Enable job alerts via email!

Senior Security Risk Management Specialist @ Reinsurance Group of America

Cyber Crime

Missouri

Remote

USD 87,000 - 132,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A Fortune 500 company seeks a Senior Security Risk Management Specialist in Missouri, responsible for identifying and monitoring security risks across various functions. The role requires deep knowledge in IT security, compliance, and risk assessments, alongside relevant experience in security technologies and standards.

Benefits

Annual bonus plan
Health benefits
Retirement plans
Diversity and teamwork

Qualifications

  • 5-8 years in IT security, privacy, audit, and controls.
  • Experience with security risk assessments under industry standards.
  • Strong understanding of IT domains and security technologies.

Responsibilities

  • Conduct comprehensive security risk assessments.
  • Analyze and provide policy recommendations.
  • Perform vendor risk assessments and track remediation.

Skills

Risk assessment
Compliance
Regulatory compliance
Security technology
Analytical skills
Problem-solving

Education

Bachelor’s degree
Master’s degree or LOMA certification

Tools

NIST CSF
ISO/IEC 27001
CISSP
CISA
CISM

Job description

Senior Security Risk Management Specialist
Remote, Missouri, United States of America

Reinsurance Group of America
At RGA, we specialize in providing life and health-related reinsurance and financial solutions to help our clients effectively manage risk and capital.

View all jobs at Reinsurance Group of America

RGA is a purpose-driven organization working to solve today’s challenges through innovation and collaboration. A Fortune 500 Company and listed among its World’s Most Admired Companies, we’re the only global reinsurance company to focus primarily on life- and health-related solutions. Join our multinational team of intelligent, motivated, and collaborative people, and help us make financial protection accessible to all.

The Senior Security Risk Analyst will be responsible for identifying, assessing, reporting, and monitoring security risks across RGA’s enterprise security and business functions. This role involves collaborating with various departments to ensure compliance with security policies and standards, while additionally recommending security measures to protect RGA’s assets from potential threats.

PRINICPAL DUTIES

  • Conduct comprehensive security risk assessments of enterprise systems and processes, as well as provide recommendations for risk mitigation.
  • Review, analyze, and provide recommendations for policy, standard, and baseline configuration exceptions.
  • Perform vendor risk assessments to include inherent & residual risk identification, analysis, and mitigation, and additionally track risk remediation to completion.
  • Provide recommendations for vendor contractual requirements stemming from vendor risk assessment outcomes.
  • Serve as a project security advisor including risk analysis gate checks in the secure SDLC process.
  • Conduct thorough threat modeling exercises to identify potential security vulnerabilities and risks.
  • Stay current on security trends, threats, and best practices to continuously improve the organization's security posture.
  • Perform other duties as assigned.

EDUCATION

Required:

  • Bachelor’s degree or equivalent experience

Preferred:

  • Master’s degree and/or LOMA certification

REQUIRED EXPERIENCE

  • 5-8 years of IT security, privacy, audit, controls and regulatory compliance.
  • Experience conducting IT security risk assessments aligned with industry standard frameworks & standards.
  • Advanced understanding of IT domains: infrastructure, networking, storage, databases, operating systems, cloud, applications, etc.
  • Strong understanding of security technologies and domains, including: SSO, IAM, DLP, EDR, SIEM , firewalls, gateways, IDS/IPS, CASB, antivirus, SSDLC, cryptography, PKI, etc.
  • Knowledge of risk and control frameworks/standards (e.g., NIST CSF, NIST 800-53, ISO/IEC 27001, NIST 800-30, ISO/IEC 27005, etc.).
  • Oral and written communication skills, demonstrating the ability to convey complex technical and security concepts and terminology to non-technical stakeholders.
  • Ability to manage multiple projects/tasks simultaneously, including the ability to delegate key areas of responsibility.
  • Ability to successfully liaise with individuals across a wide variety of operational, functional, and technical disciplines.
  • Excellent analytical, problem-solving, and critical-thinking skills.

PREFERRED EXPERIENCE

  • 2+ years leadership role experience
  • Insurance/Reinsurance industry knowledge/experience
  • Information security, compliance, risk, or audit professional certifications, such as: CISSP, CISA, CISM, CGEIT, CRISC, CPA, OSCP, CCSP, CCSK

PREFERRED TECHNICAL EXPERIENCE

  • Cloud risk assessment experience (e.g., AWS, Azure, Google Cloud, etc.)
  • Cyber Risk Quantification (CRQ) experience (e.g., FAIR)
  • Previous experience as a Systems Administrator, IT Auditor, Developer, Security Engineer, Penetration Tester, Cloud Engineer

Gain valuable knowledge from and experience with diverse, caring colleagues around the world.

Enjoy a respectful, welcoming environment that fosters individuality and encourages pioneering thought.

