What are the responsibilities and job description for the Information Security Specialist - Cyber Risk Management position at Citizens?
Job Overview
Citizens is seeking a skilled Information Security Specialist to join our team in the role of Cyber Risk Management. This position will be responsible for identifying, assessing, and mitigating risks associated with technology and cybersecurity within the banking sector.
Key Responsibilities:
- Risk Identification and Assessment
- Conduct comprehensive risk assessments for technology and cybersecurity initiatives.
- Identify emerging threats and vulnerabilities in the IT landscape.
- Develop and maintain a risk register for tracking and managing identified risks.
- Risk Mitigation and Control
- Implement risk mitigation strategies and controls to address identified risks.
- Collaborate with IT and security teams to ensure effective deployment of security measures.
- Monitor the effectiveness of risk controls and make necessary adjustments.
Governance and Compliance:
- Ensure compliance with regulatory requirements and industry standards.
- Develop and enforce technology and cybersecurity policies and procedures.
- Support and cooperation with 2nd and 3rd LODs in audits and reviews to ensure adherence to governance frameworks.
Incident Management:
- Support activities related with risk in cybersecurity incidents and breaches.
- Review and assess post-incident analysis to identify risk associated with incidents.
Reporting and Communication:
- Prepare and present risk reports to senior management and the board.
- Establish and maintain an effective business relationship with business partners, key project stakeholders, Second Line of Defense and subject matter experts to advise and support the Technology Services Risk Leadership Team.
- Communicate risk management strategies and updates to relevant stakeholders.
Qualifications
To be successful in this role, you should have at least 7 years of experience in Information Technology, Information Security, Data Management, IT Service Management and Operations and/or IT Resilience, as well as strong business writing skills, ability to effectively communicate with all levels of the organization, project management skills to support multiple complex assignments, strong influencing and negotiating skills, and proficient use of Microsoft Office Suite.