Job Description :

Cybersecurity Risk Advisor (Mid-Level)

100% Remote

Job Summary

We are seeking a Cybersecurity Risk Advisor to support the identification, assessment, and mitigation of information security risks across the organization. This role works closely with business units, IT teams, and compliance stakeholders to ensure risks are effectively managed and aligned with organizational risk appetite.


Key Responsibilities

  • Conduct cybersecurity risk assessments for systems, applications, and third-party vendors
  • Identify, analyze, and document security risks, threats, and vulnerabilities
  • Recommend and track risk mitigation strategies and controls
  • Support the development and maintenance of risk registers and risk reports
  • Collaborate with stakeholders to ensure risk-based decision making
  • Assist in implementing and maintaining security frameworks (e.g., ISO 27001, NIST)
  • Evaluate third-party/vendor security posture
  • Support audit and compliance activities (internal and external)
  • Monitor emerging threats and advise on potential business impacts
  • Contribute to security awareness and risk communication efforts

Required Qualifications

  • Bachelor’s degree in Cybersecurity, Information Technology, or related field
  • 3–6 years of experience in cybersecurity, risk management, or information security
  • Strong understanding of risk assessment methodologies
  • Familiarity with frameworks like NIST, ISO 27001, or CIS Controls
  • Experience with GRC tools (e.g., Archer, ServiceNow, OneTrust)
  • Knowledge of network security, cloud security, and application security basics
  • Strong analytical and problem-solving skills

Preferred Qualifications

  • Relevant certifications such as:
    • CISM
    • CRISC
    • CISSP
  • Experience in third-party risk management (TPRM)
  • Exposure to cloud platforms (AWS, Azure, GCP)
  • Understanding of regulatory requirements (GDPR, HIPAA, etc.)

Key Skills

  • Risk analysis & assessment
  • Stakeholder communication
  • Documentation & reporting
  • Critical thinking
  • Attention to detail
  • Ability to translate technical risks into business impact

Working Relationships

  • Information Security Team
  • IT & Engineering Teams
  • Compliance & Audit
  • Business Unit Leaders
  • External Vendors/Partners

Success Metrics

  • Timely completion of risk assessments
  • Reduction in identified high-risk exposures
  • Audit findings closure rate
  • Stakeholder satisfaction and engagement

             

Similar Jobs you may be interested in ..