformation - Property & Casualty Insurance
Colorado Springs, CO · On-site +1
Build and manage a high performing team of risk and internal control professionals through ... Direct analysis and data mining initiatives that identify, validate, and manage emerging risk ...
Direct the third-party risk management strategy, conducting vendor due diligence and evaluating ecosystem security controls * Deploy artificial intelligence solutions to automate governance risk ...
New
Quick apply
Direct the third-party risk management strategy, conducting vendor due diligence and evaluating ecosystem security controls * Deploy artificial intelligence solutions to automate governance risk ...
New
Commodity Manager - Indirect
Denver, CO · On-site
$95K - $105K/yr
You will report to the Director, Strategic Sourcing - Indirect Key responsibilities: * Lead ... Contract management - ensure specific requirements are present, appropriate review, and signing ...
Commodity Manager - Indirect
Denver, CO · On-site
$95K - $105K/yr
You will report to the Director, Strategic Sourcing - Indirect Key responsibilities: * Lead ... Contract management - ensure specific requirements are present, appropriate review, and signing ...
Associate Commodity Manager
Westminster, CO · On-site
$67K - $93K/yr
Essential Skills & Experience: * 5+ years of progressive experience in purchasing, direct procurement, and commodity management across the product lifecycle. * Advanced expertise with data tools ...
Associate Commodity Manager
Westminster, CO · On-site
$67K - $93K/yr
Essential Skills & Experience: * 5+ years of progressive experience in purchasing, direct procurement, and commodity management across the product lifecycle. * Advanced expertise with data tools ...
Associate Commodity Manager
Westminster, CO · On-site
$67K - $93K/yr
Essential Skills & Experience: * 5+ years of progressive experience in purchasing, direct procurement, and commodity management across the product lifecycle. * Advanced expertise with data tools ...
Associate Commodity Manager
Westminster, CO · On-site
$67K - $93K/yr
Essential Skills & Experience: * 5+ years of progressive experience in purchasing, direct procurement, and commodity management across the product lifecycle. * Advanced expertise with data tools ...
Commodity Manager - Indirect
Denver, CO · On-site
$95K - $105K/yr
You will report to the Director, Strategic Sourcing - Indirect Key responsibilities: * Lead ... Contract management - ensure specific requirements are present, appropriate review, and signing ...
Commodity Manager - Indirect
Denver, CO · On-site
$95K - $105K/yr
You will report to the Director, Strategic Sourcing - Indirect Key responsibilities: * Lead ... Contract management - ensure specific requirements are present, appropriate review, and signing ...
Position Overview Asurion is seeking a Sr. Director, Cyber Risk and Trust, to lead the enterprise ... Lead the enterprise cyber risk management program, including methodologies, assessments ...
Position Overview Asurion is seeking a Sr. Director, Cyber Risk and Trust, to lead the enterprise ... Lead the enterprise cyber risk management program, including methodologies, assessments ...
Director of Product Management, Weather and Climate
Boulder, CO · On-site
$241K - $253K/yr
Energy Utilities - grid reliability & outage risk * Energy & Commodity Trading - weather-driven ... Prior people management experience with product teams of 3+ direct reports * Experience with ...
Director of Product Management, Weather and Climate
Boulder, CO · On-site
$241K - $253K/yr
Energy Utilities - grid reliability & outage risk * Energy & Commodity Trading - weather-driven ... Prior people management experience with product teams of 3+ direct reports * Experience with ...
Director of Product Management, Weather and Climate
Boulder, CO · On-site +1
$241K - $253K/yr
Energy Utilities - grid reliability & outage risk * Energy & Commodity Trading - weather-driven ... Prior people management experience with product teams of 3+ direct reports * Experience with ...
Director of Product Management, Weather and Climate
Boulder, CO · On-site +1
$241K - $253K/yr
Energy Utilities - grid reliability & outage risk * Energy & Commodity Trading - weather-driven ... Prior people management experience with product teams of 3+ direct reports * Experience with ...
Director of Product Management, Weather and Climate
Boulder, CO · On-site +1
$241K - $253K/yr
Energy Utilities -- grid reliability & outage risk * Energy & Commodity Trading -- weather-driven ... Prior people management experience with product teams of 3+ direct reports * Experience with ...
Quick apply
Director of Product Management, Weather and Climate
Boulder, CO · On-site +1
$241K - $253K/yr
Energy Utilities -- grid reliability & outage risk * Energy & Commodity Trading -- weather-driven ... Prior people management experience with product teams of 3+ direct reports * Experience with ...
Milk Buy & Sell Director
Louisville, CO · Hybrid
$139K - $199K/yr
Ensure resilience of supply, including contingency sourcing, risk mitigation, and network ... Proven track record in strategic negotiations, supplier leadership, and commodity management.
Milk Buy & Sell Director
Louisville, CO · Hybrid
$139K - $199K/yr
Ensure resilience of supply, including contingency sourcing, risk mitigation, and network ... Proven track record in strategic negotiations, supplier leadership, and commodity management.
Director Commodity Risk Management information
What is the difference between Director Commodity Risk Management vs Commodity Risk Analyst?
| Aspect | Director Commodity Risk Management | Commodity Risk Analyst |
|---|---|---|
| Credentials | Typically requires a bachelor’s degree, often with certifications like FRM or CFA | Usually holds a bachelor’s degree, sometimes pursuing certifications |
| Work Environment | Strategic, leadership-focused, overseeing risk management teams | Analytical, data-driven, supporting risk strategies |
| Employer & Industry Usage | Used in large corporations, trading firms, and energy companies | Common in trading houses, financial institutions, and commodity firms |
The main difference is that the Director Commodity Risk Management leads and develops risk strategies at a high level, while the Commodity Risk Analyst focuses on analyzing data and supporting risk decisions. Both roles require strong knowledge of commodities and risk management, but differ in scope and responsibility.
