Lighthouse Risk Jobs in Usa

3,653 positions found — Page 11

Cyber Security Analyst
Salary not disclosed
Plano, TX 2 days ago

Role: GRC Engineer (OneTrust / NIST) - Mid

Location: Plano, Texas (Hybrid)

Duration: Long Term Contract


Description

We are seeking a hands‑on GRC Engineer & Risk Analytics professional who will implement and scale a NIST‑aligned control and risk framework in OneTrust while also conducting targeted risk and control assessments to validate design and operating effectiveness. Reporting to the TFSB CISO, you will connect process, data, and automation so department leaders can see—and reduce—risk in near‑real time through role‑based dashboards and scorecards. You’ll partner with Security Engineering, IT, Audit, and business control owners to streamline assessments, evidence collection, POA&M tracking, and reporting.


Focus split: approximately 70% OneTrust configuration, integrations, data modeling, and dashboards; approximately 30% targeted assessments and facilitation.


Module ownership on Day 1: OneTrust Integrated Risk Management (IRM) and Third‑Party Risk Management (TPRM).


What you’ll be doing:

Model the control framework in OneTrust: map NIST CSF and NIST 800‑53 control families, control objectives, test procedures, evidence types, and ownership.

Configure assessment templates (application/infrastructure, inherent/residual risk, third‑party due diligence, control attestations) with automated workflows, notifications, and approvals.

Stand up a POA&M lifecycle (defect creation, risk acceptance, due dates, escalations, verifications) and connect to tickets for remediation traceability.

Build role‑based dashboards and departmental scorecards that surface KRIs/KPIs (e.g., control coverage, overdue actions, risk heatmaps, SLA adherence).

Establish data taxonomy and metadata (assets, business processes, data classifications) aligned to controls and obligations to support consistent analytics.

Own the end‑to‑end third‑party risk workflow in OneTrust: inherent risk profiling, tiering, questionnaire selection, and residual risk calculation.

Design and maintain due‑diligence questionnaires and control attestations; streamline evidence collection and follow‑ups via automated reminders and SLAs.

Track remediation and POA&Ms for vendors; manage risk acceptances, exceptions, and expirations with clear ownership and timelines.

Publish vendor scorecards and portfolio‑level insights for department leaders; highlight concentration risk, critical suppliers, and overdue actions.

Integrate TPRM data with IRM objects (assets, processes, controls) to show end‑to‑end exposure and dependencies.

Integrate OneTrust with CMDB, Risk reporting platforms to auto‑enrich risks, controls, and assets.

Define data quality rules and reconciliation checks; implement connectors or API jobs to keep dashboards near‑real‑time and reduce manual evidence collection.

Partner with Analytics to publish curated Power BI datasets for executives and technical teams.

Conduct spot assessments and control testing to validate design and operating effectiveness and calibrate automation.

Translate FFIEC/GLBA/SOX and policy requirements into measurable controls and department‑owned obligations; document rationales and residual risk.

Facilitate remediation planning with control owners; track POA&Ms and risk acceptances to closure with clear RACI and deadlines.

Create playbooks, test scripts, and user guides; run enablement sessions for control owners and assessors to drive adoption.


What you’ll deliver in the first 6–12 months:

A fully modeled NIST-aligned control catalog in OneTrust IRM and TPRM, complete with owners, testing procedures, evidence, and mapped obligations.

3–5 data integrations operational (for instance, CMDB, Archer, Posture Management) enabling automated evidence and asset-to-control mapping.

Departmental scorecards along with an executive dashboard (showing trendlines, heatmaps, top risks, overdue actions, and risk reduction by department).

Enhanced assessment throughput with a reduced cycle time (targeting a 30–40% improvement from baseline).

Improved on-time completion of POA&M (targeting an increase of 20–30%) with a decrease in repeat findings through structured root-cause identification.

Published and operational governance framework artifacts (including a governance calendar, defined roles, training materials, and standard operating procedures).


