... security professionals with wide-spread responsibility; coordinating data-driven risk assessments ... The Manager will also assist in the development of information security and information technology ...
... security professionals with wide-spread responsibility; coordinating data-driven risk assessments ... The Manager will also assist in the development of information security and information technology ...
... security professionals with wide-spread responsibility; coordinating data-driven risk assessments ... The Manager will also assist in the development of information security and information technology ...
... security professionals with wide-spread responsibility; coordinating data-driven risk assessments ... The Manager will also assist in the development of information security and information technology ...
Meaningful Use Security Risk Analyses, HIPAA), and managing risk assessment activities (e.g. HIPAA, PCI, NIST Cyber Security Framework). In addition, this position will ensure all parts of the risk ...
Meaningful Use Security Risk Analyses, HIPAA), and managing risk assessment activities (e.g. HIPAA, PCI, NIST Cyber Security Framework). In addition, this position will ensure all parts of the risk ...
Manage incoming third-party risk requests from onboarding, procurement, security architecture ... Assessment Reuse and Routing * Check whether an existing TPRM assessment, supplier profile, tiering ...
Manage incoming third-party risk requests from onboarding, procurement, security architecture ... Assessment Reuse and Routing * Check whether an existing TPRM assessment, supplier profile, tiering ...
VP, Information Security & Risk Management
$148K - $185K/yr
The Vice President of Information Security & Risk Management is responsible for developing, operationalizing, and overseeing the execution of the enterprise information security and compliance ...
VP, Information Security & Risk Management
$148K - $185K/yr
The Vice President of Information Security & Risk Management is responsible for developing, operationalizing, and overseeing the execution of the enterprise information security and compliance ...
VP, Information Security & Risk Management
Brentwood, TN · On-site
$148K - $185K/yr
The Vice President of Information Security & Risk Management is responsible for developing, operationalizing, and overseeing the execution of the enterprise information security and compliance ...
VP, Information Security & Risk Management
Brentwood, TN · On-site
$148K - $185K/yr
The Vice President of Information Security & Risk Management is responsible for developing, operationalizing, and overseeing the execution of the enterprise information security and compliance ...
Global Security Director
Nashville, TN · On-site
Lead security planning and risk management for the Board of Directors and executive leadership. * Provide executive protection oversight, including risk assessments, travel security, and event ...
Global Security Director
Nashville, TN · On-site
Lead security planning and risk management for the Board of Directors and executive leadership. * Provide executive protection oversight, including risk assessments, travel security, and event ...
Lead security planning and risk management for the Board of Directors and executive leadership. * Provide executive protection oversight, including risk assessments, travel security, and event ...
Lead security planning and risk management for the Board of Directors and executive leadership. * Provide executive protection oversight, including risk assessments, travel security, and event ...
Our Cyber Risk Management team is seeking a resource to support the execution and maturation of the ... Years of experience: 5+ years in cyber risk, IT risk, or information security risk (consulting or ...
Our Cyber Risk Management team is seeking a resource to support the execution and maturation of the ... Years of experience: 5+ years in cyber risk, IT risk, or information security risk (consulting or ...
Cyber Risk Consultant
Nashville, TN · On-site
Our Cyber Risk Management team is seeking a resource to support the execution and maturation of the ... Years of experience: 5+ years in cyber risk, IT risk, or information security risk (consulting or ...
Quick apply
Cyber Risk Consultant
Nashville, TN · On-site
Our Cyber Risk Management team is seeking a resource to support the execution and maturation of the ... Years of experience: 5+ years in cyber risk, IT risk, or information security risk (consulting or ...
... Risk Management Framework (RMF) Subject Matter Expert (SME) to support our clients. The RMF SME ... Support security audits and assessments, including preparation for FISMA and FedRAMP requirements.
... Risk Management Framework (RMF) Subject Matter Expert (SME) to support our clients. The RMF SME ... Support security audits and assessments, including preparation for FISMA and FedRAMP requirements.
Acumen Technology is a security-first Managed Service Provider (MSP) founded in 2016, serving ... Review vendor SOC 2 reports that came in for a client, assess the findings, and produce a risk ...
Acumen Technology is a security-first Managed Service Provider (MSP) founded in 2016, serving ... Review vendor SOC 2 reports that came in for a client, assess the findings, and produce a risk ...
Acumen Technology is a security-first Managed Service Provider (MSP) founded in 2016, serving ... Review vendor SOC 2 reports that came in for a client, assess the findings, and produce a risk ...
Acumen Technology is a security-first Managed Service Provider (MSP) founded in 2016, serving ... Review vendor SOC 2 reports that came in for a client, assess the findings, and produce a risk ...
Acumen Technology is a security-first Managed Service Provider (MSP) founded in 2016, serving ... Review vendor SOC 2 reports that came in for a client, assess the findings, and produce a risk ...
Quick apply
Acumen Technology is a security-first Managed Service Provider (MSP) founded in 2016, serving ... Review vendor SOC 2 reports that came in for a client, assess the findings, and produce a risk ...
Security Control Assessor
Oak Ridge, TN · On-site
We support clients at every stage, from strategic planning and program management to the execution ... Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for ...
Quick apply
Security Control Assessor
Oak Ridge, TN · On-site
We support clients at every stage, from strategic planning and program management to the execution ... Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for ...
We support clients at every stage, from strategic planning and program management to the execution ... Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for ...
We support clients at every stage, from strategic planning and program management to the execution ... Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for ...
We support clients at every stage, from strategic planning and program management to the execution ... Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for ...
We support clients at every stage, from strategic planning and program management to the execution ... Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for ...
Security Control Assessor
Oak Ridge, TN · On-site
We support clients at every stage, from strategic planning and program management to the execution ... Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for ...
Security Control Assessor
Oak Ridge, TN · On-site
We support clients at every stage, from strategic planning and program management to the execution ... Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for ...
We support clients at every stage, from strategic planning and program management to the execution ... Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for ...
We support clients at every stage, from strategic planning and program management to the execution ... Ability to aggregate risk for NIST SP 800-171 security controls into an overall risk assessment for ...
Security
Chattanooga, TN · On-site
Conduct regular risk assessments to identify potential security vulnerabilities and develop mitigation strategies. * Manage and supervise security personnel, including hiring, training, scheduling ...
Quick apply
Security
Chattanooga, TN · On-site
Conduct regular risk assessments to identify potential security vulnerabilities and develop mitigation strategies. * Manage and supervise security personnel, including hiring, training, scheduling ...
Manager Security Risk Assessment information
What is the difference between Manager Security Risk Assessment vs Security Analyst?
| Aspect | Manager Security Risk Assessment | Security Analyst |
|---|---|---|
| Certifications | CISSP, CISM, CRISC | CISSP, Security+ |
| Work Environment | Oversees security programs, manages teams | Analyzes security threats, monitors systems |
| Industry Usage | Common in organizations with complex security needs | Widely used across various industries for threat detection |
The Manager Security Risk Assessment focuses on leading security risk evaluations, managing teams, and developing security strategies. In contrast, a Security Analyst primarily monitors security systems, analyzes threats, and responds to incidents. Both roles require relevant certifications and work within the cybersecurity industry, but their responsibilities differ in scope and focus.
Job description
The Manager of Information Assurance is responsible for identifying and documenting Information Technology (IT) risks, analyzing vendor and supplier risk, sharing the Pillsbury security-related activities with customers, and ensuring Pillsbury's continued compliance with relevant standards (GDPR, SOC2, SOX etc.). This role's primary objective is to oversee the enterprise information assurance program.
The Manager plays an important role in the Information Security team's global mission. The manager is a hands-on, high energy, and collaborative leader who can balance the intent of security policies with productivity and value generation. The successful candidate will have deep cybersecurity, technology, audit and risk management expertise, and will work closely with the Director of Security and Continuity. They will be asked to innovate on the existing audit processes and create a modern audit program that reduces the difficulty of complying with multiple audit standards.
This position will also be a key leader in and help continue to mature the existing Third-Party Risk Management (TPRM) program. The manager will lead client information security inquiries, audits and will direct matrix team members as required.
The ideal candidate will create and manage Key Performance Indicators (KPI's) and Key Risk Indicators (KRI's) with the Director of Security and Continuity and the firm Enterprise Risk Management function. This role will be expected to conduct high-level presentations to senior executives, while also being able to communicate on a technical level. The ideal candidate is a highly motived but compassionate leader, who has a strong desire to advance their career and build a high-energy, modern Governance, Risk and Compliance (GRC) program. This role will report to our Director of Security and Continuity.
Responsibilities
Responsibilities include leading a cross-functional team of information security professionals with wide-spread responsibility; coordinating data-driven risk assessments and risk-based analysis of controls; conducting industry benchmarking, regulatory requirement gathering and peer-based analysis of available controls, risk assessment methodologies and risk mitigation practices to assess for coverage gaps.
The Manager will also assist in the development of information security and information technology metrics (e.g. KRIs and KPIs) to continuously monitor and oversee program level risks; provide periodic updates, reports, and recommendations to management, regarding best practice information security and information technology controls, risk assessment and remediation strategies; and advocate for the cyber security program and evoke cooperation across business units.
In addition, the manager will be required to build and maintain relationship with various stakeholders; streamline and create audit efficiencies to manage client audits and other regulatory audit activities; partner with Cybersecurity Operations Center Manager to implement security measures to protect computer systems, networks, and data; assist in creating, testing, and implementing disaster recovery plans; and support other Information Security initiatives, as assigned.
Qualifications
Preferred candidates should have a bachelor's degree in a related field or equivalent experience; 7+ years of experience in information security; a minimum of 5 years of experience in cyber risk management; and 3+ years management experience for information security, risk management and compliance activities. Candidates should also have professional certifications (CISSP, CISA, CISM or CASP); a deep knowledge of SOC 1, SOC 2 compliance requirements; background as a technologist, with a deep understanding of application development and DevOps; understanding of risk assessment methodologies, frameworks, and industry standards: E.g., ISO 27001, NIST, FEDRAMP; and a proven ability to understand and interpret legal, regulatory and contractual compliance requirements.
Successful candidates should have strong leadership skills, attention to details, and the ability to influence business partners with a firm strategic view. Candidates should have proven project management skills, the ability to build relationships, and excellent verbal and written communication skills.
About JBA International
Sourced by ZipRecruiter
Industry
It services
Company size
201 - 500 Employees
Headquarters location
Pasadena, CA, US
Year founded
1988