Security Risk Management Specialist

Reinsurance Group of America, Incorporated•Remote, Illinois, United States of America, IL
•$78,080 - $110,860•Remote

About The Position

The Security Risk Management Specialist will be responsible for identifying, assessing, reporting, and monitoring security risks across RGA’s enterprise security and business functions. This role involves collaborating with various departments to ensure compliance with security policies and standards, while additionally recommending security measures to protect RGA’s assets from potential threats.

Requirements

  • 2+ years IT security, privacy, audit, controls and regulatory compliance, or related experience.
  • Experience conducting risk assessments aligned with industry standard frameworks & standards.
  • Intermediate understanding of IT domains: infrastructure, networking, storage, databases, operating systems, cloud, applications, etc.
  • Strong understanding of security technologies and domains, including: SSO, IAM, DLP, EDR, SIEM, firewalls, gateways, IDS/IPS, CASB, antivirus, SSDLC, cryptography, PKI, etc.
  • Knowledge of risk and control frameworks/standards (e.g., NIST CSF, NIST 800-53, ISO/IEC 27001, NIST 800-30, ISO/IEC 27005, etc.).
  • Oral and written communication skills, demonstrating the ability to convey complex technical and security concepts and terminology to non-technical stakeholders.
  • Ability to manage multiple projects/tasks simultaneously, including the ability to delegate key areas of responsibility.
  • Ability to successfully liaise with individuals across a wide variety of operational, functional, and technical disciplines.
  • Excellent analytical, problem-solving, and critical-thinking skills.

Nice To Haves

  • Master’s degree and/or LOMA certification
  • 2+ years leadership role experience
  • Insurance/Reinsurance industry knowledge/experience
  • Information security, compliance, risk, or audit professional certifications, such as: CISSP, CISA, CISM, CGEIT, CRISC, CPA, OSCP, CCSP, CCSK
  • Project management skills/experience
  • Cloud assessment experience (AWS, Azure, Google Cloud, etc.)
  • Cyber Risk Quantification (CRQ) experience (e.g., FAIR)
  • Automation experience: Python, REST API, PowerShell, etc.
  • Previous experience as a Systems Administrator, IT Auditor, Developer, Security Engineer, Penetration Tester, Cloud Engineer

Responsibilities

  • Conduct comprehensive security risk assessments of enterprise systems and processes, as well as provide recommendations for risk mitigation.
  • Review, analyze, and provide recommendations for policy, standard, and baseline configuration exceptions.
  • Perform vendor risk assessments to include inherent & residual risk identification, analysis, and mitigation, and additionally track risk remediation to completion.
  • Provide recommendations for vendor contractual requirements stemming from vendor risk assessment outcomes.
  • Serve as a project security advisor including risk analysis gate checks in the secure SDLC process.
  • Conduct thorough threat modeling exercises to identify potential security vulnerabilities and risks.
  • Stay current on security trends, threats, and best practices to continuously improve the organization's security posture.
  • Perform other duties as assigned.

Benefits

  • annual bonus plan
  • long-term equity incentive plan
  • full range of health, retirement, and other employee benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service