Omnissa is a global technology leader dedicated to transforming digital work by delivering secure, personalized experiences for every employee on any device. Th
Senior Risk Manager – Information Security
Location
United States
Posted
7 days ago
Salary
$175K - $220K / year
Seniority
Senior
Job Description
Senior Risk Manager – Information Security
Omnissa
• Own and operate the enterprise risk management framework, including risk appetite statements, risk registers, and risk reporting cadences. • Lead periodic risk assessments across business functions, identifying emerging threats and evaluating the effectiveness of existing controls. • Maintain and evolve risk taxonomy, scoring methodologies, and heat maps aligned to industry best practices (e.g., COSO ERM, ISO 31000). • Drive integration of risk management into strategic planning, product development, and change management processes. • Prepare and present risk reports for senior leadership, the Board, and audit/risk committees, translating complex risk data into actionable insights. • Establish and track key risk indicators (KRIs) and ensure timely escalation of critical risk events. • Maintain risk management policies, standards, and procedures; drive policy review cycles and updates. • Serve as a trusted advisor to business unit leaders on risk-related matters, helping embed a risk-aware culture. • Collaborate with IT Security, Legal, Privacy, and Internal Audit teams on integrated risk and control activities. • Support third-party and vendor risk management activities in coordination with Procurement and IT. • Lead, mentor, and develop a team of risk analysts and specialists within the GRC function. • Set team goals, manage performance, and foster a culture of continuous improvement and professional development. • Drive process automation and tooling improvements to enhance risk program efficiency and scalability. • Coordinate risk management contributions to internal and external audits, regulatory examinations, and compliance assessments. • Monitor the evolving regulatory landscape and assess implications for the organization's risk profile.
Job Requirements
- 8+ years of experience in risk management, GRC, or a closely related field
- 3+ years in a people management role
- Deep knowledge of risk management frameworks (COSO ERM, ISO 31000, NIST RMF, or equivalent)
- Demonstrated experience operating an enterprise risk program in a mid-to-large organization
- Bachelor’s degree in business, Finance, Information Systems, or a related field
- Professional certification such as CRISC, CISM, CGEIT, or equivalent
- Experience in regulated industries (financial services, healthcare, technology)
- Familiarity with GRC platforms (e.g., ServiceNow GRC, Archer, OneTrust, LogicGate)
Benefits
- employee ownership
- health insurance
- 401k with matching contributions
- disability insurance
- paid-time off
- growth opportunities
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Business Information Security Officer – Defense Industrial Base (DIB) Exp
EVOTEKToday’s Emerging Technology will be Tomorrow’s Competitive Advantage
• Develop, drive, and implement Client overall information security program (goals, objectives, and policies) while establishing departmental goals and priorities to execute on that vision. • Establish a defined, consistent security architecture standard and work with Clients to implement technical controls in line with cutting edge best in class security and privacy standards. • Drive Client domestic and international projects to meet emerging cyber security requirements, data protection and privacy laws. • Implement approved policies and procedures to ensure information security efforts are properly coordinated and in compliance to make recommendations for changes and improvements to reduce Client overall security risk. • Monitor and assess the compliance of Client organizations with information security policies and procedures, while ensuring third-party compliance. • Oversee Client incident response planning, data loss prevention and remediation of breaches, serving as the focal point for response delivery. • Implement ongoing Client risk assessment programs targeting information security and privacy matters; recommend methods for vulnerability detection and remediation and perform and/or oversee vulnerability testing. • Coordinate and deliver information security reporting and assessments as required by regulatory agencies, clients, and management. • Work with peers across the company to review customer feedback/ requirements and ensure that security strategy and roadmaps are aligned with the security needs of Clients. • Keep current on the latest security and privacy legislation, regulations, alerts, and vulnerabilities pertaining to the organization. Conduct continual research to maintain knowledge of technology, customer needs and overall requirements. • Participate in key initiatives and projects to ensure that cybersecurity controls are accounted for early within the project and software development lifecycles. • Ensure risk assessments are conducted on Client high-risk business applications. Provide escalation for high-risk issues arising from those assessments. Ensure remediation plans are tracked to completion.
Security Officer
OCS GroupOCS UK & Ireland is a leading facilities management company with 50,000+ colleagues and a turnover in excess of £2bn. We deliver innovative, award-winning services within facilities management, hard services, cleaning, security, and catering. Our mission is to make people and places the best they can be for our colleagues, customers, and the communities we serve. Our commitment to doing business the right way is rooted in our TRUE values - Trust, Respect, Unity, and Empowerment.
Role Description Maintain a security presence at our client site, ensuring a safe and enjoyable experience for customers and members of the public. - Represent the company in a professional manner and maintain PSA standards in relation to code of conduct. Qualifications - Current, Valid PSA License. - Fluent English written and oral. - Excellent attention to detail. - Ability to work on own initiative. - Ability to work with CCTV systems. - Must be able to provide clear and complete 5 year work history including references. - Excellent communication and report writing skills. - Ability to work flexible hours as required by the company. - Retail security experience required. - Fully Flexible. Benefits - Award-Winning Employer: Ranked 36th on Glassdoor’s Best Companies to Work For 2025 — we value and motivate our people. - Digital Learning: The OCS Academy offers digital courses and resources to help you build skills and grow your career. - Retail Perks: With our Hapi app, you can gain access to exclusive discounts, rewards and wellbeing resources. - Professional Growth: 600+ live learners across UK&I — Empowering colleagues with further development and qualifications! - Flexible Pay: Access a portion of earned wages before payday with our Wagestream App! (Contract Specific) How to Apply If you are interested in joining a business that encourages professional development, career progression and the chance to work with inspirational people then please click apply and register your interest! You can also sign up to our job alerts when registering which will notify you when other suitable vacancies are available. We are an equal opportunities employer and rely on a diverse workforce with a broad range of knowledge, skills, and backgrounds to deliver our goals. We offer an inclusive and welcoming environment and actively encourage applications from all individuals regardless of race, gender, nationality, religion, sexual orientation, disability, or age.
• Design, deploy, and manage enterprise network security solutions • Configure and administer Fortinet, SonicWall, and Palo Alto firewalls • Implement and maintain VPNs, IPS/IDS, web filtering, NAT, ACLs, and segmentation policies • Monitor security events using SIEM, XDR, and SOC monitoring platforms • Investigate security incidents, perform threat analysis, and support incident response activities • Support cloud security initiatives across AWS, Azure, and hybrid infrastructure
• Design, deploy, and manage enterprise network security solutions • Configure and administer Fortinet, SonicWall, and Palo Alto firewalls • Implement and maintain VPNs, IPS/IDS, web filtering, NAT, ACLs, and segmentation policies • Monitor security events using SIEM, XDR, and SOC monitoring platforms • Investigate security incidents, perform threat analysis, and support incident response activities • Manage firewall policies, security rules, and compliance controls • Implement Zero Trust Network Access (ZTNA) and identity-based security controls • Support cloud security initiatives across AWS, Azure, and hybrid infrastructure • Configure and support SD-WAN and Secure Access Service Edge (SASE) solutions • Conduct vulnerability assessments and remediation activities

