Security Risk Manager

ScienceLogic · Washington DC

Company

ScienceLogic

Location

Washington DC

Type

Full Time

Job Description

What we're looking for...

The position will assist with the development, implementation, and execution of a corporate risk management/assessment program including performing risk assessments and contract evaluations for vendors and customers. The position requires a strong understanding of information security controls, including frameworks such as NIST and ISO27001. Additionally, this position requires that the applicant have a strong understanding of the risk frameworks, operational risks, and the execution of risk management processes and governance.

What you'll be doing...

  • Manage the overall capabilities and operating framework of the Risk Management Program (structure, people, and project delivery processes), articulating the service delivery process, and managing the measurement metrics.
  • Coordinate and perform a full cycle of the third-party security risk management activities, including risk identification, assessment, mitigation, monitoring, and reporting
  • Coordinate and conduct Vendor Risk assessments, review documentation provided (including independent assessments, certifications, pen-test, etc.) and issue reports
  • Coordinate and conduct customer security reviews
  • Collaborate with internal and external auditors to ensure that appropriate controls are installed, operating properly, and being monitored and reported
  • Understand and keep abreast of emerging technologies and how they can impact the business.
  • Comply with delivery SLA's and provide periodic status updates including potential risks and delays to the project delivery to project manager. 
  • Support various GRC efforts such as third party due diligence, security awareness and data loss prevention
  • Take part in shaping the future of our security organization

Qualities you possess...

  • Bachelor's Degree or equivalent required
  • 5+ years experience in IT audit/Security Assessment/Risk Management/Certification
  • Understanding of third-party risk management techniques, security IT control evaluation, and security control management lifecycle
  • Professional designations preferred: CISSP, CRISC, CISA, CTPRP, CDPSE, Security+, CISM
  • Prior experience assessing SOC 2 reports is preferred.
  • Familiarity with GRC tools and 3rd party risk assessment tools
  • Strong understanding of information security principles, architecture, and methodologies (including control design and risk assessment)
  • Solid understanding of IT audit and security control evaluation methodologies
  • Solid understanding and experience with security risk management, covering the full lifecycle of activities, including risk identification, assessment, mitigation, monitoring, and reporting
  • Understanding of COBIT, ISO27000, NIST CSF, SOC 2and/or HITRUST frameworks
  • Knowledge of single sign-on integration with on premise and cloud toolset
  • Knowledgeable of Network Design and Project Management methodologies
  • Significant experience in collaborating across organizational boundaries and building partnerships across various functions 

About ScienceLogic

 ScienceLogic is a leader in IT Operations Management, providing modern IT operations with actionable insights to resolve and predict problems faster in a digital, ephemeral world. Its solution sees everything across cloud and distributed architectures, contextualizes data through relationship mapping, and acts on this insight through integration and automation.


www.sciencelogic.com

Apply Now

Date Posted

09/04/2022

Views

9

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.9

Similar Jobs

Manager, Customer Success - Bold Penguin

Views in the last 30 days - 0

Bold Penguin a leading digital solution platform for small commercial insurance is seeking a Manager of Customer Success The role involves leading a t...

View Details

Manager, Project Manager - Capital One

Views in the last 30 days - 0

Capital One a Fortune 500 company and one of the nations top 10 banks is seeking a Manager Project Manager The role involves leading critical and stra...

View Details

Principal Project Manager, Commercial Bank - Capital One

Views in the last 30 days - 0

Capital One a Fortune 500 company and one of the nations top 10 banks is seeking a Principal Project Manager for its Commercial Bank The role involves...

View Details

Strategic Account Manager - Fortune Brands Home & Security

Views in the last 30 days - 0

Fortune Brands Innovations Inc is seeking a Strategic Account Manager for their Moen brand The ideal candidate will have a strong understanding of the...

View Details

System Concepts Optimization Engineering Manager - The Aerospace Corporation

Views in the last 30 days - 0

The Aerospace Corporation is seeking a System Concepts Optimization Engineering Manager to lead a team of engineers mathematicians and scientists The ...

View Details

Information Security Consultant - Application Security Engineer - MassMutual

Views in the last 30 days - 0

MassMutual is seeking an experienced Application Security Engineer to join their dedicated team The role involves driving security best practices cond...

View Details