Specialist, Risk Management, Group 42 (G42)

Apply for this job

Email *
Executive Name *

Job Description

The Specialist, Risk Management at Group 42 (G42) is responsible for identifying, assessing, and managing information security and technology risks across the organization. The position protects the organization through risk management which includes cybersecurity protection, vendor management, and control gap identification while following enterprise risk frameworks and regulatory requirements and industry best practices. The position supports governance activities through continuous monitoring and risk reporting to enhance the complete security framework of the organization.

Job ID: 2735

Date Posted: NA

Expiration Date: NA

Apply: Click Here

Main Duties

  • Security risk assessments for all organizational systems and applications and their cloud-based environments. 
  • Cybersecurity risks that exist across their infrastructure and data protection systems as well as their AI systems and emerging technologies.
  • Manage and maintain the Information Security Risk Register while tracking remediation activities and closure timelines.
  • Perform vendor and third-party risk assessments, including security reviews, compliance checks, and continuous monitoring processes.
  • Prepare risk reports and dashboards for leadership while aligning with ISO, NIST, and COBIT frameworks.

Essential Qualifications

  • Bachelor’s degree in Information Security, Computer Science, Risk Management, or a related field.
  • 5–8 years of experience in Information Security, Technology Risk, IT Audit, or Vendor Risk Management.
  • Possesses a deep understanding of cybersecurity principles and risk assessment methods and industry-standard control frameworks.
  • Experience with cloud security risks and SaaS environments and the evaluation of SOC 2 and ISO 27001 reports.
  • Demonstrates proficiency in Governance Risk and Compliance GRC tools while possessing advanced analytical and reporting abilities.

Preferred Qualifications

  • Professional certifications such as CISM, CRISC, CISSP, or CISA. The individual possesses knowledge of quantitative risk modeling techniques. 
  • Demonstrates effective stakeholder management abilities together with strong communication skills. 
  • Necessary skills to work in enterprise-scale environments which include AI technology.