Sr. Analyst

2 weeks ago


Bethesda, United States RED SKY Consulting Full time

Job Title: Sr. Analyst - Risk Management

Type: 6 Month Contract to Hire

Location: Remote

Bottom Line / In a Nutshell

5+ years of experience in cyber security risk management and/or audit experience in cyber risk management. Bachelor’s degree in Engineering, Computer Science, Cybersecurity, Information Security, or equivalent education or work experience Extensive hands-on experience with GRC tools. Comprehensive understanding of cybersecurity principles, frameworks, and regulations (e.g., NIST, MITRE, COBIT, COSO, HITRUST, SOC reports, CSF, ISO, GDPR). Experience in planning, designing, implementing and managing cyber security risk management frameworks such as ISO31000, ISO27005, NIST 800-39, and FAIR.

Job Description:

Plan, develop, implement, maintain, and manage Cybersecurity Risk Management framework based on industry best practices (ISO31000, ISO27005, NIST 800-39, FAIR). Provide cyber risk oversight and serve as the leadership point of contact for the cyber security risk team. Management and execution of the cyber security risk strategy and programs including 3rd party risk, metrics, risk and performance indicators, executive and board reporting. Be responsible for overall cyber security risk management using continuous self-assessments and executive reporting. Understand key security and risk frameworks including but not limited to ISO31000, ISO27005, NIST 800-39 and FAIR. Provide leadership and engage with the business to perform cyber security assessments and ensure timely execution of projects and program while mitigating any cyber security risks. Identify, recommend, and, when applicable, execute appropriate measures to manage and mitigate risks and reduce potential impacts on information resources to a level acceptable to the senior management of the company. Collaborate with risk owners to ensure risk mitigation plans are developed and completed, tracking and reporting on the progress of the remediation plans on a regular basis. Manage and operate the third-party security risk management program and team. Work closely with internal groups such as Human Resources, Enterprise Risk Management, Internal Audit, Privacy, Legal, and Compliance on matters of policy and risk management. Develop and improve KPI/KRIs, metrics, risk register and trending. Mentor, coach, and train security staff.

Qualifications:

Comprehensive understanding of cybersecurity principles, frameworks, and regulations (e.g., NIST, MITRE, COBIT, COSO, HITRUST, SOC reports, CSF, ISO, GDPR). Experience in planning, designing, implementing and managing cyber security risk management frameworks such as ISO31000, ISO27005, NIST 800-39, and FAIR. Extensive hands-on experience with GRC tools. Assist with the evaluation of risk/policy exception reviews to assess residual business risk after weighing application security gaps, compensating controls, and inherent risk likelihood Ability to develop a rapport with all employees to cultivate an environment conducive to reporting possible policy violations/risks. Ability to competently follow through on investigating such potential violations. Ability to work independently and strategically. Demonstrated expertise in identifying and analyzing risks and developing effective mitigation strategies. Strong technical knowledge and diverse skillset to understand various technologies, systems, and potential risks. Excellent critical thinking, problem-solving, and decision-making skills. Strong interpersonal and communication skills, with the ability to effectively collaborate with both technical and non-technical peers. Proven ability to manage multiple projects simultaneously and prioritize tasks based on urgency and impact.

The following Cybersecurity certifications are highly desired:

CISM (Certified Information Security Manager) CRISC (Certified in Risk and Information Systems Controls) CISA (Certified Information Systems Auditor) Or other relevant cybersecurity certifications

Experience:

5+ years of experience in cyber security risk management and/or audit experience in cyber risk management.

Education:

Bachelor’s degree in Engineering, Computer Science, Cybersecurity, Information Security, or equivalent education or work experience

This Is a Great Opportunity With a First-class Company

Sr. Analyst - Risk Management

RED SKY Career Opportunities at:

redskyconsulting.co/career-portal

Sr. Analyst - Risk Management

RED SKY Consulting Candidate and Client Referral Program

2500

Do you know other IT professionals?

Turn those relationships into Money & help friends get work

RED SKY Consulting is offering a fantastic opportunity for you to earn extra money.

