Назад
Company hidden
23 часа назад

Sr. Risk Manager, Cyber & Technology Risk Management (Cybersecurity)

140 000 - 190 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Sr. Risk Manager, Cyber & Technology Risk Management (Cybersecurity): Leading second-line oversight of cyber and technology risks across a regulated financial services technology environment with an accent on risk assessments, control governance, regulatory frameworks, and practical risk guidance. Focus on evaluating control gaps, risk acceptances, remediation plans, emerging cyber regulations, and the continued build-out of an IT governance platform.

Location: Hybrid role based in Boston or Jersey City, with a minimum of three days in the office.

Salary: $140,000–$190,000 base salary plus annual target bonus.

Company

hirify.global is a global financial services firm providing investor services, capital partners, specialist expertise, and technology solutions.

What you will do

  • Lead a team of cyber and technology risk professionals within the independent second-line Enterprise Risk Management function.
  • Partner with technology, security, and operations teams to identify, assess, and manage cyber and technology risks.
  • Provide independent risk advisory and effective challenge, translating risk considerations into practical guidance.
  • Lead or support cyber risk reviews, RCSAs, application risk assessments, external assurance reviews, and governance activities.
  • Evaluate control gaps, risk acceptances, exceptions, and remediation plans, prioritizing actions according to business impact, risk appetite, and regulatory expectations.
  • Support the build-out of an IT governance platform and assess emerging regulatory and operational resilience risks.

Requirements

  • Bachelor’s degree or equivalent experience and specialized training in information technology, cybersecurity, risk management, audit, or a related field.
  • 10+ years of experience in cyber risk, technology risk, information security, IT audit, operational risk, third-party risk, or a related control function.
  • Experience assessing cyber risk programs, cybersecurity controls, and information security governance frameworks in a regulated financial institution or similar environment.
  • Strong understanding of control assessment, issue management, remediation tracking, risk acceptance, and risk reporting.
  • Knowledge of NYDFS Part 500, NIST Cybersecurity Framework, ISO 27001, cybersecurity requirements, and operational resilience standards.
  • Working knowledge of networks, operating platforms, cloud services, application security, and third-party hosted solutions.

Nice to have

  • CISSP, CISM, and/or CRISC certification.
  • Familiarity with DORA, global operational resilience requirements, and emerging cyber regulatory frameworks.

Culture & Benefits

  • Work within a long-established private partnership with a focus on collaboration, mentoring, and professional development.
  • Partner with colleagues across Systems/Technology, Compliance, Internal Audit, Enterprise Risk Management, and business leadership.
  • Compensation includes base salary, discretionary bonuses, and profit-sharing.
  • Benefits include long-term savings, healthcare, income protection, professional development opportunities, and time off.
  • Contribute to an inclusive workplace that values diverse experiences and transferable skills.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →