Cyber Governance and Risk Management, Cyber Tool Assessor - Principal Associate
Core
Principal Associate evaluating cybersecurity tools and platforms to identify gaps, assess risk, and drive continuous improvement in the organization's security posture.
Role type
Principal Associate, Cyber Governance and Risk Management
Builds
Enhanced technology risk posture and secure technology architectures
Domain
Cybersecurity, Risk Management, Cloud Infrastructure
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Cybersecurity risk management frameworks, software engineering best practices, cloud infrastructure, security scanning and detection tools, tool configuration management, threat classification frameworks, standardization methodologies, continuous security monitoring (C&A, POA&M, NIST 800-37, MITRE ATT&CK, MITRE D3FEND), Agile methodologies
Preferred skills
Operational compliance, IT audit, monitoring and assessing security artifacts, Agile methodologies
Technologies
C&A, POA&M, NIST 800-37, MITRE ATT&CK, MITRE D3FEND, AWS Cloud Practitioner, AWS Certified Solutions Architect
Responsibilities
Advise on best practices in risk reduction through the configuration of cybersecurity tools and platforms; Facilitate evaluations of cybersecurity tool effectiveness using capability, risk, and threat classification frameworks; Support the implementation and execution of a continuous improvement program for cybersecurity tools; Articulate operations, compliance, and cybersecurity objectives for engineering and products; Communicate the impact of identified gaps and potential remediation courses of action to leadership; Lead solutioning for and manage activities in response to large-scale enterprise risk reduction efforts
Seniority
Principal, hands-on IC with strategic advisory