If you refer to us a Manager of people or skilled professionals, we will link your name to that person for 18 months.

If we employ or place that individual or place people into that company thru that manager

Sr. Analyst - Risk Management

RED SKY Consulting Company Overview

We are an IT and Cybersecurity staffing solutions, professional services, management consulting, and executive placement company with thousands of resources across multiple IT and Cybersecurity skill sets. Our primary US locations are Chicago, New York, Los Angeles, Atlanta, Nashville, Tampa and Denver and we have organizational arms in other domestic cities along with offshore alliances in India and Ireland. RED SKY has a 15+ year history of providing great technology talent. RED SKY has many clients including; 7 of the Fortune 10, half of the Fortune 100, and 25% of the Fortune 500 companies within the manufacturing, financial services, health care, government, consumer services, insurance, and several other industry verticals represented.

The RED SKY Foundation is being formed and will be providing fully funded college educations to underprivileged young adults in partnership with our clients starting 2022.

Keys: Engineer, Cybersecurity, Risk Management, NIST, ISO, GRC, Risk Assessments, Engineer, Cybersecurity, Risk Management, NIST, ISO, GRC, Risk Assessments, Engineer, Cybersecurity, Risk Management, NIST, ISO, GRC, Risk Assessments, Engineer, Cybersecurity, Risk Management, NIST, ISO, GRC, Risk Assessments

XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX

#J-18808-Ljbffr


  • Sr. Analyst

    2 weeks ago


    Bethesda, United States RED SKY Consulting Full time

    Job Title: Sr. Analyst - Risk Management Type: 6 Month Contract to Hire Location: Remote Bottom Line / In a Nutshell 5+ years of experience in cyber security risk management and/or audit experience in cyber risk management.Bachelor’s degree in Engineering, Computer Science, Cybersecurity, Information Security, or equivalent education or work...


  • Bethesda, United States Precision AQ Full time

    ***The Client Finance Analyst III role is a fully remote role.*** ***Unfortunately, we are not able to provide sponsorship assistance at this time or in the future.*** Sr. Client Finance Analyst Position Summary: The Senior Client Finance Analyst will support the overall financial management for our client portfolio, reporting, general day-to-day activities,...

  • Sr. Analyst

    1 month ago


    Bethesda, Maryland, United States Bethesda Marriott Full time

    Job Number Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJob SummaryThe Sr. Analyst, Insider Threat Incident Response Analyst uses a solid working knowledge of insider threat behavior to...

  • Sr. Data Analyst

    1 month ago


    Bethesda, United States Kforce Federal Solutions Full time

    Position: Sr. HC Data Analyst (Human Capital)Location: on-site Bethesda, MDProgram: supporting the Office of the Director of National IntelligenceClearance Required: Top-Secret/SCI with Polygraph Responsibilities · Design and build innovative surveys, such as enterprise-wide surveys, pulse surveys, and process surveys, for ODNI using LimeSurvey or other...


  • Bethesda, United States Precisionscientia Full time

    ***The Client Finance Analyst III role is a fully remote role.*** ***Unfortunately, we are not able to provide sponsorship assistance at this time or in the future.*** Sr. Client Finance Analyst Position Summary: The Senior Client Finance Analyst will support the overall financial management for our client portfolio, reporting, general day-to-day activities,...


  • Bethesda, United States Precision Value & Health Full time

    ***The Client Finance Analyst III role is a fully remote role.*** ***Unfortunately, we are not able to provide sponsorship assistance at this time or in the future.*** Sr. Client Finance Analyst Position Summary: The Senior Client Finance Analyst will support the overall financial management for our client portfolio, reporting, general day-to-day activities,...


  • Bethesda, Maryland, United States Bethesda Marriott Full time

    Job Number Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJob SummaryThe Cyber Incident Response Analyst is responsible for responding to both existing and emerging threats, as well as...

