Demo

Cyber Security Communications and Risk Manager

CSC
Wilmington, DE Full Time
POSTED ON 3/4/2025
AVAILABLE BEFORE 5/4/2025

Cyber Security Communications and Risk Manager

Monday-Friday, 8:00am-5:00pm EST

Remote Work Model (United States)
 

The Cyber Security Communications and Risk Manager is an essential role to assist our business with making risk informed decisions. The position is responsible for supporting the security direction of the business and elevating the company’s security posture across multiple jurisdictions.  The position requires an understanding of managing cyber risk in new technologies and legacy systems. The Cyber Security Communications and Risk Manager is responsible for leading security education and communication programs which enable CSC employees to embrace a culture of confidentiality by making informed risk-based decisions.

The ideal candidate has a strong IT security and risk management background, proven experience creating highly creative cyber security user awareness programs including multi-channel communication strategies and experience developing IT cyber security policies. 

In tandem with security leadership, the Cyber Security Communications and Risk Manager consistently assesses, audits, and validates the assurance of the security program. As a primary point for IT risk management, the Cyber Security Communications and Risk Manager monitors progress and coordinates resolution of outstanding issues that may lead to non-compliance or security threats to the business using policies, risk registers and monitoring. 

 

Essential Job Duties

  • Identify the top human risks to CSC and develop and maintain a security communication and risk program that effectively changes these behaviors, so CSC employees act in a secure manner, reducing risk to our organization.
  • Build relationships with global teams across businesses, jurisdictions and legal and Second Line of Defense to promote effective management of technology risks and regulatory compliance.
  • Manage a global IT risk management program as part of the First Line of Defense strategy and including IT risk assessments.
  • Document and maintain IT and information security policies, standards and guidelines in alignment with current regulatory requirements and business risk appetite.
  • Engage with IT project teams to identify and mitigate cyber security risks and build solutions that maximize User Experience principles while also being compliant with global regulatory requirements.
  • Create and manage a multi-channel information security awareness training program for all employees, contractors, internal board/management members and external third-party service providers.
  • Conduct simulated email phishing exercises as part of a comprehensive security awareness program.  Develop creative communication campaigns to raise user awareness about their role in information security.

 Skills and Experience 

  • At least 6 years’ experience in IT cybersecurity, risk management and/or security awareness and training as a practitioner.
  • Prior experience teaching and presenting to broad audiences using highly effective and engaging methods.
  • Project management experience including planning, managing and maintaining a complex, organization-wide program.
  • Exceptional written and verbal communication skills, and proven ability to translate security and risk to all levels of the business. Extensive knowledge and understanding of technology policies, standards, and guidelines.  Understanding of global regulations and IT compliance.
  • Knowledge of global technology laws, regulations and standards, including but not limited to PCI, SOX, FFIEC, GDPR, AIFMD, PSD2, EBA, ESMA, CSSF. 
  • Knowledge and understanding of audit standards and practices, and control frameworks (ISO, NIST, COSO, COBIT, CCM, etc.).

Education and Certification Requirements 

  • Bachelor’s degree in computer science, information assurance, MIS and/or education, journalism, communication or equivalent industry experience.
  • Holds one or more security, audit or risk industry certifications such as: CISSP, CISM, CRISC, CISA, CIA, CIPP, CIPT, CIPM, CERA, CRM, GRCP, or GRCA.

 

#LI- CS1

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cyber Security Communications and Risk Manager?

Sign up to receive alerts about other jobs on the Cyber Security Communications and Risk Manager career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$163,631 - $209,073
Income Estimation: 
$192,911 - $256,346
Income Estimation: 
$122,325 - $159,127
Income Estimation: 
$131,676 - $196,560
Income Estimation: 
$176,392 - $248,211
Income Estimation: 
$163,962 - $219,201
Income Estimation: 
$101,446 - $138,837
Income Estimation: 
$131,676 - $196,560
Income Estimation: 
$129,206 - $188,250
Income Estimation: 
$122,325 - $159,127
Income Estimation: 
$87,128 - $112,557
Income Estimation: 
$150,041 - $190,701
Income Estimation: 
$163,631 - $209,073
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at CSC

CSC
Hired Organization Address Asheville, NC Full Time
About Us: Central Southern Construction Corp. (CSC) is a Federal Civil Construction Contractor headquartered in Downtown...
CSC
Hired Organization Address Jacksonville, FL Full Time
About Us: Central Southern Construction Corp. (CSC) is a Federal Civil Construction Contractor headquartered in Downtown...
CSC
Hired Organization Address Wilmington, DE Full Time
Managing Director, Investor Services and Compliance (North America) Hybrid Work Schedule in Wilmington, DE Monday to Fri...
CSC
Hired Organization Address Orange, NJ Full Time
Associate Business Systems Analyst Hybrid Work Schedule in West Orange, NJ Monday to Friday 9:00 a.m. to 6:00 p.m. EST C...

Not the job you're looking for? Here are some other Cyber Security Communications and Risk Manager jobs in the Wilmington, DE area that may be a better fit.

Content Marketing & Communications Manager

Securitas Electronic Security Inc., Wilmington, DE

AI Assistant is available now!

Feel free to start your new journey!