Jobs and Careers
CO

Cybersecurity Risk Management Lead

Cox Enterprises
United Statesfull_timeVerifiedPosted 10 Jun 2025
💰 $181,400/yr($108,800/yr$181,400/yr)

About the role

Company

Cox Automotive - USA

Job Family Group

Information Technology

Job Profile

Cyber Risk & Compliance Manager

Management Level

Manager - Non People Leader

Flexible Work Option

Hybrid - Ability to work remotely part of the week

Travel %

Yes, 15% of the time

Work Shift

Day

Compensation

Compensation includes a base salary of $108,800.00 - $181,400.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate’s knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program.

Job Description

The Security Risk Lead is responsible for identifying, assessing, and mitigating risks related to the organization's information technology and cybersecurity practices. This role involves developing and implementing cybersecurity risk management strategies, ensuring compliance with relevant regulations, and fostering a culture of risk awareness across the organization.


Responsibilities  

  • Assist business line leadership with identifying, assessing, controlling, mitigating, and communicating risks associated with business processes and decisions.  Evaluate the root cause, the corrective action plans, and work with business partners Technology teams to successfully implement and document remediation 

  • Support the business in the development of Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) 

  • Keep the Business aware of the risk and control environment of the Business through continuous and open communication, by preparing and hosting meetings with Senior Management to present and follow-up on issues, concerns, and corrective action plans. 

  • Provide oversight and governance to the assigned business unit regarding its control environment including change activities (both business and regulatory change) 

  • Execute, facilitate and monitor risk governance mechanisms, including but not limited to, Compliance Risk and Control Self-Assessment (C-RCSA), Risk and Control Self-Assessment (RCSA), key risk indicators, policies, risk committees and other elements of the Enterprise Risk Framework 

 

Qualifications  

  • Bachelor’s degree in information technology, cybersecurity, or a related field; Master’s degree preferred. 

  • Minimum of 6 years of experience in cybersecurity and risk management roles. 

  • Strong understanding of IT security frameworks and regulatory requirements.  

  • Executive Communication Skills: Proven experience in presenting risk management findings and recommendations to executive committees, risk oversight bodies, and boards of directors. Ability to distill complex information into actionable insights for senior leaders. 

  • Excellent problem-solving, analytical, and critical thinking skills to effectively respond to shifting priorities, demands and timelines 

  • Leadership and Influence: Demonstrated ability to engage, influence, and collaborate with senior executives and cross-functional teams to drive strategic risk initiatives and foster a risk-aware culture. 

  • Cyber and Enterprise Risk Management Expertise: Deep understanding of cyber and ERM principles and frameworks (e.g., NIST, ISO, COSO, COBIT) with experience  

  • Relevant certifications such as Certified Information Systems Security Professional (CISSP) or Certified Risk and Information Systems Control (CRISC) are preferred. 

  • Deep understanding of risk management

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Cox Enterprises

View company profile →