Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Principal, Cyber Security Assurance image - Rise Careers
Job details

Principal, Cyber Security Assurance

This role may be based in NYC, Washington DC, or Chicago.

We are seeking a senior leader to drive the growth of Digital Risks in the United States, with a primary focus on cyber assurance, third-party risk management, and large-scale regulatory compliance audits. In this role, you will collaborate closely with our cyber threat intelligence, advisory, and response teams to expand our digital risk business. Your responsibility will include overseeing the assessment, and improving client cybersecurity programs, ensuring alignment with industry standards and regulatory requirements, and guiding clients through complex third-party audits.

Key Responsibilities

Cybersecurity Program Evaluation

  • Lead cyber assurance engagements, assessing client cybersecurity programs for compliance with industry standards such as NIST, ISO 27001, and other relevant frameworks.
  • Act as a trusted advisor, ensuring client cybersecurity postures are resilient, compliant, and in line with regulatory requirements.

Third-Party Risk Management Audits

  • Oversee large-scale third-party risk and compliance audits, ensuring alignment with industry-specific frameworks, regulatory standards, and contractual obligations.

Regulatory Compliance Audits

  • Oversee regulatory compliance audits to ensure clients meet required standards and regulations.
  • Advise clients on audit preparation and guide them through maintaining compliance while improving cybersecurity measures.
  • Ensure clients' compliance programs address both current and emerging regulatory requirements.

Penetration Testing & Vulnerability Management Support

  • Partner with the penetration testing team to incorporate findings into broader cyber assurance reviews.
  • Lead remediation efforts for high-risk vulnerabilities, aligning them with the client’s overall compliance and cybersecurity objectives.

Client Relationship & Business Development

  • Build and sustain relationships with key stakeholders, especially C-suite executives, positioning Digital Risks as a leader in cyber assurance and regulatory compliance.
  • Identify and capitalize on new business opportunities in cyber assurance, third-party risk assessments, and compliance audits.
  • Provide thought leadership on cyber assurance trends, regulatory updates, and best practices to enhance client relationships and grow the practice.
  • Advise clients on continuously improving their cybersecurity and compliance frameworks based on audit findings and risk assessments.

Practice Development & Team Leadership

  • Recruit, develop, and lead a high-performing team specializing in cyber assurance, third-party risk management, and regulatory compliance.
  • Foster a culture of continuous learning, ensuring the team stays ahead of emerging trends in cybersecurity and compliance.
  • Contribute to the creation of innovative services and solutions to meet clients' evolving needs in cyber assurance and compliance auditing.

Required Qualifications

Experience & Knowledge:

  • 12+ years of experience in cybersecurity, specializing in cyber assurance, third-party risk management, and regulatory compliance audits.
  • Proven track record of leading cyber assurance engagements and guiding clients through risk management and compliance processes based on industry frameworks (e.g., NIST, ISO 27001).
  • Expertise in managing third-party audits and ensuring regulatory compliance across audit lifecycles.
  • In-depth understanding of regulatory frameworks, with hands-on experience delivering compliance audits for both commercial and government sectors.
  • Experience integrating penetration testing and vulnerability assessments into broader cyber assurance strategies.

Education & Certifications:

  • Bachelor's or master’s degree in information security, Computer Science, Engineering, or a related field.
  • Relevant certifications such as CISSP, CISM, CISA, ISO 27001 Lead Auditor, SANS, or other recognized credentials in cybersecurity, third-party risk management, and compliance auditing.

Skills:

  • Strong commercial acumen, with proven ability to generate new business in cyber assurance and regulatory compliance services.
  • Exceptional communication, presentation, and analytical skills with the ability to influence senior stakeholders and deliver impactful insights that improve cybersecurity resilience and regulatory compliance.

The base salary range for this position in Washington DC and Chicago is $180,000-$205,000 per year. The base salary range for this position in New York City is $200,000-$215,000 per year. Exact compensation offered may vary depending on job-related knowledge, skills, and experience.

Control Risks is committed to a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. If you require any reasonable adjustments to be made in order to participate fully in the interview process, please let us know and we will be happy to accommodate your needs.

  • Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarized in the full job offer.
  • Control Risks supports hybrid working arrangements, wherever possible, that emphasize the value of in-person time together - in the office and with our clients - while continuing to support flexible and remote working.
  • Medical Benefits, Prescription Benefits, FSA, Dental Benefits, Vision Benefits, Life and AD&D, Voluntary Life and AD&D, Disability Benefits, Voluntary Benefits, 401 (K) Retirement, Nationwide Pet Insurance, Employee Assistance Program.
  • As an equal opportunities employer, we encourage suitably qualified applicants from a wide range of backgrounds to apply and join us and are fully committed to equal treatment, free from discrimination, of all candidates throughout our recruitment process.
Control Risks Glassdoor Company Review
3.5 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Control Risks DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Control Risks
Control Risks CEO photo
Nick Allan
Approve of CEO

Average salary estimate

$197500 / YEARLY (est.)
min
max
$180000K
$215000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Principal, Cyber Security Assurance, Control Risks

