Hyundai Capital America-posted 3 months ago
Full-time • Manager
Irvine, CA
5,001-10,000 employees

The Sr. Manager, Cybersecurity Risk Management will oversee the organization's security risk posture, proactively identifying, assessing, and mitigating risks that could impact business operations, financial stability, and regulatory compliance. This role requires a deep understanding of financial industry regulations and the evolving threat landscape, ensuring the organization's cybersecurity strategy is resilient and forward-thinking. In addition, this role oversees the security posture of our external vendors and partners to ensure alignment with our cybersecurity policies, regulatory requirements, and risk mitigation strategies.

  • Develop and execute a cybersecurity risk management framework aligned with business objectives and regulatory requirements.
  • Conduct security risk assessments, threat modeling, and impact analyses to identify vulnerabilities across systems and processes.
  • Establish security risk metrics and reporting mechanisms to communicate cybersecurity effectiveness and provide actionable insights to executives and stakeholders.
  • Manage governance around third-party cybersecurity risks, ensuring compliance with security standards.
  • Lead, mentor, and develop team members by providing direction, performance feedback, and support to ensure effective collaboration, professional growth, and achievement of organizational and personal goals.
  • Minimum 8 years of experience in cybersecurity governance, risk management, or compliance within financial services.
  • Three years of supervisory experience.
  • Bachelor’s or Master’s degree in Cybersecurity, Information Security, Risk Management, or a related field.
  • Certifications such as CISSP, CISM, CRISC, CGEIT, and ITIL are highly desirable.
  • Strong knowledge of Information Security risk management frameworks, Governance, Risk, and Compliance process, IT general controls.
  • Strong knowledge of Information Security & Risk Frameworks including ISO 27001/2, ISO 31000:2009, ISO 27005:2008; NIST Special Publications and Methodologies.
  • Working knowledge of California Consumer Privacy Act (CCPA), Gramm-Leach-Bliley Act (GLBA), NYDFS Cybersecurity Regulation, PCI-DSS, FFIEC, SOX, and other relevant laws and regulations.
  • Strong understanding of financial regulatory frameworks and cybersecurity best practices.
  • Excellent leadership and stakeholder management skills.
  • Ability to communicate complex security concepts to business leaders and technical teams.
  • Medical, Dental and Vision plans that include no-cost and low-cost plan options.
  • Immediate 401(k) matching and vesting.
  • Vehicle purchase and lease discounts plus monthly vehicle allowances.
  • Paid Volunteer Time Off with company donation to a charity of your choice.
  • Tuition reimbursement.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service