  • Sr. Manager

    3 weeks ago


    Bethesda, Maryland, United States Bethesda Marriott Full time

    Job Number Job Category Finance & AccountingLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? NRelocation? NPosition Type ManagementJob SummaryAs a member of the Global Insurance team, the Sr. Manager, International Insurance manages critical elements of Marriott's...

  • Sr. Manager

    2 weeks ago


    Bethesda, United States Bethesda Marriott Full time

    Job Number 24082308Job Category Finance & AccountingLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? NRelocation? NPosition Type ManagementJob SummaryAs a member of the Global Insurance team, the Sr. Manager, International Insurance manages critical elements of...


  • Bethesda, United States Novel Applications, Inc. Full time

    Residency Status: ALL CANDIDATES MUST BE A U.S. CITIZEN Clearance: ALL CANDIDATES MUST POSSESS AN ACTIVE TS/SCI w/CI poly. Time Type: Full-Time, Daytime Schedule Relocation Fees: No Company Overview: NAOVI (Novel Applications, Inc.) is a premier technology services company that provides solutions in the areas of Cyber Security, Information Management and...


  • Bethesda, United States Bethesda Marriott Full time

    Job Number 24066422Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? NRelocation? NPosition Type ManagementJob SummaryLeads workgroups and/or functions as a technical expert. Active member of cross-pod leadership teams overseeing the...


  • Bethesda, United States Marriott Full time

    Job Description JOB SUMMARY Leads workgroups and/or functions as a technical expert. Active member of cross-pod leadership teams overseeing the service provider BAs that are embedded in individual agile pods. Responsible for driving cross-functional and cross-pillar requirements discussions and alignment. Reviews cross-pod Design, QA plan and status,...


  • Bethesda, United States Marriott International Full time

    Job DescriptionJOB SUMMARYLeads workgroups and/or functions as a technical expert. Active member of cross-pod leadership teams overseeing the service provider BAs that are embedded in individual agile pods. Responsible for driving cross-functional and cross-pillar requirements discussions and alignment.  Reviews cross-pod Design, QA plan and status,...


  • Bethesda, Maryland, United States Bethesda Marriott Full time

    Job Number Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? NRelocation? NPosition Type ManagementJob SummaryLeads workgroups and/or functions as a technical expert. Active member of cross-pod leadership teams overseeing the service...


  • Bethesda, United States Total Wine & More Full time

    Description Total Wine & More is looking for a Business Analyst to join the Store Operations department and work onsite in Bethesda, Maryland. You will oversee compliance, operational projects, and support company initiatives in relation to Store Operations. You will be a conduit between the Field and the Store Support Center and have a working knowledge of...


  • Bethesda, Maryland, United States Bethesda Marriott Full time

    Job Number Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJob SummaryThe Cyber Incident Response Analyst is responsible for responding to both existing and emerging threats, as well as...


  • Bethesda, United States Marriott Full time

    Job Number 24071967 Job Category Information Technology Location Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAP Schedule Full-Time Located Remotely? Y Relocation? N Position Type Management JOB SUMMARY The Cyber Incident Response Analyst is responsible for responding to both existing and emerging threats, as...


  • Bethesda, United States Marriott Full time

    Job Number 24071967 Job Category Information Technology Location Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAP Schedule Full-Time Located Remotely? Y Relocation? N Position Type Management JOB SUMMARY The Cyber Incident Response Analyst is responsible for responding to both existing and emerging threats, as...


  • Bethesda, United States Marriott Full time

    Job Number 24071967 Job Category Information Technology Location Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAP Schedule Full-Time Located Remotely? Y Relocation? N Position Type Management JOB SUMMARY The Cyber Incident Response Analyst is responsible for responding to both existing and emerging threats, as...

  • Sr. Systems Analyst

    4 days ago


    Bethesda, United States Marriott International Full time

    Job DescriptionJOB SUMMARY As a member of the Reporting and Analytics team in the Infrastructure & Delivery Shared Services (I&DSS) organization this position will be responsible for development and fulfillment of strategic planning, key strategic messaging, storytelling with data and initiative presentation materials for I&DSS senior leadership, as well as...