Manager, Cybersecurity Governance and Risk
Next Step Systems LTD
Manager, Cybersecurity Governance and Risk, Washington, DC The Manager, Cybersecurity Governance and Risk will lead IT risk management (ITRM) initiatives to increase the transparency of risk impacts to the firm, manage the Cyber risk register, issue log, facilitate the Risk Operating Committee (ROC), and support the Governance and Risk team in identifying and implementing industry standards (e.g., NIST, ISO and COBIT) in accordance with applicable regulatory or client guidelines. The Manager will also assist in developing methodologies, policies, processes, and tools to support InfoSec and Governance and Risk initiatives. The role will contribute to evolving ITRM's oversight, reporting, governance, communications, and education efforts from an Information Security perspective. This position is 100% Onsite and not open for Remote. Manager, Cybersecurity Governance and Risk Responsibilities: - Assist with the development, implementation and management of the governance and risk strategic plan and roadmap, including evolving the reporting structure and frequency to InfoSec stakeholders.
- Serve as a key contributor in identifying, managing and communicating governance and risk across InfoSec policy domains, providing expertise to prioritize and manage risk, while facilitating the adoption in conjunction with the Controls Manager of IT Risk policies, standards and guidelines across the enterprise.
- In conjunction with the Controls and TPRM Managers, evolve, develop and manage the development, maintenance and evaluation of organizational InfoSec governance and risk procedures, processes and guidelines in accordance with Firm and Client requirements.
- Work with the Controls Manager and other stakeholders to identify, validate and document deficiencies in ITRM governance, processes and risk management practices, propose remediations, and enforce cross functional POAM initiatives and status reporting requirements in accordance with prioritization requirements.
- Manage the Cyber risk and issue registers and remediations, including supporting monthly ROC meetings (e.g., agenda, data calls, etc.), tracking and aggregating the risk registers and performing risk to policy domain to control(s) mapping to provide prioritization and transparency into control and policy domains requiring remediation.
- Evolve risk methodologies, as well as conduct and support risk assessments to support InfoSec the identification of risk across policy domains, identify opportunities for control enhancement and risk mitigation.
- Assist InfoSec's TPRM and Client InfoSec Assessments, including assessment activities (completion and quality control reviews), developing or revising control narratives and supporting reporting efforts to InfoSec leadership and stakeholders.
- Facilitate the definition and maintenance of InfoSec governance and risk measures and metrics; and handle additional related projects as assigned. Manager, Cybersecurity Governance and Risk Qualifications: - Bachelor's degree in information security, Information Assurance, Computer Science, Information Systems, or other related field (2 years of additional experience may be substituted for 2 years of college credits).
- At least 7 years of combined information technology, information security and risk management experience.
- Advanced awareness of current information security standards and developments (CSF, NIST, ISO), the COSO framework, as well as the emerging cyber threat landscape.
- Advanced understanding of risk management concepts, frameworks, and methodologies.
- Strong understanding of information security concepts and technologies.
- Strong project management skills and understanding of the technology and operational risks as related to technology solutions.
- Fundamental knowledge of the operation of law practices and advanced knowledge of MS Outlook, Word, Excel, Visio, and PowerPoint.
- Third party assessment experience, including the evaluation of SOC2 Type 2, SIG, Pen Test, etc., reports.
- Strong understanding of Operational Risk from a Technology perspective.
- Excellent analytical and problem-solving skills, inquisitive nature and comfort challenging current practices.
- Understanding of governance, risk and compliance (GRC) practices and technologies across governance, process and technical domains.
- Background in consulting preferred.
- Ability to develop and maintain solid working relationships across the departments, and high-level technical understanding of security applications, platforms and architectures.
