Cyber Risk Assessor III
Hard Rock Cafe
- # Cyber Risk Assessor IIIApplyremote type: Hybridlocations: Support Services Headquarters Buildingtime type: Full timeposted on: Posted Todayjob requisition id: R7940Our team members are the key to our company’s success, and their health and well-being, as well as that of their families, is very important to us. We offer a comprehensive benefits package that allows our team members stay healthy, plan for their future and maintain a healthy work-life balance. Benefits may vary with employment status. To see our fill list of Team Member Benefits please visit our career site: Description:**The Cyber Risk Assessor III leads cybersecurity risk assessments, control evaluations, and policy oversight across the organization's Governance, Risk, and Compliance program. This strategic role identifies and assesses risks, evaluates control effectiveness, drives regulatory and framework alignment, and strengthens governance processes organization-wide.**Key Responsibilities****Governance, Risk Assessment & Management*** Lead cybersecurity risk assessments for systems, applications, business processes, and third-party* Drive the identification, analysis, and documentation of cybersecurity risks and control gaps using methodologies such as FAIR and NIST RMF* Evaluate and assess the risk of cybersecurity issues, findings, and their potential impact to the organization* Oversee and maintain the Cybersecurity risk register with clear ownership, accountability, and tracking* Develop mitigation strategies, compensating controls, and risk-based remediation plans with business and technical stakeholders* Responsible for monitoring and reporting on risk trends, control effectiveness, compliance status, and remediation progress for leadership and stakeholders.* Own and manage the Cybersecurity Exception Process, including evaluation, approval workflows, and ongoing monitoring* Establish and track key risk indicators (KRIs) and report on risk trends, control effectiveness, and remediation progress to senior leadership* Proactively identify, track, and escalate top organizational cybersecurity risks to leadership* Lead the development, documentation, and continuous improvement of security and GRC processes to strengthen governance, consistency, and operational effectiveness.* Lead the development, review, and maintenance of cybersecurity policies, standards, procedures, and related governance documentation.* Support security awareness, governance communications, and continuous improvement initiatives across the GRC program.**Control Evaluation & Maturity Assessment*** Lead the evaluation of design and operating effectiveness of security controls across the organization* Conduct and manage internal cybersecurity maturity assessments to evaluate program effectiveness and identify improvement opportunities* Assess control maturity levels and develop roadmaps for enhancement* Map controls to frameworks such as NIST, ISO 27001, PCI DSS, and other applicable standards**Stakeholder Engagement & Reporting*** Serve as the subject matter expert and advisor on complex cybersecurity risk issues* Lead and influence cross-functional engagement with IT, Cybersecurity, Audit, Legal, Privacy, and business teams* Develop and deliver executive-level cybersecurity risk reports for senior management and board-level stakeholders, highlighting critical risks and mitigation strategies* Communicate complex technical and risk information effectively to both technical and non-technical audiences* Present risk assessments, findings, and strategic recommendations to executive leadership and board committees* Lead and facilitate risk workshops and training sessions to promote risk-aware culture**Required Qualifications****Experience & Expertise*** 7+ years of progressive experience in cybersecurity, Governance, Risk, and Compliance (GRC), or information security* Demonstrated experience leading enterprise-level risk assessments and governance programs* Deep expertise in risk assessment methodologies and control evaluation concepts* Experience with cybersecurity frameworks: NIST CSF, ISO 27001, PCI DSS, SOC 2, and/or CIS Controls* Proven experience developing policies, standards, procedures, and governance documentation* Experience assessing risk of cybersecurity issues and developing remediation strategies* Experience conducting technical risk assessments and security architecture reviews* Proven experience leading and managing cybersecurity maturity assessments**Technical Knowledge*** Comprehensive knowledge across all cybersecurity domains including infrastructure security, network security, application security, cloud security, identity and access management, data protection, endpoint security, security operations, and emerging technologies such as artificial intelligence* Understanding of security control applicability and limitations across different technology environments* Current knowledge of the threat landscape and attack vectors**Skills & Competencies*** Strategic thinking and ability to translate technical vulnerabilities into business risk and impact* Excellent analytical skills with ability to synthesize complex information into actionable insights* Superior written and verbal communication and report-writing capabilities* Proven ability to influence and drive outcomes without direct authority across all organizational levels* Critical thinking and problem-solving abilities* Attention to detail while maintaining strategic perspective* Demonstrated leadership in mentoring and developing team members**Preferred Qualifications****Certifications*** CISSP (Certified Information Systems Security Professional)* CRISC (Certified in Risk and Information Systems Control)* CISA (Certified Information Systems Auditor)* CISM (Certified Information Security Manager)* ISO 27001 Lead Auditor or Lead Implementer* FAIR Certification* PCI QSA or ISA**Additional Experience*** Experience with GRC platforms (E.g., Onspring, ServiceNow GRC, Archer, OneTrust, Vanta, Drata)* Background in regulated industries (gaming, financial services retail)* Bachelor’s degree in Computer Science, Information Security, Cyber Risk Management, or related field (Master's preferred)### Why work here?Thank you for choosing us as your employer of choice! If you are ready for an exciting opportunity working in a creative environment where you can bring your authentic self to work, we want to connect with you!
