Current jobs related to Information Security Risk Manager - Pittsburgh, Pennsylvania - Carnegie Mellon University


  • Pittsburgh, Pennsylvania, United States Alcoa Full time

    About the Role:As a Security Risk Analyst at Alcoa, you will play a crucial role in shaping the company's risk management program. Your input will be key in designing and implementing a comprehensive program that balances risk, compliance, and cost, aligning with the Company's business goals and IT strategy.Key Responsibilities:Contribute to the development...


  • Pittsburgh, Pennsylvania, United States RAND Full time

    Job SummaryThe Information Systems Security Manager (ISSM) is responsible for managing the process to protect RAND's classified information. This includes implementing all classified security policy, procedures, and government security requirements as required by the United States Government.Key ResponsibilitiesImplement classified security policy,...


  • Pittsburgh, Pennsylvania, United States Edgeworth Security Full time

    Secure the Future with Edgeworth SecurityAt Edgeworth Security, we're committed to providing top-notch security solutions to our clients. As a Monitoring Center Agent, you'll play a vital role in protecting our clients' people, property, and assets from intrusion, theft, and other unauthorized activities.Key Responsibilities:Provide 24/7 monitoring and...


  • Pittsburgh, Pennsylvania, United States RAND Full time

    Job Summary:The Information Systems Security Manager (ISSM) role at RAND is responsible for managing the process to protect classified information. This includes implementing all classified security policy, procedures, and government security requirements as required by the United States Government.Key Responsibilities:Functionally manage the process to...


  • Pittsburgh, Pennsylvania, United States RAND Full time

    Job SummaryRAND is seeking highly motivated practitioners to use their technical and domain expertise to directly impact AI, biosecurity, and cybersecurity policy in government and beyond.The ideal candidate will have a strong background in AI, machine learning, data science, information security, and computer science, with experience in developing...

  • Technical Manager

    4 weeks ago


    Pittsburgh, Pennsylvania, United States Software Engineering Institute Full time

    At the Software Engineering Institute, we are seeking a highly skilled Technical Manager to join our Cyber Risk and Resilience Directorate. The ideal candidate will have a strong background in cybersecurity and risk management, with experience in leading technical teams and developing research agendas.Key Responsibilities:Develop and manage a sustained...


  • Pittsburgh, Pennsylvania, United States MSCCN Full time

    Job Summary:MSCCN is seeking a highly skilled Information Systems Security Officer to join our team. As an ISSO, you will be responsible for providing compliance and oversight of all of MSCCN's Authorization and Accreditation (A&A) requirements. This includes maintaining policies and procedures in accordance with the Defense Intelligence Agency (DIA),...


  • Pittsburgh, Pennsylvania, United States Ikea Full time

    Job SummaryWe are seeking a highly skilled Risk and Compliance Specialist to join our team at IKEA. As a key member of our unit, you will be responsible for promoting risk awareness, supporting informed decision-making, and ensuring compliance with internal and external expectations.Key ResponsibilitiesPromote risk awareness in the unit to support informed...


  • Pittsburgh, Pennsylvania, United States BNY Mellon Full time

    About the RoleWe are seeking a highly skilled Senior Vice President, Technology Risk Management to join our team at BNY Mellon. This role is a key part of our Technology Risk Management (TRM) team, which provides oversight and challenge to the company's Technology organization and related Lines of Business.Key ResponsibilitiesProvide oversight and challenge...


  • Pittsburgh, Pennsylvania, United States Edgeworth Security Full time

    Job Title: Security Monitoring Center AgentEdgeworth Security is seeking a reliable and energetic Security Monitoring Center Agent to join our team. As a Security Monitoring Center Agent, you will be responsible for providing 24/7 remote monitoring services to protect client locations from intrusion, theft, and other unauthorized or criminal activities.Key...

  • Cyber Security Leader

    4 weeks ago


    Pittsburgh, Pennsylvania, United States Wabtec Full time

    Wabtec Corporation is a leading global provider of equipment, systems, digital solutions and value-added services for freight and transit rail.The company has unmatched digital expertise, technological innovation, and world-class manufacturing and services, enabling the digital-rail-and-transit ecosystems.As a Cyber Security Leader, you will drive the...


  • Pittsburgh, Pennsylvania, United States System One Holdings, LLC Full time

    Job Title: Sr Risk SpecialistJob Location: Pittsburgh, Cleveland, Birmingham, or DallasJob Type: Contract to HireJob Description:We are seeking a highly skilled Sr Risk Specialist to join our team at System One Holdings, LLC. As a Sr Risk Specialist, you will be responsible for executing the Technology Risk Management program, identifying opportunities for...

