Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director, Cyber Risk

Asurion

Position OverviewThe Director, Cyber Risk leads Asurion’s cyber and technology risk management discipline and is accountable for a consistent, outcome-driven program the business can rely on for decision-making. This strategic, cross-functional leader owns the end-to-end cyber risk lifecycle—identification, assessment, quantification, treatment, acceptance, monitoring, and reporting—along with the cyber risk register, risk appetite and tolerance framework, control assurance, and issues management. The Director partners closely with first-line control owners across security and technology, Portfolio Information Security Officers (PISOs), and key stakeholders in Enterprise Risk Management, Internal Audit, Legal, and Privacy. This role sets the standard for sound risk judgment, develops a high-performing team, and translates complex cyber risk into clear, defensible narratives for senior leadership and the board. This is a salaried, leadership role with enterprise impact, guiding a multi-year maturity uplift from ad hoc practices to scalable, evidence-based risk management.Key ResponsibilitiesOwn and continuously improve the cyber and technology risk management framework, methodology, taxonomy, and lifecycle aligned to NIST CSF 2.0, ISO 27001/27005, and applicable regulatory obligations.Define standards, procedures, and rating scales for consistent enterprise-wide risk identification, assessment, and reporting; partner with the PISO model to ensure common language and practices across portfolios.Lead enterprise cyber risk assessments across technology, business, regulatory, and emerging-risk domains to produce consistent, defensible determinations.Establish and operate a cyber risk quantification capability (e.g., FAIR-based) to express risk in business and financial terms and inform prioritization and investment decisions.Maintain the enterprise cyber risk register; ensure risks are well-described, owned, rated, and tracked to acceptable residual levels; develop and manage KRI/KCI programs for forward-looking posture.Operationalize the risk appetite and tolerance framework with the CISO and senior leadership; own risk acceptance and exception governance with clear, auditable documentation and time-bound approvals.Govern cyber risk policy structure, ownership, review cadence, and exception handling; chair or support cyber risk forums and escalate decisions to appropriate authority levels.Lead second-line, risk-based assurance over design and operating effectiveness of key cyber controls in coordination with first-line and Internal Audit; identify thematic weaknesses and drive structural remediation.Own issues and remediation management—intake, prioritization, owner assignment, tracking to closure, and escalation of aging items.Define and report outcome-focused metrics (e.g., residual risk trends, out-of-appetite reduction, early-versus-late finding ratios, incidents tied to accepted risk) in executive- and board-ready formats.Serve as primary point of contact for cyber risk in regulatory exams, audits, and carrier-partner due diligence.Integrate cyber risk into Enterprise Risk Management to ensure consistency in enterprise risk reporting and governance; partner with Legal, Privacy, Procurement, and technology leaders to embed risk-informed decisions.Oversee vendor/third-party risk within the cyber risk portfolio to ensure supply-chain risk is governed in line with enterprise practices.Build, lead, and develop a team of senior managers and analysts; set objectives, manage performance, and scale capacity through process improvement, tooling, and appropriate AI-assisted workflows.Education and ExperienceBachelor’s degree in a related field or equivalent professional experience.10+ years in cybersecurity, IT/technology risk, or GRC, including 5+ years leading managers or multiple teams/domains.Proven experience designing, leading, or substantially maturing an end-to-end enterprise cyber/IT risk management program.Deep knowledge of NIST CSF 2.0, ISO 27001/27005, relevant regulatory regimes, and the three-lines-of-defense model.Experience operating a risk register, risk appetite/tolerance framework, and risk acceptance/exception governance.Hands-on experience with GRC/IRM platforms (e.g., ServiceNow IRM, Archer, OneTrust, or comparable).Excellent executive communication skills with a track record of briefing senior leadership and boards.Strong cross-functional influence partnering across security, technology, legal, privacy, and business teams.Preferred: CRISC, CISSP, CISM, or CISA; FAIR-based quantification experience; background in regulated or consumer-facing environments; experience with ERM integration and executive/board risk committees; Master’s degree in a related field.Knowledge, Skills, and AbilitiesStrategic risk leadership with the ability to connect cyber risk to business outcomes and investment decisions.Sound, defensible judgment under uncertainty; skilled in risk trade-offs and acceptance decisions.Expertise in risk quantification, KRI/KCI design, and outcome-based program metrics.Strong governance and policy acumen, including appetite/tolerance, exceptions, and escalation pathways.Proficiency in second-line control assurance and issues management, driving thematic remediation.Exceptional written and verbal communication; translates complex risk into clear, actionable narratives for executives and the board.Team leadership and talent development; builds high-performance teams and next-level leaders.Change agent mindset with process improvement, tooling, and automation competencies, including appropriate use of AI-assisted workflows.Collaboration and influence across ERM, Internal Audit, Legal, Privacy, Procurement, and technology organizations.Travel RequirementsN/APhysical DemandsStationary Position: FrequentlyVision: 20/20 corrected visionHearing: Receive detailed information if spoken toJob SummaryJob number: ASU0020557Profession: Technology

