Cybersecurity Risk Management Leader

1 week ago


Cottonwood Heights, Utah, United States SoFi Full time
Job Summary

SoFi is seeking a highly skilled Cybersecurity Risk Management Leader to join our team. As a key member of our cybersecurity team, you will be responsible for developing and implementing a comprehensive cybersecurity risk management program to protect our cloud-based infrastructure and data.

Key Responsibilities
  • Develop and Implement Cybersecurity Risk Management Program: Establish a strategic plan for the review and development of the independent review of 1LOD and the technical evaluation of the breadth and depth of the control environment.
  • Provide Risk Guidance and Framework Support: Collaborate closely with the 1LOD IT and cybersecurity teams to provide risk guidance and framework support.
  • Perform Risk Assessments and Evaluations: Perform reviews of 1LOD risk and control self-assessments (RCSA) to identify, analyze, and evaluate cybersecurity risks and gaps and to ensure controls are designed and operating effectively across SoFi and affiliates.
  • Ensure Compliance with Regulatory Requirements: Ensure compliance with relevant regulatory requirements and industry standards (e.g., FFIEC, NIST, CIS).
  • Develop and Maintain Comprehensive Documentation: Develop and maintain comprehensive documentation of cyber risk assessments.
  • Collect and Analyze Cyber Risk Data: Collect key cyber risk and performance data, establish cyber risk trends, analyze and report regularly on elevated risks failing to meet expected levels of cyber risk management and performance.
  • Prepare and Deliver Clear Reporting: Prepare and deliver clear, concise, and actionable reporting to senior leadership and governance committees.
Requirements
  • Education and Experience: Bachelor's degree or equivalent experience and certifications in cybersecurity, information technology, computer science or a related field. 8+ years of relevant cybersecurity, technology, risk management, regulatory and compliance, or Internal Audit experience.
  • Cloud Experience: Minimum of 3 years assessing risk, cloud-based infrastructure management or development in a cloud-first environment. Extensive knowledge of AWS cloud platform and capabilities, with equivalent cloud-provider experience in Azure or GCS a plus.
  • Cybersecurity Operations Background: Cybersecurity operations background and deep understanding of risk management practices.
  • Interpersonal and Communication Skills: Highly effective interpersonal and communication skills and proven ability to positively influence all levels of personnel, including IT/Security partners and senior leadership.
  • Leadership Experience: Experience leading and developing team members in a cybersecurity or risk group.
  • Control Testing Experience: Proven success building and implementing control testing programs to evaluate the design and adequacy and effectiveness of key controls.
  • GRC Experience: Experience building and maturing governance, risk, and compliance (GRC) systems.
Preferred Qualifications
  • Advanced Degree or Certifications: Advanced degree; relevant industry certifications, for example, CSSP, CISSP, CISM, CCSK, CISA, Cloud Audit Academy certification, AWS Certified Security, AWS Certified Solutions Architect.
  • Regulatory Experience: Prior experience in a cybersecurity operations or cyber risk leadership role with significant risk management background. Experience preparing reports for and interacting with and presenting to regulators (Fed, OCC, CFPB, NYDFS) and executive leadership within IT and Risk.
  • Cloud Security Experience: Experience in banking, fintech, or highly regulated industry. Enterprise experience assessing AI risks.
  • Technical Skills: Experience working in Google Docs, Sheets and Slides.


  • Cottonwood Heights, Utah, United States SoFi Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Risk Manager to join our team at SoFi. As a key member of our cybersecurity team, you will be responsible for managing and mitigating cybersecurity risks across our cloud-based infrastructure.Key ResponsibilitiesDevelop and Implement Cybersecurity Risk Management ProgramsEstablish a strategic plan for...


  • Cottonwood Heights, Utah, United States Social Finance Ltd Full time

    Cybersecurity Governance Risk and Compliance Project ManagerSocial Finance Ltd is a pioneering financial institution seeking a Cybersecurity Governance Risk and Compliance (GRC) Project Manager. In this role, you will oversee the comprehensive planning and execution of GRC initiatives, ensuring alignment with applicable regulations and industry best...


  • Cottonwood Heights, Utah, United States Social Finance Ltd Full time

    About the RoleWe are seeking a highly skilled Senior Manager of Risk Management, Credit Card Acquisition to join our team at Social Finance Ltd. This is a critical role that will lead the credit risk strategies for our Credit Card products and collaborate with business partners to drive revenue, control risk, and provide value to the company and...


  • Cottonwood Heights, Utah, United States SoFi Full time

    Position OverviewThis role involves contributing to the establishment and execution of the second line of defense for risk assessment concerning new or altered business activities. The individual will assist in crafting and enforcing comprehensive governance documentation that facilitates the coordination, recording, and communication of risks associated...


  • Cottonwood Heights, Utah, United States SoFi Full time

    Position OverviewThis role involves the facilitation and execution of the second line of defense for assessing risks associated with new or modified business activities. The individual will play a key role in crafting and executing comprehensive governance documentation that outlines the risks inherent in business changes, while ensuring effective...


