Senior Cybersecurity Risk Manager | GRC & Compliance Leader

JSG (Johnson Service Group, Inc.)

Irvine (CA)

Hybrid

USD 150,000 - 210,000

Full time

29 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Medical insurance
Dental insurance
Vision insurance
Life insurance
401(k)

Job summary

JSG (Johnson Service Group, Inc.) is seeking a Senior Cybersecurity Risk Manager in Irvine, CA. The role focuses on strengthening and evolving our internal security risk strategy across governance, risk and compliance.

You will identify, assess, and mitigate cybersecurity risks, and build executive-ready metrics to influence risk decisions. The position is hybrid (Irvine, CA) with M-TH onsite and Friday work-from-home.

Qualifications

  • Cybersecurity risk management expertise to evaluate risk posture across systems, applications, processes and leveraged solutions.
  • Experience performing risk assessments, threat modeling, and impact analysis.
  • Ability to build, enhance, and execute a cybersecurity risk management framework aligned to business objectives and regulatory needs.
  • GRC processes and IT general controls knowledge including asset classification, vulnerability/threat analysis, audit controls & remediation, and risk reporting.
  • Knowledge of ISO 27001/27002, ISO 31000:2018, ISO 27005:2022; NIST SP 800-12, 800-30, 800-37, 800-39, 800-53, 800-150, 800-161.
  • Familiarity with regulations such as CCPA, GLBA, NYDFS Cybersecurity Regulation, PCI-DSS, FFIEC, SOX.
  • Ability to define and maintain security risk metrics (KRIs/KPIs) and report to executives.
  • Strong communication to explain security concepts to business leaders and technical teams.
  • Proficiency in Microsoft Office (Word, Excel, PowerPoint).
  • Capable of working autonomously and collaboratively with attention to detail and sound judgment.

Responsibilities

  • Identify, assess, and mitigate cybersecurity risks affecting operations and regulatory compliance.
  • Develop and evolve risk management strategies and governance with executive-ready metrics.
  • Partner cross-functionally to improve risk maturity and resilience.
  • Maintain security risk metrics and deliver reporting for executives and stakeholders.
  • Stay current with regulatory requirements and cybersecurity frameworks; influence control implementations.

Skills

Cybersecurity risk management
Risk assessments
Threat modeling
Risk framework
GRC processes
IT general controls
NIST methodologies
Regulatory awareness
Security metrics
Executive communication
MS Office
Autonomy

Education

Bachelor’s degree in finance, business, or related discipline

Tools

Microsoft Office

Job description

JSG (Johnson Service Group, Inc.) is seeking a Senior Cybersecurity Risk Manager in Irvine, CA. The role focuses on strengthening and evolving our internal security risk strategy across governance, risk and compliance.

You will identify, assess, and mitigate cybersecurity risks, and build executive-ready metrics to influence risk decisions. The position is hybrid (Irvine, CA) with M-TH onsite and Friday work-from-home.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Manager -Governance, Risk & Compliance
Senior Manager -Governance, Risk & Compliance

JSG (Johnson Service Group, Inc.) • Irvine (CA)

Hybrid
USD 150,000 - 210,000
Medical insurance
Dental insurance
Vision insurance
+2
Senior GRC Analyst - Path to GRC Manager (Hybrid)
Senior GRC Analyst - Path to GRC Manager (Hybrid)

Tiro Security, LLC • California (MO)

On-site
USD 100,000 - 150,000
Cyber Defence Strategy & Operations Lead
Cyber Defence Strategy & Operations Lead

GHD • Irvine (CA)

On-site
USD 180,000 - 220,000
Senior Cyber Risk Auditor & GRC Strategist (Remote)
Senior Cyber Risk Auditor & GRC Strategist (Remote)

Request Technology • San Francisco (CA)

On-site
USD 80,000 - 120,000
Senior GRC Consultant — Remote, Strategic Risk & Compliance
Senior GRC Consultant — Remote, Strategic Risk & Compliance

Cyberr • United States

On-site
USD 90,000 - 130,000
Senior Cybersecurity Risk & GRC Leader
Senior Cybersecurity Risk & GRC Leader

mTrade, LLC. • Oxford (MS)

On-site
USD 110,000 - 160,000
Snr GRC Analyst
Snr GRC Analyst

Tiro Security, LLC • California (MO)

On-site
USD 100,000 - 150,000
Senior Cyber Risk & GRC Operations Lead
Senior Cyber Risk & GRC Operations Lead

Focus Financial Partners • St. Louis (MO)

On-site
USD 110,000 - 130,000
Annual cash bonus
Comprehensive benefits package
Security Review Lead — Cyber Risk & Governance (Hybrid)
Security Review Lead — Cyber Risk & Governance (Hybrid)

Pacific Asset Management, LLC • Newport Beach (CA)

Hybrid
USD 137,000 - 169,000
Medical, Dental, and Vision benefits
Generous paid time off
401k plan with company match
AI-Driven Cybersecurity Engineer — GRC & IR
AI-Driven Cybersecurity Engineer — GRC & IR

MJH Life Sciences® • Cranbury Township (NJ)

On-site
USD 60,000 - 70,000
Hybrid work schedule
Health insurance
Vision coverage
+2