Job was saved successfully.
Job was removed from Saved Jobs.

Job Details


Cyber Strategy PRISM Analytics and Governance Manager (32127)

Branch Manager




Costa Mesa, California, United States

Cyber Strategy PRISM Analytics and Governance Manager

The Cyber Strategy - Analytics & Reporting - PRISM - Governance Manager is a newly created role within the Cyber Risk practice to assist client with establishing and scaling cyber risk analytics and reporting program. The program provides risk-based insights for varied global audiences ranging from operational leaders to Board of Directors. Key expectations from the candidate involve:

  • Assist in building a global cyber risk analytics program to enable executive decision making and prioritized risk mitigation through reporting of meaningful insights
  • Drive the buildout and maturing of the cyber risk analytics program - including people, process and technology components
  • Work with executive and senior management stakeholders for solution requirements gathering and socialization
  • Work with cyber data source owners to establish sustainable processes and technical architecture for data acquisition
  • Manage a team of cyber risk and data analysts to support development of cyber risk analytics solution
  • Develop program level governance and operating processes and run book for the ongoing management of the solution

Work you'll do
  • Lead client engagements for Cyber Risk Analytics and reporting program development and implementation
  • Must be able to collaborate internally and externally with the clients to ensure collection and distribution of complete, accurate, and timely information to stakeholders
  • Ensure a standard process is used throughout the enterprise for metrics development, creation, and analysis
  • Ensure that metrics data is consistently collected, analyzed, and reported to leadership and stakeholders
  • Actively solicit input from stakeholders and provide feedback to the leadership and program manager at every step of program development and operation
  • Lead periodic refinement of standards-based and best practices compliant security metrics
  • Enable design and deployment of the mechanisms and tools for data harvesting and determine key risk indicators


  • Bachelor's degree in Statistics, Mathematics, Computer Science, or related discipline
  • 5+ years of experience developing Key Risk Indicators / Key Performance Indicators related to Information Security or IT Risk Management
  • 8+ years of experience and proven leadership in developing, reporting, and communicating analytic results
  • 8+ year of cyber risk experience with good understanding of overall cyber security program and expertise in at least three cyber domains e.g. vulnerability management, threat intelligence, GRC, incident management, Security operations managements, data protection etc.
  • Working knowledge of information security industry frameworks (e.g. ISO 27K, NIST Cyber Security Framework)
  • Knowledge of regulatory environment as it applies to information security
  • Drive meaningful risk-based insights from data and report across different stakeholders
  • Knowledge of different cyber risk data types and experience in guiding programmatic collection of cyber and technical data from IT data sources using programs such as Python, R, C#, PowerShell etc.
  • Working knowledge of business intelligence tools such as tableau, Power BI, QuickSight, Looker etc. to model and communicate analytic results
  • Travel up to 35% (While 35% of travel is a requirement of the role, due to COVID-19, non-essential travel has been suspended until further notice)
  • Limited immigration sponsorship may be available


An ideal candidate is
  • Is a self-driven and motivated individual with proven ability to lead development of security programs involving multitude of areas and stakeholders
  • Is a great communicator (must have)
  • Is a great presenter and adept at several reporting and presentation tools (via Microsoft PowerPoint, Excel AND more advanced reporting solutions like Tableau, QlikView)
  • Is experienced in managing a team of in-house or contracted resources
  • Is experienced in collaborating with client management and technical stakeholders