Responsibilities
- Provide input into an evolving enterprise risk program, ensuring risks to data security are identified, quantified and documented.
- Develop and maintain information feeds for new and evolving vulnerabilities.
- Collaborate with other technical teams to assess vulnerability criticality and coordinate patch deployment.
- Participate in audits and assessments to demonstrate compliance and remediate findings.
- Execute cybersecurity training and awareness programs across partner firms.
- Work with the Head of Cybersecurity Risk to establish and track KPIs such as incident response times, policy compliance rates, and training completion.
- Provide regular reports to leadership and stakeholders.
- Act as a liaison between IT, compliance, and external partners to ensure cohesive security practices.
Requirements
- Bachelor’s degree in Information Security, Computer Science, or a related field (or equivalent experience).
- 5+ years of experience in cybersecurity, policy development, or GRC (governance, risk, and compliance).
- Familiarity with cybersecurity frameworks (e.g., NIST, ISO 27001) and regulatory environments in financial services.
- Minimum of 5 years' experience with creating and maintaining real-time dashboards and reports to measure cybersecurity program effectiveness
- Excellent written and verbal communication skills.
Nice to Have
- Master’s preferred.
- Industry certifications such as CISSP, CISM, or GIAC (GSEC, GCCC) are preferred.
- Prior experience in a multi-partner or financial services environment is preferred.
- Familiarity with privacy regulations such as GDPR or CCPA is preferred.
Benefits
- Base pay is just one component of the total compensation package for employees.
- Other rewards may include an annual cash bonus and a comprehensive benefits package, including but not limited to medical, dental, vision, life and 401(k).
Additional Information
- This is an exempt position.
- Actual base pay could vary based on factors including but not limited to experience, subject matter expertise, geographic location where work will be performed, and the applicant's skill set.
- Please note that the job title is subject to change based on the selected candidate’s experience and education.