Browse
···
Log in / Register

Principal, Cyber Assurance

$180,000-215,000

Control Risks

Washington, DC, USA

Favourites
Share

Description

This role may be based in NYC or Washington DC. We are seeking a senior leader to drive the growth of Digital Risks in the United States, with a primary focus on cyber assurance, third-party risk management, and large-scale regulatory compliance audits. In this role, you will collaborate closely with our cyber threat intelligence, advisory, and response teams to expand our digital risk business. Your responsibility will include overseeing the assessment, and improving client cybersecurity programs, ensuring alignment with industry standards and regulatory requirements, and guiding clients through complex third-party audits. Key Responsibilities Cybersecurity Program Evaluation Lead cyber assurance engagements, assessing client cybersecurity programs for compliance with industry standards such as NIST, ISO 27001, and other relevant frameworks. Act as a trusted advisor, ensuring client cybersecurity postures are resilient, compliant, and in line with regulatory requirements. Third-Party Risk Management Audits Oversee large-scale third-party risk and compliance audits, ensuring alignment with industry-specific frameworks, regulatory standards, and contractual obligations. Regulatory Compliance Audits Oversee regulatory compliance audits to ensure clients meet required standards and regulations. Advise clients on audit preparation and guide them through maintaining compliance while improving cybersecurity measures. Ensure clients' compliance programs address both current and emerging regulatory requirements. Penetration Testing & Vulnerability Management Support Partner with the penetration testing team to incorporate findings into broader cyber assurance reviews. Lead remediation efforts for high-risk vulnerabilities, aligning them with the client’s overall compliance and cybersecurity objectives. Client Relationship & Business Development Build and sustain relationships with key stakeholders, especially C-suite executives, positioning Digital Risks as a leader in cyber assurance and regulatory compliance. Identify and capitalize on new business opportunities in cyber assurance, third-party risk assessments, and compliance audits. Provide thought leadership on cyber assurance trends, regulatory updates, and best practices to enhance client relationships and grow the practice. Advise clients on continuously improving their cybersecurity and compliance frameworks based on audit findings and risk assessments. Practice Development & Team Leadership Recruit, develop, and lead a high-performing team specializing in cyber assurance, third-party risk management, and regulatory compliance. Foster a culture of continuous learning, ensuring the team stays ahead of emerging trends in cybersecurity and compliance. Contribute to the creation of innovative services and solutions to meet clients' evolving needs in cyber assurance and compliance auditing. Requirements Candidates must be legally authorized to work in the US on a permanent basis without sponsorship. Candidates must possess unrestricted US work authorization. Experience & Knowledge: 12+ years of experience in cybersecurity, specializing in cyber assurance, third-party risk management, and regulatory compliance audits. Proven track record of leading cyber assurance engagements and guiding clients through risk management and compliance processes based on industry frameworks (e.g., NIST, ISO 27001). Expertise in managing third-party audits and ensuring regulatory compliance across audit lifecycles. In-depth understanding of regulatory frameworks, with hands-on experience delivering compliance audits for both commercial and government sectors. Experience integrating penetration testing and vulnerability assessments into broader cyber assurance strategies. Education & Certifications: Bachelor's or master’s degree in information security, Computer Science, Engineering, or a related field. Relevant certifications such as CISSP, CISM, CISA, ISO 27001 Lead Auditor, SANS, or other recognized credentials in cybersecurity, third-party risk management, and compliance auditing. Skills: Strong commercial acumen, with proven ability to generate new business in cyber assurance and regulatory compliance services. Exceptional communication, presentation, and analytical skills with the ability to influence senior stakeholders and deliver impactful insights that improve cybersecurity resilience and regulatory compliance. The base salary range for this position in Washington DC is $180,000-$205,000 per year. The base salary range for this position in New York City is $200,000-$215,000 per year. Exact compensation offered may vary depending on job-related knowledge, skills, and experience. Control Risks is committed to a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. If you require any reasonable adjustments to be made in order to participate fully in the interview process, please let us know and we will be happy to accommodate your needs. Control Risks participates in the E-Verify program to confirm employment authorization of all newly hired employees. The E-Verify process is completed during new hire onboarding and completion of the Form I-9, Employment Eligibility Verification, at the start of employment. E-Verify is not used as a tool to pre-screen candidates. For more information on E-Verify, please visit www.uscis.gov. Benefits Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarized in the full job offer. Control Risks supports hybrid working arrangements, wherever possible, that emphasize the value of in-person time together - in the office and with our clients - while continuing to support flexible and remote working. Medical Benefits, Prescription Benefits, FSA, Dental Benefits, Vision Benefits, Life and AD&D, Voluntary Life and AD&D, Disability Benefits, Voluntary Benefits, 401 (K) Retirement, Nationwide Pet Insurance, Employee Assistance Program. As an equal opportunities employer, we encourage suitably qualified applicants from a wide range of backgrounds to apply and join us and are fully committed to equal treatment, free from discrimination, of all candidates throughout our recruitment process.