  • Cottonwood Heights, Utah, United States SoFi Full time

    Position OverviewThis role entails assisting in the development and execution of the second line of defense for risk assessment concerning new or altered business activities. The individual will aid in crafting and instituting comprehensive governance documentation to facilitate the coordination, recording, and communication of risks associated with new or...


  • Cottonwood Heights, Utah, United States SoFi Full time

    About the RoleSoFi is seeking a seasoned executive to lead the Invest business unit, driving growth and innovation in online brokerage, digital advice, and alternative offerings. As a strategic leader, you will define and execute the overall growth strategy, leveraging member feedback and industry research to inform product development and delivery.Key...


  • Cottonwood Heights, Utah, United States SoFi Full time

    About the RoleAs a seasoned professional in the mortgage capital markets, you will play a pivotal role in shaping the financial future of our members. As a Manager of Secondary Marketing within the Capital Markets team at SoFi, you will be responsible for the strategic management and execution of the Secondary Marketing function.Key ResponsibilitiesSecondary...

  • IT Support Manager

    6 days ago


    Cottonwood Heights, Utah, United States Social Finance Ltd Full time

    About the RoleWe are seeking a highly skilled IT Support Manager to lead our technical operations team at Social Finance Ltd. As a key member of our IT department, you will be responsible for ensuring the smooth operation of our IT systems and infrastructure.Key ResponsibilitiesTeam Management:Hiring and training of technical support personnel to ensure the...

  • IT Support Manager

    6 days ago


    Cottonwood Heights, Utah, United States Social Finance Ltd Full time

    About the RoleWe are seeking a highly skilled IT Support Manager to lead our technical operations team at Social Finance Ltd. As a key member of our IT department, you will be responsible for ensuring the smooth operation of our IT systems and infrastructure.Key ResponsibilitiesTeam Management:Hiring and training of technical support personnel to ensure the...


  • Cottonwood Heights, Utah, United States Stretch Zone - 1037 Full time

    Benefits:Complimentary uniformsPaid leavePosition: Studio Sales ManagerCompensation:$20-$25 per hour plus commissions, bonuses, and potential profit sharing.Employment Type:We are in search of motivated and dedicated professionals to enhance our organization. Stretch Zone is a leader in practitioner-assisted stretching, with locations nationwide and ongoing...


  • Cottonwood Heights, Utah, United States SoFi Full time

    Job SummaryThe Associate Manager, IT Support at SoFi will lead, mentor, and develop a diverse team of IT professionals. This person will partner with IT Engineering and other departments outside of IT to ensure that all aspects of IT Support and Infrastructure are accurate, efficient, repeatable, and robust.Key ResponsibilitiesTeam Management:Hiring: Recruit...


  • Cottonwood Heights, Utah, United States Thiess Full time

    Job OverviewThiess, a prominent global entity with a legacy dating back to 1933, operates with a commitment to sustainable resource solutions, encompassing mining services, land rehabilitation, and engineering consultancy. With a workforce exceeding 12,000 skilled professionals, we are poised to tackle challenges and deliver enduring value to our clients.As...


  • Sterling Heights, Michigan, United States Nightwing Full time

    Position Overview: As a pivotal member of Nightwing, the Senior Cybersecurity Risk and Compliance Analyst will be instrumental in fortifying our cybersecurity framework. This role demands a deep understanding of regulatory standards and the ability to navigate complex compliance landscapes.Key Responsibilities:Conduct thorough assessments of cybersecurity...


  • Sterling Heights, Michigan, United States Nightwing Full time

    Position Overview: As a pivotal member of Nightwing, the Senior Cybersecurity Risk and Compliance Analyst will be instrumental in enhancing our cybersecurity framework and ensuring adherence to critical regulatory standards.Key Responsibilities:Conduct thorough evaluations of cybersecurity risks and compliance with DFARs, NIST, and CMMC standards.Collaborate...


  • Sterling Heights, Michigan, United States Nightwing Full time

    Position Overview: As a pivotal member of Nightwing, the Senior Cybersecurity Risk and Compliance Analyst will be instrumental in safeguarding our information systems and ensuring adherence to regulatory standards. This role demands a comprehensive understanding of cybersecurity frameworks, particularly DFARs, NIST, and CMMC.Key Responsibilities:Conduct...


  • Sterling Heights, Michigan, United States Nightwing Full time

    Position Overview: As a Senior Cybersecurity Risk and Compliance Analyst at Nightwing, you will be instrumental in fortifying our cybersecurity framework and ensuring adherence to critical regulatory standards.Key Responsibilities:Conduct thorough internal audits to validate controls, focusing on compliance with essential cybersecurity regulations.Guide the...


  • Sterling Heights, Michigan, United States Nightwing Full time

    Position Overview: As a pivotal member of Nightwing, the Senior Cybersecurity Risk and Compliance Analyst will be instrumental in enhancing our cybersecurity framework and ensuring adherence to critical regulatory standards.Key Responsibilities:Conduct thorough assessments of cybersecurity risks, identifying vulnerabilities within corporate networks and...


