IT Risk Manager (GRC - FOCUS) - INSPYR Solutions
Miami, FL 33178
About the Job
Title: IT Risk Manager (GRC Focus)
Location: Local to Miami
Duration: Direct Hire
Compensation: $120,000- $140,000
Work Requirements: US Citizen, GC Holders or Authorized to Work in the US
Risk Manager
The Risk Manager is an individual contributor role with accountability for ensuring the effectiveness of the organization's information security governance framework, and works as part of a team to assess cybersecurity and technology risks against established frameworks, standards, policies and methodologies. This role involves analyzing, monitoring, and reporting on the company's security policies, procedures, and standards to ensure compliance with regulatory and industry requirements. The Risk Manager collaborates closely with internal teams, stakeholders, and leadership to provide insights and recommendations for continuous improvement in security governance and risk management. The role also reviews and documents deficiencies, advocates for change and, when appropriate, escalates issues to senior risk leadership. The ideal candidate is business-minded, with five or more years experience in technology and security administration or security risk management. Practical hands-on technology experience in security principles, risk management and some business acumen is ideal.
Essential Functions:
- Lead in developing, maintaining, and implementing information security governance body (e.g.: Policies, Standards, Controls, etc.) following industry best practices and regulatory requirements
- Analyze current governance models and identify gaps or areas for improvement
- Perform risk analysis based on observations such as interviews, documentation review, and technical assessments.
- Collaborate with partners in Information and Cyber Security, Privacy, Compliance, Third Party Risk Management, IT and OT practitioners, and Internal Audit, across the enterprise to ensure understanding of potential business impact(s) resulting from identified risks. Identify Drivers, Preventive Controls, Risks themselves, Mitigating Controls, and Impacts from those Risks
- Serve as a liaison between the IT Security, Risk, and business departments to ensure cross-functional collaboration on security governance initiatives
- Lead efforts with business owners to create treatment plans to address risk drivers, facilitate communication and education of policies and standards for key stakeholders and employees.
- Support the coordination of security governance-related tasks within the broader IT or security projects
- Support the design and implementation of security governance projects or programs, including change management initiatives
Qualifications:
- 5+ Years working experience, with a minimum of 5 years in IT Security and Governance or Risk Management is preferred
- Experience with GRC tools such as OneTrust, Archer, etc. MS Office Suite, IT Risk Management, IT Governance, Audit or Regulatory Compliance. Active certifications in one of the related areas of security and governance such as CISA, CISSP, CRISC, etc are preferred.
Knowledge, Skills & Abilities:
- High level of integrity and trust.
- Keeps abreast of current and emerging technical information security developments.
- Attending meetings and GRC related conferences.
- Ability to plan, coordinate, and execute complex Governance and IT Security assignments, design and apply tools, techniques, and procedures to maintain the highest standards of Governance and IT Security
Decision-Making:
Standard: These decisions are those that are repetitive decisions on a recurring basis and are commonly related to daily activities. They are relatively simple, relying on historical data and previous solutions.
Education:
- Bachelor's degree in Computer Science, Information Security, Information Systems/Technology
About INSPYR Solutions
Technology is our focus and quality is our commitment. As a national expert in delivering flexible technology and talent solutions, we strategically align industry and technical expertise with our clients' business objectives and cultural needs. Our solutions are tailored to each client and include a wide variety of professional services, project, and talent solutions. By always striving for excellence and focusing on the human aspect of our business, we work seamlessly with our talent and clients to match the right solutions to the right opportunities. Learn more about us at inspyrsolutions.com.
INSPYR Solutions provides Equal Employment Opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, or genetics. In addition to federal law requirements, INSPYR Solutions complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities
- Comprehensive medical benefits
- Competitive pay
- 401(k) retirement plan
- ...and much more!
About INSPYR Solutions
Technology is our focus and quality is our commitment. As a national expert in delivering flexible technology and talent solutions, we strategically align industry and technical expertise with our clients' business objectives and cultural needs. Our solutions are tailored to each client and include a wide variety of professional services, project, and talent solutions. By always striving for excellence and focusing on the human aspect of our business, we work seamlessly with our talent and clients to match the right solutions to the right opportunities. Learn more about us at inspyrsolutions.com.
INSPYR Solutions provides Equal Employment Opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, or genetics. In addition to federal law requirements, INSPYR Solutions complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities