Lead third-party and vendor security risk assessments and due diligence activities. Compliance & Security Assurance * Manage cybersecurity compliance programs aligned with frameworks and regulations.
Lead third-party and vendor security risk assessments and due diligence activities. Compliance & Security Assurance * Manage cybersecurity compliance programs aligned with frameworks and regulations.
Cyber Risk Analyst
Alpharetta, GA · On-site
... assessment processes and reporting outcomes. * Monitor agent performance, accuracy, explainability, and security to support effective and responsible automation. * Analyze large datasets to identify ...
Cyber Risk Analyst
Alpharetta, GA · On-site
... assessment processes and reporting outcomes. * Monitor agent performance, accuracy, explainability, and security to support effective and responsible automation. * Analyze large datasets to identify ...
... assessment processes and reporting outcomes. * Monitor agent performance, accuracy, explainability, and security to support effective and responsible automation. * Analyze large datasets to identify ...
... assessment processes and reporting outcomes. * Monitor agent performance, accuracy, explainability, and security to support effective and responsible automation. * Analyze large datasets to identify ...
Network Security Architecture Risk Lead
Alpharetta, GA · On-site
$141K - $237K/yr
Identify, assess, and document controls and risks across Network and Security Architecture ... Support Tech Risk teams responsible for risk monitoring, periodic controls testing, evidence ...
Network Security Architecture Risk Lead
Alpharetta, GA · On-site
$141K - $237K/yr
Identify, assess, and document controls and risks across Network and Security Architecture ... Support Tech Risk teams responsible for risk monitoring, periodic controls testing, evidence ...
Risk Management Analyst
Atlanta, GA · On-site
$89K/yr
Masters/ MBA/JD/MD) * 4+ years of experience executing third party risk programs, information security programs and/or audit program working with supplier or vendor risk assessments. * Demonstrated ...
Risk Management Analyst
Atlanta, GA · On-site
$89K/yr
Masters/ MBA/JD/MD) * 4+ years of experience executing third party risk programs, information security programs and/or audit program working with supplier or vendor risk assessments. * Demonstrated ...
Masters/ MBA/JD/MD) * 4+ years of experience executing third party risk programs, information security programs and/or audit program working with supplier or vendor risk assessments. * Demonstrated ...
Masters/ MBA/JD/MD) * 4+ years of experience executing third party risk programs, information security programs and/or audit program working with supplier or vendor risk assessments. * Demonstrated ...
Security Architect/vCISO
Duluth, GA · Remote
$59.75 - $77.25/hr
Conduct enterprise security risk assessments and maintain client risk registers, prioritizing findings based on business impact. * Serve as the client's security incident response advisor and leader ...
Security Architect/vCISO
Duluth, GA · Remote
$59.75 - $77.25/hr
Conduct enterprise security risk assessments and maintain client risk registers, prioritizing findings based on business impact. * Serve as the client's security incident response advisor and leader ...
Security Architect/vCISO
Duluth, GA · On-site
$59.75 - $77.25/hr
Conduct enterprise security risk assessments and maintain client risk registers, prioritizing findings based on business impact. * Serve as the client's security incident response advisor and leader ...
Quick apply
Security Architect/vCISO
Duluth, GA · On-site
$59.75 - $77.25/hr
Conduct enterprise security risk assessments and maintain client risk registers, prioritizing findings based on business impact. * Serve as the client's security incident response advisor and leader ...
Security Architect/vCISO
Duluth, GA · On-site
$59.75 - $77.25/hr
Conduct enterprise security risk assessments and maintain client risk registers, prioritizing findings based on business impact. * Serve as the clients security incident response advisor and leader ...
Quick apply
Security Architect/vCISO
Duluth, GA · On-site
$59.75 - $77.25/hr
Conduct enterprise security risk assessments and maintain client risk registers, prioritizing findings based on business impact. * Serve as the clients security incident response advisor and leader ...
Security Architect/vCISO
Duluth, GA · On-site
$59.75 - $77.25/hr
Conduct enterprise security risk assessments and maintain client risk registers, prioritizing findings based on business impact. * Serve as the client's security incident response advisor and leader ...
Security Architect/vCISO
Duluth, GA · On-site
$59.75 - $77.25/hr
Conduct enterprise security risk assessments and maintain client risk registers, prioritizing findings based on business impact. * Serve as the client's security incident response advisor and leader ...
... risk assessments, exposure analyses, and security architecture reviews to ensure secure and cost‑effective system and network performance. • Lead or assist in producing periodic or ad‑hoc ...
