Salary
💰 $147,000 - $295,000 per year
Tech Stack
CloudCyber Security
About the role
- Design, implement, and maintain an effective digital risk management framework leveraging a traceable, defensible, objective and quantitative approach
- Lead development of long-term digital risk management strategy and execute mid- and short-term strategies to reduce digital risk
- Manage geographically distributed team of digital risk management professionals including talent acquisition, retention, and development
- Conduct annual enterprise-wide risk exercise to identify, analyze and report on current and emerging digital risk scenarios
- Monitor, analyze and report on emerging and systemic digital risks and trends, providing actionable insights and recommendations to senior leadership
- Define, implement, operate and report on KPIs and KRIs metrics related to digital risk management
- Partner with business units and ES functions to collect and maintain digital risk services requirements and improve service portfolio
- Partner with Cybersecurity leadership, RTX Digital Risk Council and key stakeholders to define and manage risk appetite and tolerance
- Partner with cross-functional teams including IT, Cyber Defense, Internal Audit, Legal, and Compliance to ensure integrated approach
- Partner with Enterprise Services, Corporate Strategy functions and PMO to define risk-aligned initiatives and funding priorities
- Guide and coach RTX Digital Technology leaders and subject matter experts on complex problem solving to meet U.S. and international government cybersecurity regulations
- Stay updated on industry trends, regulatory changes, and best practices related to digital risk
Requirements
- A University Degree in Business, Science, Technology, Engineering or Mathematics and a minimum of 12 years of prior relevant experience, or an Advanced Degree in a related field and a minimum of 10 years of relevant experience
- Prior relevant work experience must include digital risk management, cybersecurity, or a related discipline, with at least 5 years in a leadership role
- Must be authorized to work in the U.S. without sponsorship now or in the future
- Preferably 3+ years of experience in a top-tier risk advisory or management consulting firm or Financial Services
- Strong understanding of digital risk management frameworks, standards, and best practices (e.g., NIST 800-53, NIST 800-171, ISO 27001, COSO ERM, FAIR)
- Proven track record of successfully transforming digital risk management programs in large, complex organizations
- Strong understanding of, and experience in digital risk quantification (e.g. FAIR)
- Ability to communicate with all levels of management verbally and written
- Excellent analytical, problem-solving, and decision-making skills
- Relevant certifications such as CISSP, CISM, CRISC, or similar are desirable
- Highly proficient in Microsoft Office products
- General knowledge of IT, Artificial Intelligence and cybersecurity with experience in incident response, business continuity/ disaster recovery, vulnerability management, application security, database security, identity & access management, OT security, cloud security, third-party & supply chain risk management
- General knowledge of national and international laws, regulations, policies, and ethics as they relate to cybersecurity (e.g., DFARS, FAR, ITAR, EAR)