Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director, Information Security Risk Management

The Custom Group of Companies

Information Security Risk Management Lead

The Information Security Risk Management Lead is a key member of the Risk Management team and is responsible for leading the implementation of the Enterprise and Operational Risk Management frameworks designed by the company to identify, measure, monitor and mitigate information security risks. The successful candidate serves as a second set of eyes to management to provide review and credible challenge of the effectiveness of information security processes and controls. This position is highly engaged with the firm-wide Information Security teams who provide security solutions as well as all corporate departments that own information security risk.

Strategic
  • Risk Culture - Assist the CRO and Head of Enterprise Risk and Operational Risk Management in driving the culture of engagement, teamwork and accountability.
  • Risk Assessments – Collaborate with the Information Security teams to guide and challenge risk assessments, and lead in efforts to strengthen the control environment in line with the evolving threat landscape.
  • Process Improvements – Identify opportunities to reduce risk of recurrence of incidents and events through process evaluation and improvements plans.
  • Operational Risk Management Framework - Support the CRO and Head of Enterprise Risk and Operational Risk Management in furthering the use and efficacy of the ORM framework while enhancing its applicability to manage information security risk.
Operational
  • Review and Credible Challenge – Provide review and credible challenge of the information security risk profile and all associated framework components, e.g., risk and control self-assessments, control testing, event management, metrics and indicators, risk appetite, finding management, and reporting.
  • Risk Oversight – Lead in executing oversight of information security risks by performing the following:
    • Provide subject matter expertise to business units to drive, guide and influence risk ownership, clarity and assessment of risks & controls.
    • Review and monitor the progress of actions and validate appropriateness of closure evidence.
    • Thematic review of operational risk events and associated proposed actions to reduce risk of recurrence.
    • Document credible challenge of information security risk appetite to support the Enterprise Risk management (ERM) program.
    • Regular review and challenge of key risk indicators including thresholds and applicability to risk appetite.
    • Prepare monthly and quarterly ORM/ERM reports and present to Technology Leadership, Audit, and regulatory bodies as required.
  • Project Oversight – Lead in executing project oversight for information security risks by performing the following:
    • Provide challenge of risk management of material information security projects that may impact the firm's risk profile.
    • Work with business partners to challenge the quality of the project inherent risk assessments and contribute to the independent risk review for projects.
    • Review project benefits and closure artifacts in preparation for transition to BAU.
  • Governance – Actively present to various committees and forums to keep management educated on changes to risk appetite.
  • Relationship Management – Be a respected point of contact to stakeholders across the business and technology functions in providing operational risk coverage for information security risk.
  • Advisory Services – Be a trusted advisor and provide effective challenge to stakeholders on the evolving cybersecurity and technology risk landscape.
  • Policy & Procedures - Maintain and oversee relevant policies, standards, and procedures related to security processes.
Leadership
    • Primary lead for the team to role model expected work ethic and quality, meet divisional objectives, and support career development.
    • Provide guidance and support to junior members of the team.
    • Interact with and present to regulatory bodies in regular continuous monitoring meetings.
    • Ability to partner, influence, and maintain credibility with the business

What we're looking for:

    • 10+ years of experience specifically related to information security governance, operations, and risk management.
    • Broad-based technology experience at substantial scale and complexity in a global, highly regulated, high-volume transaction environment. Experience must include time operating within transaction services environments characterized by the need for continuous availability and the highest levels of security.
    • Experience with developing and managing Operational Risk programs, establishing framework and on-going process in accordance with best practices and Basel requirements.
    • Comfortable leading in a complex matrixed organization, ideally in a global firm with a dynamic and rapidly changing environment.
    • Experience leading within a highly regulated environment, with a preference for experience at the international and federal levels. Deep knowledge of policy frameworks and a strong understanding of policies, procedures, guidelines, and structure.
    • Functional expertise, with operational knowledge of and exposure to various current and emerging information security areas such as:
  • Cyber resilience
  • Identity & privileged access management
  • Secure coding practices
  • Incident response
  • Artificial Intelligence
  • Third-party risk management
  • Cloud security configuration and control frameworks
  • Threat/vulnerability management
  • Network security