- J-18808-Ljbffr Hard Rock International
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Cyber Risk Assessor III in Florida, NY vacancy
- Hard Rock Hotel Cancun is seeking a Cyber Risk Assessor III to lead cybersecurity risk assessments and manage governance processes. The role requires at least 7 years of experience in cybersecurity, focusing on risk evaluations and control effectiveness. This strategic...Cyber
- Hard Rock International is seeking a Cyber Risk Assessor III to lead cybersecurity risk assessments and develop governance documentation. This strategic role involves evaluating risks and control effectiveness across the organization. The ideal candidate should have 7+...Cyber
- ...Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever‑changing threat landscape. Through powerful solutions and managed services that...CyberLocal areaFlexible hours
- ...Product Support Engineer III (Deploy Only) page is loaded## Product Support Engineer III (Deploy Only)remote type: In officelocations... ...lifecycle management across domains – air, land, sea, space and cyber.**Responsibilities:*** Lead technical support and troubleshooting...CyberFor contractorsWork at officeImmediate startRemote workWorldwide
- ...Product Support Engineer III - Deploy Only - Contingent upon Award page is loaded## Product Support Engineer III - Deploy Only - Contingent... ...lifecycle management across domains – air, land, sea, space and cyber.**Responsibilities:*** Lead technical support and troubleshooting...CyberFor contractorsWork at officeImmediate startWorldwideShift work
- ## Systems Administrator III - DeployableApplyremote type: In officelocations: Shalimar, FLtime type: Full timeposted on: Posted Todayjob... ...lifecycle management across domains - air, land, sea, space and cyber.**Responsibilities:*** Lead the design and implementation of...CyberWork at officeWorldwideShift work
- ...areas: Information Technology (IT), Clinical Research, Rehabilitation Therapy, and Nursing. Job Description Job Title: Claims Analyst III Duration: 3 Months Location: Doral, Florida Qualifications Responsibilities: This department handles claim provider complaints....Contract work
- ...A staffing firm in the United States is seeking a Claims Analyst III to handle claim provider complaints and review processed claims. The ideal candidate will have 1-2 years of experience in claims processing and strong knowledge of billing guidelines, as well as proficiency...
- ...24x7x365. Network Engineers perform Tier III network support in accordance with the SIE... ...improvements supporting mission assurance and cyber resiliency. Provide systems and network... ...cybersecurity operations including risk identification, mitigation activities, vulnerability...CyberContract work
- ...Martin Space (LMS) is seeking a Classified Cyber Security Associate Manager to lead a team... ...Assessing and mitigating system security risks throughout the system lifecycle. Overseeing... ...DoD 8140/8570 certification for IAM Level III (i.e. CISSP, CISM, GSLC, CCISO) Experience...CyberFull timeWork at officeRemote work
- ...Prescient Edge is looking for a Cyber Security Administrator to support a Federal Government client in New York. This role ensures compliance with DoD cybersecurity mandates, implements security monitoring solutions, and conducts vulnerability assessments. The ideal candidate...Cyber
- Team Cymru, located in the Town of Florida, NY, seeks a Technical Product Marketing Manager to bridge the gap between technical capabilities and market understanding. Your role is essential in helping Sales communicate effectively and position Team Cymru as a leading provider...CyberRemote work
- ...A defense contractor is seeking a Cyber Security Administrator in New York. This role focuses on integrating and sustaining a scalable data environment for the DoD. Responsibilities include ensuring compliance with DoD cybersecurity mandates, implementing security solutions...CyberFor contractorsWork at office
- 6AM City, LLC is seeking a Cyber Security professional with a Top Secret clearance and CEH certification. Candidates must have experience with the USCENTCOM Area of Responsibility and be prepared to work outside normal business hours. The role involves analyzing and executing...Cyber
- ...A federal cybersecurity firm seeks a Compliance and Assessment Analyst to support cyber missions. This role involves tracking compliance, conducting assessments, and liaising between cybersecurity teams. The ideal candidate must have over 5 years of experience and required...Cyber
