Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.
Bloomberg is seeking an experienced Information Security Risk Oversight Lead to join their team in New York City. This role involves translating cybersecurity risks into executive insights while providing independent oversight across the firm’s information security program.
The ideal candidate will have over 10 years of experience in Information Security and IT or Cyber Risk Management, alongside a strong grasp of cybersecurity control frameworks. Responsibilities include evaluating security controls and preparing risk oversight materials for senior leadership.
The energy of a newsroom, the pace of a trading floor, the buzz of a recent tech breakthrough; we work hard, and we work fast - while keeping up the quality and accuracy we’re known for. It's what keeps us inventing and reinventing, all the time. Our culture is wide open, just like our spaces. We bring out the best in each other through collaboration. Through our countless volunteer projects, we also help network with the communities around us, too. You can do amazing work here. Work you couldn’t do anywhere else. It's up to you to make it happen.
We’re looking for an Information Security Risk Oversight Lead who can translate cybersecurity risk into executive insight and action. Sitting in the Company’s Second Line of Defense, the Chief Risk Office and reporting directly to our Head of Technology Risk, you will provide independent oversight and credible challenge across the firm’s enterprise-wide information security program. Operating at the intersection of technology, risk management, cybersecurity, governance and strategy, you will partner with the Chief Information Security Office, Engineering, and CTO teams to ensure cyber risks are appropriately identified, measured, monitored, and aligned with the firm’s risk appetite. The “so what” is critical: your oversight will enable leadership to understand not only what the risks are, but whether they are being managed effectively—and where decisive action is required to strengthen the firm’s overall security posture.