Global Risk Compliance Manager, Cyware

Salary not provided
Mid level
Remote in US
Cyware

Threat intelligence automation solution

Job no longer available

Cyware

Threat intelligence automation solution

201-500 employees

B2BCyber SecurityData AnalysisAutomation

Job no longer available

Salary not provided
Mid level
Remote in US

201-500 employees

B2BCyber SecurityData AnalysisAutomation

Company mission

Cyware's mission is to better predict and prevent attacks through cyber fusion and a collective defense.

Role

Who you are

  • The candidate will act as the technical subject matter expert in maintaining information security compliance with applicable laws, licenses, and regulations in the regions that we do business
  • Strong oral and written communication skills
  • Strong problem solving and troubleshooting skills with experience exercising mature judgement
  • Excellent teamwork and interpersonal skills
  • General information security experience and knowledge of general security concepts, such as defense-in-depth, least privilege, security architecture and design, threat modeling, etc
  • Experienced in collaborating at all levels of an enterprise
  • Creativity and initiative in work product, positive and helpful attitude proposing solutions to resolve problems
  • Ability to reach technical and non-technical audiences across all levels of the organization
  • Must possess basic knowledge of networking, different operating system, endpoint devices and security devices
  • Work experience related to information security and/or IT operational risk management is essential, across cloud and traditional IT patterns
  • Comprehension of the regulatory and legal landscape driving privacy/information security (NY DFS, GDPR, CCPA, etc.)
  • Experience in leading organizations through Information Security audits and certifications (SOC 2, FedRamp, ISO, etc.)
  • A solid understanding of current technology capabilities, and a keen interest in staying abreast of emerging technology trends and information security domains
  • Experience in contracting, implementing, and managing security service providers
  • Experience with implementing and managing GRC software solutions for Information Security use cases
  • Manage end-to-end portfolio delivery in terms of schedule, cost, scope and quality; anticipate risks and issues that may arise during the delivery of the portfolio process and ensure that appropriate mitigation actions are in place
  • Design, measure and assess key performance metrics to inform data-driven decisions
  • Demonstrate accountability; lead people with passion, enthusiasm, loyalty and integrity
  • Knowledge of business continuity framework and standards

Desirable

  • Professional and technical certifications desired but not required such as CISM or CISSP

What the job involves

  • The Cyber GRC Manager will provide extensive understanding of the cybersecurity space and advise Cyware on certifications required and processes
  • Responsible for implementing and maintaining procedures and controls to assure security compliance with applicable regulatory, contractual, and legal requirements as well as good business practices
  • Work closely with business, technology, and compliance counterparts to understand business objectives, initiatives, and ensure alignment with cybersecurity policies and best practices
  • Lead the annual security program roadmap and status reporting on initiatives and KRIs. Create presentation materials and lead discussion for key stakeholder meetings
  • Ensure applicable standards and regulations pertinent to Cyware are effectively implemented and act as an advisor to all managers
  • Conduct analysis of new regulations that impact the information security program
  • Coordinate external reviews and/or assessments from regulators, audit firms, and client due diligence requests
  • Own the security risk register and the ongoing management of inherent and residual information security risks
  • Prepare heat maps and analytics of known risks
  • Operationalization of a metrics and reporting function to continually report on meaningful information security risk and compliance metrics for operational and executive management
  • Work closely with the VAPT team
  • Create and update the hardening checklist
  • Conduct global training sessions regarding information security for Cyware’s internal team
  • Other duties as assigned by management

Otta's take

Xav Kearney headshot

Xav Kearney

CTO of Otta

The rise of digital threats, such as ransomware, has resulted in a huge necessity for digital threat intelligence. However, data collection has not yet been innovated on this, resulting in the success of a service being dependent on the laborious task of sifting through massive amounts of data.

Cyware provides an open-source threat intelligence package that automatically collects and analyses cyber-threat data. This provides an efficient and accessible solution for security analysts to tackle threat intelligence challenges. Ultimately, it allows them to focus on acting on resolutions, rather than analyzing the data to find solutions manually.

Whilst many software companies provide cyber intelligence analytic solutions, the open-source nature of Cyware allows security analysts to collaborate. As a result, the startup provides a means to identify and prevent malicious hacking at an unprecedented rate.

Insights

Some candidates hear
back within 2 weeks

-16% employee growth in 12 months

Company

Funding (last 2 of 4 rounds)

Jun 2023

$30m

SERIES C

Mar 2021

$30m

SERIES B

Total funding: $73m

Company benefits

  • Paid company holidays
  • 401k plan
  • Work from home opportunities
  • Medical, dental, vision, prescription coverage
  • Accrued PTO
  • Phone & internet stipend
  • Education reimbursement
  • Short & long-term disability
  • Life insurance & AD&D coverage

Company HQ

Newport, Jersey City, NJ

Founders

Worked at Citi for nearly 8 years, becoming Head of Global Cyber Strategy in 2013. Current Advisor for the Cyber NYC Inventors to Founders Initiative, and Senior Advisor for CSCSS.

Spent 3 years as a Senior Software Engineer at STMicroelectronics, then became a Computer Scientist, and later a Program Manager at Adobe. Was a Director at Oracle India before co-founding Cyware.

Share this job

View 7 more jobs at Cyware