- CISA, CISM, GSEC, CISSP, CRISC or other security-related certification preferred. Benefits include medical insurance, retirement plan, Dental, Vision, PTO, etc. Keywords: Washington DC Jobs, Manager, Cybersecurity Governance and Risk, Information Security, Risk Management, Methodologies, Outlook, Word, Excel, Visio, PowerPoint, Project Management, CFS, NIST, ISO, COSO Framework, GRC, Governance Risk and Compliance, SOC2 Type 2, SIG, Pen Test, CISA, CISM, GSEC, CISSP, CRISC, Washington DC Recruiters, Information Technology Jobs, IT Jobs, Washington DC Recruiting
Looking to hire for similar positions in Washington, DC or in other cities? Our IT recruiting agencies and staffing companies can help. We help companies that are looking to hire Managers, Cybersecurity Governance and Risk for jobs in Washington, DC and in other cities too. Please contact our IT recruiting agencies and IT staffing companies today! Phone View phone number on click.appcast.io or email us at View email address on click.appcast.io. Atlanta Georgia IT Recruiters, Austin TX IT Recruiters, Baltimore Executive Staffing, Boston IT Recruiters, Charlotte IT Recruiters, Chicago Recruiting Agency, Cincinnati Executive Search Firms, Cleveland Executive Tech Recruiting, Columbus Technical Recruiters, Dallas Recruiters for IT, Denver Technology Headhunters, Detroit IT Headhunters, Fort Lauderdale Information Technology Recruiters, Houston IT Recruiters, Indianapolis IT Recruiters, Jacksonville IT Recruiters, Kansas City IT Recruiters, Los Angeles IT Recruiters, Miami IT Recruiters, Minneapolis IT Recruiters, Nashville IT Recruiters, New Jersey Tech Recruiters, New York IT Recruiters, Phoenix IT Recruiters, Raleigh IT Recruiters, Salt Lake City IT Recruitment, San Antonio Information Technology Recruiters, San Diego Executive Staffing, San Francisco Executive Search Firms, San Jose Executive Tech Recruiting, Seattle Technical Recruiters, Silicon Valley Tech Recruiters, St. Louis Technology Headhunters, Tampa Technology Headhunters, Washington DC IT Recruiters Home"Manager, Cybersecurity Governance and Risk
- Serve as a key contributor in identifying, managing and communicating governance and risk across InfoSec policy domains, providing expertise to prioritize and manage risk, while facilitating the adoption in conjunction with the Controls Manager of IT Risk policies, standards and guidelines across the enterprise.
- In conjunction with the Controls and TPRM Managers, evolve, develop and manage the development, maintenance and evaluation of organizational InfoSec governance and risk procedures, processes and guidelines in accordance with Firm and Client requirements.
- Work with the Controls Manager and other stakeholders to identify, validate and document deficiencies in ITRM governance, processes and risk management practices, propose remediations, and enforce cross functional POAM initiatives and status reporting requirements in accordance with prioritization requirements.
- Manage the Cyber risk and issue registers and remediations, including supporting monthly ROC meetings (e.g., agenda, data calls, etc.), tracking and aggregating the risk registers and performing risk to policy domain to control(s) mapping to provide prioritization and transparency into control and policy domains requiring remediation.
- Evolve risk methodologies, as well as conduct and support risk assessments to support InfoSec the identification of risk across policy domains, identify opportunities for control enhancement and risk mitigation.
- Assist InfoSec's TPRM and Client InfoSec Assessments, including assessment activities (completion and quality control reviews), developing or revising control narratives and supporting reporting efforts to InfoSec leadership and stakeholders.
- Facilitate the definition and maintenance of InfoSec governance and risk measures and metrics; and handle additional related projects as assigned. Manager, Cybersecurity Governance and Risk Qualifications: - Bachelor's degree in information security, Information Assurance, Computer Science, Information Systems, or other related field (2 years of additional experience may be substituted for 2 years of college credits).
- At least 7 years of combined information technology, information security and risk management experience.
- Advanced awareness of current information security standards and developments (CSF, NIST, ISO), the COSO framework, as well as the emerging cyber threat landscape.
- Advanced understanding of risk management concepts, frameworks, and methodologies.
- Strong understanding of information security concepts and technologies.