Requirements:

• 5+ years hands‑on experience implementing/administering GRC platforms (OneTrust preferred; Archer/ServiceNow GRC acceptable with commitment to OneTrust ramp‑up).

• Working knowledge of NIST CSF and NIST 800‑53 and how to translate obligations into measurable controls and tests.

• Experience configuring questionnaires, workflows, object models, APIs, and building role‑based dashboards.

• Data skills in Power BI, SQL, or Python for data prep/transformations that feed analytics.

• Ability to tell the risk story—translate technical signal into business‑relevant insights for department leaders.

• Bachelor’s degree or equivalent practical experience.


Added bonus if you have:

• OneTrust GRC/IRM certifications; CRISC, CISA, or CISSP.

• Prior integrations with ServiceNow, Jira, SailPoint/IDP, Qualys/Tenable, or cloud platforms (AWS/Azure).

• Experience setting up control attestation/evidence automation and KRI/KPI scorecards across business units.

• Background in financial services or familiarity with FFIEC/GLBA/SOX supervisory expectations.

Not Specified
Cybersecurity Specialist
Salary not disclosed
Saint Paul 3 days ago
DivIHN (pronounced “divine”) is a CMMI ML3-certified Technology and Talent solutions firm.

Driven by a unique Purpose, Culture, and Value Delivery Model, we enable meaningful connections between talented professionals and forward-thinking organizations.

Since our formation in 2002, organizations across commercial and public sectors have been trusting us to help build their teams with exceptional temporary and permanent talent.

Visit us at to learn more and view our open positions.

Please apply or call one of us to learn more For further inquiries regarding the following opportunity, please contact our Talent Specialist, Lavanya at (224) 369-0873 Title: Cybersecurity Specialist Duration: 6 Months with a strong possibility of extension or full-time Location: St.

Paul, MN or Abbott Park (North Chicago) Travel: Very limited, possibly 1 2 times during the 6 month period, likely none.

Work Schedule: 8 hours/day, 5 days/week Only W2 candidates are eligible for this position.

Third-party or C2C candidates will not be considered Role Overview The role has a strong focus on medical devices, IoT/sensor-based products, mobile applications, and backend systems, including building security standards, guidance, dashboards, and validating the effectiveness of cybersecurity controls.

Description: As a Senior Cyber Specialist Digital Enablement, you will play an important role in ensuring that Client product technologies leveraged by healthcare providers and consumers are secure-by-design.

These technologies range from regulated medical devices to e-commerce and customer loyalty solutions.

You will evaluate the cybersecurity posture of new and existing product technologies, identify risks, recommend mitigation strategies, and ensure timely remediation and closure.

You will bring deep expertise in security risks, controls, mitigations, and global cybersecurity standards to Client product teams.

This role is expert-driven and guidance-focused, requiring strong technical depth, excellent communication skills, and a proven ability to navigate a large, global environment.

You will partner closely with internal product owners, developers, engineers, security architects, and external collaborators to evaluate solutions, strengthen governance, and guide secure product development.

Your work will directly contribute to the delivery of scalable, compliant, and secure product technologies, cloud services, and connected applications.

The role focuses on consultative responsibilities rather than hands on development or cybersecurity operations.

Primary Responsibilities Develop and maintain security guidance documentation, including standards and frameworks Conduct full-stack architecture reviews of products and platforms, including consumer identity platforms Perform cybersecurity threat modeling and prepare outputs for review by internal and external stakeholders Establish, document, and monitor compliance with risk based and regulatory-informed cybersecurity requirements for individual products Collaborate with product designers and developers to ensure security considerations are integrated early into product design discussions Validate the security of product software supply chains and product deployment pipelines Develop risk mitigation strategies and recommend appropriate security controls Assess and prioritize product security risks through detailed evaluation of vulnerability assessments and penetration testing results Evaluate the effectiveness of product cybersecurity controls Identify and effectively communicate cyber risk trends Ensure risk management plans are clearly documented, actionable, and accurately reflect the organization's risk tolerance Track and ensure product compliance with defined vulnerability remediation SLAs.

Participate in governance forums, architecture reviews, and technical discussions as a representative of Product Cybersecurity Required: At least 5 years of experience but typically 7 plus years of experience is required.

Possess expertise in valuing and implementing industry standards such as the ISO 27001/2, SOC 2, HITRUST and FedRAMP Information Security standard and the ISO 22301 Business Continuity Standard.

Experience with implementation and operational use of GRC toolsets (Governance Risk and Compliance).

Possess CISSP certification (or similar) and be knowledge of national and international regulatory compliances and frameworks such as ISO, SOX, BASEL II, EU DPD, HIPAA, and PCI DSS.

Ability to influence policy/standards for emerging tech (AI, quantum, cloud).

About You 7 years of experience in cybersecurity or technology architecture, assessment, or consulting with a focus on the development of secure digital product technologies Experience conducting risk assessments, control assessments, and governance reporting Ability to clearly articulate cybersecurity risks and recommended mitigations to product development teams Strong understanding of modern technology stacks, including cloud native architectures and API-driven services Understanding of core concepts related to identity and access management, secure software development, network security, and cryptography Familiar with device to device, service to service, and consumer identity and access management practices Familiarity with modern phishing-resistant authentication technologies, including WebAuthn and Passkeys Understanding of cybersecurity risks associated with emerging technologies, including quantum computing and artificial intelligence Knowledge of global medical device regulatory frameworks Excellent analytical, problem-solving, and communication skills Working knowledge of security frameworks and standards (e.g., NIST, ISO/IEC 27001, PCI DSS) Strong collaboration and influencing skills, with the ability to work effectively across technical and business teams Exceptional written and verbal communication skills, with the ability to tailor complex information for diverse audiences Strong analytical and problem solving skills, with the ability to work independently and manage multiple priorities Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Information Assurance, Software Engineering, or a related field but not mandatory if experience is strong Preferred Qualifications Strong preference for candidates with cybersecurity experience across e commerce, mobile apps, IoT, or medical devices.

Preferred certifications include CISSP, HCISPP, CISM, CCSP, SABSA Foundation, CISA, or similar industry-recognized certifications Background in application security, product security, and secure development practices.

Experience supporting mobile applications, sensors, and backend operational systems.

Ability to draft, influence, and operationalize cybersecurity policies and standards.

Reading Static Application Security Testing (SAST)/Dynamic Application Security Testing (DAST) outputs, pen test results; collaborating with teams; no major required internal tools.

Top 3 required skills: Cybersecurity consulting w/ development teams (software/hardware).

Ability to influence policy/standards for emerging tech (AI, quantum, cloud).

Ability to evaluate the effectiveness of cybersecurity controls.

Top 3 preferred skills: Medical device or IoT cybersecurity; development background; broader product security experience.

Certifications: Not required; experience is prioritized over certs.

Industry experience: Medical device preferred; e commerce, IoT, cloud, and mobile app security also acceptable.

Systems used daily: Reading Static Application Security Testing (SAST)/Dynamic Application Security Testing (DAST) outputs, pen test results; collaborating with teams; no major required internal tools.

Personality traits: Curious, detail oriented, collaborative, strong communication, relationship builder.

Interview Process: One Teams Video interview About us: DivIHN, the 'IT Asset Performance Services' organization, provides Professional Consulting, Custom Projects, and Professional Resource Augmentation services to clients in the Mid-West and beyond.

The strategic characteristics of the organization are Standardization, Specialization, and Collaboration.

DivIHN is an equal opportunity employer.

DivIHN does not and shall not discriminate against any employee or qualified applicant on the basis of race, color, religion (creed), gender, gender expression, age, national origin (ancestry), disability, marital status, sexual orientation, or military status.

SOX, ISO, HIPAA, HITRUST, SOC 2, ISO 27001/2, BASEL II, EU DPD
Not Specified
Client Manager, Captives
Salary not disclosed
New York, NY 5 days ago
General

Job Title: Client Manager, Captives

Division: Property Risks

Reports To: As per Beazley's organisation chart

Job Summary:

As a Client Manager, your primary responsibility is to develop new business with assigned large corporations, a journey from the first contact to the first transaction.

  • You will excel in understanding the client risk landscape, their risk management strategy and priorities, and how Beazley's products, solutions and services can be deployed to help them reach their objectives.
  • You will also demonstrate your ability to navigate the broker relationship(s), brokers being key business partners.
  • Your consultative and holistic approach will help you to originate and develop new risk-financing-related business opportunities. Your focus on delivering innovative tailor-made solutions, as a superior alternative to commoditized insurance products will foster the "Customer Experience" and establish new win-win partnerships.
  • Whilst you will be a first-class negotiator with the client and his/her brokers, you will also prove to be a convincing ambassador internally to obtain the buy-in of the senior management, shape, align and lead cross-functional teams for results.

Personal Skills:

  • Entrepreneurial acumen - at ease in taking ownership on how to develop new business
  • Excellent communicator and a skilled diplomat able to find common ground and alignment across internal (underwriting an operations teams) and external (client, brokers) boundaries to bring deals to conclusion
  • Leadership - ability to motivate, stimulate and align the individual members of cross functional teams, with focus on qualitative and timely result delivery
  • Consultative approach talent - excellent listener with ability to identify early potential opportunities and challenges on the marketplace
  • Pragmatism / Solutions-driven - can quickly conceive realistic and practical ways to convert business opportunities into successful execution.
  • Integrity and reliability - trust builder, deliver on promise, honest and transparent, always available and accessible even in adverse situations.
  • Ability to simultaneously drive several transactions with different levels of maturity. Good at keeping the ball rolling, triaging and prioritizing.
  • Intellectual curiosity: embrace the unknown, be ready to learn well beyond insurance and risk management, e.g. client's core business, opportunities, constraints and challenges; data & analytics new developments and applications, etc.

Professional Experience:

  • Extensive proven experience of client relationship management or sales in the large corporate commercial insurance industry (insurance, broking, consulting).
  • At least 2 - 3 year's experience in P&C Underwriting, preferably as a Property Underwriter
  • Proficiency in capital markets instruments and corporate finance, with proven experience in engaging with CFOs and Treasurers.
  • Track record of dealing with complex insurance and innovative risk financing transactions, incl. with (re)insurance captive companies and ART (alternative risk transfer) solutions.
  • Broad industry network with key partners, including corporate risk managers, c-suite leaders, brokers, and insurance professionals
  • Experienced in leading cross-functional teams and aligning multiple parties' interests, while always keeping the client needs at the centre.

Who We Are:

Beazley is a specialist insurance company with over 30 years' experience helping people, communities and businesses to manage risk all around the world. Our mission is to inspire our clients and people with the confidence and freedom to explore, create and build - to enable businesses to thrive. Our clients want to live and work freely and fully, knowing they are benefitting from the most advanced thinking in the insurance market. Our goal is to become the highest performing sustainable specialist insurer.

Our products are wide ranging, from cyber & tech insurance to marine, healthcare, financial institutions and contingency; covering risks such as the weather, film production or protection from deadly weapons.

Our Culture:

We have a wonderful mix of cultures, experiences, and backgrounds at Beazley with over 2,000 of us working around the world.Employee's diversity,experience and passion allow us to keep innovating and moving forward, delivering the best. We are proud of our family-feel culture at Beazley that empowers our staff to work from when and where they want, in an adult environment that is big on collaboration, diversity of thought and personal accountability. Our three core values inspire the way we work and how we treat our people and customers.

  • Be bold

  • Strive for better

  • Do the right thing

Upholding these values every day has enabled us to become an innovative and responsive organization in touch with the changing world around us - our ambitious inclusion & diversity and sustainability targets are testament to this.

We are a flexible and innovative employer offering a friendly, collaborative, and inclusive working environment. We actively encourage and expect applications from all backgrounds. Our commitment to fostering a supportive and dynamic workplace ensures that every employee can thrive and contribute to our collective success.

