Hi,
The Following Requirement are given below
: Kindly share State Client/ Federal Experience Profiles only..
Title: Governance Risk and Compliance Risk Register Analyst - Information Security Manager 3
Job ID: 70126089
Location: Austin, Texas (Remote)
Client: State of Texas
Department: TEA (Texas Education Agency)
Duration: 12 Months
Experience: 12+
- Define end to end governance workflows for:
o Risk identification and intake
o Risk review and validation
o Risk acceptance, mitigation, or transfer
o Ongoing monitoring and periodic reassessment
- Establish roles and responsibilities for risk owners, reviewers, and governance bodies.
- Design escalation and reporting processes for high risk and accepted risks.
- Engage key stakeholders across business, technology, security, and governance functions to validate risk requirements and workflows.
- Facilitate working sessions or workshops to socialize the risk register and governance processes.
- Support onboarding of initial risks into the enterprise risk register.
- Produce clear, audit ready documentation covering:
o Risk register structure and data definitions
o Risk scoring methodology
o Governance workflows and decision authorities
- Provide knowledge transfer to designated security staff to ensure sustainability beyond the contract term.
The contractor shall provide the following deliverables during the engagement:
- Enterprise Risk Register Framework
o Standardized risk register template and taxonomy
- Risk Scoring and Prioritization Model
o Documented likelihood and impact scales
o Scoring methodology and prioritization logic
- Risk Governance Model
o Defined workflows for risk intake, review, acceptance, and monitoring
o Roles and responsibilities matrix
- Initial Population of Risk Register
o Initial set of documented risks reflecting current cybersecurity and technology risk posture
- Final Documentation Package
o Consolidated guidance and operating procedures for ongoing risk management
CANDIDATE SKILLS AND QUALIFICATIONS
- 8 years of experience in Risk Register Design and Framework, including creating and maintaining structured risk registers for identifying, tracking, and managing organizational risks.
- 8 years of experience in Risk Scoring and Prioritization Models, with expertise in developing methodologies to assess risk impact, likelihood, and prioritization for effective decision-making.
- 8 years of experience in Governance Processes and Workflows, including establishing governance standards, workflows, controls, and compliance processes for risk management initiatives.
- 8 years of experience in Stakeholder Management and Enablement, with the ability to collaborate with cross-functional teams, drive stakeholder engagement, and provide enablement support for risk management practices.
- 8 years of demonstrated skill in Documentation and Knowledge Transfer, including preparing detailed process documentation, maintaining knowledge repositories, and ensuring effective transfer of knowledge to stakeholders and teams.