Lead and conduct comprehensive security risk assessments and third-party product evaluations to identify vulnerabilities and assess impacts
Evaluate the organization’s risk posture in alignment with policies, controls, business objectives and regulatory requirements
Manage and monitor risk exceptions and issues
Collaborate across IS teams and executive leaders to communicate risks and their impacts
Identify and define mitigation strategies aimed at reducing Providence’s overall risk exposure
Provide mentorship to risk management teammates and foster risk education and awareness
Develop, automate, and promote standards and best practices within Information Services
Champion the Cyber Risk Advisory roadmap and vision and drive enterprise-wide cybersecurity engineering initiatives
Serve as Incident Commander for cyber incidents and drive resolution across the environment
Requirements
Bachelor's Degree Computer Engineering, Computer Science, Mathematics, Engineering -OR- a combination of equivalent education and experience
Upon hire: CISSP, CISM, CEH, or equivalent
10 or more years of related experience
Experience performing in an Incident Commander role for cyber incidents and issues affecting business operations
In depth experience designing security controls and countermeasures for operating systems, databases, applications, Web services, user devices, and wireless networks