Sensiple Inc is a New Jersey corporation with over two decades of expertise in technology-driven solutions specialising in Customer Experience, Contact Center Solutions, Digital Transformation, Cloud Computing & Independent Testing.
With an expert team that has enriched experience in executing & developing sustainable IT strategies in Healthcare, Technology, Retail, Logistics, Education, Telecommunications, Government and Media, we help our diverse customers to envision the future.
By developing highly scalable and consistent solutions, our primary goal is to deliver excellence at all levels and delight our customers and drive them to a better future.
Position: Technology & Cybersecurity Risk Management Analyst
Work Location: Plano, TX (Hybrid)
Duration: Long Term Contract (W2)
Job Description:
The Technology & Cybersecurity Risk Management (T&CRM) Engineer supports the T&CRM program by analyzing technology and cybersecurity risks, conducting risk assessments, leading risk-related initiatives, and enhancing risk management processes. This role helps identify, visualize, and reduce technology and cybersecurity risks while guiding stakeholders through risk-based decision-making.
Key Responsibilities:
- Conduct risk intake, assessments, triage sessions, and stakeholder risk discussions.
- Assess technology and cybersecurity risks using NIST, COBIT, and ISO frameworks.
- Identify, document, and evaluate inherent, residual, and emerging technology risks.
- Review controls and evaluate their effectiveness in mitigating identified risks.
- Map risks to controls and applicable framework and policy requirements.
- Facilitate control walkthroughs and risk discussions with control owners and stakeholders.
- Document risk statements, controls, evidence, and assessment results in governance tools and Word/Excel/PPT.
- Develop risk treatment recommendations and track remediation activities through closure.
- Escalate overdue actions, unresolved risks, and significant control or compliance concerns.
- Prepare executive-ready risk reports, dashboards, and governance presentation materials.
Required Knowledge and Skills:
- 1 3 years of experience in cybersecurity or technology risk management, IT risk, compliance, or related discipline.
- Demonstrates a solid understanding of security controls, threats, and risk concepts.
- NIST, COBIT, and ISO 27001 framework knowledge.
- Ability to identify, assess, and document technology and cybersecurity risks and control gaps.
- Understanding of control design, control effectiveness, and risk mitigation concepts.
- Effectively plans, tracks, and executes work across multiple concurrent initiatives.
- Identifies opportunities to streamline workflows and improve operational efficiency.
- Produces accurate, well documented assessments and maintains reliable risk records.
- Microsoft Word, Excel, PowerPoint, and CoPilot. ServiceNow.
- Experience supporting projects or initiatives that require coordination across multiple stakeholders.