Professional qualifications / certifications

  • B.S. in a technology discipline (Computer Science, Information Management, Computer Engineering, Cybersecurity or equivalent).
  • Relevant certification is desirable, e.g., CISSP, CISM, CISA, CRISC.
  • Working knowledge of Risk Management life cycles based on an established framework: NIST CSF, NIST SP 800-53, ORX, ISO 27001, SANS, CERT, ENISA, CSA, OACA, ISACA.
  • Proficiency in MS PowerPoint and Excel.
  • Experience in broader MS Office suite, including Project and Visio is a plus
  • Experience with enterprise GRC tools, e.g. Archer is a plus
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Director, Information Security Risk Management in Iselin, NJ vacancy
  • $172k - $250k

     ...Grant Thornton is seeking a Director of Information Security Audit & Compliance to join the team. Approved...  ...establishing global delivery centers, managing internal and external audits, and ensuring...  ...remediation plans. Governance, Risk & Control Framework Align the... 
    Suggested
    Internship
    Seasonal work
    Work at office
    Local area
    Flexible hours
    3 days per week

    Grant Thornton

    Edison, NJ
    4 days ago
  • $170.6k - $390k

     ...place in the world to grow your career in information security! The opportunity The Senior...  ...controls align with business objectives, risk tolerance, and regulatory requirements...  ...Join our dynamic team as a Senior Manager in Cybersecurity Engineering, where you... 
    Suggested
    Summer holiday
    Remote work
    Flexible hours

    EY

    Iselin, NJ
    4 days ago
  • $175k - $224k

     ...Network Security Platform Manager Citizens Bank is seeking an accomplished Network Security Platform...  ...Illumio. Audit, Compliance & Risk Management Act as the central point...  ...in Computer Science, Cybersecurity, Information Technology, or related field... 
    Suggested
    Local area
    Flexible hours

    Citizens Financial Group, Inc.

    Iselin, NJ
    2 days ago
  • $133k - $190k

     ...Description Manager, Application Security Hybrid Work Arrangement Hybrid work arrangement required...  ...the SDLC while balancing regulatory, risk, and business requirements. As...  ...remediation planning • Provide threat informed guidance to engineering teams on high... 
    Suggested
    Local area
    Remote work
    Flexible hours

    Citizens

    Iselin, NJ
    4 days ago
  • $178k - $307.05k

    Job Overview Sr. Director, Security & Defense - a senior technology leadership...  ...the cybersecurity and information protection strategy for DePuy...  ...resilient, compliant, and risk‑aware security posture...  ...incident response, vulnerability management, and security monitoring.... 
    Suggested
    Local area
    Immediate start

    6149-DePuy Synthes Products Inc. Legal Entity

    New Brunswick, NJ
    3 days ago
  •  ...Key Responsibilities: Establish and manage a comprehensive vulnerability management...  ...Lead the design and implementation of secure, automated CI/CD pipelines. Define...  ...tools and platforms that support proactive risk management. Drive secure configuration... 

    The Custom Group of Companies

    Iselin, NJ
    4 days ago
  •  ...practice, including scheduling, performance management, compensation processes, and technology...  ...Support governance, quality, and risk management efforts in partnership with Independence...  ...Prior experience as a Partner or senior Director/Managing Director ~ Demonstrated... 
    Private practice
    Work at office
    Local area

    EisnerAmper

    Iselin, NJ
    9 days ago
  • $170k

     ...Job Description Job Description Data Integration Operations Manager (VP Level) MUST be local to Iselin NJ, Hybrid Schedule Salary...  ...Manage production support, incident resolution, and operational risk Drive continuous improvement of integration processes and... 
    Local area

    Shulman Fleming & Partners

    Iselin, NJ
    26 days ago
  • $70k - $85k

     ...We’re looking for a Operations Manager. Can you picture yourself here...  ...5. Safety, Compliance and Risk Management Ensure that operations...  ...daily. Use data to inform decision-making and drive continuous...  ...through partnership with the Director of Operations.... 
    Full time
    Work at office
    Flexible hours

    brightview.com

    Hillside, NJ
    4 days ago
  • $175k - $275k

     ...with ASC Facility Administrators, Medical Directors, and functional leaders to drive...  ...Responsibilities Portfolio P&L and Performance Management • Own portfolio-level P&L...  ...improvement, infection prevention, and risk management programs Growth and Strategic... 