- ...A veteran-owned cybersecurity firm is seeking a Cyber Security Administrator to support USSOUTHCOM. The role requires a Bachelor's in... ...an Active TS/SCI Clearance and have Skills in cloud security and risk assessments, offering competitive salaries and comprehensive benefits...Cyber
- ...embedded software and experience throughout the software development lifecycle. The position requires familiarity with C/C++, and bonus skills include Agile development and Cyber Security knowledge. Join us to work on cutting-edge defense technology. #J-18808-Ljbffr...Cyber
$55k - $65k
...performance. This position will focus on developing robotics and cyber physical systems solutions using machine learning and artificial... ...application of AI to solve underwater vision problems and Phase III of the Next Generation Sensor Systems for Natural Oceanic Bioluminescence...Cyber- ...with years of experience in platform operations, engineering and full lifecycle management across domains - air, land, sea, space and cyber.**Responsibilities:*** Lead and execute scheduled and unscheduled maintenance projects.* Mentor and guide junior mechanics.* Conduct...CyberFor contractorsWork at officeImmediate startWorldwideShift work
- ...the entire sales cycle, developing pipelines through outbound efforts and working with partners. The ideal candidate has 2+ years of cyber security sales experience, excellent presentation, and communication skills. You will be responsible for achieving bookings...Cyber
- Nalley Consulting is seeking a Cyber Security Administrator for their SOUTHCOM HQ location in Florida. The ideal candidate will ensure compliance with DoD cybersecurity mandates and implement security solutions while leading Authority to Operate processes. Applicants must...Cyber
- Infosys Limited is seeking a Cyber Security Analyst in New York, Town of Florida. This role includes responsibilities in incident logging, root cause analysis, and documentation of security processes. The ideal candidate should possess a Bachelor’s degree or similar experience...Cyber
- Peraton is seeking Systems Engineers to support the Special Operation Command Information Technology Enterprise Contract (SITEC) at MacDill AFB in Florida. The role involves engineering solutions for endpoint security, compliance assessments, and the deployment of advanced...CyberContract work
- ...RMF processes. The ideal candidate has over 3 years of experience in technical security controls, a Top Secret clearance, and a degree in Cyber Security or related field. Join us to play a vital role in safeguarding national security. #J-18808-Ljbffr Booz Allen HamiltonCyber
$90.3k - $189.6k
CACI International Inc. seeks a Cyber Advisor Team Lead in Florida to guide a team supporting the SOUTHCOM joint cyber strategy. This role requires active Top Secret/SCI clearance and extensive experience in Cyber-Defense and Cyber-Security, along with proven leadership...Cyber$40 per hour
A cybersecurity solutions company seeks experienced professionals to evaluate AI-generated security content and solve technical problems. In this remote role, you will use your skills in penetration testing and incident response to validate AI outputs and enhance security...CyberRemote jobHourly payFlexible hours- ...integral role supporting OT infrastructure across operations and project delivery, supporting senior members with routine network and cyber activity showing a desire to develop your skill set through a technical career path.Key Accountabilities Have a technical interest...Cyber
- Peraton is looking for Systems Engineers to support the Special Operation Command Information Technology Enterprise Contract (SITEC) at MacDill AFB in Florida. Candidates must have substantial experience with endpoint security products and certifications such as DoD 857...CyberContract work
$90.3k - $189.6k
CACI International Inc is seeking a Cyber Advisor Team Lead to join the SOUTHCOM Joint CCMD Cyber Assistance Team. This role involves leading a team to support regional cyber strategies and enhance partner nations' cyber security. Candidates should possess a minimum of...Cyber- Lockheed Martin is looking for a Classified Cyber Security Associate Manager in Florida who will lead a team managing cybersecurity operations... ...clearance, familiarity with security tools, and experience in risk management. Candidates must demonstrate strong communication and...CyberFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Risk Assessor III. Be the first to apply!
Related searches
- field underwriter Florida, NY
- group underwriter Florida, NY
- production underwriter Florida, NY
- remote underwriter Florida, NY
- commercial underwriter Florida, NY
- senior underwriter Florida, NY
- underwriter Florida, NY
- insurance underwriter Florida, NY
- energy underwriter Florida, NY
- risk underwriter Florida, NY

