We are looking for a Cyber Security Risk Analyst – Assurance for our client who meets the following criteria:
Language: English
Security Clearance: Secret
Location of Work: Remote
Mandatory requirements:
The bidder must have a University Degree or College Diploma in computer science, information security, risk management, or a related field
The bidder must have a minimum of five (5) years of recent demonstrated experience in cyber security, technology risk, or related discipline
The bidder must have a minimum of three (3) years of recent demonstrated experience producing executive-grade cyber risk reports for senior business and technology stakeholders
The bidder must demonstrate working knowledge and practical application of (NIST) cyber security risk frameworks (e.g., NIST CSF, NIST SP 800-30, NIST SP 800-53)
The bidder must demonstrate working knowledge and practical application of the Harmonized Threat and Risk Assessment (HTRA) methodology
The bidder must demonstrate recent hands-on experience using ServiceNow GRC for documenting, tracking, and reporting on cyber risks, including risk register and issue management modules
The bidder must demonstrate experience interpreting penetration test and Threat & Risk Assessment (TRA) outputs and converting them into clear, actionable business language
The bidder must demonstrate strong written and verbal communication skills, with the ability to deliver sensitive risk information to business leaders in a clear, objective, and consultative manner
The bidder must demonstrate strong knowledge of common cyber vulnerabilities, exploit methods, and risk remediation strategies, with the ability to map technical risks to business impact
The bidder must demonstrate ability to work independently, manage competing priorities, and integrate quickly into an existing team’s workflow
The bidder must demonstrate ability to enforce consistency in language, risk articulation, and formatting across multiple reports, ensuring alignment with enterprise reporting expectations
The bidder must demonstrate experience leveraging AI-assisted tools to support analysis, content generation, or data processing, with a focus on maintaining accuracy, confidentiality, and alignment with organizational standards
The bidder must demonstrate strong data comprehension, including the ability to differentiate between structured and unstructured data, understand relationships across data elements, and apply data management principles to ensure consistent, accurate, and reusable reporting outputs
If interested, please reach out to Dio at dio@mdosconsulting.com