×
Register Here to Apply for Jobs or Post Jobs. X

Information Security Associate - Security Risk & Control Lead

Job in Jacksonville, Duval County, Florida, 32290, USA
Listing for: Nomura Holdings, Inc.
Full Time position
Listed on 2026-02-14
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security
Salary/Wage Range or Industry Benchmark: 95000 - 110000 USD Yearly USD 95000.00 110000.00 YEAR
Job Description & How to Apply Below

Job Title:

Information Security Associate - Security Risk & Control Lead

Job Code: 12502

Country: US

Skill Category: IT echnology

Description:

Job title:

Information Security Associate - Security Risk & Control Lead Corporate

Title:

Associate Department:
Technology

Location:

Jacksonville

The pay range for this position at commencement of employment is expected to be between $95,000 and $110,000 annually.

Company overview

Nomura is a global financial services group with an integrated network spanning approximately 30 countries and regions. By connecting markets East & West, Nomura services the needs of individuals, institutions, corporates and governments through its three business divisions:
Wealth Management, Investment Management, and Wholesale (Global Markets and Investment Banking). Founded in 1925, the firm is built on a tradition of disciplined entrepreneurship, serving clients with creative solutions and considered thought leadership. For further information about Nomura, visit

Aon’s Benefit Index ® , Nomura’s benefits rank #1 amongst our competitors.

Department overview

The Information Technology department at Nomura is at the forefront of innovation, driving technology solutions that empower our business and enhance client experiences. We leverage cutting‑edge technologies to develop and maintain robust systems and infrastructure, ensuring the security, reliability, and efficiency of our operations. Join our team and be part of a dynamic and collaborative environment that embraces technological advancements to deliver value and drive our digital transformation journey.

Role

description

We are seeking an experienced Information Security Associate to join our Cyber Risk Governance team lead in the Jacksonville, Florida office. This strategic role combines regulatory compliance expertise with vendor risk management leadership, serving as a critical bridge between technical security requirements and business operations.

Primary Responsibilities US Cyber Regulations Expertise
  • Maintain comprehensive knowledge of existing and emerging US cyber regulations
  • Conduct thorough risk assessments on current and proposed cyber regulatory requirements
  • Demonstrate proficiency with established cybersecurity frameworks (NIST, ISO 27001, SOC 2, etc.)
  • Stay current with evolving regulatory landscape and assess impact on organizational compliance
  • Lead and support regulatory compliance initiatives including SEC cybersecurity regulations, NYDFS Cybersecurity Regulation (23 NYCRR 500), and other applicable regulatory requirements
  • Develop, implement, and maintain cybersecurity frameworks and map them to internal control structures
  • Respond to Due Diligence Questionnaires (DDQs) from clients, vendors, and business partners
  • Manage responses to regulatory inquiries and examinations from various oversight bodies
  • Conduct risk assessments and gap analyses to ensure ongoing compliance
  • Collaborate with cross-functional teams to implement control enhancements and remediation activities
  • Monitor regulatory developments and assess impact on organizational compliance posture
  • Prepare compliance reports and presentations for senior management and board committees
  • Support audit activities and coordinate with internal and external auditors
Vendor Risk Management Leadership
  • Serve as primary point of contact for vendor risk assessment activities across the US region
  • Apply expertise in various vendor risk assessment frameworks and methodologies
  • Collaborate effectively with regional and global business stakeholders to facilitate vendor onboarding processes
  • Identify, analyze, and communicate risks associated with third‑party vendor relationships
  • Ensure vendor compliance with firm's security standards and regulatory
Skills, experience, qualifications and knowledge required Technical Skills
  • Deep understanding of cybersecurity frameworks and best practices
  • Proven experience with vendor risk assessment methodologies
  • Strong knowledge of US cyber regulatory environment
  • Comprehensive understanding of risk management principles and practices
  • Previous experience with any GRC platforms such as Reg Room, Cube a plus
Soft Skills
  • Minimum 4+ years of relevant information security…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary