The Senior Cybersecurity Risk Specialist is responsible for identifying, assessing and managing an organization's cybersecurity risks to protect its information and technology assets in line with organizational policies and procedures and related laws and regulations.
Key Responsibilitie
- s:
Effectively communicate cybersecurity risks and posture to senior manageme - nt.Develop security risk profiles of computer systems by assessing threats to, and vulnerabilities of, those syste
- ms.Develop risk mitigation strategies to effectively manage risk in accordance with organizational risk appeti
- te.Develop specific cybersecurity countermeasures and risk mitigation strategi
- es.Develop statements of preliminary or residual cybersecurity risks for system operat
- ionEnsure that decisions relating to cybersecurity are based on sound risk management principl
- es.Perform risk analysis whenever an application or system undergoes a major chan
- ge.Provide input to the risk management framework and related documentati
- on.Ensure cybersecurity risks are identified and managed appropriately through the organization's risk governance proce
- ss.Carry out a cybersecurity risk assessme
- nt.Work with others to implement and maintain a cybersecurity risk management progr
- am.Identify and assign individuals to specific roles associated with the execution of the Risk Management Framewo
- rk.Establish a risk management strategy for the organization that includes a determination of risk toleran
- ce.Conduct an initial risk assessment of stakeholder assets and update the risk assessment on an ongoing bas
- is.Work with organizational officials to ensure continuous monitoring tool data provides situation awareness of risk leve
- ls.Use continuous monitoring tools to assess risk on an ongoing ba
- sisDevelop methods to effectively monitor and measure risk, compliance and assurance effor
- ts.Determine and document supply chain risks for critical system elements, where they exi
- st.
Requirem
- entsMinimum bachelor's degree in Cybersecurity / Information Security / Computer Engineering / Systems Engineering / Telecommunication Engineering / Information Technology / Computer Scie
- nce.Professional Certifications related to Cybersecurity Risk field is preferred such as: CRISC / Secur
- ity+Minimum 3 years in Cybersecurity Risk Managem
- ent.Planning and organiz
- ing.Risk analy
- sis.Problem-solv
- ing.Attention to det
- ail.