- Strong project management skills and understanding of the technology and operational risks as related to technology solutions.
- Fundamental knowledge of the operation of law practices and advanced knowledge of MS Outlook, Word, Excel, Visio, and PowerPoint.
- Third party assessment experience, including the evaluation of SOC2 Type 2, SIG, Pen Test, etc., reports.
- Strong understanding of Operational Risk from a Technology perspective.
- Excellent analytical and problem-solving skills, inquisitive nature and comfort challenging current practices.
- Understanding of governance, risk and compliance (GRC) practices and technologies across governance, process and technical domains.
- Background in consulting preferred.
- Ability to develop and maintain solid working relationships across the departments, and high-level technical understanding of security applications, platforms and architectures.
- CISA, CISM, GSEC, CISSP, CRISC or other security-related certification preferred. Benefits include medical insurance, retirement plan, Dental, Vision, PTO, etc. Keywords: Washington DC Jobs, Manager, Cybersecurity Governance and Risk, Information Security, Risk Management, Methodologies, Outlook, Word, Excel, Visio, PowerPoint, Project Management, CFS, NIST, ISO, COSO Framework, GRC, Governance Risk and Compliance, SOC2 Type 2, SIG, Pen Test, CISA, CISM, GSEC, CISSP, CRISC, Washington DC Recruiters, Information Technology Jobs, IT Jobs, Washington DC Recruiting
Looking to hire for similar positions in Washington, DC or in other cities? Our IT recruiting agencies and staffing companies can help. We help companies that are looking to hire Managers, Cybersecurity Governance and Risk for jobs in Washington, DC and in other cities too. Please contact our IT recruiting agencies and IT staffing companies today! Phone View phone number on click.appcast.io or email us at View email address on click.appcast.io. Atlanta Georgia IT Recruiters, Austin TX IT Recruiters, Baltimore Executive Staffing, Boston IT Recruiters, Charlotte IT Recruiters, Chicago Recruiting Agency, Cincinnati Executive Search Firms, Cleveland Executive Tech Recruiting, Columbus Technical Recruiters, Dallas Recruiters for IT, Denver Technology Headhunters, Detroit IT Headhunters, Fort Lauderdale Information Technology Recruiters, Houston IT Recruiters, Indianapolis IT Recruiters, Jacksonville IT Recruiters, Kansas City IT Recruiters, Los Angeles IT Recruiters, Miami IT Recruiters, Minneapolis IT Recruiters, Nashville IT Recruiters, New Jersey Tech Recruiters, New York IT Recruiters, Phoenix IT Recruiters, Raleigh IT Recruiters, Salt Lake City IT Recruitment, San Antonio Information Technology Recruiters, San Diego Executive Staffing, San Francisco Executive Search Firms, San Jose Executive Tech Recruiting, Seattle Technical Recruiters, Silicon Valley Tech Recruiters, St. Louis Technology Headhunters, Tampa Technology Headhunters, Washington DC IT Recruiters Home"Manager, Cybersecurity Governance and Risk
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Manager, Cybersecurity Governance and Risk in Washington DC vacancy
$190k
...Cybersecurity Consultant Locations: Atlanta | Austin | Boston | Brooklyn | Chicago | Dallas | Denver | Detroit | Durham | Houston... ...Solutions and Packaged Software, Cybersecurity, and Technology Risk Management. Our Tech Advisory and Delivery Chapter within BCG Platinion...RiskWork at office- ...Senior Manager: Information Governance Compliance Mayer Brown is an international law firm positioned to represent the world's major corporations... ...serves as a central point of coordination across IG, Legal Risk Management (LRM), Information Technology (IT), and...RiskWork at office
- ...Sr. IT Project Manager - Cybersecurity Portfolio Location: Washington, DC (Remote - onsite meetings... ...Oversee project planning, execution, risk management, and delivery to ensure... ...business objectives. Drive adherence to governance standards and best practices....RiskContract workRemote work
$118.4k
...provides operational leadership for the data governance team in support of data and application software development management for IT projects. Creates plans and manages activities... ...decisions. Advise clients on options, risks, cost vs benefit, impact on other business...RiskTemporary workFor contractorsWork at officeLocal area- ...of IT modernization and elite cybersecurity solutions. We help our... ...seeking a Senior IT Project Manager - Cybersecurity Compliance to... ...mandates, including FISMA, NIST Risk Management Framework (RMF), and... ...deep expertise in cybersecurity governance, risk, and compliance (GRC)...RiskContract workFor subcontractorWork at officeRemote work
