12+ years of technical or audit experience in core cybersecurity fields
Strong knowledge of core cybersecurity domains including Vulnerability Management, Threat Management, Identity and Access Management (IAM), Data Protection, Information Handling (IH) / Incident Response (IR), Application Security (AppSec), Network Security, System Administration, and Governance, Risk, and Compliance (GRC)
Expert knowledge of performing risk management based on NIST 800-53
Excellent analytical ability and the ability to link risk management programs to business strategies
Responsibilities
Lead risk and control assessments for core cybersecurity domains
Provide technical expertise to assist in the development and maintenance of cybersecurity standards, including security threats and vulnerabilities
Evaluate compliance to information security policies and procedures and regulatory requirements
Assist in the remediation of cybersecurity findings
Participate in the development and implementation of cybersecurity training for technical domains
Provide guidance during cyber incident responses related to cybersecurity risks and control assurance
Influence behaviors to foster a strong technology risk management culture