Join the bright and creative minds of RGA, and experience vast, endless career potential.

Compensation Range:

$87,050.00 - $131,450.00 Annual

You desire impactful work.

You’re RGA ready

RGA is a purpose-driven organization working to solve today’s challenges through innovation and collaboration. A Fortune 500 Company and listed among its World’s Most Admired Companies, we’re the only global reinsurance company to focus primarily on life- and health-related solutions. Join our multinational team of intelligent, motivated, and collaborative people, and help us make financial protection accessible to all.

The Senior Security Risk Analyst will be responsible for identifying, assessing, reporting, and monitoring security risks across RGA’s enterprise security and business functions. This role involves collaborating with various departments to ensure compliance with security policies and standards, while additionally recommending security measures to protect RGA’s assets from potential threats.

PRINICPAL DUTIES

  • Conduct comprehensive security risk assessments of enterprise systems and processes, as well as provide recommendations for risk mitigation.
  • Review, analyze, and provide recommendations for policy, standard, and baseline configuration exceptions.
  • Perform vendor risk assessments to include inherent & residual risk identification, analysis, and mitigation, and additionally track risk remediation to completion.
  • Provide recommendations for vendor contractual requirements stemming from vendor risk assessment outcomes.
  • Serve as a project security advisor including risk analysis gate checks in the secure SDLC process.
  • Conduct thorough threat modeling exercises to identify potential security vulnerabilities and risks.
  • Stay current on security trends, threats, and best practices to continuously improve the organization's security posture.
  • Perform other duties as assigned.

EDUCATION

Required:

  • Bachelor’s degree or equivalent experience

Preferred:

  • Master’s degree and/or LOMA certification

REQUIRED EXPERIENCE

  • 5-8 years of IT security, privacy, audit, controls and regulatory compliance.
  • Experience conducting IT security risk assessments aligned with industry standard frameworks & standards.
  • Advanced understanding of IT domains: infrastructure, networking, storage, databases, operating systems, cloud, applications, etc.
  • Strong understanding of security technologies and domains, including: SSO, IAM, DLP, EDR, SIEM , firewalls, gateways, IDS/IPS, CASB, antivirus, SSDLC, cryptography, PKI, etc.
  • Knowledge of risk and control frameworks/standards (e.g., NIST CSF, NIST 800-53, ISO/IEC 27001, NIST 800-30, ISO/IEC 27005, etc.).
  • Oral and written communication skills, demonstrating the ability to convey complex technical and security concepts and terminology to non-technical stakeholders.
  • Ability to manage multiple projects/tasks simultaneously, including the ability to delegate key areas of responsibility.
  • Ability to successfully liaise with individuals across a wide variety of operational, functional, and technical disciplines.
  • Excellent analytical, problem-solving, and critical-thinking skills.

PREFERRED EXPERIENCE

  • 2+ years leadership role experience
  • Insurance/Reinsurance industry knowledge/experience
  • Information security, compliance, risk, or audit professional certifications, such as: CISSP, CISA, CISM, CGEIT, CRISC, CPA, OSCP, CCSP, CCSK
  • Project management skills/experience

PREFERRED TECHNICAL EXPERIENCE

  • Cloud risk assessment experience (e.g., AWS, Azure, Google Cloud, etc.)
  • Cyber Risk Quantification (CRQ) experience (e.g., FAIR)
  • Automation experience: Python, REST API, PowerShell, etc.
  • Previous experience as a Systems Administrator, IT Auditor, Developer, Security Engineer, Penetration Tester, Cloud Engineer


#L!-CW1

#LI-Remote

What you can expect from RGA:

  • Gain valuable knowledge from and experience with diverse, caring colleagues around the world.

  • Enjoy a respectful, welcoming environment that fosters individuality and encourages pioneering thought.

  • Join the bright and creative minds of RGA, and experience vast, endless career potential.

Compensation Range:

$87,050.00 - $131,450.00 Annual

Base pay varies depending on job-related knowledge, skills, experience and market location. In addition, RGA provides an annual bonus plan that includes all roles and some positions are eligible for participation in our long-term equity incentive plan. RGA also maintains a full range of health, retirement, and other employee benefits.

RGA is an equal opportunity employer. Qualified applicants will be considered without regard to race, color, age, gender identity or expression, sex, disability, veteran status, religion, national origin, or any other characteristic protected by applicable equal employment opportunity laws.

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Security Risk Management Specialist

Reinsurance Group Of America, Incorporated

null null

Remote

Remote

USD 87,000 - 132,000

Full time

Yesterday
Be an early applicant

Director, Privacy Risk Management Specialist

Reinsurance Group Of America, Incorporated

Chesterfield null

Hybrid

Hybrid

USD 104,000 - 156,000

Full time

26 days ago