Senior Cyber Risk Management Engineer Capability Job at Request Technology, San Francisco, CA

a1VpbGtHM0VKM3NKbHV0ejFiT2hEb0dDZlE9PQ==
  • Request Technology
  • San Francisco, CA

Job Description

Get AI-powered advice on this job and more exclusive features. Direct message the job poster from Request Technology Executive Recruiter / Account Manager / Owner NO SPONSORSHIP RATE: Open

DURATION: ABOUT ONE YEAR

LOCATION: REMOTE

Job Description: The Senior Cyber Risk Management Capability Assessor will evaluate the effectiveness and conduct risk assessments of cyber risk management capabilities, including policies, processes, and technical capabilities, leveraging enterprise cyber risk management requirement and control framework. This role involves significant work around issue management and Plan of Action and Milestones (POAM), supports SOC 1/2 Type 2 audits by external auditors, and prepares materials to support attestations for NAIC model laws and 23 NYCRR 500. Responsibilities: Cyber Risk Management Capability Assessments: Conduct thorough assessments of the effectiveness of cyber risk management capabilities within the organization. Gap Analysis: Identify gaps in cyber risk management capability effectiveness and provide recommendations for enhancing the organization's cyber risk management posture. Issue Management & POAM: Manage issues and develop Plan of Action and Milestones (POAM) to address identified gaps and vulnerabilities. Documentation & Reporting: Develop detailed reports and documentation on assessment findings, remediation plans, and effectiveness metrics. Stakeholder Collaboration: Work closely with cyber risk management, technology, and business partners to ensure that cyber risk management capabilities are effective. Compliance, Standards, and Regulatory Alignment: Ensure adherence to regulatory and industry standard requirements such as NIST 800-53, SOC 2, 23 NYCRR 500, NAIC Model Law, and HIPAA. As regulations and standards are introduced and updated, assist in enhancing and extending the framework. Audit Support: Support the performance of SOC 2 audits by external auditors and prepare materials to support attestations with NAIC model laws and NYDFS. Education: Bachelors degree in Cybersecurity, Information Security, Computer Science, or a related field. Certifications (Preferred): CISSP, CISA, CISM, CRISC, CAP, Security+, or equivalent. Experience: Minimum 3-5 years of experience in cyber security, compliance, cyber risk assessment, or security auditing. Technical Expertise: Working knowledge of NIST 800-53. Basic knowledge of cloud-based cyber risk management controls (Azure and/or Oracle Cloud Infrastructure). Familiarity with technology management methodologies (DevOps, SAFe, ITIL). Proficiency in multiple cyber risk management domains. Understanding of cyber risk management oversight and administration processes, security architecture, technical security controls, and data protection strategies. Seniority level Not Applicable Employment type Contract Job function Information Technology Industries Insurance #J-18808-Ljbffr Request Technology

Job Tags

Contract work,

Similar Jobs

Apt

Account Manager / Inside Sales Job at Apt

 ...Lead year over year predictable account growth. Manage and develop client accounts to initiate and maintain favorable relationships...  ...the territory. Requirements: Experience required for entry level: Either a bachelor's degree with no experience or no bachelors... 

Norman Regional Health System

Registered Nurse Job at Norman Regional Health System

 ...Registered Nurse (RN) - Medical Unit - Full Time - Nights at Norman Regional Health System summary: A Registered Nurse (RN) in a medical...  ...Nurse, Healthcare, Medical Unit, Patient Care, Nursing, Medical/Surgical Care, BLS Certification, ADN, BSN, Night Shift Nursing... 

The Autumn Group

Visier & People Analytics Analyst Job at The Autumn Group

Duration: 6 Months (mid-April to mid-October) Work you'll do As a Visier People & Analytics Consultant, you will engage with stakeholders to advance their people analytics capabilities across strategy, people, process, data, and technology and to help them to deliver... 

ColumbiaCare Services

Mental Health Associate - 4836 Job at ColumbiaCare Services

 ...please contact our HR department. About Us ColumbiaCare Services is a non-profit, behavioral health and Veterans service agency offering a full spectrum of programming to help people get better. We are more than a company. We are a diverse team of individuals... 

Sagent

Scrum Master SR - Hybrid - Dallas, TX Job at Sagent

 ...power Sagent!About the Opportunity: Sagent is seeking an Agile Scrum Master to coordinate, execute and drive the timely delivery of...  ...beginning on Day #1! We offer a comprehensive package including Remote/Hybrid workplace options, Health Benefits, Unlimited Flexible...