$66.8k - $116.8k
...& Safety (WHS) professional to join the Governance Regulatory Response and Activity (RRA) team... ...for regulatory response case managing. This role combines strategic planning with... ...specifically in regulations governing high-risk operations. Experience in varying Amazon...RiskFlexible hours$109k - $155.4k
...& Safety (WHS) professional to join the Governance Regulatory Response and Activity (RRA) team... ...for regulatory response case managing. This role combines strategic planning with... ...specifically in regulations governing high-risk operations. Experience in governance, legal...RiskWork at officeFlexible hours$132k - $209k
...Job Title Federal Contracts & Subcontracts Manager - Compliance/Governance (Washington DC) Job Description The Federal Contracts & Subcontracts... ..., and subcontract requirements to identify compliance risks, challenges, and alignment with the company's strategy and...RiskFull timeContract workWork at officeImmediate startWork visa3 days per week$132k - $209k
...The Federal Contracts & Subcontracts Manager – Compliance/Governance is a key member of a multidisciplinary team supporting opportunities from... ...contract, and subcontract requirements to identify compliance risks, challenges, and alignment with the company’s strategy and...RiskFull timeContract workWork at officeLocal areaWork visa3 days per week$160k - $175k
...Venable LLP's Cybersecurity Services Group seeks a strategic and creative... ...and Public Relations Manager to join the practice in the... ...complex and evolving cyber risks. The Communications and Public... ...property, regulatory matters, and government affairs. Additional...RiskWork at office- ...Program: SBA – Enterprise Cybersecurity Services (ECS) Position Summary... ..., ISSOs, cloud teams, and Government stakeholders to protect enterprise... ...trends, and cybersecurity risks. Coordinate cybersecurity... .... Support vulnerability management activities including...Risk
$131.3k - $237.35k
...role, you will work alongside government partners, engineers, and other... ...security standards. Analyze cybersecurity data and system behavior to identify anomalies, risks, and potential threats.... ...architectures within the Risk Management Framework (RMF) process to enhance...RiskLocal areaImmediate start- ...team. The ideal candidate will be a Cyber Lead to manage and guide cybersecurity professionals supporting Federal Government IT programs. The ideal candidate will have... ...management, application security, threat modeling, risk management, and compliance activities. As a...RiskFull timeContract work
- ...and professional services serving the US government, allies and critical infrastructure sectors, is seeking an FRCS Cybersecurity Manager to support a government contract based on... ...threat, system vulnerabilities, and residual risk. Other duties as assigned. The FRCS...RiskContract workWork at officeRemote work
- ...the biggest challenges that government will face tomorrow. We are... ...defining and advancing our cybersecurity capabilities in direct support... ...closely with Program Managers and Delivery Leadership to align... ...architecture, operations, or risk and compliance ~5+ years in...RiskContract work
$118.81k - $201.97k
...Human Resources Activity (DHRA) cybersecurity program. In this role, you... ..., and delivers actionable risk-reduction recommendations to... ...vulnerability assessment and management activities, including... ...frameworks. An active US Government issued security clearance....RiskFull timeContract workWork experience placementWork at office- ...Req ID: 40549 Summary Cybersecurity Manager Arlington, VA Are you ready to enhance your... ...professionals who support large-scale government operations by leveraging cutting-edge... ...assessment, and mitigation of cybersecurity risks, balancing operational needs with...RiskContract workFor contractors
$108.48k - $184.41k
...environment where security, privacy, risk management, and standards compliance are central... ...operates across multiple programs and governance processes and helps ensure that modernization... .... What You’ll Be Doing • Provide cybersecurity and privacy subject matter expertise...RiskFull timeContract workWork experience placementWork at office- ...Senior Cybersecurity Program Manager Ardent is seeking a Senior Cybersecurity Program Manager to join our team. This is an on-site... .... Develop and maintain program plans, governance documentation, and risk management artifacts. Coordinate with IRS Cyber...RiskLocal area
- ...to be Performed: AnaVation is seeking a senior-level Cybersecurity Program Manager (GRC) with an active Top Secret clearance. The ideal candidate... ...our corporate culture throughout the program Lead risk management activities, including identification and recommended...RiskFull timeContract workTemporary workFor subcontractorImmediate startRemote work
$99k - $252.45k
...reliability of this information with a variety of stakeholders. They evaluate compliance with regulations including assessing governance and risk management processes and related controls. Those in data, analytics and technology solutions at PwC will assist clients in...RiskFull timeH1b- ...Cyber Security Project Manager Employer: Randstad Location: Washington, DC Managing... ...Fleet technology project within the Cybersecurity Department Adherence to PLM, scrum framework... ...within the EPM system Reporting on risks and managing ongoing risk management...RiskFor contractors
- ...Randstad is seeking a seasoned Cyber Security Project Manager to join our client's Cybersecurity Center of Excellence (COE) in Washington, DC. This role... ...the program/project, and report variances. Report on risks and provide ongoing risk management plans, risk assessments...RiskFor contractorsWork experience placement
- ...is seeking an experienced Technical Cybersecurity Manager with eight or more (8+) year of experience... ..., including System Security Plans, Risk Assessments, Contingency Plans, POA&Ms... ...requirements, and federal security governance processes. Leading vulnerability...RiskFor contractorsLocal areaRemote work
- ...Project Manager - Senior The Project Manager - Senior is a member of the Information Security department specific PMO, managing technology... ...managing the project schedule, tracking, and mitigating project risks and issues, formal change management, configuration management,...RiskFor contractorsWork experience placement2 days per week3 days per week
- ...changed at the discretion of the General Manager. At DC Water, we provide more than... ..., assessing, and quantifying cybersecurity risks across the enterprise, encompassing both... ...mitigation strategies to ensure strong governance and alignment with risk tolerance....RiskContract workLocal area
$163.5k - $225.6k
...building a safer global future. Cybersecurity Engineer, Senior Manager Two Six Technologies is seeking... ...bridge the gap between rigorous government security frameworks (NIST, STIGs, CMMC... ...standard "box checking" to design risk-optimized, tailored controls. Intent...RiskContract workWork at officeLocal area3 days per week$113k - $188k
...Secret What You Will Do: Our Cybersecurity Consultants are a team of business integrators... ..., including security strategy and governance, IT risk, security technologies, and... ...experienced Cyber Engineer - Identity Management Lead to lead the design, assessment,...RiskCivilian ContractorTemporary workFlexible hours- ...Cybersecurity Coe Project Manager This Cybersecurity COE Project Manager role in Washington, DC, supports a Randstad client by overseeing complex... ...utilize a structured approach to manage schedules, budgets, risks, and changes. Key qualifications include PMP and SAFe...RiskFor contractors
$229.1k
...departments and affiliates to defend against cybersecurity threats, implement cutting-edge security... ...planning, and coordination with crisis management stakeholders. Partner closely with... ...with the ability to translate technical risk into clear business impact....RiskFull timeWork at office2 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manager, Cybersecurity Governance and Risk. Be the first to apply!
Related searches
- cyber security lead Washington DC
- director - cyber security Washington DC
- cybersecurity project manager Washington DC
- cyber security program manager Washington DC
- cyber security project manager Washington DC
- cybersecurity manager Washington DC
- senior manager cyber security Washington DC
- governance manager Washington DC
- enterprise risk manager Washington DC
- risk management specialist Washington DC