... risk assessments, exposure analyses, and security architecture reviews to ensure secure and cost‑effective system and network performance. • Lead or assist in producing periodic or ad‑hoc ...
Performing third-party security risk assessments, especially for cloud service providers and responding to third-party requests for information on CNO's information security program/policies.
Performing third-party security risk assessments, especially for cloud service providers and responding to third-party requests for information on CNO's information security program/policies.
Job Title AI Security Architecture and Risk, Sr Advisor About your role You will lead the security ... Help build and steward the AI risk-assessment framework - a multi-factor risk-tiering model that ...
Job Title AI Security Architecture and Risk, Sr Advisor About your role You will lead the security ... Help build and steward the AI risk-assessment framework - a multi-factor risk-tiering model that ...
... Security Risk & Engineering - Tech and Cyber Risk & Compliance - Senior Associate, you will focus ... assessments to enhance internal controls - Conducting compliance audits and reviews to confirm ...
... Security Risk & Engineering - Tech and Cyber Risk & Compliance - Senior Associate, you will focus ... assessments to enhance internal controls - Conducting compliance audits and reviews to confirm ...
... assess security policies and procedures. The Senior Analyst will respond to inquiries on the ... Senior Analyst, Cybersecurity Governance, Risk and Compliance Responsibilities: - Review and ...
... assess security policies and procedures. The Senior Analyst will respond to inquiries on the ... Senior Analyst, Cybersecurity Governance, Risk and Compliance Responsibilities: - Review and ...
... risk assessments, exposure analyses, and security architecture reviews to ensure secure and cost‑effective system and network performance. • Lead or assist in producing periodic or ad‑hoc ...
... risk assessments, exposure analyses, and security architecture reviews to ensure secure and cost‑effective system and network performance. • Lead or assist in producing periodic or ad‑hoc ...
Shift Supervisor - Sergeant
Atlanta, GA · On-site
$26.05/hr
Able to pass required background investigations and security clearances (DOJ Security Risk Assessment, NACI) * Prior supervisory experience in law enforcement, military police, or security preferred ...
Shift Supervisor - Sergeant
Atlanta, GA · On-site
$26.05/hr
Able to pass required background investigations and security clearances (DOJ Security Risk Assessment, NACI) * Prior supervisory experience in law enforcement, military police, or security preferred ...
Senior Enterprise Risk Management
Kennesaw, GA · On-site
$70K - $83K/yr
Job Summary Supports the comprehensive identification, assessment, and mitigation of risks that ... Security Manager (CISM), Certified Information Systems Security Professional (CISSP), Certified ...
Senior Enterprise Risk Management
Kennesaw, GA · On-site
$70K - $83K/yr
Job Summary Supports the comprehensive identification, assessment, and mitigation of risks that ... Security Manager (CISM), Certified Information Systems Security Professional (CISSP), Certified ...
Able to pass required background investigations and security clearances (DOJ Security Risk Assessment, NACI) * Prior supervisory experience in law enforcement, military police, or security preferred ...
Able to pass required background investigations and security clearances (DOJ Security Risk Assessment, NACI) * Prior supervisory experience in law enforcement, military police, or security preferred ...
The Senior IT GRC (Governance, Risk, and Compliance) Analyst oversees technical design ... and application compliance assessments and security configuration audits. * Manages and ...
The Senior IT GRC (Governance, Risk, and Compliance) Analyst oversees technical design ... and application compliance assessments and security configuration audits. * Manages and ...
Freelance Security Risk Assessment information
What is the difference between Freelance Security Risk Assessment vs Security Consultant?
| Aspect | Freelance Security Risk Assessment | Security Consultant |
|---|---|---|
| Credentials | Certifications like CISSP, CISA, or CEH often required | Similar certifications, often with additional experience requirements |
| Work Environment | Independent, project-based, often remote or on-site at client locations | Typically employed by firms or consulting agencies, may work on multiple projects |
| Industry Usage | Used by organizations seeking independent risk assessments | Engaged for broader security strategy, policy development, and consulting |
While both roles involve assessing security risks, Freelance Security Risk Assessments focus on independent, project-specific evaluations, whereas Security Consultants often provide ongoing security advice and strategy within organizations or consulting firms.
Senior Manager - Cybersecurity & Governance, Risk & Compliance (GRC)
Atlanta, GA • On-site
Other
Re-posted yesterday
Job description
At FORTNA, we believe in fostering a workplace that isn't just a job but a movement - a collective effort to redefine success and transform challenges into opportunities. "Join the Movement" encapsulates our commitment to a workplace culture that thrives on collaboration, celebrates diversity, and empowers every individual to contribute to something greater than themselves. Our Team. Our Passion. Our Approach.
