Manager, Information Security Risk and Consulting
Listed on 2026-07-24
-
IT/Tech
Information Security & Data Protection, Cybersecurity
Role Overview
The Manager, Information Security Risk and Consulting plays a critical role in executing and maturing the organization’s third‑party and integrated risk management program. This includes oversight of enterprise risk assessments across commercial off‑the‑shelf (COTS), open source, and internally developed applications, as well as associated system integrations. The role is responsible for identifying, assessing, and prioritizing security risks, ensuring appropriate controls are implemented, and driving continuous monitoring and risk‑informed decision‑making across the organization.
WhatYou Will Do
The Manager will lead the development and reporting of key risk indicators (KRIs) and key performance indicators (KPIs) to provide actionable insights to leadership and support effective governance. They will oversee the design and execution of scalable risk management processes, leveraging GRC tools and automation to enhance efficiency and consistency.
Why It Might Be a FitThe ideal candidate will have a strong knowledge of enterprise security principles and practices, with hands‑on experience or demonstrated capability in implementing, integrating, and managing security solutions across enterprise environments. They will have experience with GRC platforms and the ability to leverage tooling to improve process efficiency, enable reporting, and support scalable risk management practices.
Requirements- Bachelor’s degree in Information Security or an equivalent combination of education and experience
- Certified Information Systems Security Professional (CISSP)
- International Social Security Association (ISSA)
- Certified Information Systems Auditor (CISA)
- Certified Information Security Manager (CISM)
- Certified in Risk and Information Systems Control (CRISC)
- Certified in Governance, Risk and Compliance (GRCP) or equivalent
- Minimum of seven (7) years of progressive experience in information services, including three (3) years working in cybersecurity governance, risk, and compliance (GRC)
- Minimum of three (3) years of management experience with demonstrated leadership effectiveness and emotional intelligence
- Minimum of three (3) years of progressively responsible experience in healthcare and/or other regulated industries
- Full‑time employment
- Healthcare benefits
- Paid time off
- Retirement plan
- Learning budget
- Parental leave
- Wellness programs
- Visa/relocation assistance
- Remote flexibility
- Stipends
- Bonus/commission
- Paid holidays
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).