CyberClan Logo

CyberClan

Risk Management Services Manager

Reposted 4 Days Ago
Be an Early Applicant
Remote
2 Locations
Senior level
Remote
2 Locations
Senior level
The Risk Management Services Manager leads security initiatives, ensures compliance with regulations, develops policies, manages security audits, and oversees incident responses.
The summary above was generated by AI

The Risk Management Services Manager identifies industry standards and regulatory guidelines for information security in order to minimize the risk of compromise of sensitive business systems. They help develop, maintain, and evaluate organizational security policies and procedures, and they work closely with engineering and operations teams to ensure systems controls meet security requirements.

This position will report to Chief Operating Officer


Essential Functions

  • Drive the team’s growth and development from a revenue perspective including presales, delivery of security engagements, statement of work (SOW), vCISO and account management.
  • Build resource management plan for Risk Management Services team
  • Routinely review tools and technologies that will enhance teams’ ability to deliver services in cost effective manner
  • Assist in the building of necessary scoping documents to size customer engagements
  • Work closely with Client Success Managers in client engagement
  • Present at a conference or participate on a panel (in person or virtually) no less than 5 times in a calendar year
  • Provide input as needed towards corporate messaging and marketing
  • Work with Sales team as needed to provide input and assist in closing deals where necessary
  • Understanding applicable regulations, guidelines, and industry best practices to manage risk and ensure compliance.
  • Developing, maintaining, or auditing security documentation such as policies, standards, and procedures.
  • Monitoring internal control effectiveness.
  • Conducting internal security assessments to ensure continued compliance.
  • Explaining roles in managing risk to partners and getting buy-in to improve the organizational risk posture.
  • Reviewing, implementing, updating, and documenting information security policies and procedures.
  • Advising Risk Management and Cybersecurity Office leadership regarding cybersecurity status.
  • Managing security audits, vulnerability and threat assessments, and direct responses to network or system intrusions.
  • Ensuring fulfillment of information security mandates, including providing leadership with compliance reports and audit findings.
  • Keeping abreast of industry security trends and developments, as well as applicable government regulations.
  • Researching, evaluating, and recommending new security tools, techniques, and technologies and introduces them to the enterprise in alignment with IT security strategy.
  • Creating and executing strategies to improve the reliability and security of IT projects.
  • Responding immediately to security-related incidents and provide a thorough post-event analysis.
  • Lead, develop and grow the penetration testing team.
  • Contribute to the establishment of new service lines.
  • Ensure that the team meats utilisation targets in line with expectation.
  • Assist and support consultants with their professional development and attainment of qualifications.

Required Skills and Experience

  • Bachelor’s degree, or higher, in computer engineering, computer science, IS or cybersecurity-related discipline, or equivalent five (5) years’ experience in information assurance or systems and network security.
  • Minimum of five (5) years leadership experience serving as an information security manager or information assurance/engineering team lead.
  • Demonstrated experience presenting briefings to senior customer management and customer stakeholders.
  • Advanced security DODD 8570 certification, e.g., CISM, CISSP, CND, CSA, Security+.
  • Demonstrated leadership experience with RMF and accreditation processes (e.g., NIST800-53, ICD503).
  • Demonstrated hands on experience with accreditation tools (e.g., Xacta, Nessus, AppDetective, WebInspect, Metasploit or Rapid 7, Core Impact or Cobalt Strike).
  • A cloud-based industry security certification (e.g., CCSP, Microsoft Azure Security Engineer).
  • Must have experience in Incident Response Planning and/or Table Top Exercise.
  • Experience in Threat & Risk Assessment & Privacy Impact Assessment.
  • Must be familiar with NIST, CIS Benchmark, ISO27001 and AWS GovCloud Security.

Preferred Skills, Experience, Degrees or Certifications

  • Experience securing infrastructure solutions and applications deployed in public and/or community cloud environments.
  • Experience implementing secure DevOps methodologies.
  • Experience integrating AWS with DevSecOps teams.
  • Must be able to obtain, maintain and/or currently possess a security clearance.

Job Type

Full-time/Exempt

Location

80% Remote/20% Travel

Top Skills

Appdetective
Aws Govcloud Security
Ccsp
Cis Benchmark
Cism
Cissp
Cnd
Cobalt Strike
Core Impact
Csa
Iso27001
Metasploit
Microsoft Azure Security Engineer
Nessus
Nist
Rapid 7
Security+
Webinspect
Xacta

CyberClan Vancouver, British Columbia, CAN Office

Vancouver, BC , Canada, V6B 2Z4

Similar Jobs

Yesterday
Remote or Hybrid
2 Locations
Senior level
Senior level
Artificial Intelligence • Big Data • Cloud • Information Technology • Software • Big Data Analytics • Automation
As a Sr Product Engineer, you will drive innovations in the Post Sales platform, collaborating with various teams to establish technology strategies and roadmaps while enhancing system performance and engaging in architectural solutions.
Top Skills: APIsApi Management ToolsCi/CdCloud-Based DeploymentsDevOpsInfrastructure As CodeMicroservices ArchitectureSaas Models
Yesterday
Remote or Hybrid
Sweden
Senior level
Senior level
Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
The Senior Account Executive will drive new customer acquisition and revenue growth in the Nordic region through solution selling and relationship building.
Top Skills: Cybersecurity
2 Days Ago
Easy Apply
Remote or Hybrid
28 Locations
Easy Apply
Expert/Leader
Expert/Leader
Big Data • Cloud • Software • Database
The Principal Technologist drives MongoDB adoption among Fortune 1000 companies by engaging with executives, delivering technical education, and influencing product strategy.
Top Skills: C#JavaMongoDBPython

What you need to know about the Vancouver Tech Scene

Raincouver, Vancity, The Big Smoke — Vancouver is known by many names, and in recent years, it has gained a reputation as a growing hub for both tech and sustainability. Renowned for its natural beauty, the city has become a magnet for professionals eager to create environmental solutions, and with an emphasis on clean technology, renewable energy and environmental innovation, it's attracted companies across various industries, all working toward a shared goal: advancing clean technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account