Position Summary
We are seeking an experienced Senior Manager, Cybersecurity & Governance, Risk & Compliance (GRC) to lead and mature our enterprise cybersecurity governance, risk management, compliance, and security assurance programs. This role is responsible for ensuring cybersecurity risks are effectively identified, managed, and communicated while maintaining compliance with regulatory requirements and industry security frameworks.
The Senior Manager will partner closely with Security Operations, IT, Legal, Privacy, Internal Audit, business leaders, and third-party providers to strengthen the organization's security posture, drive risk-based decision-making, and support business objectives. This position combines strategic leadership with operational oversight across governance, compliance, risk management, incident management, and vendor security programs.
Key Responsibilities
Governance & Cybersecurity Strategy
- Lead the enterprise cybersecurity governance framework, including policies, standards, controls, and procedures.
- Drive cybersecurity strategy and roadmap initiatives aligned with business goals and risk tolerance.
- Provide leadership with visibility into cybersecurity posture, risks, compliance status, and program effectiveness.
- Lead governance committees and facilitate cross-functional cybersecurity initiatives.
- Conduct enterprise cybersecurity risk assessments and oversee risk treatment activities.
- Maintain the cybersecurity risk register and monitor remediation efforts.
- Evaluate emerging threats, vulnerabilities, and business impacts.
- Perform security reviews for new technologies, projects, and strategic initiatives.
- Lead third-party and vendor security risk assessments and due diligence activities.
- Manage cybersecurity compliance programs aligned with frameworks and regulations.
- Coordinate internal and external audits and oversee remediation of audit findings.
- Ensure security controls, documentation, and evidence repositories support ongoing compliance requirements.
- Monitor and report compliance performance and remediation progress.
- Partner with Security Operations teams and external providers to strengthen monitoring, threat detection, incident response, and vulnerability management programs.
- Review significant cybersecurity incidents, root cause analyses, and corrective action plans.
- Participate in incident response exercises, tabletop simulations, and post-incident reviews.
- Drive continuous improvement of security controls, detection capabilities, and response processes.
- Monitor security metrics, KPIs, KRIs, and operational reporting.
- Manage relationships with MDR, MSSP, SOC-as-a-Service, and other cybersecurity service providers.
- Review vendor assessments, SOC reports, penetration test results, and compliance documentation.
- Ensure third-party providers meet security, compliance, and contractual obligations.
- Lead vendor risk remediation and ongoing security performance reviews.
- Lead and mentor cybersecurity governance, risk, and compliance professionals.
- Partner with IT, Security, Legal, Privacy, HR, Audit, and business leaders to address cybersecurity risks and compliance requirements.
- Present cybersecurity risks, compliance status, audit results, and strategic recommendations to senior leadership and governance committees.
- Serve as a trusted advisor on cybersecurity governance, risk management, and regulatory compliance.
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
- 12+ years of experience in cybersecurity, information security, risk management, compliance, audit, or security operations.
- 3+ years of leadership or people management experience.
- Experience supporting or partnering with Security Operations (SOC) teams and incident response programs.
- Strong knowledge of cybersecurity frameworks, governance models, and risk management methodologies.
- Experience leading compliance initiatives, audits, and remediation programs.
- Experience managing third-party security assessments and vendor risk programs.
- Strong executive communication, stakeholder management, and presentation skills.
- Experience with Microsoft security and compliance technologies, including Microsoft Purview and Microsoft Sentinel.
- Experience working with SIEM, SOAR, EDR, MDR, vulnerability management, and GRC platforms.
- Experience within regulated or compliance-driven industries.
- Master's degree in a related discipline.
The base salary range for this role is $133,200 to $199,800. This base salary range represents the low and high end of the base salary range for this position. Actual base salary offered will vary based on various factors including but not limited to location, level, job-related knowledge, skills, experience, and performance.
This job description describes the general nature and level of work expected of a person assigned to this position. All job requirements listed indicate the minimum level of knowledge, skills and/or ability deemed necessary to perform the job proficiently. Employees may be required to perform any other job-related duties as requested by their supervisor.
It is the policy of FORTNA and its affiliated companies to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, pregnancy or pregnancy-related condition, status with regard to public assistance, veteran status, citizenship status (if authorized to work in the U.S.), or any other characteristic protected by federal, state or local law. In addition, FORTNA will provide reasonable accommodations for qualified individuals with disabilities.