Risk Specialist
Focus Financial Partners - New York, NY
Hiring: Risk Specialist Company: Focus Financial Partners Location: New York, NY Job Posted Time: 2026-09-11 13:30:22 Target Skills & Keywords : GDPR, Risk Management, Vendor Management, Wealth Management About the job Experience: •5 years of experience in cybersecurity risk management, vulnerability management, third-party risk management, or a related cybersecurity discipline. Required Skills: •Analyze vulnerability assessments and third-party security reviews, considering environmental, procedural, and business risk factors—not just technical severity scores. •Partner with Infrastructure, Security Engineering, Enterprise Risk Management, Vendor Management, Legal, Compliance, Procurement, and business stakeholders to identify, assess, and mitigate cybersecurity risk. •Manage the lifecycle of vulnerabilities and third-party risks by tracking findings, driving remediation efforts, facilitating risk acceptance, and validating issue resolution. •Conduct cybersecurity due diligence for new and existing vendors, evaluate security controls, and recommend practical risk mitigation strategies and compensating controls. •Develop and maintain third-party risk management (TPRM) policies, procedures, vendor assessment questionnaires, and governance processes. •Drive remediation initiatives for end-of-life and unsupported technologies, vendor security gaps, and other identified cyber risks. •Assist in developing threat intelligence and exposure management processes to identify emerging risks affecting the organization and its third-party ecosystem. •Develop, track, and report cybersecurity and third-party risk metrics, including Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs), to leadership. Qualifications: •3–5 years of experience in cybersecurity risk management, vulnerability management, third-party risk management, or a related cybersecurity discipline. •Knowledge of the vulnerability management lifecycle, including discovery, validation, prioritization, remediation, verification, exception management, and risk acceptance. •Operational familiarity with cybersecurity frameworks such as NIST CSF, ISO 27001, or similar industry standards. •Knowledge of financial services regulations and security requirements, including SEC, FINRA, Regulation S-P, GDPR, and CCPA. •Strong analytical, communication, and relationship management skills with the ability to influence technical and non-technical stakeholders. •Demonstrated capacity to manage multiple priorities in a fast-paced, highly collaborative environment. •Industry certifications such as CISSP, CISM, or GIAC certifications are preferred. •Prior experience in a financial services or multi-partner environment is preferred. Compensation: •$100,000 - $130,000 / year •Competitive benefits and rewards package Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!