Explore a variety of networks to assist with professional and/or personal development. Our Employee Networks include:

  • Beazley RACE - Including, understanding and celebrating People of Colour

  • Beazley SHE - Successful, High potential, Empowered women in insurance

  • Beazley Proud - Our global LGBTQ+ community

  • Beazley Wellbeing - Supporting employees with their mental wellbeing

  • Beazley Families - Supporting families and parents-to-be

We encourage internal career progression at Beazley, giving you all the tools you need to drive your own career here, such as:

  • Internal Pathways (helping you grow into an underwriting role)

  • iLearn (our own learning & development platform)

  • LinkedIn Learning

  • Mentorship program

  • External qualification sponsorship

  • Continuing education and tuition reimbursement

  • Secondment assignments

General

It is important that within all your interactions both internally and externally you adhere Beazley's core values - Being Bold, Striving for Better, and Doing the Right Thing as they contribute to an internal environment of teamwork and promote a positive brand image and experience to our external customers." We also expect Beazley employees to:

  • Comply with Beazley procedures, policies and regulations including the code of conduct
  • Undertake training on Beazley policies and procedures as delivered by your line manager, the Culture & People or assurance teams (compliance, risk, internal audit) either directly, via e-learning or the learning management system
  • Display business ethics that uphold the interests of all our customers
  • Ensure all interactions with customers are focused on delivering a fair outcome, including having the right products for their needs
  • Comply with any specific responsibilities necessary for your role as outlined by your line manager, the Culture & People or assurance teams (compliance, risk, internal audit) and ensure you keep up to date with developments in these areas. This may include, amongst others, Beazley's underwriting control standards, Beazley's claims control standards, other Beazley standards and customer relationship management
  • Carry out additional responsibilities as individually notified, either through your objectives or through the learning management system. These may include membership of any Beazley committees or working groups

The Rewards

  • The opportunity to connect and build long-lasting professional relationships while advancing your career with a growing, dynamic organization
  • Attractive base compensation and discretionary performance related bonus
  • Competitively priced medical, dental and vision insurance
  • Company paid life, and short- and long-term disability insurance
  • 401(k) plan with 5% company match and immediate vesting
  • 22 days PTO (prorated for 1st calendar year of employment), 11 paid holidays per year, with the ability to flex the religious bank holidays to suit your religious beliefs
  • Up to $700 reimbursement for home office setup
  • Free in-office lunch, travel reimbursement for travel to office, and monthly lifestyle allowance
  • Up to 26 weeks of fully paid parental leave
  • Up to 2.5 days paid annually for volunteering at a charity of your choice
  • Flexible working policy, trusting our employees to do what works best for them and their teams

Salary for this role will be tailored to the successful individual's location and experience. The expected compensation range for this position is $150,000 - $200,000 per year plus discretionary annual bonus.

Don't meet all the requirements? At Beazley we're committed to building a diverse, inclusive, and authentic workplace. If you're excited about this role but your experience doesn't perfectly align with every requirement and qualification in the job specification, we encourage you to apply anyway. You might just be the right candidate for this, or one of our other roles.

We are an equal opportunities employer and as such, we will make reasonable adjustments to our selection process for candidates that indicate that, owing to disability, our arrangements might otherwise disadvantage them. If you have a disability, including dyslexia or other non-visible ones, which you believe may affect your performance in selection, please advise us in good time and we'll make reasonable adjustments to our processes for you.

Not Specified
Underwriter - Miscellaneous Medical & Life Sciences - South Region
🏢 Beazley Group
Salary not disclosed
Miami, FL 5 days ago
General

Job Title: Underwriter - Miscellaneous Medical

Division: Specialty Risks

Reports To: As per Beazley's organisation chart

Key Relationships: Brokers, Underwriters, Claims staff, Coverholders, external Clients and Suppliers

Job Summary: To underwrite a Miscellaneous Medical & Life Sciences account within the Healthcare Team and provide counsel and advice on Underwriting related issues. Provide technical expertise in this business area and maintain and improve market reputation of the Beazley brand.

