Profile
Job title: Manager of Cyber Governance
Company: CNA
Location: Arlington, VA
Salary Type:
Expected salary:
Min Salary:
Max Salary:
Job date: Wed, 28 Aug 2024 23:41:09 GMT
Date Posted: Wed, 28 Aug 2024 23:41:09 GMT
Job description:
JOB DESCRIPTION AND / OR DUTIES * Develop and implement a comprehensive cyber governance strategy that aligns with the organization’s business objectives and risk appetite.
- Provide strategic counsel to senior leadership on cybersecurity risk management, resource allocation, and investment priorities.
- Lead a team of skilled professionals, ensuring they have the necessary resources, training, and support to excel in their roles.
- Create and enforce cybersecurity policies, standards, and procedures.
- Oversee compliance with relevant cybersecurity regulations and frameworks.
- Develop and maintain an incident response plan to handle cybersecurity incidents effectively.
- Lead incident response efforts and coordinate with relevant stakeholders during security breaches.
- Drive continuous enhancement of cybersecurity processes, policies, and procedures through regular assessments, exercises, and refinement initiatives.
- Develop risk mitigation strategies and track remediation efforts.
- Evaluate and manage cybersecurity risks associated with third-party vendors, contractors, and partners, including conducting security assessments, and ensuring contractual obligations are met.
- Work closely with IT and engineering teams to design, implement, and maintain secure infrastructure, systems, and applications. Ensure that security controls are built into the design and development process from the outset.
- Develop and maintain security metrics to measure the effectiveness of cybersecurity controls and initiatives. Provide regular reports to senior leadership and the board of trustees on the organization’s cybersecurity posture and key risk indicators.
- Instill a culture of security awareness and resilience across the organization through education, advocacy, and exemplary cybersecurity practices.
- Stay abreast of emerging cybersecurity threats, technologies, and trends, and provide guidance on how they may impact the organization’s security posture.
- Perform other duties as assigned.
JOB REQUIREMENTS * Education: Bachelor’s or master’s degree in information security, computer science, or related field, or equivalent combination of education and work experience required; Advanced degree is a plus. PMP, CISSP, CISM, or other cyber certifications a plus.
- Experience: Minimum 8 years of progressive experience in cybersecurity, with a focus on governance, risk, and compliance. Supervisory experience required.
- Skills:
- Demonstrated leadership skills, with experience managing and developing high-performing teams in a fast-paced environment
- Deep understanding of Strong knowledge of cybersecurity frameworks, standards, and regulations
- Experience in developing and implementing cybersecurity policies and procedures
- Excellent communication and interpersonal skills, with the ability to interact effectively with stakeholders at all levels of the organization.
- Clearance: Ability to obtain and maintain a Top-Secret level security clearance if required.
- Remote/Hybrid Work Eligibility: This position is eligible for telecommuting or hybrid work arrangements at the discretion of the Supervisor. Employees may be required to work at CNA headquarters or other work locations resulting in changes to the scheduled telecommuting or hybrid work arrangements.
APPLY FOR JOB NOW!
https://jobviewtrack.com/en-us/job-1b49416a42120a1c49154e000d4123060b41130d1b7169525f485f44220f491547061a6323060b41130d1b7169525f485f6628015111520d090f0d02641246585b45/f6b18a315b9e7b1c0039e1117e39e799.html?affid=e5560a6a750fc3396f98cacb334ab138