Source:  workable View Original Post

Location
Washington, DC, USA
Show Map

workable

You may also like

Maverc Technologies
Security Operations Analyst Internship
Hallandale Beach, FL 33009, USA
Job Description Join the Maverc Technologies team as a Security Operations Analyst Intern and contribute to our mission of protecting critical systems and sensitive information. As an intern, you will gain hands-on experience in cybersecurity operations, working alongside experienced professionals in a dynamic environment. You will assist in monitoring security alerts, conducting incident response, and analyzing security events. This internship offers a unique opportunity to gain practical skills while helping to safeguard our clients' digital assets. Key Responsibilities Assist in monitoring security events and alerts from various sources. Conduct analysis of security incidents and assist in the incident response process. Document findings and prepare reports on security incidents and vulnerabilities. Support the team in vulnerability management and risk assessment activities. Participate in security awareness training and outreach programs. Requirements Qualifications What You Need to Be Successful Currently pursuing a degree in Cybersecurity, Information Technology, Computer Science, or a related field. Strong analytical and problem-solving skills. Basic knowledge of networking concepts, threat analysis, and cybersecurity principles. Familiarity with security tools and technologies (e.g., SIEM, IDS/IPS, firewalls) is a plus. Excellent verbal and written communication skills. Ability to work collaboratively in a team environment. Willingness to learn and adapt in a fast-paced environment. Benefits **Join Maverc. Be Valued.** At Maverc, we are an inclusive community where diversity in all its forms is embraced, respected, and recognized as a true asset to the company. We are dedicated to fostering this inclusive environment, though we acknowledge that there is always room for improvement. Maverc is committed to evolving into a more inclusive and equitable organization, upholding the principles of equal employment opportunity and affirmative action. Maverc is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment based on gender, gender identity or expression, sexual orientation, race, age, religion, physical or mental disability, veteran status, or other protected characteristics under federal, state, and local laws. As a federal contractor, Maverc has implemented affirmative action programs to ensure non-discrimination and promote affirmative action in our policies and practices for qualified women, minorities, protected veterans, and individuals with disabilities. The narrative portion of Maverc's affirmative action plans is available for inspection at our offices during normal business hours. Employees and applicants interested in reviewing these plans should contact Human Resources at or hr@maverc.com for assistance. If you are interested in applying for a position with Maverc and require special assistance or accommodation to apply for a posted position, please contact our Human Resources department at hr@maverc.com or by calling 888-948-1468. Exceptional People, Outstanding Benefits Exceptional people are the cornerstone of any successful company. To attract and retain such talent, Maverc provides fulfilling work opportunities that complement a balanced lifestyle. We achieve this by offering exceptional benefits, enabling our employees to live and work well. Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Training & Development Work From Home
pony.ai
Security Operations Engineer
Fremont, CA, USA
Founded in 2016 in Silicon Valley, Pony.ai has quickly become a global leader in autonomous mobility and is a pioneer in extending autonomous mobility technologies and services at a rapidly expanding footprint of sites around the world. Operating Robotaxi, Robotruck and Personally Owned Vehicles (POV) business units, Pony.ai is an industry leader in the commercialization of autonomous driving and is committed to developing the safest autonomous driving capabilities on a global scale. Pony.ai’s leading position has been recognized, with CNBC ranking Pony.ai #10 on its CNBC Disruptor list of the 50 most innovative and disruptive tech companies of 2022. In June 2023, Pony.ai was recognized on the XPRIZE and Bessemer Venture Partners inaugural “XB100” 2023 list of the world’s top 100 private deep tech companies, ranking #12 globally. As of August 2023, Pony.ai has accumulated nearly 21 million miles of autonomous driving globally. Pony.ai went public at NASDAQ in November 2024. Responsibility Collaborate with IT, Infrastructure, HR, Admin and Technical teams to support staff onboarding and offboarding processes. Continuously monitor security events, threats, and vulnerabilities across systems and networks. Respond to security incidents, support incident investigations, and escalate issues when necessary. Perform threat identification, triage, and risk assessments to inform proactive mitigation strategies. Administration and configuration of tools to log and analyze security and privacy related data. Implement security policies in tools to automate security and privacy monitoring and analytics. Analyze security logs to identify anomalies, policy violations, or indicators of compromise. Identify security and privacy gaps, and propose improvements to strengthen the organization’s overall security framework. Requirements Bachelor's degree in Computer Science, Information Security, or a related field. Minimum of 2 years of hands-on experience in Information Technology, cybersecurity, or working in a Security Operations Center (SOC) or Network Operations Center (NOC).  Solid understanding of the threat landscape, attacker tactics (e.g., phishing, malware, APTs, DoS attacks), and defensive strategies. Proficiency in at least one scripting language (e.g., Python preferred). Skilled in security technologies such as SIEM, SOAR, EDR, ID/IPS, access control, vulnerability management, cloud security, and External Attack Surface Management (EASM).  Experience with cloud security concepts, tools, and best practices across platforms like AWS, Azure, or GCP.  Exceptional written, verbal, and interpersonal communication skills, with strong attention to detail. Proven ability to collaborate across teams and foster a customer-focused and security-aware culture. Compensation and Benefits Base Salary Range: $100,000 - $160,000 Annually Compensation may vary outside of this range depending on many factors, including the candidate’s qualifications, skills, competencies, experience, and location. Base pay is one part of the Total Compensation and this role may be eligible for bonuses/incentives and restricted stock units. Also, we provide the following benefits to the eligible employees: Health Care Plan (Medical, Dental & Vision) Retirement Plan (Traditional and Roth 401k) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Free Food & Snacks Please click here for our privacy disclosure.