  • Risk Management Lead

    4 weeks ago


    Pittsburgh, Pennsylvania, United States PNC Full time

    Job SummaryPNC is seeking a highly skilled Risk Management Lead to join our Regulatory Reporting organization. As a key member of our team, you will be responsible for ensuring the smooth operation of our Axiom Regulatory Reporting system and automation of additional regulatory filings.About the RoleThis role is an opportunity to navigate the multi-faceted...

  • Security Specialist

    4 weeks ago


    Pittsburgh, Pennsylvania, United States PNC Full time

    Job Title: Security SpecialistJob Summary:We are seeking a highly skilled Security Specialist to join our team at PNC. As a Security Specialist, you will be responsible for designing, building, and maintaining technology solutions to ensure the security and integrity of our data.Key Responsibilities:* Develop and implement security protocols to protect...


  • Pittsburgh, Pennsylvania, United States Prequel Solutions Full time

    Job Summary: We are seeking a highly skilled Risk Management Specialist to join our team at Prequel Solutions.Key Responsibilities:Lead the operating incident review program, analyzing control breakdowns and determining root causes.Oversee records management and insurance programs, ensuring regulatory compliance and adequate insurance coverage.Assist in the...


  • Pittsburgh, Pennsylvania, United States PNC Full time

    PNC Internship in Independent Risk ManagementAs a PNC Intern, you will participate in a comprehensive internship program focused on Independent Risk Management. Our organization maintains a strong emphasis on effective risk management, adhering to the enterprise's risk appetite.As a Risk Management intern, you will collaborate with senior management and...

  • Compliance Director

    4 weeks ago


    Pittsburgh, Pennsylvania, United States Strivector Full time

    Strivector Corp is a leading national staffing and recruiting agency established in 2012, headquartered in Austin, Texas. We are a preferred partner for several Fortune 500 companies nationwide, consistently rated 4.6/5 on Google, Indeed, and Glassdoor by our candidates, customers, employees, and contractors.Elevate your professional journey with Strivector....


  • Pittsburgh, Pennsylvania, United States TTI of USA, Inc. Full time

    Job Summary:The Information Security Analyst, Identity Access Management Operations candidate will establish client, account, user, and service entitlements on provisioning systems. This role requires execution of complex security administration of client applications to establish access for new external/internal client users and maintain existing...


  • Pittsburgh, Pennsylvania, United States F.N.B. Corporation Full time

    Job Summary:The Risk Management GRC Analyst will support key risk management practices through the identification, assessment, monitoring, and reporting of risks. This involves analyzing data, sharing insights with stakeholders, and enforcing risk management protocols.Key Responsibilities:Challenges continuously various day-to-day risk management activities,...


  • Pittsburgh, Pennsylvania, United States PNC Financial Services Group Full time

    Job DescriptionPNC Financial Services Group is seeking a highly motivated and detail-oriented Risk Management Undergraduate Intern to join our team. As a Risk Management Intern, you will have the opportunity to gain hands-on experience in risk management and analysis, working closely with senior management and other risk professionals.Key...

Information Security Risk Manager

1 month ago


Pittsburgh, Pennsylvania, United States Carnegie Mellon University Full time
About the Role

Carnegie Mellon University's Computing Services department is seeking a highly skilled Information Security Risk & Compliance Analyst to join our team. As a key member of our team, you will play a critical role in assessing, documenting, and implementing various controls for the University.

Key Responsibilities
  • Assist in enhancing existing risk metrics and report high-impact items to key campus stakeholders.
  • Audit IT systems and ensure established controls are being followed, identifying security findings and assisting in driving risk items to closure with the correct stakeholders.
  • Familiarity with risk assessments and common control sets, including Cyber Security Framework (CSF), Cybersecurity Maturity Model Certification (CMMC/NIST 800-171), and Payment Card Industry – Data Security Standard (PCI-DSS).
  • Lead compliance projects involving multiple stakeholders within established deadlines.
  • Manage the documentation and development of policies, guidance, and procedures related to information security for the University's Information Security Office (ISO).
  • Manage requests for information related to privacy regulations and risk management, including General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA).
  • Partner with key internal campus stakeholders on processes and controls, including the Office of the Vice Provost for Research, University Libraries, University Health Services, Treasury, and Enterprise Risk Management (ERM).
  • Proficient with Microsoft Office Suite and other document-sharing tools.
  • Review 3rd party documentation to determine information security risk and communicate those risks to stakeholders.
  • Strong communication skills, both written and oral, to effectively communicate with a variety of audiences.
Qualifications
  • Bachelor's Degree
  • 3-5 years of relevant work experience
  • Certifications: Certified Information Systems Auditor (CISA), Certified Information Systems Security Practitioner (CISSP), International Information Systems Security (ISC)2
Requirements
  • Successful background check

Carnegie Mellon University offers a comprehensive benefits package to all full-time employees, including medical, prescription, dental, and vision insurance, retirement savings programs, tuition benefits, and generous paid time off and holidays.