Senior Manager Cyber Risk & Governance
Core
Leads cybersecurity governance, risk management, vendor risk, and security awareness programs while representing the cyber component of the enterprise privacy program.
Role type
Senior Manager, Cyber Risk & Governance
Builds
Organizational resilience through NIST Cybersecurity Framework alignment, policy development, and strategic risk integration.
Domain
Energy sector cybersecurity and enterprise risk management
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Cybersecurity governance, risk quantification, financial impact modeling, policy and standards development, third-party/vendor risk management, security awareness strategy, IT/OT framework integration, emerging technology governance (AI/ML), change management, executive reporting
Preferred skills
Master's degree in CS/Engineering/IT/STEM, CISSP/CISM/CIPP/US certification
Technologies
GRC Platforms, vendor risk tools, privacy management systems, NIST Cyber Security Framework (CSF)
Responsibilities
Develop and maintain cybersecurity policies and governance frameworks; oversee GRC processes and maintain the risk register; define and monitor KRIs and KPIs; represent cybersecurity in enterprise privacy initiatives; manage third-party/vendor cybersecurity risk; lead integration of IT and OT cybersecurity frameworks; collaborate with Finance and ERM to quantify financial impacts of cyber risks; establish governance for emerging technologies like AI/ML.
Seniority
Senior, hands-on IC with supervisory duties