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Director, Cyber Risk in Nashville, TN vacancy
  • Position OverviewAsurion is seeking a Sr. Director, Cyber Risk and Trust, to lead the enterprise function responsible for strengthening customer trust, governing cybersecurity risk, enabling regulatory and framework alignment, and advancing a security-aware culture. Reporting... 
    Cyber

    Asurion

    Nashville, TN
    3 days ago
  •  ...BRCityNashvilleJob TypeFull Time Your roleAre you keen on working in world class Cyber Security Operations Center for one of the best Swiss private...  ...sound judgment - validating outputs and aligning with policies, risk standards, and ethical useAbout usUBS is a leading and truly... 
    Cyber
    Flexible hours

    UBS

    Nashville, TN
    2 days ago
  • The Lead Cybersecurity Engineer position at L3Harris in Nashville, TN, focuses on accountable ownership for cybersecurity across the program and product line. Responsibilities include translating requirements into secure architecture and designs, and delivering verifiable...
    Cyber

    L3Harris

    Nashville, TN
    1 day ago
  •  ...Trinnex is seeking a Senior Cyber Security Analyst to join their Security Team in Nashville, TN. You will focus on securing the software development lifecycle, conducting advanced security monitoring, leading incident response, and collaborating with teams to safeguard... 
    Cyber

    Trinnex

    Nashville, TN
    1 day ago
  • $89.33k

     ...careers section of the system. Job Description: At Regions, the Cyber Security Engineer supports applicable services for cloud...  ...operational processes, standards, and procedures Ensures compliance with risk management programs, rules and regulations, and cybersecurity... 
    Cyber
    Full time
    Work at office
    Relocation
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    3 days per week

    Regions Bank

    Nashville, TN
    1 day ago
  • $275k - $300k

     ...direction across cybersecurity operations, cloud security, governance, risk and compliance (GRC), incident response, security architecture,...  ...implement security solutions and safeguards* Develop and manage cyber incident response processes, including identification,... 
    Cyber
    Remote work

    KForce

    Nashville, TN
    3 days ago
  • $134.5k - $265.1k

    Position Summary Deloitte’s Cyber Services help our clients to be secure, vigilant, and resilient in the face of an ever-increasing array of cyber threats and vulnerabilities. Our Cyber Risk practice helps organizations with the management of information and technology... 
    Cyber
    Local area
    Visa sponsorship

    Deloitte

    Hermitage, TN
    1 day ago
  • $20 per hour

     ...Title: Temporary - Cyber Security Analyst Position Summary Under the directive of the Information Security Officer, the cyber security...  ...Conduct or coordinate vulnerability scans and document findings and risk mitigation strategies. Implement, monitor and maintain... 
    Cyber
    Hourly pay
    Temporary work
    Flexible hours

    Motlow

    Nashville, TN
    16 hours ago
  • $134.5k - $265.1k

    Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity....  ...engagement leads and architects to keep delivery on track and surface risks early.Stay current on PlainID's platform roadmap, including... 
    Cyber
    Local area
    Visa sponsorship

    Deloitte

    Hermitage, TN
    1 day ago
  • $82.6k - $162.8k

    Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions... 
    Cyber
    Local area
    Visa sponsorship

    Deloitte

    Hermitage, TN
    1 day ago
  • $157k - $213k

     ...will drive thought leadership and inspired cyber security solutions powered by our...  ...business operations, security needs, and risk appetiteIdentify AI related security concerns...  ...consulting advisor, architect, team leader, director and/or higherHighly motivated self-... 
    Cyber
    Full time
    Work experience placement
    Local area
    Remote work
    Work from home

    Optiv

    Nashville, TN
    3 days ago
  • Position Summary Deloitte’s Cyber team helps clients address evolving cybersecurity challenges and opportunities by delivering solutions and managed services that reduce complexity, strengthen resilience, and support confident growth. As a Google SecOps Manager supporting... 
    Cyber
    Local area

    Deloitte

    Nashville, TN
    4 days ago
  • $170.05k - $209.12k

     ...Technology, Operations, Digital, and Data (TODD) to ensure controls are designed, implemented, and monitored to strengthen risk management, compliance, and cyber security, effectively mitigating risk to levels within the company’s risk appetite Practices disciplined change... 
    Cyber
    Full time
    Work at office
    Relocation
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    3 days per week

    Regions Financial

    Nashville, TN
    4 days ago
  • $110.7k - $218.3k

    Position Summary Join Deloitte’s Cyber Defense & Resilience team as a forward deployed engineer supporting client patching and...  ...patch execution across environments, and track progress against risk-reduction goals.Recruiting for this role ends on 12/31/2026.Work... 
    Cyber
    Local area

