Sr. Security Risk Management Consultant
Conexess Group
Job-ID32533687Reference26-00465PurposeThe Senior Security Risk Management Consultant serves as a strategic advisor, liaison, and subject matter expert, driving enterprise-wide security risk management strategies that support our mission and operational excellence. This role partners with senior leadership, security, IT, and business stakeholders to identify, assess, and mitigate cybersecurity risks while ensuring alignment with organizational priorities and regulatory requirements. Responsibilities include leading complex risk assessments, guiding risk treatment strategies, influencing enterprise decision-making, and strengthening overall risk posture through governance, metrics, and continuous improvement.Program and Regulatory ComplianceSupports the development and execution of our Information Security Third Party Risk and Integrated Risk Management Program, contributing to definition of team goals, scope of work, and deliverables aligned to Enterprise Information Security (EIS) priorities. Serves as a trusted advisor and liaison to stakeholders, ensuring initiatives align with organizational mission, values, operational goals, and applicable regulatory, legal, and contractual requirements.Leads and coordinates team participation in regulatory audits and investigations, including the preparation, validation, and delivery of required evidence, while supporting overall audit readiness and response efforts.People Leadership (Mentorship/Advisory)Contributes to a high-performing team of security risk professionals by providing guidance and support in third-party and integrated risk management, risk-based prioritization, and enterprise risk remediation coordination.Serves as a mentor and trusted resource to team members, offering subject matter expertise and helping to drive consistency, accountability, and quality in work delivery.Supports the development and refinement of team practices, including role clarity, competencies, and growth pathways aligned to organizational expectations.Provides ongoing coaching, knowledge sharing, and development support to colleagues, fostering professional growth and preparing team members for expanded responsibilities.Promotes a collaborative and inclusive team environment, encouraging open communication, psychological safety, and data-informed decision-making.Demonstrates authentic and professional influence, building trust through clear communication, partnership, and effective engagement with peers, leadership, and stakeholders.Information Security Governance,Risk & Compliance (GRC)Supports and contributes to third-party and integrated risk management activities within our GRC platforms, identifying opportunities for process improvement and adapting to evolving control frameworks and risk requirements.Performs and reviews vendor tiering and risk assessments, partnering with team members and providing guidance on complex or higher-risk cases as needed.Contributes to the execution and ongoing refinement of the third-party cyber risk lifecycle, including intake, due diligence, control assessment, remediation tracking, and ongoing monitoring.Evaluates vendor security controls across multiple domains (e.g., identity and access management, network and cloud security, data protection, incident response, and business continuity), applying risk-based judgment.Reviews and provides input on security-related contractual requirements, supporting alignment with organizational standards and regulatory expectations.Participates in coordination of offshore security risk compliance activities, helping to ensure consistency, quality, and timeliness of deliverables.Translates technical findings into clear business risk insights to support decision-making by stakeholders and business partners.Prepares and supports materials for audits, regulatory inquiries, and internal governance reviews.Documents and tracks risks, supports remediation efforts, and facilitates security policy exception (risk acceptance) processes in alignment with established standards.Identifies security risks and manages issues by working with stakeholders to develop corrective action plans, including cost and timeline analysis, and partners with leadership to present temporary risk acceptance plans in accordance with organizational security policies, procedures, and standards. Provides guidance on governance processes and collaborates with stakeholders to embed security and compliance into operational and strategic initiatives.Maintains active involvement in day-to-day assessments to ensure quality, consistency, and timely delivery.Escalates risks and concerns through appropriate channels to support effective resolution and visibility.Metrics and ReportingPartners with Strategy and Planning and Enterprise Information Security leadership to develop and report on key risk indicators (KRIs) and key performance indicators (KPIs), delivering clear, actionable insights that support informed decision-making and effective governance.Design, develop, and monitor robust data analysis and reporting systems, along with communication tools, to ensure accurate and timely insights.Information Security Risk Management (Advisory & Enablement)Coordinates and supports assignment of assessment work, partnering with team members and stakeholders to ensure alignment with established standards and effective intake processes.Reviews and provides guidance on risk assessments to promote consistency, quality, and alignment with our information security requirements.Contributes to workload balancing through collaboration and knowledge sharing, supporting team readiness and capability to deliver departmental services effectively.Executive & Stakeholder EngagementCultivates and maintains effective relationships with executives and key stakeholders through clear, authentic, and risk-informed communication; supports alignment, enables informed decision-making, and promotes shared accountability for managing security risk.Enterprise Risk Communication & Decision SupportSynthesizes and communicates enterprise security risk insights to executives and stakeholders in a clear, actionable manner, operating within established leadership direction and communication protocols; translates complex risk data into meaningful narratives that support informed decision-making, drive prioritization, and strengthen governance in alignment with organizational objectives.Information Security Leadership SupportServes as a representative of the Manager and/or Director as directed. Supports Information Security leadership by providing risk-informed insights, actionable recommendations, and clear communication to enable strategic decision-making, program prioritization, and alignment with organizational objectives.Security Leadership & CoordinationPartners with Enterprise Information Security leadership to support aligned execution of security and risk management activities, including policy and standards development, control assessments, and risk management education; promotes collaboration, consistency, and integration of security practices across the organization.Regulatory & Standards MonitoringMaintains a working knowledge of applicable Federal, State, and local laws and regulations, our Integrity and Compliance Program and Code of Conduct, and relevant policies and procedures, while staying current with industry developments and regulatory changes to ensure updates are reflected and adherence is upheld with honest, ethical, and professional behavior.Project ManagementLeads and supports security risk initiatives and annual program activities, ensuring successful delivery aligned with organizational standards and risk management objectives.Provides guidance and mentorship to team members managing projects, promoting consistency, accountability, and high-quality outcomes without direct supervisory responsibility.Partners with stakeholders and leadership to align priorities, communicate status, and support achievement of strategic outcomes.Proactively identifies risks and supports mitigation efforts to keep initiatives on track and aligned with organizational expectations.Relationship ManagementBuilds and maintains effective relationships to support stakeholder engagement throughout the project, program, or initiative lifecycle.Partners with stakeholders to support development and alignment of business process workflows, as well as training and communication plans.Provides guidance, tools, and resources to help stakeholders address challenges, mitigate risks, and sustain engagement, promoting risk-aware decision-making and adoption of information security best practices across the organization.Minimum QualificationsBachelor's degree or an equivalent combination of education and experience.One or more security certifications: Certified Information Systems Security Professional (CISSP), International Social Security Association (ISSA), Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC) Certified in Governance, Risk and Compliance (GRCP) or equivalent.Minimum of seven (7) years of progressive experience in information services including three (3) years working in cybersecurity governance, risk, and compliance (GRC).Minimum of three (3) years of progressively responsible experience in healthcare and/or other regulated industries.Strong knowledge of the HIPAA Security Rule and applicable industry security regulations, with the ability to rapidly build and sustain expertise; working understanding of broader HIPAA requirements, including Privacy and Breach Notification Rules.Proven knowledge of enterprise security principles and practices, with hands-on experience or demonstrated capability in implementing, integrating, and managing security solutions across enterprise environments.Working knowledge of one or more information security regulations and/or frameworks - HIPAA, ISO 27001/2, FISMA, FIPS, HITRUST and NIST security.Experience with GRC platforms (e.g., ServiceNow GRC, RSA Archer, OneTrust, or similar) supporting risk and compliance programs. Demonstrated ability to leverage tooling to improve process efficiency, enable reporting, and support scalable risk management practices.Ability to serve as a leadership representative of the Manager and/or Director, interfacing with a variety of Health Ministry and System Office Executive leaders, team members and end users, exercising effective facilitation skills, judgment, and decision-making in providing problem resolution and in meeting established goals and expectations. Ability to shape results, garner support and successfully manage complex relationships.Actively building skills in courageous, authentic leadership through clear, human-centered communication with senior leaders and stakeholders; builds trust through empathy and vulnerability while skillfully navigating complex conversations, influencing decisions, and delivering compelling, accessible messages in both formal and informal settings.Excellent oral and written communication skills. Facilitates meetings between diverse groups and interests and prepare communications that includes independent advisory recommendations. Ability to communicate with non-technical leaders and business owners providing a clear understanding of appropriate technology solutions to support and enhance business needs.Proficiency in performing third-party risk assessments and negotiating contractual security languageProficiency in performing third-party risk assessments and negotiating contractual security languageProven ability to apply appropriate project management methodology. Excellent project leadership, organization, integration, and execution skills required.Knowledge of and experience with change control, risk management, project planning, relationship management, budgeting, and scheduling.Ability to operate in an ambiguous and