At Control Risks, we’re on the lookout for a Principal, Cyber Security Assurance to help us expand our footprint in the vibrant U.S. cyber environment. This exciting, senior role can be based in bustling cities like NYC, Washington DC, or Chicago. As a leader in cyber assurance and third-party risk management, you'll play a crucial role in guiding our clients through compliance audits while optimizing their cybersecurity programs. Your mission? Ensure that clients meet and exceed industry standards such as NIST and ISO 27001. You’ll be the trusted advisor clients turn to, offering insights that help them strengthen their cybersecurity position and navigate complex regulatory environments effortlessly. Collaboration is key, and you’ll work hand-in-hand with our cyber threat intelligence and advisory teams, conducting assessments and overseeing large-scale audits. You're not just looking for compliance but ways to elevate cybersecurity measures and incorporate findings from penetration testing effectively. With a proactive approach to client relationships, especially with C-suite executives, you'll identify new business opportunities and provide thought leadership on trends within the cyber assurance space. Building and leading a dedicated team is also on your agenda as you foster a culture of continuous improvement and innovation. If you have 12+ years of experience in cybersecurity and meet the qualifications, we want to meet you and help shape the future of smart cyber assurance together!

Frequently Asked Questions (FAQs) for Principal, Cyber Security Assurance Role at Control Risks
What are the responsibilities of the Principal, Cyber Security Assurance at Control Risks?

As a Principal, Cyber Security Assurance at Control Risks, your primary responsibilities will include leading cyber assurance engagements, managing third-party risk audits, and overseeing regulatory compliance audits. You'll act as a trusted advisor to clients, ensuring their cybersecurity programs align with industry frameworks such as NIST and ISO 27001. Additionally, you'll build relationships with key stakeholders and drive business development opportunities.

Join Rise to see the full answer
What qualifications do I need to become a Principal, Cyber Security Assurance at Control Risks?

To qualify for the Principal, Cyber Security Assurance position at Control Risks, you should have at least 12 years of experience in cybersecurity, with a specialization in cyber assurance and regulatory compliance. Relevant degrees in information security, computer science, or engineering are essential, along with certifications like CISSP, CISM, or CISA that demonstrate your expertise in the field.

Join Rise to see the full answer
How does Control Risks approach team leadership in the Principal, Cyber Security Assurance role?

Leading a high-performing team is integral to the Principal, Cyber Security Assurance role at Control Risks. You’ll recruit and mentor team members, fostering a culture of continuous learning and innovation. Your leadership will ensure the team remains at the forefront of emerging trends in cybersecurity and compliance, enhancing overall service delivery to our clients.

Join Rise to see the full answer
What is the salary range for the Principal, Cyber Security Assurance role at Control Risks?

The base salary for the Principal, Cyber Security Assurance role at Control Risks varies depending on the location. In Washington DC and Chicago, the salary range is $180,000-$205,000, while in New York City, it ranges from $200,000-$215,000 per year. Factors such as experience and qualifications may influence the exact compensation offered.

Join Rise to see the full answer
What benefits does Control Risks offer for the Principal, Cyber Security Assurance position?

Control Risks provides a competitively positioned compensation and benefits package for the Principal, Cyber Security Assurance role, including medical, dental, and vision insurance, life and disability benefits, a 401(K) retirement plan, and flexible working arrangements. We also support hybrid working models, valuing in-person collaboration while promoting remote work options.

Join Rise to see the full answer
Common Interview Questions for Principal, Cyber Security Assurance
Can you explain your experience with cyber assurance frameworks?

When answering this question, be sure to discuss your specific experiences with frameworks like NIST and ISO 27001. Mention any relevant projects where you assessed or improved cybersecurity frameworks and how those experiences prepared you for the Principal, Cyber Security Assurance role at Control Risks.

Join Rise to see the full answer
How do you handle compliance audits and what strategies do you employ?

Discuss specific compliance audits you’ve conducted in the past and the strategies you used to ensure adherence to industry regulations. Highlight your role in advising clients on audit preparation and guiding them through the process, showcasing your leadership skills within the realm of cyber assurance.

Join Rise to see the full answer
What is your approach to managing third-party risk?

In your response, outline your methodology when managing third-party risk, and emphasize the importance of establishing strong relationships with vendors. Include examples of how you’ve conducted audits or assessments and helped clients navigate complex risk landscapes.

Join Rise to see the full answer
Describe a challenging cyber assurance engagement and how you overcame it.

Provide a specific instance of a challenging engagement. Detail the obstacles you faced, the actions you took to address them, and the final outcome. This showcases your problem-solving abilities and capacity to manage high-pressure situations effectively.

Join Rise to see the full answer
How do you ensure continuous improvement in a cybersecurity program?

Discuss your methods for evaluating cybersecurity programs regularly, such as utilizing metrics, feedback from audits, and stakeholder input. Mention how you apply learnings from penetration testing and risk assessments to influence and enhance client programs continuously.

Join Rise to see the full answer
What techniques do you use to build relationships with C-suite executives?

Elaborate on your communication and relationship-building techniques, including how you provide valuable insights and demonstrate expertise in cyber assurance. Include examples of successful interactions that led to new business opportunities.