    Deloitte

    Nashville, TN
    12 hours ago
  • $168.09k - $234.02k

     ...the careers section of the system.Job Description:At Regions, the Cyber Security Manager is responsible for leading a diverse team of...  ...controls are designed, implemented, and monitored to strengthen risk management, compliance, and cyber security, effectively mitigating... 
    Cyber
    Full time
    Work at office
    Relocation
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    3 days per week

    Regions Financial

    Nashville, TN
    3 days ago
  • $82.6k - $162.8k

    Position Summary Join our Deloitte Cyber team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience... 
    Cyber
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    1 day ago
  •  ...NSE Training Institute, an initiative of Fortinet’s Training Advancement Agenda (TAA), provides one of the largest and broadest training programs in the industry to make cyber training and new career opportunities available to everyone.Full timePosting Date: 2026-07-27
    Cyber
    Contract work
    Local area
    Worldwide
    Home office

    Fortinet

    Nashville, TN
    3 days ago
  • $97.61k - $188.38k

    Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity....  ...advanced understanding of business processes, internal control risk management, IT controls and related standardsResponsible to install... 
    Cyber
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    12 hours ago
  •  ...entire security operations center, we will help companies build cyber resilience to grow with confidence. Our team of the security sector...  ...hackers and help clients build resilience from within. We blend risk strategy, digital identity, cyber defense, application security,... 
    Cyber
    Full time
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Nashville, TN
    12 hours ago
  • $184.3k - $238.93k

     ...section of the system.Job Description:At Regions, the Enterprise and Cyber Security Architecture Manager directs the program to develop,...  ...controls are designed, implemented, and monitored to strengthen risk management, compliance, and cyber security, effectively... 
    Cyber
    Full time
    Work at office
    Relocation
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    3 days per week

    Regions Financial

    Nashville, TN
    4 days ago
  • $134.5k - $265.1k

    Position Summary Join Deloitte’s Cyber team as an AWS Cloud Security Manager and help organizations address the complex challenges...  ...and implement cloud security strategies that align to business, risk, and compliance priorities across transformation initiatives.... 
    Cyber
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    1 day ago
  • $163.4k - $322.1k

     ...lead the design and delivery of cloud security services within our Cyber practice. In this role, you will advise clients on securing...  ...Learning, Generative AI, or Agentic AI security programs, including risk assessments, governance frameworks, and secure architecture for... 
    Cyber
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    1 day ago
  • $170.63k - $218.98k

     ...the careers section of the system.Job Description:At Regions, the Cyber Security Architect contributes to the advancement of Regions’...  ...cyber security architecture, evaluates and mitigates potential risk, and approves implementation of systems and applications into productionCollaborates... 
    Cyber
    Full time
    Work at office
    Relocation
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    3 days per week

    Regions Financial

    Nashville, TN
    4 days ago
  • $134.5k - $265.1k

    Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity....  ...you'll doAs a Google Cloud Security Manager on the Cloud Cyber Risk team, you will be responsible for…Leading end-to-end delivery of... 
    Cyber
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    3 days ago
  • $105.4k - $207.8k

    Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity....  ...-state processes, and technology environments to identify gaps, risks, and improvement opportunitiesDeveloping analyses, presentations... 
    Cyber
    Work experience placement
    Local area

    Deloitte

    Nashville, TN
    12 hours ago
  • $105.4k - $207.8k

    Position Summary Palo Alto Network Security Engineer/ Senior Consultant, Strategy, Growth, and TransformationDeloitte’s Cyber business is passionate about making an impact with lasting change. Delivering our industry leading services requires fresh thinking and... 
    Cyber
    Work experience placement
    Local area
    Remote work

    Deloitte

    Nashville, TN
    2 days ago
  •  ...is in search of a Chief Information Security Officer (CISO) to take on an enterprise-level leadership role in global cyber security, information risk, and resilience. The CISO will be responsible for defining and executing the global security strategy, leading security... 
    Cyber

    Confidential

    Nashville, TN
    3 days ago
  • $127.2k - $246.9k

     ...utilizing OpenTelemetry (OTel) to standardize the collection, routing, and processing of logs, metrics, and tracesSupport and streamline Cyber Operations by actively automating repetitive tasks, threat intelligence enrichment, and other cybersecurity functions to drive down... 
    Cyber
    H1b
    Local area

    KPMG

    Nashville, TN
    1 day ago
  • $141.2k - $278.3k

     ...leveraging Google Cloud’s advanced security portfolio to protect workloads, secure data, and maintain continuous compliance against evolving cyber threats. You will collaborate closely with development, operations, and security teams to foster a culture of automation and... 
    Cyber
    Local area
    Visa sponsorship
    Flexible hours

    Deloitte

    Nashville, TN
    1 day ago
  •  ...Sr. IT Director & Regional Chief Information Security Officer Job Category : Information...  ...and implement secure processes, mitigate cyber threats, and embed a culture of...  ...operational excellence while minimizing risk. Lead the enterprise-wide cyber risk management... 
    Cyber
    Full time

    Geodi

    Brentwood, TN
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director, Cyber Risk. Be the first to apply!