Cyber Risk Analyst || F2F

C2C
  • C2C
  • Anywhere

Hello,

Hope you are doing well.

Job Description –

 

Job Title: Cyber Risk Analyst

Location: Cincinnati, OH

Duration: 6 + months

MOI: F2F

The IT risk analyst supports the IT risk management practice, which ensures risk is proactively identified, decisioned, communicated and monitored. The primary responsibilities of the IT risk analyst are to perform assessments of potential risk exposures and prepare actionable risk reporting. In this role, it is critical to foster strong working relationships with leaders in other areas of the enterprise to perform evaluations of the enterprise risk posture and to offer independent advice regarding ways to reduce risk in line with established risk appetites.

 

The successful candidate thinks strategically, is intellectually curious and is comfortable working in undefined problem spaces. As a member of a growing enterprise, the IT risk analyst will be expected to shape and further refine the risk program and will have the opportunity to operate with both autonomy and empowerment from senior leadership. You MUST be located in/near Cincinnati, OH! 

 

Top Must Haves:

  • Risk management experience: previous experience working and reviewing cyber risk assessments
  • Familiarity with cyber security frameworks, such as NIST-CSF
  • Experience with risk tools (administrative, power user, user)
  • Facilitate cyber risk communications, cyber risk lifecycle task completion and cyber risk aware decision making with technical and non-technical audiences

CRA Responsibilities: 

  • Managing cyber risk assessments
  • Evaluating internal operational controls for alignment to cyber risk treatment needs.
  • Analyzing, framing, and updating threat and risk scenarios for use in cyber risk management
  • Communicating cyber risk to Management and designated stakeholders.
  • Assess and update cyber risk appetites for LOB.
  • Evaluate cyber risk treatment options and facilitate communication to stakeholders.
  • Training employees on cyber risk aware and risk first culture.
  • Adjust cyber risk scores based on available controls and treatment options.
  • Create cyber risk dashboards/reports based on complex risk, process and control relationships.
  • Facilitate risk management oversight in supporting internal/external audits and regulatory exams.

CRA Requirements:

  • Prefer 5-10 years’ experience in governance, risk, and compliance
  • Job field related certification(s), CISSP/CISA/CRISC (preferred but not required)
  • Previous experience as a compliance analyst in a related field.
  • In-depth knowledge of industry compliance requirements and standards.
  • Proficiency in compliance management software, Archer, ServiceNow, MetricStream, etc.
  • Ability to accurately complete applications for compliance certification.
  • Ability to effectively train employees.
  • Exceptional communication and interpersonal skills.
  • Understanding of regulatory frameworks
  • Requirements analysis
  • Ability to develop standards to maintain legal compliance
  • Quality management
  • Critical thinking and problem-solving skills
  • Organization, project management, and strategic planning skills
  • Familiarity with process improvement methodology
  • Attention to detail
  • Ability to embrace complexity

Top skills: Risk Management (specifically cyber risk management experience), Strong Analysis skills – working with different stakeholders gathering risks

Soft Skills Needed: Someone who wants to do this work because it can be very tedious, communication skills both written a verbal

 


From:
Arbab Ahmed,
Vizon Inc
arbab@vizoninc.com
Reply to:   arbab@vizoninc.com