Job Details

ID #41100922
State California
City Oakland
Job type Permanent
Salary USD TBD TBD
Source Blue Shield Of California
Showed 2022-05-18
Date 2022-05-17
Deadline 2022-07-16
Category Security
Create resume

Information Security Risk and Governance Specialist, Principal

California, Oakland, 94601 Oakland USA

Vacancy expired!

Blue Shield of California's mission is to ensure all Californians have access to high-quality health care at a sustainably affordable price. We are transforming health care in a way that truly serves our nonprofit mission by lowering costs, improving quality, and enhancing the member and physician experience.

To fulfill our mission, we must ensure a diverse, equitable, and inclusive environment where all employees can be their authentic selves and fully contribute to meet the needs of the multifaceted communities we serve. Our comprehensive approach to diversity, equity, and inclusion combines a focus on our people, processes, and systems with a deep commitment to promoting social justice and health equity through our products, business practices, and presence as a corporate citizen.

Blue Shield has received awards and recognition for being a certified Great Place to Work, best place to work for LGBTQ equality, leading disability employer, one of the best companies for women to advance, Bay Area's top companies in volunteering & giving, and one of the world's most ethical companies. Here at Blue Shield of California, we are striving to make a positive change across our industry and the communities we live in - join us!

Your Role

The Information Assurance team is a trusted partner providing solutions to standardize risk reporting, quantitative risk modeling and critical support for trust assurance services. The Information Security Risk and Governance Specialist, Principal will report to the Senior Manager of Information Assurance. In this role, you will build and implement a risk quantification program requiring collaboration across the organization to assess risk scenarios and prioritization. Additionally, this role will have the expertise to support various process development for programs supporting Trust Assurance Services and our partners. The Principal is a senior subject matter expert and trusted advisor in information technology and security governance, risk and compliance best practices.

Your Work

In this role, you will:
  • Provide subject matter expertise, thought leadership, guidance, best practice and support across security and risk management functions.
  • Drive security risk management processes by partnering with the business and technical stakeholders
  • Create, lead, and maintain the risk quantification program and collaborate with senior leadership
  • Be responsible for program delivery as risk quantification subject matter expert
  • Perform highly complex security risk reviews, identify gaps in IT Security Governance capabilities, and develop security risk mitigation plan
  • Evaluate, identify, and recommend options to existing processes inefficiencies and gaps
  • Collaborate and provide clear communication with executives, corporate counsels, privacy, legal, enterprise risk management, HR departments and external customers or vendors on risk management, risk quantification and prioritization
  • Consult with and review the work of team members to accomplish operational plans and results within schedule and budget
  • Influence decisions which are usually more project and operationally oriented and explain policies, standards, practices, and procedures of the job area/department to others within the organization
  • Prepare reports for senior management and external regulatory bodies as appropriate

Your Knowledge and Experience
  • Requires a bachelor's degree or equivalent experience
  • Requires at least 10 years of prior relevant experience
  • Proven experience as a cyber risk expert, knowledge or implementation of statistical modeling/FAIR Risk Model or similar risk management framework experience is required.
  • Foster a team culture of continuous improvement, mentoring and learning, data driven decisions, and accountability for delivery of key metrics and deliverables is required
  • Excellent communication and presentation skills at every level including executives is required
  • Practical knowledge in leading and managing the execution of process, projects and tactics within an area is required
  • Desired CISSP, CRISC, CISM, CISA or similar certification

Our Values
  • Honest. We hold ourselves to the highest ethical and integrity standards. We build trust by doing what we say we're going to do and by acknowledging and correcting where we fall short
  • Human. We strive to be our authentic selves, listening and communicating effectively, and showing empathy towards others by walking in their shoes
  • Courageous. We stand up for what we believe in and are committed to the hard work necessary to achieve our ambitious goals
#Dice

Vacancy expired!

Subscribe Report job