SkyePoint Decisions is seeking a Cyber and Risk Management Lead to join their team supporting a federal customer. This position is contingent on contract win. The Cyber & Risk Management Lead provides senior technical and management leadership for the customer's enterprise IT and cybersecurity risk management program, enabling the CTO, CISO, Risk Committee, and senior leadership to make informed business and technology decisions using accurate, timely, and actionable risk information. The Lead directs enterprise- and division-level risk identification, assessment, monitoring, mitigation, compliance, and reporting activities and serves as the technical authority for consistent application of customer risk management processes across organizational and technology domains. The position leads recurring risk assessments; maintains the enterprise risk register; applies defined likelihood and impact scoring; develops and monitors Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs); tracks mitigation actions and emerging risks; and develops Risk Assessment Reports (RARs), dashboards, and executive-level reporting. The Lead also evaluates policies, processes, controls, audit and compliance results to identify weaknesses and noncompliance; coordinates risk owners, division risk liaisons, and process owners; and drives corrective and mitigation actions through validation and closure. Applying expert risk and cybersecurity knowledge, the Lead continuously improves ERM procedures, tools, templates, dashboards, workflows, and automation and benchmarks customer practices against COSO ERM, ISO 31000, and applicable Federal cybersecurity and risk-management requirements. This is a remote position.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior