Sr. Risk Manager, Cyber & Technology Risk Management
Core
Senior second-line risk advisor leading a team to identify, assess, and manage cyber and technology risks within a complex financial services environment.
Role type
Senior IC cyber and technology risk manager
Builds
Independent risk oversight, control assessments, and governance programs for the Firm's technology environment
Domain
Financial services / Cybersecurity and Technology Risk
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Cyber risk management, technology risk assessment, information security governance, regulatory compliance analysis, control gap evaluation, risk acceptance management, remediation planning, stakeholder prioritization, emerging risk analysis, IT governance platform support
Preferred skills
CISSP, CISM, CRISC certifications
Technologies
NYDFS Part 500, NIST Cybersecurity Framework, ISO 27001, DORA, cloud services, application security, third-party hosted solutions
Responsibilities
Partner with technology and security teams to identify and manage cyber risks; Provide independent second-line advisory and challenge on risk matters; Lead risk and control assessments including RCSAs and external assurance reviews; Evaluate control gaps and assist stakeholders in prioritizing remediation actions; Analyze new and emerging regulatory requirements and risk implications; Support the build-out of a new IT governance platform
Seniority
Senior, hands-on IC with team leadership