  • Sterling Heights, Michigan, United States Raytheon Technologies Full time

    Position Overview - Cybersecurity Program ManagerRaytheon Technologies is in search of a dedicated cybersecurity expert to fill the role of Cybersecurity Program Manager. The successful candidate will be tasked with implementing the cybersecurity strategy in accordance with various governmental guidelines and standards. Key responsibilities include:Creating...


  • Sterling Heights, Michigan, United States Cyber Management International Corp Full time

    Job OverviewPosition: Cybersecurity Threat Analyst - Subject Matter ExpertEmployment Type: Full-timeSecurity Clearance: Active Secret Security Clearance requiredAbout Cyber Management International CorpCyber Management International Corp is a dynamic Veteran Owned Small Business (VOSB) committed to safeguarding information through comprehensive cyber...


  • Sterling Heights, Michigan, United States Capital One Financial Corp Full time

    Position Overview:As a Manager of Cyber Risk & Analysis, you will play a pivotal role in safeguarding our organization by ensuring robust risk management practices are in place. This position requires a highly skilled professional who is adept at navigating the complexities of risk and process management. Key Responsibilities:Design and execute processes...


  • Sterling Heights, Michigan, United States Raytheon Technologies Full time

    Position Overview:We are seeking a meticulous and proactive Cybersecurity Operations Manager to support a critical mission for a U.S. Government client. This role is integral to the design, development, and management of a network operations environment that enhances cyber capabilities to counteract emerging threats.Key Responsibilities:Facilitating daily...


  • Linthicum Heights, Maryland, United States Northrop Grumman Full time

    Requisition ID: R At Northrop Grumman, our team members enjoy remarkable opportunities to engage in groundbreaking systems that influence lives globally today and for future generations. Our innovative and creative spirit has positioned us at the forefront of numerous technological milestones in our nation's history - from pioneering transatlantic...


  • Sterling Heights, Michigan, United States Peraton Full time

    Position OverviewPeraton is in search of a skilled Project Manager, Information Assurance to join our diverse team dedicated to enhancing the security and efficiency of our IT operations. This role is pivotal in managing a variety of Information Assurance initiatives that bolster cybersecurity measures across numerous platforms and applications.Key...


  • Linthicum Heights, Maryland, United States 00100 LEIDOS, INC. Full time

    Program Overview As a Cybersecurity Systems Engineer, you will be part of a dedicated team of seasoned experts delivering Information Assurance (IA) Architecture Analysis and Security Engineering Support. This role is crucial for the deployment and operational readiness of the National Leadership Command Capability, which underpins Nuclear Command,...


  • Sterling Heights, Michigan, United States AMPSIGHT Full time

    Job SummaryAmpsite is seeking a highly skilled and experienced Cybersecurity Engineer to join our team. As a Cybersecurity Engineer, you will play a critical role in maintaining the security posture of our organization and ensuring the confidentiality, integrity, and availability of our systems and data.Key ResponsibilitiesSystems Security: Design,...


  • Linthicum Heights, Maryland, United States Northrop Grumman Full time

    Requisition ID: R At Northrop Grumman, our team members enjoy remarkable opportunities to engage in groundbreaking systems that influence lives globally, both now and in the future. Our innovative and creative spirit has positioned us at the forefront of numerous technological milestones in our nation's history, from pioneering transatlantic flights to...


  • Berkeley Heights, New Jersey, United States Atlas Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Strategy Manager to join our team at Atlas, a leading strategic consulting firm specializing in the life sciences domain. As a key member of our team, you will play a crucial role in defining project strategies, governance, and coordination for IT Leadership and Board of Directors.Key...

  • PM/Risk Management

    2 weeks ago


    Berkeley Heights, United States Orion Innovation Full time

    Orion Innovation is a premier, award-winning, global business and technology services firm. Orion delivers game-changing business transformation and product development rooted in digital strategy, experience design, and engineering, with a unique combination of agility, scale, and maturity. We work with a wide range of clients across many industries...

  • PM/Risk Management

    6 days ago


    Berkeley Heights, United States Orion Innovation Full time

    Orion Innovation is a premier, award-winning, global business and technology services firm. Orion delivers game-changing business transformation and product development rooted in digital strategy, experience design, and engineering, with a unique combination of agility, scale, and maturity. We work with a wide range of clients across many industries...


  • Cottonwood Heights, United States Social Finance Ltd Full time

    Employee Applicant Privacy Notice Who we are: Shape a brighter financial future with us. Together with our members, we're changing the way people think about and interact with personal finance. We're a next-generation financial services company and national bank using innovative, mobile-first technology to help our millions of members reach their goals. The...


  • Sterling Heights, Michigan, United States Raytheon Technologies Full time

    Position Overview:The Cybersecurity Operations Manager plays a crucial role in supporting a significant mission-critical program aimed at enhancing cyber capabilities to counteract emerging threats. This position is essential for optimizing operational workflows and ensuring the seamless execution of daily activities.Key Responsibilities:Coordinate daily...


  • Sterling Heights, Michigan, United States Nightwing Full time

    Position Overview:The role of the Information System Security Officer (ISSO) is crucial in ensuring the implementation and adherence to security compliance directives. This position entails hands-on execution and oversight for various programs and laboratories, focusing on maintaining and enforcing standard operating procedures derived from governmental...