    The US Oncology Network

    New Providence, NJ
    1 day ago
  • $96.3k - $180.1k

     ...Investigations Operations Specialist - Assistant Director Join to apply for the Ethics and...  ...team under Ethics, Compliance, and Risk Management (ECRM) that conducts and manages Code...  .... Facilitate the provision of information concerning substantiated matters to firmwide... 
    Work experience placement
    Summer holiday
    Work at office
    Flexible hours

    EY

    Woodbridge, NJ
    2 days ago
  • $70k - $85k

     ...responsible for account and security setup and maintenance, ensuring...  ...operational efficiency, and risk reduction, while identifying...  ...organizational skills and the ability to manage multiple priorities. ~...  ...ability to handle sensitive information with discretion.... 
    Temporary work
    Work at office
    Remote work

    Bessemer Trust

    Woodbridge, NJ
    5 days ago
  •  ...critical programs across national security, defense, and public service...  ...service areas. - Track and manage cybersecurity activities,...  ...cybersecurity performance and risk posture. - Maintain records...  ...’s degree in Cybersecurity, Information Technology, Business, or a related... 
    Minimum wage
    Full time
    Contract work
    Temporary work
    Work experience placement

    Maximus

    Edison, NJ
    1 day ago
  • $135k - $155k

    A state government office in New Jersey is seeking a Technology Operations Director to manage technology platforms and oversee a team. The role involves ensuring cybersecurity practices, optimizing hardware and software usage, and collaborating across departments. Candidates... 
    Work at office

    New Jersey State Office of Innovation

    New Brunswick, NJ
    4 days ago
  • Regulatory Operations/Affairs Manager Onsite role New Brunswick, NJ Work Schedule: Mon - Fri...  ...will report directly to the Associate Director, Regulatory Affairs and will be responsible...  ...regulatory inspections, APQR's, quality risk management). Qualifications, Knowledge and... 
    Contract work
    Local area
    Worldwide

    TechDigital Group

    New Brunswick, NJ
    3 days ago
  • $94.18k - $114.12k

     ...experienced Technical Product Manager to join the Commercial...  ...impact analysis, and functional risk assessments, ensuring stories...  ...computer science, Management Information Systems, or a related field (...  ...financial information, or social security numbers during our... 
    Hourly pay
    Full time
    Temporary work
    Part time
    For contractors
    Summer work
    Live in
    Work at office
    Local area
    Remote work
    Flexible hours
    Shift work

    Bristol-Myers Squibb

    New Brunswick, NJ
    5 days ago
  • $60k - $75k

     ...business operations through CRM and reporting management, data analysis, event coordination, and...  ...@hubinternational.com. This contact information is for accommodation requests only; do...  ...will help you reach your goals through risk services, claims management, and compliance... 
    Full time
    Work at office
    Local area
    Remote work

    HUB International

    Berkeley Heights, NJ
    3 days ago
  • $173.2k - $272.6k

     ...Chemical Technical Operations Director for North America API...  ...technical oversight, portfolio management, continuous improvement, talent...  ...sustained commercial supply, risk management and sourcing. As...  ...with disabilities.- For more information about personal rights under the... 
    Full time
    Contract work
    For contractors
    Local area
    Remote work
    Relocation
    Visa sponsorship
    Flexible hours
    Shift work

    Merck & Co.

    Rahway, NJ
    5 days ago
  • $145k - $180k

     ...Bessemer Trust is seeking a Fee Operations Manager to lead the Fee Operations team within Client and Custody Operations - Data and Tax...  ...team. Analyze industry trends and data to proactively address risks and business needs. Partner with internal stakeholders and... 
    Temporary work
    Work at office
    Remote work

    Bessemer Trust

    Woodbridge, NJ
    5 days ago
  • $85k - $105k

     ...Summary: The Operations Manager is responsible for the direct management of the shift supervisors, and provides leadership and training to the team members. This role is responsible for managing the functionality of the shifts, and ensures all shifts are properly staffed... 
    Full time
    Temporary work
    Work experience placement
    All shifts
    Monday to Friday
    Shift work

