Cybersecurity Risk Governance Specialist

1 day ago


New York, New York, United States Harry's Inc. Full time

Company Overview:

H&H Inc. is a rapidly growing consumer goods company that prioritizes innovation and customer satisfaction. With a strong focus on putting people first, the company has established itself as a leader in its industry.

The company's flagship brand, Harry's, was founded by Jeff Raider and Andy Katz-Mayfield in 2013. Since then, H&H Inc. has grown significantly, expanding into new categories and markets. Today, the company employs over 900 people across the US, UK, and Germany.

H&H Inc.'s mission is to create things people like more – whether it's a product, an experience, or an internal tool. The company believes in making a positive impact and strives to create an inclusive environment where everyone can thrive.

Job Description:

We are seeking a highly skilled Cybersecurity Risk Manager to join our team. As a key member of our security team, you will be responsible for identifying, assessing, and mitigating risks associated with information security.

You will analyze and evaluate the organization's information security posture, conducting risk assessments and recommending security measures to protect against potential threats. Your strong understanding of cybersecurity principles, risk management frameworks, and regulatory requirements will ensure the company remains compliant and secure.

Key Responsibilities:

  • Risk Assessment and Management:
    • Conduct comprehensive risk assessments to identify vulnerabilities and threats to the organization's information assets.
    • Evaluate the potential impact and likelihood of identified risks.
    • Develop and maintain risk registers and documentation.
    • Recommend and implement risk mitigation strategies.
  • Security Policies and Procedures:
    • Develop, review, and update information security policies, procedures, and guidelines.
    • Ensure compliance with industry standards, regulations, and best practices.
    • Collaborate with other departments to integrate security policies into organizational processes.
  • Threat and Vulnerability Management:
    • Monitor and analyze security threats and vulnerabilities using various tools and techniques.
    • Conduct regular vulnerability assessments and penetration testing.
    • Coordinate response efforts for security incidents and breaches.
  • Compliance and Audit:
    • Assist in ensuring compliance with relevant regulations (e.g., GDPR, HIPAA, PCI-DSS) and standards (e.g., ISO 27001, NIST).
    • Prepare for and support internal and external audits.
    • Implement and manage security controls to meet compliance requirements.
    • Assist with GRC tracking across the organization.
  • Security Awareness and Training:
    • Assist with delivery of security awareness training programs for employees.
    • Promote a culture of security awareness within the organization.
  • Reporting and Communication:
    • Prepare security posture reports for Director of Cybersecurity.
    • Develop reports and evaluate the results of vendor assessments.
  • Continuous Improvement:
    • Stay updated with the latest cybersecurity trends, threats, and technologies.
    • Recommend and implement improvements to the organization's cybersecurity posture.

Qualifications:

  • Education:
    • Bachelor's degree in Information Security, Computer Science, or a related field.
  • Experience:
    • Minimum of 3-5 years of experience in cybersecurity, risk management, or a related field.
    • Proven experience in conducting risk assessments and vulnerability assessments.
  • Skills:
    • Strong understanding of cybersecurity principles, risk management frameworks (e.g., NIST, ISO 27001), and regulatory requirements.
    • Proficiency with security tools and technologies (e.g., SIEM, IDS/IPS, vulnerability scanners).
    • Excellent analytical, problem-solving, and decision-making skills.
    • Strong communication and interpersonal skills.

Salary: $145,000 - $190,000



  • New York, New York, United States Diverse Lynx Full time

    About the Role:We are seeking a highly skilled Cybersecurity Governance Risk Compliance Specialist to join our team. In this role, you will be responsible for ensuring that our firm's vendors meet our cybersecurity standards. This involves reviewing vendor security architectures and designs to ensure they align with our policies, external guidelines, and...


  • New York, New York, United States Axonius Full time

    Risk Management Specialist - CybersecurityAxionius is a leading provider of cybersecurity solutions, dedicated to helping businesses navigate the complexities of cybersecurity risk management. We are seeking a highly skilled Risk Management Specialist - Cybersecurity to join our team.About the RoleCollaborate with stakeholders to identify and analyze...


  • New York, New York, United States Axonius Full time

    Cybersecurity Governance ExpertAxionius is a leader in cybersecurity solutions, dedicated to helping businesses manage their cyber assets and protect against threats. We are currently seeking a highly skilled Cybersecurity Governance Expert to join our team.About the RoleEnsure the security of our organization's information assets and compliance with...


  • New York, New York, United States Atlas Search Full time

    About the OpportunityWe are seeking a highly skilled Cybersecurity Risk Management Specialist to join our team at Atlas Search. As a specialist in this role, you will be responsible for leading and implementing comprehensive cybersecurity risk management strategies across our organization.


  • New York, New York, United States GeoComply Full time

    About the RoleSafeguarding our clients from financial fraud requires a unique blend of technical expertise, strategic thinking, and collaboration. As a Cybersecurity Risk Specialist at GeoComply, you will be at the forefront of this effort.We are seeking an experienced professional with a strong background in fraud investigations, AML, or data analysis to...