Join Rise to see the full answer
How do you keep up with emerging trends in cybersecurity?

Explain your approach to continuing education and professional development in cybersecurity. Mention relevant publications, workshops, or networks that keep you informed about industry changes, thus ensuring your strategies align with cutting-edge practices.

Join Rise to see the full answer
What leadership style do you employ when managing your team?

Describe your leadership style and how it relates to your role as a mentor and motivator. Discuss your commitment to fostering a culture of continuous learning and teamwork, which is crucial for a role like the Principal, Cyber Security Assurance at Control Risks.

Join Rise to see the full answer
How do you integrate findings from penetration testing with cyber assurance?

Outline your process for reviewing penetration test results and integrating them into broader assurance strategies. Stress the importance of collaborating with the testing teams to ensure vulnerabilities identified are remediated efficiently.

Join Rise to see the full answer
What is your vision for the future of cyber assurance?

Share your insights into the evolving landscape of cyber assurance, including trends that you see influencing the industry. Highlight areas where you believe Control Risks can innovate and lead, ensuring you align your vision with the company’s goals.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 12 days ago

Join Control Risks as a compliance due diligence researcher, leveraging your research skills to identify potential risks for clients.

Photo of the Rise User
Posted 12 days ago

Lead the UK and Europe Security Design Engineering team at Control Risks while developing security strategies for clients across the EMEA region.

Photo of the Rise User
Posted 9 days ago

Join Semperis as a Bilingual Solutions Architect to work with leading cybersecurity technologies and deliver exceptional customer solutions.

Photo of the Rise User
Meijer Hybrid US, Kent County, MI; Michigan, Grand Rapids, MI
Posted 11 days ago

Join Meijer as an IT Associate Manager to lead and develop a high-functioning team within an agile setting.

Photo of the Rise User

Join Emory Healthcare as an Informatics Business Analyst to help improve clinical systems through project coordination and data analysis.

Photo of the Rise User
Danaher Remote Cassina De' Pecchi, Milano, Italy
Posted 2 days ago

Beckman Coulter Diagnostics is looking for a Clinical IT Specialist to enhance their Clinical IT solutions and ensure customer satisfaction.

Photo of the Rise User
Posted 3 days ago
Inclusive & Diverse
Diversity of Opinions
Passion for Exploration
Dare to be Different
Empathetic
Growth & Learning
Paid Holidays
Medical Insurance
Equity
401K Matching
Learning & Development
Social Gatherings
Flex-Friendly
Maternity Leave
Paternity Leave
Sabbatical

Kickstart your journey in cybersecurity with Canva's remote-friendly Security Engineer Internship, designed for aspiring Canvanauts.

Posted 8 days ago

SNC is looking for an IT Support Technician Intern for Summer 2025 who is pursuing a degree related to IT support.

Experts in risk and opportunity Control Risks is a global specialist risk consultancy that helps to create secure, compliant and resilient organisations. Combining unrivalled expertise, experience and reach with the power of data and technology, ...

202 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
March 29, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Euclid just viewed Manager-Compliance at American Express
Photo of the Rise User
58 people applied to SOC Analyst I at Epsilon
Photo of the Rise User
Someone from OH, Mansfield just viewed General Manager(03276) - Littleton NH at Domino's
Photo of the Rise User
Someone from OH, Dayton just viewed Accounts Payable Accountant at Intellihub
Photo of the Rise User
Someone from OH, Dayton just viewed Accounts Payable Associate at Cover Genius
M
Someone from OH, Dayton just viewed Sr Analyst Accounts Payable at Medline
O
Someone from OH, Dayton just viewed Senior Financial Analyst, FP&A at Oura
Photo of the Rise User
Someone from OH, Dayton just viewed Project Planner - Renewable Energy at Zone IT Solutions
Photo of the Rise User
Someone from OH, Loveland just viewed Inside Sales Co-Op at VEGA Americas
Photo of the Rise User
11 people applied to Web Developer (Remote) at B12
T
Someone from OH, Cuyahoga Falls just viewed Claim Operations Specialist Entry Level at Travelers
Photo of the Rise User
Someone from OH, Cuyahoga Falls just viewed EDI Payer Enrollment Coordinator, Health - Remote at Experian
Photo of the Rise User
34 people applied to Cybersecurity Intern at Dewberry
Photo of the Rise User
Someone from OH, Cuyahoga Falls just viewed Data Entry Clerk (Lead Sourcer) at PatSnap
Photo of the Rise User
Someone from OH, Columbus just viewed Regional Vice President - Ohio Valley at Zscaler
V
Someone from OH, Columbus just viewed Remote Virtual Assistant at VirtueStaff
Photo of the Rise User
Someone from OH, Hamilton just viewed Customer Service Agent at Allegiant
P
Someone from OH, Cleveland just viewed Video Editor at ProjectGrowth
Photo of the Rise User
Someone from OH, Columbus just viewed Fullstack Developer at Apex Systems
Photo of the Rise User
Someone from OH, Dayton just viewed Remote Support Engineer at Frontier Technology Inc