Requirements
The Cybersecurity Risk Specialist will conduct cybersecurity risk assessments, identify and analyze cyber risks, maintain the risk register, monitor risk exposure and threats, assess security control effectiveness, and recommend mitigation strategies. Responsibilities also include tracking remediation plans, performing third-party risk assessments, supporting regulatory compliance, developing risk reports, escalating risks, providing advisory services, promoting risk awareness, and coordinating with IT Security, Compliance, Risk, and Audit teams. Technical skills required include cybersecurity risk assessment and analysis, information security controls and frameworks, vulnerability, malware, and threat management, network, cloud, and application security fundamentals, security incident and log analysis, and third-party risk management. A minimum of 5-8 years of experience in Cybersecurity Risk is required, along with certifications such as CISM, Security+, CySA+, or CEH.
Description
Key Roles and Responsibilities Conduct cybersecurity risk assessments.Identify, analyze, and evaluate cyber risks.Maintain and update the cybersecurity risk register.Monitor risk exposure and emerging cyber threats.Assess the effectiveness of security controls.Recommend risk treatment and mitigation strategies.Track remediation plans and corrective actions.Perform third-party cybersecurity risk assessments.Support compliance with cybersecurity regulations and standards.Develop cybersecurity risk reports and dashboards.Escalate significant risks to management and governance committees.Provide cybersecurity risk advisory services to stakeholders.Promote cybersecurity risk awareness across the organization.Coordinate with IT Security, Compliance, Risk, and Audit teams.Support cybersecurity governance and risk management initiatives.Monitor and report Key Risk Indicators (KRIs).Technical SkillsCybersecurity risk assessment and analysis.Information security controls and frameworks.Vulnerability , Malware analysis , threat management.Network, cloud, and application security fundamentals.Security incident and log analysis.Third-party risk management.Experience :5-8 years in Cybersecurity Risk .CertificatesCISM- Security+ - Cysa+ - CEH