Senior Manager, Enterprise Risk Management

Gainwell Technologies LLCAny city, OH
$122,200 - $174,600Remote

About The Position

Be part of a team that unleashes the power of leading-edge technologies to help improve the health and well-being of those most vulnerable in our country and communities. Working at Gainwell carries its rewards. You’ll have an incredible opportunity to grow your career in a company that values work flexibility, learning, and career development. You’ll add to your technical credentials and certifications while enjoying a generous, flexible vacation policy and educational assistance. We also have comprehensive leadership and technical development academies to help build your skills and capabilities. Summary The Enterprise Risk Management (ERM) Leader is responsible for developing and maturing the organization’s enterprise risk framework, with strong integration into cybersecurity risk. This role focuses on holistic risk visibility, aggregation, and governance across the enterprise, ensuring risks are understood, prioritized, and communicated effectively to leadership. This position does not own third-party risk management execution, but ensures third-party risks are appropriately incorporated into the enterprise risk posture in coordination with the Third-Party Risk Leader.

Requirements

  • Bachelor’s degree in Risk Management, Cybersecurity, Business, or related field.
  • 7–10+ years of experience in ERM, cybersecurity risk, or GRC.
  • Strong knowledge of COSO, ISO 31000, and NIST frameworks.

Nice To Haves

  • CRISC, CISM, CISSP, CRMA, FRM, or equivalent certification(s) preferred.

Responsibilities

  • Own and mature the enterprise-wide ERM framework aligned to COSO, ISO 31000, and integrated with NIST-based cyber risk practices.
  • Define and maintain enterprise risk appetite and tolerance statements.
  • Establish governance structures for risk escalation, acceptance, and oversight.
  • Partner with the CISO and security teams to integrate cyber risks into enterprise reporting.
  • Translate technical cybersecurity risks into business impact and financial exposure.
  • Ensure visibility into threat landscape, vulnerabilities, and control effectiveness.
  • Consolidate risks across cybersecurity, operational, financial, regulatory, and third-party domains (via coordination).
  • Maintain enterprise risk register and identify systemic and emerging risks.
  • Lead enterprise-level risk assessments and scenario modeling, including cyber event simulations.
  • Conduct stress testing and impact analysis tied to business continuity.
  • Provide oversight and challenge to mitigation strategies across Security, IT, and business units.
  • Ensure alignment with enterprise risk appetite and escalate gaps as needed.
  • Partner with the Third-Party Risk Leader to incorporate vendor risks into enterprise reporting while avoiding duplication of execution activities.
  • Develop executive dashboards and present to leadership, risk committees, and board stakeholders.
  • Drive a risk-aware culture, lead workshops, and embed risk-based decision-making across the organization.

Benefits

  • work flexibility
  • learning
  • career development
  • technical credentials and certifications
  • generous, flexible vacation policy
  • educational assistance
  • comprehensive leadership and technical development academies
  • 401(k) employer match
  • comprehensive health benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service