All roles

Cyber Risk Manager (Remote)

Remote · USA Full-time New today

About the position

Responsibilities

  • Leads the design and implementation of process evaluation methods, and the development of expert solutions to address identified risks.
  • Works closely with management to ensure risk strategies are effective and compliant.
  • May involve creation, evaluation, and execution of targeted risk assessments to evaluate risk conditions.
  • Maintains a strong knowledge of cybersecurity risk management developments or changes within the organization, industry, and market.
  • Produces reports based on risk management assessments, data analysis, company trends, and risk factors.
  • Conveys root cause analysis, patterns, problems, and areas of improvement.
  • Enables insight into potential risk exposure, losses and mitigation of identified risks through reporting activities.
  • Supports cybersecurity processes through a variety of escalated operational tasks.
  • Develops, implements, and ensures continuous improvement of procedures.
  • Acts as a resource to provide guidance to management, including production of documentation, presentations, or other materials to educate on risk policies and procedures.
  • Handles complex technical matters and participates in special projects.

Requirements

  • Bachelor's Degree and 4 years of experience in cyber risk management, or cyber risk oversight OR High School Diploma or GED and 8 years of experience in risk management, or financial analysis, or statistical modeling.
  • Experience identifying information security risk and partners with key stakeholders to monitor, reduce or eliminate risk.
  • Experience conducting risk and control activities per the Enterprise Risk Management Program and Regulatory requirements.
  • Experience executing cyber risk management procedures for required assessments, open high risks, root cause analysis, action plan development, remediation documentation and monitoring.
  • Experience reviewing emerging risks concerns and provides early warning indicators on key risks.
  • Experience developing, enhancing, or optimizing cyber risk assessment processes, methodologies, or frameworks to drive improved risk identification and management practices.
  • Experience with NIST frameworks, demonstrated background in applying and implementing NIST standards (e.g., CSF, SP 800-53) to develop, assess, improve cybersecurity controls and practices.
  • Impeccable written and oral communication skills with ability to influence strategic objectives.

Nice-to-haves

  • 7-10 years of experience in risk management leading risk assessments (FFIEC CAT, GLBA, NIST CSF, PCI, ISO, Cyber Security Management).
  • 3+ years of experience at Large Financial Institution.
  • CISSP, CISA, CISM or CRISC certification.
  • Broad knowledge and understanding of cybersecurity risks and controls, including a strong understanding of IT infrastructure, cloud computing, mobile technologies, and cybersecurity technologies.
  • Extensive knowledge and subject matter expertise in managing cybersecurity risk in an institutional setting including the related rules and regulations of the financial services industry to include applicable Interagency Guidance, NIST, CSA, FFIEC, OCC, FRB, state law and other pertinent regulations.
  • In-depth practical knowledge of internal controls, risk assessments and operational and cybersecurity processes, and applicable techniques for implementation of regulatory, cybersecurity, and legal requirements and operational processes.
  • Strong project management and/or continuous improvement skills.

Benefits

  • The base pay for this position is generally between $160,000 and $210,000.
  • Actual starting base pay will be determined based on skills, experience, location, and other non-discriminatory factors permitted by law.
  • For some roles, total compensation may also include variable incentives, bonuses, benefits, and/or other awards as outlined in the offer of employment.
  • First Citizens benefits programs are designed to meet our associates where they are in life.
  • Full-time associates (20+ hours) are offered a comprehensive benefits program, with customized offerings, including those designed to support families, however defined.

Apply tot his job Apply To this Job

Related roles

[Remote] Manager, Security Operations Center - Pacific or Mountain Time Zone

Remote · USA Full-time

Cybersecurity Program Manager

Remote · USA Full-time

Sr. Project Manager (Cyber Security/Information Security – Infrastructure Projects)

Remote · USA Full-time

Manager IS Cyber Security

Remote · USA Full-time

Cybersecurity Operations Center Analyst – Expert in Minnesota

Remote · USA Full-time

Security Operations Analyst- East or Central Time Zone

Remote · USA Full-time

Technology Manager - Cybersecurity

Remote · USA Full-time

Cybersecurity Tools Operations Specialist/Trellix Analyst (Remote)

Remote · USA Full-time

SOC Analyst II

Remote · USA Full-time

Principal SOC Analyst

Remote · USA Full-time

Director, Compliance - Remote

Remote · USA Full-time

Experienced Customer Care Specialist – Delivering Exceptional Service in a Dynamic Environment at arenaflex

Remote · USA Full-time

Senior Implementation Consultant

Remote · USA Full-time

Part-Time Remote Data Entry Specialist – Accurate Data Management & Quality Assurance at arenaflex

Remote · USA Full-time

Experienced Business Administrator – Information Security and Protection Team at blithequark

Remote · USA Full-time

Experienced Remote Data Entry Specialist – Contributing to Data Management Excellence with blithequark

Remote · USA Full-time

Engineer 2, Labelling Assurance

Remote · USA Full-time

Experienced Data Entry Specialist – Remote Opportunity with FedEx

Remote · USA Full-time

Medical Assisting Adjunct Faculty Instructor

Remote · USA Full-time

PeopleSoft Integration Broker Developer

Remote · USA Full-time