What are the responsibilities and job description for the Program Manager with Cyber position at 1 Point System?
Job Details
Role: Cyber Program Manager
Location: Rockville, MD Hybrid
Duration: 12 months
Job Description
Program Leadership & Design
o Design and lead delivery of cyber workshops and tabletop exercises tailored to firm profiles, threat trends, and regulatory expectations.
o Develop realistic scenarios and injects based on evolving threat actors, tactics, and vulnerabilities (e.g., ransomware, supply chain, third-party compromise).
o Ensure workshop content reflects real-world events, threat intelligence, and current regulatory priorities.
Workshop & TTX Facilitation
o Lead live delivery of workshops and exercises, guiding discussions and presenting complex cyber threats in a clear, compelling way.
o Adapt delivery based on audience profile (e.g., executives, compliance staff, technologists).
o Present key insights during debriefs and summarize takeaways for participants and leadership.
Stakeholder Engagement
o Engage regularly with FINRA member firms and internal stakeholders to align program content with evolving risks.
o Serve as a liaison to CISOs, risk managers, compliance officers, and external SMEs.
o Draft and deliver polished written communications, reports, and briefings.
Program Oversight
o Manage program calendar, content pipeline, staffing, and session logistics.
o Lead and mentor the Cyber Program Coordinator and additional support resources.
o Track participation metrics, feedback, and program outcomes.
Qualifications:
7 years of experience in cybersecurity, cyber risk, or incident response roles.
Demonstrated expertise in current and emerging cyber threats, including knowledge of adversary tactics, vulnerabilities, and threat intelligence.
Proven experience developing and facilitating tabletop exercises or training events.
Exceptional presentation and communication skills, including the ability to convey technical threats to non-technical audiences.
Experience working with regulatory, risk, or financial services stakeholders.
Familiarity with cyber resilience and risk frameworks (NIST, FFIEC, MITRE ATT&CK, etc.).
Remote work capability and willingness to travel monthly to support in-person sessions.