Cyber Risk and Reporting Manager (R-00186)
True Zero Technologies
Apply to this job
This role is ideal for someone who enjoys working at the intersection of cybersecurity operations, governance, and executive communications. Success requires both strong analytical skills and the ability to communicate complex cybersecurity issues in a way that supports timely, risk based decisions.
Job Responsibilities
- Lead development of enterprise cybersecurity metrics, performance measures, and executive reporting.
- Produce recurring executive dashboards, cybersecurity risk profiles, weekly leadership reports, monthly status reports, and other decision support products.
- Aggregate operational data from vulnerability management, incident response, RMF, continuous monitoring, penetration testing, and threat intelligence activities into meaningful risk analysis.
- Analyze enterprise cybersecurity trends, identify systemic risks, and provide recommendations for improving operational performance.
- Develop performance indicators that measure program effectiveness, SLA compliance, remediation progress, authorization status, and overall cyber risk.
- Coordinate with technical teams to validate reporting accuracy and ensure consistent data across program workstreams.
- Support FISMA reporting activities by collecting, analyzing, and validating cybersecurity performance data.
- Identify emerging operational trends and communicate significant changes in enterprise risk posture to program leadership.
- Support executive briefings by developing visualizations, summaries, and analytical products that communicate cybersecurity performance to Government stakeholders.
- Maintain reporting processes, documentation, and data quality standards to ensure consistent and repeatable program reporting.
- Recommend opportunities to improve operational visibility through automation, enhanced metrics, and data integration.
Job Qualifications
- Experience in supporting NIH, HHS, or other Federal civilian agencies.
- Experience developing Power BI, Tableau, Splunk, or similar operational dashboards.
- Experience supporting FISMA reporting and continuous monitoring programs.
- Familiarity with cyber threat intelligence, vulnerability management, and enterprise risk management.
- Experience working with ServiceNow, Jira, SharePoint, or enterprise reporting platforms.
- Bachelor’s degree in Cybersecurity, Information Systems, Information Technology, Data Analytics, Business, or a related discipline.
- Five or more years of experience supporting cybersecurity programs, cyber risk management, governance, compliance, or security operations reporting.
- Experience developing executive dashboards, cybersecurity metrics, and performance reporting.
- Experience analyzing large operational datasets and translating technical findings into business focused recommendations.
- Familiarity with FISMA, NIST Risk Management Framework (RMF), Continuous Diagnostics and Mitigation (CDM), and enterprise cybersecurity operations.
- Strong written and verbal communication skills with experience presenting technical information to executive audiences.
- Advanced analytical and problem solving skills.
- CISSP
- CGRC
- CISM
- Security+
- PMP
- Certified Data Management Professional (CDMP)
- Microsoft Power BI Data Analyst Associate
Preferred Certifications
One or more of the following is preferred:
Summary
Lead cybersecurity metrics, develop reports, analyze trends, support FISMA compliance, communicate risks.
Job title
Cyber Risk and Reporting Manager
Experience level
5+ years
Minimum experience
5+ years exp
Industry
cybersecurity
Location requirements
remote work allowed, candidate can be anywhere
Salary
Not specified
Management role
No
Required skills
Preferred skills
Specializations
Structured locations inferred from the posting.
United States