What does a Director of Commodity Risk Management do?
What are the key skills and qualifications needed to thrive as a Director of Commodity Risk Management, and why are they important?
What are some of the main challenges faced by a Director of Commodity Risk Management, and how can one prepare for them?

Asurion rating
7.2
Based on 84 frontline employees who took The Breakroom Quiz
125th of 213 rated it services
Job description
The Director, Cyber Risk leads Asurion's cyber and technology risk management discipline and is accountable for a consistent, outcome-driven program the business can rely on for decision-making. This strategic, cross-functional leader owns the end-to-end cyber risk lifecycle-identification, assessment, quantification, treatment, acceptance, monitoring, and reporting-along with the cyber risk register, risk appetite and tolerance framework, control assurance, and issues management. The Director partners closely with first-line control owners across security and technology, Portfolio Information Security Officers (PISOs), and key stakeholders in Enterprise Risk Management, Internal Audit, Legal, and Privacy. This role sets the standard for sound risk judgment, develops a high-performing team, and translates complex cyber risk into clear, defensible narratives for senior leadership and the board. This is a salaried, leadership role with enterprise impact, guiding a multi-year maturity uplift from ad hoc practices to scalable, evidence-based risk management.
Key Responsibilities- Own and continuously improve the cyber and technology risk management framework, methodology, taxonomy, and lifecycle aligned to NIST CSF 2.0, ISO 27001/27005, and applicable regulatory obligations.
- Define standards, procedures, and rating scales for consistent enterprise-wide risk identification, assessment, and reporting; partner with the PISO model to ensure common language and practices across portfolios.
- Lead enterprise cyber risk assessments across technology, business, regulatory, and emerging-risk domains to produce consistent, defensible determinations.
- Establish and operate a cyber risk quantification capability (e.g., FAIR-based) to express risk in business and financial terms and inform prioritization and investment decisions.
- Maintain the enterprise cyber risk register; ensure risks are well-described, owned, rated, and tracked to acceptable residual levels; develop and manage KRI/KCI programs for forward-looking posture.
- Operationalize the risk appetite and tolerance framework with the CISO and senior leadership; own risk acceptance and exception governance with clear, auditable documentation and time-bound approvals.
- Govern cyber risk policy structure, ownership, review cadence, and exception handling; chair or support cyber risk forums and escalate decisions to appropriate authority levels.
- Lead second-line, risk-based assurance over design and operating effectiveness of key cyber controls in coordination with first-line and Internal Audit; identify thematic weaknesses and drive structural remediation.
- Own issues and remediation management-intake, prioritization, owner assignment, tracking to closure, and escalation of aging items.
- Define and report outcome-focused metrics (e.g., residual risk trends, out-of-appetite reduction, early-versus-late finding ratios, incidents tied to accepted risk) in executive- and board-ready formats.
- Serve as primary point of contact for cyber risk in regulatory exams, audits, and carrier-partner due diligence.
- Integrate cyber risk into Enterprise Risk Management to ensure consistency in enterprise risk reporting and governance; partner with Legal, Privacy, Procurement, and technology leaders to embed risk-informed decisions.
- Oversee vendor/third-party risk within the cyber risk portfolio to ensure supply-chain risk is governed in line with enterprise practices.
- Build, lead, and develop a team of senior managers and analysts; set objectives, manage performance, and scale capacity through process improvement, tooling, and appropriate AI-assisted workflows.
- Bachelor's degree in a related field or equivalent professional experience.
- 10+ years in cybersecurity, IT/technology risk, or GRC, including 5+ years leading managers or multiple teams/domains.
- Proven experience designing, leading, or substantially maturing an end-to-end enterprise cyber/IT risk management program.
- Deep knowledge of NIST CSF 2.0, ISO 27001/27005, relevant regulatory regimes, and the three-lines-of-defense model.
- Experience operating a risk register, risk appetite/tolerance framework, and risk acceptance/exception governance.
- Hands-on experience with GRC/IRM platforms (e.g., ServiceNow IRM, Archer, OneTrust, or comparable).
- Excellent executive communication skills with a track record of briefing senior leadership and boards.
- Strong cross-functional influence partnering across security, technology, legal, privacy, and business teams.
- Preferred: CRISC, CISSP, CISM, or CISA; FAIR-based quantification experience; background in regulated or consumer-facing environments; experience with ERM integration and executive/board risk committees; Master's degree in a related field.
- Strategic risk leadership with the ability to connect cyber risk to business outcomes and investment decisions.
- Sound, defensible judgment under uncertainty; skilled in risk trade-offs and acceptance decisions.
- Expertise in risk quantification, KRI/KCI design, and outcome-based program metrics.
- Strong governance and policy acumen, including appetite/tolerance, exceptions, and escalation pathways.
- Proficiency in second-line control assurance and issues management, driving thematic remediation.
- Exceptional written and verbal communication; translates complex risk into clear, actionable narratives for executives and the board.
- Team leadership and talent development; builds high-performance teams and next-level leaders.
- Change agent mindset with process improvement, tooling, and automation competencies, including appropriate use of AI-assisted workflows.
- Collaboration and influence across ERM, Internal Audit, Legal, Privacy, Procurement, and technology organizations.
N/A
Physical Demands- Stationary Position: Frequently
- Vision: 20/20 corrected vision
- Hearing: Receive detailed information if spoken to