$100,000-160,000
🧑‍💻 Hands-On Software Development Projects & Training
4844 Highlander Cove, Antioch, TN 37013, USA
If you’re committed to mastering software development and want to be part of a team that values innovation, we encourage you to grow with us. We are a results-driven tech company searching for dedicated learners. Want to become a full-stack software developer with guided, hands-on training? This structured and flexible program is fully remote and supports both full-time and part-time schedules. You’ll complete close to 900 hours of focused training and project work using popular programming languages and real-world tools. Key skills you’ll build: 🖥️ Tech & Programming Basics • Understand how systems and the internet work • Learn core development concepts: algorithms, data structures, logic, and security • Practice Python scripting and flowchart development 💻 Web & UI Development • Build front-end pages with HTML, CSS, JavaScript, and Bootstrap • Create interactive features using jQuery and React.js • Apply modern responsive design and layout principles 🗄️ Server-Side & Database Development • Work with SQL, CRUD operations, and relational databases • Use SQL Server, Django, and C# with .NET to build functional backends 🧑‍💻 Languages & Developer Tools • Learn 7+ key languages: C#, Python, HTML, JavaScript, SQL, and more • Use GitHub, Visual Studio, and industry-standard version control • Understand team-based coding and software workflows 🧪 Capstone Projects • Build two complete software projects (Python & C# based) • Work through debugging, documentation, and Agile-style collaboration • Gain portfolio-ready results to show your capabilities 🧰 Career Preparation • Sharpen interview skills and technical communication • Build your résumé and developer branding • Learn how to approach the job market as a junior developer No experience required. Remote participation available. To apply, visit: https://techschooldev.online/
$30
iSoftTek Solutions Inc
Identity Access Engineer - AuthN - Austin, TX, Remote Ok
Austin, TX, USA
Identity Access Engineer - AuthN [Positions - 3] Location: Austin, TX, remote Ok Job Description:   Responsibilities: ·        Engage with multiple teams of highly talented engineers and architects to design and develop highly scalable, secure and configurable identity solutions that meet the needs of our customers and stakeholders. ·        Actively engage with leadership across Product, Architecture, Design and Engineering to design, propose, discuss and refine new features and functionality. ·        Collaborate with other engineering teams, IT, and business stakeholders to understand requirements and deliver innovative identity solutions that meet organizational needs. ·        Communicate with stakeholders on technical standards, principles, methodologies and trends. ·        Enhance overall system operational characteristics by establishing best practices for code quality, reduction in tech debt, building frameworks or shared techniques to improve engineering effectiveness. ·        Identify opportunities for refactoring, API changes, solution designs and other types of tech debt remediation. ·        Influence management for driving technical decision-making for the right selection of technology by giving forthright, understandable, and actionable advice. ·        Work with standards defining organizations to understand the evolving standards, identify gaps, provide inputs on platform gaps, contribute to roadmap planning to build world class CIAM platform. ·        Drive decision-making with team members with different views for simple to complex problems with the business requirements to help synthesize the best solution. ·        Engage with business team, highly analytical and have experience designing and implementing A/B tests, with approach like data-based experiments.   Required Skills: ·        10-15 years of experience building successful production software systems and Identity solutions. ·        You must have significant business knowledge and technical expertise in application design and architecture, as well as knowledge of related domains of technical architectures (network, security, and infrastructure engineering), information architectures, and data architectures. ·        In-depth knowledge of identity management technologies, protocols, and standards, and competent in designing solutions for reliability, availability, scalability, and performance. ·        In-depth knowledge of Identity standards such as OAuth 2.0, Open ID Connect, SCIM etc. ·        Deep understanding of modern web applications design architecture, good API design patterns, performance, and scale. ·        Deep understanding of application security, information security, web application fundamentals, authentication & authorization protocols. ·        You must have experience in modern technologies such as JavaScript, Typescript, React, NextJs, Node. · Understands use cases for advanced design patterns (e.g., service-to-worker, MVC, API gateway, intercepting filter, dependency injection, lazy loading etc) to implement efficient code. ·        Strong OOP skills, with ability to analyze requirements and transform into scalable software designs. · Experience with HTTP, REST API's and competent designing and building web services/microservices in a commercial setting. ·        Knowledge of SQL and other/NoSQL/modern database and storage technologies. Desired understanding of Oracle, JDBC and ORM frameworks (e.g. Hibernate). ·        Experience with Design Patterns, MVC and frameworks (e.g. Spring). ·        Deep understanding of web services and SOA related standards like REST/OAuth/JSON and SOAP/WSDL. ·        Extra credit: Provide your GitHub account or code samples with your resume!  
Cookie
Cookie Settings
Our Apps
Download
Download on the
APP Store
Download
Get it on
Google Play
© 2025 Servanan International Pte. Ltd.