Demo

Principal Information Security Governance & Risk Management

ALTA IT Services
Vienna, VA Full Time
POSTED ON 2/22/2025
AVAILABLE BEFORE 5/20/2025

ALTA IT Services is a wholly owned subsidiary of System One, a leading provider of specialized workforce solutions and integrated services. ALTA is an established leader in IT Staffing and Services, for both government and commercial enterprises across the United States, specializing in Program & Project Management, Application Development, Cybersecurity, Data & Advanced Analytics, and Agile Transformation Services.

Is this the next step in your career Find out if you are the right candidate by reading through the complete overview below.

Principal Information Security Governance & Risk Management

Hybrid in Vienna, VA

Contract

Description :

The Principal, Information Security Governance & Risk Management supports the client’s Information Security Division in effectively managing the Enterprise’s Information Security risks and overall program. Responsible for the strategy, management and the overall execution of first line of defense information security risk management and governance activities at the enterprise. This role will collaborate with Sr. leaders across the enterprise to identify, mitigate and manage information security risks. Uses extensive industry and real-world experience to lead information security governance and risk management activities, developing pragmatic solutions to address gaps in line with established risk appetites. Ensure information security governance and risk management activities align with strategic business initiatives, achieve business and quality objectives, mitigate risk and enhance operating procedures. Develop dashboards, metrics and reporting data to provide consultative guidance during monthly and quarterly governance committees. Promote operational efficiency and service excellence through appropriate risk controls, process improvements and training while reducing and mitigating financial losses.

Responsibilities :

  • Lead the Information Security Program Risk Assessment.
  • Develop and lead a comprehensive Information Security Program Maturity Assessment and Risk

Assessment initiatives in line with the enterprise goals and regulatory expectations.

  • Ensure the effective identification, mitigation and management of information security risks arising
  • from business activities. In addition, provide guidance and advice to senior management on the

    status of their control environment related to standards compliance, risk identification and control

    issues. Identify critical areas to monitor and escalate issues and findings to appropriate

    stakeholders and governance committees.

  • As applicable, articulate implications of risks and issues related to data management and protection
  • to sponsors and risk owners and, if necessary, assist with security exceptions or issue management

  • Translate control deficiencies into action plans and provide recommendations to enhance
  • governance practices in alignment with risk and compliance frameworks.

    Qualifications and Education Requirements :

  • Bachelor's degree in Information Systems, Computer Science, Engineering, Business, Mathematics,
  • Economics, or related field, or the equivalent combination of education, training and experience

  • A minimum of 12-15 years of experience leading risk and / or compliance related activities in
  • financial services or other relevant industry, especially Operational Risk Programs

  • Deep knowledge and practical experience implementing NIST CSF in a medium to large financial
  • institution.

  • Extensive knowledge of industry leading risk management frameworks such as COSO, COBIT, NIST
  • CSF, ITIL)

  • Working knowledge of the MITRE attack framework
  • Extensive experience in the development of risk management frameworks along with the requisite
  • implementation

  • Advanced knowledge of information technology systems, project processes, and application
  • development

    Desired Qualifications and Education Requirements :

  • Prior experience developing, implementing, and or assessing an information security program for a
  • medium to large financial institution.

  • Prior experience implementing and / or assessing NIST Cybersecurity Framework (CSF) in a medium
  • to large financial institution.

  • Graduate education in Business, Cyber / Information Security Risk, Information Systems, Computer
  • Science, Engineering, Quantitative discipline or related field

  • Professional certifications including, but not limited to any of the following : FRM, PRM, CISA, CISM,
  • CISSP, CGEIT, CRISC, CFE, CPA, CIA, CIPP, ISA, AWS and etc.

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Principal Information Security Governance & Risk Management?

    Sign up to receive alerts about other jobs on the Principal Information Security Governance & Risk Management career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $102,189 - $143,024
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $102,189 - $143,024
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at ALTA IT Services

    ALTA IT Services
    Hired Organization Address Norwich, CT Full Time
    CONSTRUCTION QUALITY CONTROL MANAGER Vehicle Barriers and / or ESS. ALTA IT Services is staffing a direct hire opening f...
    ALTA IT Services
    Hired Organization Address Athens, AL Full Time
    COMMERCIAL OFF-THE-SHELF (COTS) CONSULTANT SAP / ServiceNow Contract to Hire Public Trust clearance eligibility Hybrid –...
    ALTA IT Services
    Hired Organization Address Annapolis, MD Full Time
    ALTA IT has a Direct Hire position open for a Scrum Master. Clearance- TS/SCI w FS Poly Onsite - Annapolis Junction, MD ...
    ALTA IT Services
    Hired Organization Address Annapolis, MD Full Time
    SOFTWARE ENGINEER 3 – MATLAB C PYTHON Active Clearance Required : TS / SCI with Full Scope Polygraph Annapolis Junction,...

    Not the job you're looking for? Here are some other Principal Information Security Governance & Risk Management jobs in the Vienna, VA area that may be a better fit.

    AI Assistant is available now!

    Feel free to start your new journey!