    M S International

    Edison, NJ
    3 days ago
  • $25.75 - $26.75 per hour

     ...Raise The Bar! Benefits offered for all Full-time Restaurant Managers: ~ Medical, Dental, Vision & Pharmacy Benefits ~ Dependent...  ...: ~ New Restaurant opening experience Additional Information All your information will be kept confidential according to... 
    Bi-weekly pay
    Weekly pay
    Full time
    Casual work
    Work at office
    Flexible hours
    Shift work
    Afternoon shift

    Raising Cane's

    Edison, NJ
    7 days ago
  • $120k - $130k

     ...other benefits such as 401k and unlimited PTO for exempt level roles. Role Summary: As the site leader, the Senior Operations Manager, you will play a vital role in the overall success of the warehouse facility by leading employee activity to achieve performance... 
    Flexible hours
    Shift work
    Afternoon shift

    Veho Tech, Inc.

    Avenel, NJ
    4 days ago
  • $115k - $135k

     ...Summary : The Operations Director is responsible for the effective management of the warehouse operations; including shipment performance, productivity management and direct supervision of team members. Work Hours: Monday to Friday from 08:00 AM to 05:00 PM, 1 Saturday... 
    Full time
    Temporary work
    All shifts
    Monday to Friday

    M S International

    Edison, NJ
    3 days ago
  •  ...Operations Director - Middlesex County (NJ) Sports Complex Closes 09-Jul-2026 (EST)...  ...DEPARTMENT: OPERATIONS REPORTS TO: GENERAL MANAGER STATUS: FULL-TIME (EXEMPT) ABOUT...  ..., quality control, expense management, security, procedures, and facility maintenance, and... 
    Full time
    Flexible hours
    Night shift

    The Sports Facilities Companies

    Edison, NJ
    5 days ago
  •  ...Competitive Compensation Paid Time Off Career Growth Opportunities Job Summary We are seeking an experienced Operations Manager to join our team. In this role, you will optimize the operational systems and processes of the company, maximizing efficiency and... 

    Elevated Deck Systems Inc

    South Plainfield, NJ
    1 day ago
  •  ...At Delta Hotels by Marriott Woodbridge, managed by Rebel Hotel Company, we believe that...  ...have the ability to assimilate complex information, data, etc. from disparate sources and consider...  ...hotel safe specifically with regard to security Attend all scheduled meetings that... 
    Full time
    Part time
    Work at office
    Immediate start
    Relocation
    Monday to Friday
    Flexible hours
    Shift work
    Night shift
    Weekend work
    Day shift
    Afternoon shift

    Rebel Hospitality New York LLC

    Iselin, NJ
    5 days ago
  • $95k - $115.5k

     ...Job Overview: Operations Manager - Avenel, NJ, Pennsylvania, Ohio, West Virginia, New York Travel Required 75%-100% Must...  ...association with a person with a disability, medical condition, genetic information, ethnic or national origin, marital status, veteran status, or... 
    Temporary work
    Work at office
    Relocation
    Flexible hours

    Keurig Dr Pepper Careers

    Avenel, NJ
    3 days ago
  • $26 - $34 per hour

     ...this beautiful. GENERAL SUMMARY & SCOPE The Operations Manager (OM) is responsible for leading through Ulta Beauty's mission,...  ...sales and guest service experience. Take the initiative to stay informed regarding new and existing industry trends, products, and... 
    Full time
    Part time
    Work experience placement
    Work at office
    Local area
    Flexible hours
    Shift work
    Afternoon shift

    Ulta Beauty

    South Plainfield, NJ
    5 days ago
  • Merck & Co. is seeking a Director of Operational Technology security to provide strategic leadership and develop robust security solutions across our global operations. In this role, you will lead critical initiatives, guide governance bodies, and build a unified security... 
    Flexible hours

    Merck & Co.

    Rahway, NJ
    2 days ago
  • Job Title Disabled veteran A veteran who served on active duty in the U.S. military and is entitled to disability compensation (or who but for the receipt of military retired pay would be entitled to disability compensation) under laws administered by the Secretary ...

    Veho

    Avenel, NJ
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director, Information Security Risk Management. Be the first to apply!