We’re the World’s largest tool company. We’re industry visionaries. We’re solving problems and advancing the manufacturing trade through innovative technology and our Industry 4.0 Initiative. We are committed to ensuring our state-of-the-art “smart factory” products and services provide greater quality to our customers & greater environmental and social value to our planet. We are unique in that we have a rich and storied history dating back to 1843, but that hasn't stopped us from evolving into a vibrant, diverse, global growth company.
Cyber Risk Analyst
Location
United States
Posted
4 days ago
Salary
Not specified
No structured requirement data.
Job Description
Role Description
As a Cyber Risk Analyst – BCP/IT DR Specialist, you’ll be part of our Corporate Cyber Security team working as a remote employee. The Cyber Risk Analyst – BCP/IT DR Specialist is responsible for supporting and enhancing the organization’s Business Continuity Planning (BCP) and IT Disaster Recovery (DR) programs. This role will:
- Assess cyber risks
- Develop and maintain BCP/DR strategies
- Coordinate testing and exercises
- Ensure compliance with regulatory requirements
- Collaborate with cross-functional teams to identify potential threats
- Evaluate the effectiveness of existing controls
- Recommend improvements to minimize business disruption and data loss in the event of a cyber incident or disaster
Qualifications
- Strong understanding of BCP/IT DR program management and risk governance
- Knowledge of risk management frameworks and standards (ISO 27001, NIST)
- Experience with BT and OT environments
- Minimum 5 years in IT risk management, cybersecurity, or BCP/IT DR
- Demonstrated experience managing IT DR programs in complex organizations
Requirements
- Investigate and understand the BCP/IT DR capabilities across the organization
- Document BCP/IT DR risks and issues according to the defined risk management framework
- Partner with leadership to determine risk appetite in accordance with BCP/IT DR risks
- Develop, maintain, and enhance the governance process for BCP/IT DR standards, processes, and documentation
- Partner with business owners to implement and manage BCP/IT DR programs, including testing and continuous improvement
- Conduct gap analyses and recommend enhancements for BCP/IT DR controls
- Create and monitor program metrics for operational performance for leadership consumption
- Create and monitor Key Risk Indicators (KRIs) to track risk exposure
- Support and oversee the execution of risk assessments
- Collaborate with embedded risk managers and the Cyber Security Organization to align initiatives and address risks
- Analyze and execute policy exceptions, ensuring appropriate risk acceptance and mitigation
- Maintain risk governance documentation, dashboards, and reports
- Stay informed on emerging risks, regulatory changes, and best practices
Benefits
- Medical, dental, life, vision, disability, 401(k), Employee Stock Purchase Plan, paid time off, and tuition reimbursement
- Discounts on Stanley Black & Decker tools and other partner programs
Job Requirements
- Strong understanding of BCP/IT DR program management and risk governance
- Knowledge of risk management frameworks and standards (ISO 27001, NIST)
- Experience with BT and OT environments
- Minimum 5 years in IT risk management, cybersecurity, or BCP/IT DR
- Demonstrated experience managing IT DR programs in complex organizations
- Investigate and understand the BCP/IT DR capabilities across the organization
- Document BCP/IT DR risks and issues according to the defined risk management framework
- Partner with leadership to determine risk appetite in accordance with BCP/IT DR risks
- Develop, maintain, and enhance the governance process for BCP/IT DR standards, processes, and documentation
- Partner with business owners to implement and manage BCP/IT DR programs, including testing and continuous improvement
- Conduct gap analyses and recommend enhancements for BCP/IT DR controls
- Create and monitor program metrics for operational performance for leadership consumption
- Create and monitor Key Risk Indicators (KRIs) to track risk exposure
- Support and oversee the execution of risk assessments
- Collaborate with embedded risk managers and the Cyber Security Organization to align initiatives and address risks
- Analyze and execute policy exceptions, ensuring appropriate risk acceptance and mitigation
- Maintain risk governance documentation, dashboards, and reports
- Stay informed on emerging risks, regulatory changes, and best practices
Benefits
- Medical, dental, life, vision, disability, 401(k), Employee Stock Purchase Plan, paid time off, and tuition reimbursement
- Discounts on Stanley Black & Decker tools and other partner programs