Director of IT Risk Management overseeing global cyber strategies and leading vendor risk assessments. Collaborating with teams to mitigate risks in critical services, information, and systems.
Responsibilities
Develop and support global cyber and IT risk management strategies aligned with business goals.
Lead the Global 3rd Party Risk Management Team in conducting vendor risk assessments and facilitating remediation efforts.
Collaborate to develop risk models that assess and quantify risks to critical services, information, and systems.
Maintain current and comprehensive vendor inventories and assessments.
Prepare reports, presentations, and dashboards for executive leadership to communicate risk posture and emerging threats.
Continuously enhance Vendor Risk Assessment methodologies to align with evolving industry standards and best practices.
Foster a skilled team environment to effectively perform risk assessments and maintain strong client communication.
Partner with vendors to establish cybersecurity and resilience standards within contracts.
Coordinate global internal audits, client assessments, and security reviews related to third-party risk.
Participate in incident response activities involving third parties, collaborating across teams to reduce exposure.
Engage with operational leaders to identify emerging risks and co-develop risk-reducing solutions.
Adapt and scale risk management processes to address new and evolving threats, including those related to AI and advanced technologies.
Requirements
Experience in cyber and IT risk management, preferably in a global or cross-functional environment.
Strong interpersonal and leadership skills with experience supporting diverse, collaborative teams.
Knowledge of vendor risk assessment and third-party risk management practices.
Effective communication skills, able to engage with internal and external stakeholders at all levels.
Familiarity with current cybersecurity frameworks, standards, and best practices.
Ability to develop and apply risk models and metrics-based reporting.
Experience partnering in contract negotiations related to cybersecurity and resilience.
Understanding of incident response processes and cross-functional collaboration.
Demonstrated ability to innovate and adapt processes to meet evolving threats, including AI-related risks.
Chief Risk Officer at PJM managing enterprise risk and collaborating with executive leadership. Driving governance of strategic, operational, and financial risks in the energy sector.
Director of Data Governance & Insights Enablement overseeing data governance and analytics for Pfizer Patient Services. Leading a team to ensure compliance and data quality across operations.
Risk Decision Model Development - Assistant Vice President at Citi using Machine Learning techniques for Account Management Risk Models. Collaborating on model compliance and delivery with various teams.
Responsible for tax compliance and governance at Tigre, ensuring integrity across corporate systems. Managing audits, training staff, and updating tax rules within SAP and Tax One.
Corporate Governance Assessor at Sicredi, interacting with management and stakeholders. Responsibilities include organizing meetings, drafting minutes, and ensuring compliance with governance practices.
Independent Panel Member providing oversight on governance, risk management, and compliance at the UK Civil Aviation Authority. Engaging with audit activities and supporting risk frameworks.
Senior leader within the First Line Risk & Control Office overseeing the Issue Management Program. Responsible for driving proactive risk management and governance across the firm.
Data Risk Management Director managing data risk governance, reporting, and compliance for Early Warning Services. Collaborating with various departments to ensure data risk alignment and oversight.
Analyst optimizing fraud risk strategies for financial services at Early Warning. Collaborating with stakeholders to develop and implement fraud risk management strategies.