Senior Risk Specialist
Listed on 2026-02-21
-
IT/Tech
Cybersecurity
position summary
focus financial partners is seeking a proactive and detail‑oriented senior risk operations specialist to support and strengthen our organization’s cybersecurity program. This role is responsible for supporting key risk pillars: vulnerability management and risk management. A successful candidate will have knowledge of one or more of these areas and be able to assist with writing policy and process, supporting deployment of technology and handling incident response in a variety of environments.
The candidate will also manage and maintain cybersecurity dashboards to track key performance indicators (kpis) across all partner firms.
this role can be based in st louis, mo; boston, ma.
primary responsibilities- provide input into an evolving enterprise risk program, ensuring risks to data security are identified, quantified and documented.
- develop and maintain information feeds for new and evolving vulnerabilities.
- collaborate with other technical teams to assess vulnerability criticality and coordinate patch deployment.
- participate in audits and assessments to demonstrate compliance and remediate findings.
- execute cybersecurity training and awareness programs across partner firms.
- work with the head of cybersecurity risk to establish and track kpis such as incident response times, policy compliance rates, and training completion.
- provide regular reports to leadership and stakeholders.
- act as a liaison between it, compliance, and external partners to ensure cohesive security practices.
- bachelor’s degree in information security, computer science, or a related field (or equivalent experience). Master’s preferred.
- 5–8 years of experience in cybersecurity, policy development, or grc (governance, risk, and compliance).
- familiarity with cybersecurity frameworks (e.g., nist, iso 27001) and regulatory environments in financial services.
- minimum five years experience with creating and maintaining real‑time dashboards and reports to measure cybersecurity program effectiveness.
- excellent written and verbal communication skills.
- industry certifications such as cissp, cism, or giac (gsec, gccc) are preferred.
- prior experience in a multi‑partner or financial services environment is preferred.
- familiarity with privacy regulations such as gdpr or ccpa is preferred.
- ability to manage multiple projects and stakeholders simultaneously.
this is an exempt position. The annualized base pay range for this role is expected to be between $100,000–$120,000. Actual base pay could vary based on factors including but not limited to experience, subject matter expertise, geographic location where work will be performed, and the applicant’s skill set. The base pay is just one component of the total compensation package for employees.
Other rewards may include an annual cash bonus and a comprehensive benefits package, including but not limited to medical, dental, vision, life and 401(k). Please note that the job title is subject to change based on the selected candidate’s experience and education.
focus is a leading financial services firm comprised of integrated wealth management, family office, and business management services. Blending deep expertise and expansive resources with a boutique, client‑first fiduciary philosophy, focus helps individuals, families, and institutions navigate complex financial situations with highly personalized solutions tailored to their unique needs. To learn more about focus, visit or follow the company on linkedin.
thefollowing language is for us based roles only for california applicants
information on your california privacy rights can be found here.
for indiana applicantsit is unlawful for an employer to discriminate against a prospective employee on the basis of status as a veteran by refusing to employ an applicant on the basis that they are a veteran of the armed forces of the united states, a member of the indiana national guard or a member of a reserve component.
for maryland applicantsi understand that under maryland law, an employer may not require or demand, as a condition of employment, prospective employment or continued employment, that any…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).