NavitsPartners-posted 2 days ago
Mid Level
Kings County, NY

The Cybersecurity Senior Risk Analyst will support the development and enhancement of an enterprise-wide cybersecurity risk program. This role involves improving user-centric risk assessment processes, working directly with agencies and stakeholders, evaluating third-party vendor risks, and designing ongoing monitoring procedures. The analyst will help strengthen governance frameworks, drive maturity in risk management practices, and ensure timely and accurate evaluation of cyber risks. As reliance on third-party vendors and interconnected systems grows, this position plays a critical role in reducing exposure to cyber incidents, audit findings, and compliance risks. The analyst will ensure that risk assessments are meaningful, accurate, and actionable while supporting continuous improvement initiatives across the cybersecurity domain.

  • Develop new risk processes and implement risk frameworks to improve risk monitoring and evaluation enterprise-wide.
  • Lead and manage complex, cross-functional cybersecurity risk initiatives.
  • Collaborate with stakeholders across multiple divisions to gather feedback and align priorities.
  • Evaluate cybersecurity risks associated with third-party vendors.
  • Document risks, track remediation, and maintain the Risk Register.
  • Review and analyze cybersecurity risk cases, justifications, exception requests, and related documentation.
  • Assist in the development and refinement of cybersecurity risk assessment procedures, methodologies, and testing guidelines.
  • Recommend and initiate corrective actions to remediate identified vulnerabilities or control weaknesses.
  • Communicate and coordinate risk management activities with agencies and internal teams.
  • Support special projects and other initiatives as assigned.
  • Minimum 4 years of experience in: Cybersecurity risk management, or Cybersecurity risk assessment, or Third-party cybersecurity evaluation and oversight.
  • Bachelor’s degree in Cybersecurity, Risk Management, Information Systems, Computer Science, or related field.
  • One or more relevant professional certifications, such as: CISA, CISSP, CRISC, CISM CompTIA Security+, Network+, A+, CySA+ CCNA, CEH GISF, GSEC, SSCP , etc.
  • Strong teamwork, communication, and stakeholder engagement skills.
  • High level of organization, motivation, and self-direction.
  • Understanding of hardware, software, networking, and enterprise IT systems.
  • Familiarity with cybersecurity frameworks such as NIST, SANS, PCI, ISO 27001/27002, CIS .
  • Strong investigative, analytical, and problem-solving abilities.
  • Knowledge of cybersecurity laws, regulations, and privacy requirements.
  • Awareness of current and emerging cyber threats and risk trends.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service