highly matrix organizational structure. Ability to manage multiple and ever-changing priorities in a highly autonomous self-directed manner.Some knowledge of and experience with clinical application systems (i.e., hospital work environment, technical terminology, etc.).Considerable knowledge of multiple technologies and experience with enterprise-wide applications and systems in an integrated work environment.Proven ability to operate with speed and focus, driving measurable value through high-quality delivery of time-sensitive initiatives.Must demonstrate a strong commitment to continuous personal and professional growth, maintain a proactive mindset, and consistently go above and beyond to deliver exceptional value with acceptable security controls.Ability to work independently, manage multiple priorities, and effectively adapt to rapidly changing technology and business needs with demonstrated ability to prioritize projects and workload.Preferred QualificationsMaster's degree from an accredited college/university One or more enterprise technology vendor certifications (e.g. PMP, Six Sigma, ITIL)Experience with risk quantification models (e.g. FAIR) or building custom risk scoring approaches.Familiarity with data visualization tools (e.g., Tableau, Power BI) for building risk dashboardsExperience working cross-functionally to evaluate security controls and business processes, translating findings into meaningful risk insightsExperience in managing risk in a healthcare environment Experience with Artificial Intelligence (AI) as a strategic tool to enhance efficiency in day-to-day business processes and strengthen risk assessment capabilities through automation, predictive analytics, and intelligent decision support.Demonstrated proficiency in executive-level communication and presence, including emotional intelligence, negotiation skills, and the ability to deliver compelling presentations to senior leadership and stakeholders.#LI-ME1
- ...loanDepot is hiring for an Enterprise Risk Management position located in Southfield, Michigan. This role is essential for executing fair lending risk management initiatives, including analytical reporting and compliance monitoring. The ideal candidate has over five years...Senior
- ...Property & Casualty companies in the United States, we proudly manage nearly $1 Billion of Direct Written Premium and maintain $1.21... ...in surplus.Amerisure is currently recruiting for a Senior IT Security Risk Analyst that can do a 3-day hybrid approach onsite in our Farmington...SeniorFull timeWork at officeLocal areaFlexible hours
$76.4k - $120.01k
...operational steward of product attribution providing hands-on hierarchy management during platform build-out, evolving into a hierarchy-evolution... ...Internet based system operated by the Department of Homeland Security (DHS) in partnership with the Social Security Administration (...SuggestedPermanent employmentFull timeLocal area$121.3k - $190.63k
Masco is hiring a Senior Program Manager of Enterprise Commercial Performance Management to strengthen and scale its enterprise approach... ...Internet based system operated by the Department of Homeland Security (DHS) in partnership with the Social Security Administration (SSA...SeniorFull timeLocal area$120.32k
...jobs that impact everyone's life. As a Sr Business Development Lead in our Marketing... ...organizational abilities with a track record of managing multiple complex technical projects and... ...and safe mobility, as well as smart and secure IoT. Together, we drive innovation and...SeniorLocal areaShift work- ...are equipped with the tools, knowledge, and insights needed to manage their operations efficiently and profitably. Essential functions... ...years of experience in business systems support, training, or consulting. ~ Advanced proficiency in QuickBooks. ~ Familiarity with...SeniorWork at office2 days per week
$76.4k - $120.01k
...Operations teams. While reporting to the Financial Reporting Manager, you will assist in the preparation of various SEC filings... ...an Internet based system operated by the Department of Homeland Security (DHS) in partnership with the Social Security Administration (SSA...SeniorFull timeWork experience placementLocal area$103.7k - $163.02k
...scale its enterprise Commercial Performance Management (CPM) capability. This role builds and... ...emerging trends, opportunities, and risks. Connect these insights tobusiness performance... ...operated by the Department of Homeland Security (DHS) in partnership with the Social...Full timeLocal areaShift work$76.4k - $120.01k
We are looking for a Sr. Internal Auditor to join... ...in the performance of risk-based financial, operational... ...Reporting to the Audit Manager, the Senior Internal... ...accounting/ audit/ consulting experience is highly preferred... ...Department of Homeland Security (DHS) in partnership...SeniorFull timeLocal areaFlexible hours- ...seasoned finance executive who brings deep expertise in treasury management, and capital markets — skillsets that are critical to Barton... ...cash in alignment with the Cash Management Committee’s policy and risk appetite.Manage surety and bonding relationships — a mission-...SeniorFor contractors
$49.5k - $77.66k
...improving procurement performance through world-class reporting, data management, and analytics, while also delivering data-driven insights,... ...Internet based system operated by the Department of Homeland Security (DHS) in partnership with the Social Security Administration (...Local area- Company DescriptionRobert Bosch LLC seeks Sr. Technical Project Manager (Multiple Positions) at its facility located at 38000 Hills Tech Dr, Farmington... ..., negotiation, and tracking of customer requirements. Risk management including risk assessment and mitigation....SeniorLocal areaRemote workWork from homeWorldwide3 days per week
$28.85 - $50.24 per hour
...Fair Lending Risk Management Analyst Position at loanDepot Position Summary: Responsible for executing fair lending risk management initiatives, including performance analytics, peer benchmarking, monitoring ECOA compliance, and tracking and reviewing fair lending...SeniorLocal area- ...Sr. Business Intelligence Analyst Under limited supervision, produce financial and market intelligence by querying data repositories... ...interactive dashboards and generating reports; collaborate with managers and decision makers to identify and solve problems and clarify...SeniorRelocation
- ...support as well as full functional support to all Company functions actively using the SAP ERP application, including Materials Management and Manufacturing modules. Support would include functional application design and configuration, analysis and issue resolution,...Senior
- Sr. Quality Assurance Analyst, Engineering Overview The Copper Hill QA team ensures our... ...excellence across Global Trade Management workflows. This role goes beyond functional... ...clarify requirements, and identify quality risks early. Turn operational realities into risk...Senior
$72.48k - $121.44k
...Organization has recently created a Project Management Office (PMO) to drive sense of urgency... ...on project status, issues, and key risks to senior management and cross‑functional... ...strategy & business operations, management consulting, corporate strategy, or Supply Chain)....Contract workImmediate startFlexible hours- ...Stefanini Group is hiring! Stefanini is looking for a Workforce Management Consultant(Allen Park, MI) We are seeking a Senior Technical Engineer... ...work rules into system logic Manage platform governance, security roles, upgrades, and environment stability Build SQL-based...Local area
- ...An established and growing accounting technology firm is looking for a SR. SALESFORCE BUSINESS ANALYST to join the team and make an immediate impact by working collaboratively across business units to translate business requirements into solutions in the Salesforce ecosystem...SeniorWork at officeImmediate start
$115.7k - $150.5k
...Job Description: Saab, Inc., a leading defense and security company, is currently seeking a Senior Electrical Engineer - Missile Systems. This forward-thinking, detail-orientated individual will join the Saab, Inc.’s engineering group to develop Missile Systems...SeniorTemporary workFor contractorsWork experience placementCasual workLocal areaRelocation package- Enterprise Risk Management |Irvine,CaliforniaPlano,TexasChandler,ArizonaScottsdale,ArizonaSouthfield,MichiganRemote Responsible for leading the development and execution of fair lending analytics programs to identify, manage, and report on fair lending risks. Oversees the...SeniorWork at officeLocal area
- Company DescriptionRobert Bosch LLC seeks Sr Software Engineer (Multiple Positions) at its facility located at 15000 N Haggerty Road... ...including HW and Sensors; (4) AB-ECU, DOORS (Requirement Management Tool), ALM-CCM/CQ (Change Management Tool), SCM/MKS (Software Configuration...SeniorRemote work2 days per week
- General DescriptionThe Senior Director, Platform Management is responsible for the strategic leadership, execution, and financial performance... ...in program management practices, governance, reporting, and risk management.Customer Relationship ManagementServe as the...SeniorFull time
- ...Business Intelligence Data Analyst Extract, transform, and manage data from multiple sources, including databases, data cubes, and user input files, to support business operations and decision-making; develop and maintain performance tracking reports and dashboards...
- ...explanations. Complete and submit DCP Consolidation & Reporting Deliverables. Responsible for the preparation and analysis of the periodic management reporting of financial results for assigned functional areas: Submission of financial results to DCP Consolidation & Reporting...Senior
- ...EmployBridge in Livonia, MI is seeking a Business Development Manager to expand our manufacturing-focused territory through new business development, account management, and consultative sales. You will prospect in-field (70%) and manage existing accounts (30%), engaging...
- Company DescriptionRobert Bosch LLC seeks Sr Software Engineer (Multiple Positions) at its facility located at 15000 Haggerty Road, Plymouth, MI 48170. Analyze General Motors PK Base SW and Diagnostics SW stack development utilizing the ISO-14229 (UDS) protocol. Work with...SeniorRemote work2 days per week
- ...seeking an experienced and results-driven Business Development Manager to lead strategic growth initiatives across our precision machining... ...-duty diesel, industrial, and commercial vehicle markets by securing new business opportunities and strengthening strategic customer...Contract workWork at office
$100k
...comprehensive package of products and services. Slice delivers a consultative approach on the best platforms and equipment most suitable for... .... To ensure your success, you will have a dedicated sales manager & support team, continued results-driven training, WHAT THE...Local area- ...Financial Analyst is to ensure accurate monthly reporting. The Sr analyst must be able to interface with departments including SG&... ...center reports to be distributed to all SG&A groups. Maintain and consult with the warranty teams and BBC (Bratislava Business Center) all...SeniorFull time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr. Security Risk Management Consultant. Be the first to apply!
- senior manager tax Livonia, MI
- senior resident engineer Livonia, MI
- senior performance engineer Livonia, MI
- senior implementation project manager Livonia, MI
- senior implementation engineer Livonia, MI
- senior level Livonia, MI
- senior accountant remote Livonia, MI
- senior vice president of operations Livonia, MI
- senior manager legal Livonia, MI
- senior manager automotive Livonia, MI