  • New York, New York, United States ADEX Full time

    Job SummaryADEX is seeking a highly experienced Cybersecurity Governance Lead to join our team. This role will be responsible for managing information security governance, risk, and compliance across the organization.The ideal candidate will have at least 5 years of experience in information security governance, risk, and compliance, with a strong background...


  • New York, New York, United States The Phoenix Group Full time

    This is a unique opportunity to start a career in security, particularly in governance and risk management. The ideal candidate has a curious nature and wants to learn and grow.About the RoleAs a Technology Risk Management Consultant at The Phoenix Group Advisors, you will support the governance, audit, and management of technology risk. You will work...


  • New York, New York, United States eTek IT Services, Inc. Full time

    Job OverviewAs a seasoned cybersecurity professional, you will play a critical role in ensuring the safety and security of our company's digital assets. You will be responsible for managing and mitigating cybersecurity risks, working closely with cross-functional teams to implement risk-based controls and ensure compliance with regulatory requirements.Key...


  • New York, New York, United States TEKsystems Full time

    At TEKsystems, we're committed to helping our clients navigate the complex landscape of cybersecurity and third-party risk management. As a Cybersecurity Third Party Risk Manager, you'll play a critical role in ensuring the security and integrity of our organization's relationships with external partners.The ideal candidate will have a strong background in...


  • New York, New York, United States Wells Fargo Full time

    We are seeking a highly skilled and experienced Cybersecurity Risk Management Specialist to join our Enterprise Technology Audit Group (ETAG) at Wells Fargo.The ideal candidate will have experience navigating complex matrixed organizations, interfacing with regulatory agencies, and building effective audit approaches to evaluate information and risk in the...


  • New York, New York, United States Cantor Fitzgerald Securities Full time

    At Cantor Fitzgerald Securities, we are seeking a highly experienced Cybersecurity Risk Management Professional to join our team as a Control Framework Specialist. This role will play a critical part in driving the efforts across cybersecurity controls framework initiatives and furthering our Cybersecurity control design model in alignment with industry...


  • New York, New York, United States StateJobsNY Full time

    The StateJobsNY is currently seeking a skilled and enthusiastic individual to fill the position of Student Cybersecurity Specialist. This role offers a unique opportunity to apply your knowledge and skills in a dynamic environment, working closely with a dedicated team to protect sensitive information and promote cybersecurity awareness.Estimated Salary:...


  • New York, New York, United States Equiniti Full time

    About the Role:The Business Risk & Controls ('BRC') team is a specialist First-Line team operating within the Equiniti US Shareholder Services division. This role is responsible for policy oversight and governance framework establishment of the business.This role will suit someone with a blend of Internal Audit Experience, Internal Control & Risk expertise...


  • New York, New York, United States Mizuho Bank Ltd Full time

    Join Our Team as a Network and Cybersecurity SpecialistMizuho Financial Group, Inc. is a leading provider of comprehensive financial services to clients in 35 countries. We are seeking a skilled Network and Cybersecurity Specialist to join our team in Mizuho Americas Services, LLC (MAS).The successful candidate will be responsible for designing and...


  • New York, New York, United States Palo Alto Networks, Inc. Full time

    About the RoleWe are seeking a seasoned professional to lead our Governance, Risk, and Compliance team as a Principal Consultant, GRC for Proactive Services.This critical role involves overseeing security risk assessments across multiple frameworks, working closely with clients to improve their security posture and maturity.Key ResponsibilitiesLead security...


  • New York, New York, United States Syntricate Technologies Full time

    Job DescriptionThe Strategic Risk Data Governance Specialist role is responsible for ensuring timely and accurate definition and execution of Risk requirements according to the Data Governance Policy (CDGP) and Standard (CDGS). This position reports into the Enterprise Risk Data Layer (ERDL) Lead in Enterprise Risk Managements Data & Technology.Key...


  • New York, New York, United States Capital One Full time

    At Capital One, we are seeking an experienced Cybersecurity Risk Manager to join our Technology Risk Management (TRM) team. This role presents a unique opportunity for individuals with hands-on cybersecurity technical and operational experience to leverage and enhance their expertise in risk management.The successful candidate will have the ability to...


  • New York, New York, United States Wavestone Full time

    Job ResponsibilitiesWe are seeking a highly skilled Cybersecurity Transformation Specialist to join our team in New York. The successful candidate will have comprehensive knowledge of at least 4 of the following Cybersecurity and/or Operational Resilience topics: Cyber Security Strategy/Maturity, Awareness & Training, Risk Assessment/Management, Data...


  • New York, New York, United States Northwestern Mutual Life Insurance Company Full time

    Job DescriptionWe are committed to making a positive impact.The IT Governance, Risk, and Compliance Strategy Lead will drive the strategic IT GRC division's vision, operating model, budget, and planning activities, and outcomes for the division, which is part of the Information Risk and Cybersecurity (IRC) department.This role will focus on driving strategic...


  • New York, New York, United States Selby Jennings Full time

    About This OpportunityAs a leading Investment Bank in New York City, we are seeking an experienced Director to support our Market Risk function in a governance capacity.Key ResponsibilitiesCoordinate risk management activities for senior leadership and business leaders, ensuring effective communication and collaboration.Elevate risk matters to the Head of...