Key Responsibilities:

Underwriting

  • Develop and underwrite a profitable portfolio of Miscellaneous Medical & Life Sciences business as part of the Healthcare team.
  • Structure tailor-made solutions by considering the team underwriting parameters and underwriting policy and using underwriting knowledge and experience to win new business and retain existing.
  • Monitor premiums, costs and claims ratios per contract and take corrective measures if necessary to ensure long term profitability at account level.
  • Evaluate appropriate risk premium by considering the risk costs, reinsurance cessions, capital exposure as well as the underwriting and general administration costs to ensure profitability, using rating models as applicable.
  • Monitor peer underwriters in their daily work to ensure profitability as well as efficient and cost effective administration of the French and continental European Miscellaneous Medical & Life Sciences account.
  • Monitor and supervise assistants in their daily work to ensure compliance with underwriting philosophy and policy and consistency within the team and Specialty Risks.
  • Comply with Beazley's underwriting control standards for business written through Lloyd's, or Beazley's internal MGAs.
  • Develop a good working relationship with the claims managers on this class of business.

Client Management

  • Advise, assist and service clients on insurance and risk matters to ensure clients' satisfaction.
  • Foster positive relationships with clients to get a mutual understanding of both their and Beazley's needs.
  • Maintenance of good business relationships with brokers.
  • Maintain awareness of overall Beazley product range and take advantages of opportunities to introduce other Beazley products to clients.

General

  • Leverage networking opportunities within the business to develop standardised underwriting policy and best practice within Beazley.
  • Develop best practice and disseminate business and class knowledge within the Healthcare and Specialty Risks team.
  • Work with peers within Healthcare and Specialty Risks to maximise business opportunities and profitability within the department. This will include but not be limited to sharing market information, marketing sources and cross selling opportunities.
  • Share and gather knowledge within the Beazley Group to ensure dissemination of best practice and maximise business opportunities and profitability across the Group.
  • Production of presentations and marketing literature as required.
  • Production of business plans/research documents for the Miscellaneous Medical & Life Sciences account as required.

It is important that within all your interactions both internally and externally you adhere to Beazley's core values - Being Bold, Striving for Better, and Doing the Right Thing - as they contribute to an internal environment of teamwork and promote a positive brand image and experience to our external customers. We also expect Beazley employees to:

  • Comply with Beazley procedures, policies and regulations including the code of conduct
  • Undertake training on Beazley policies and procedures as delivered by your line manager, the Culture & People or assurance teams (compliance, risk, internal audit) either directly, via e-learning or the learning management system
  • Display business ethics that uphold the interests of all our customers
  • Ensure all interactions with customers are focused on delivering a fair outcome, including having the right products for their needs
  • Comply with any specific responsibilities necessary for your role as outlined by your line manager, the Culture & People or assurance teams (compliance, risk, internal audit) and ensure you keep up to date with developments in these areas. This may include, amongst others, Beazley's underwriting control standards, Beazley's claims control standards, other Beazley standards and customer relationship management
  • Carry out additional responsibilities as individually notified, either through your objectives or through the learning management system. These may include membership of any Beazley committees or working groups

Personal Specification:

Skills and Abilities

  • Proficient underwriting skills
  • Accurate and numerate
  • Computer skills - good working knowledge of MS Office, advanced Excel skills
  • Strong analytical skills with attention to detail
  • Able to communicate effectively with others, both verbally and in writing
  • Ability to manage time, meet deadlines and prioritise
  • Motivational skills

Knowledge and Experience

  • General commercial and financial knowledge
  • Experience in insurance industry
  • Experience of Healthcare underwriting
  • Thorough knowledge of underwriting policy, philosophy and practice
  • Advanced knowledge of underwriting processes and systems
  • Client service experience

Aptitude and Disposition

  • Result focused, self-motivated, flexible and enthusiastic
  • Professional approach to interact successfully with managers/colleagues/external suppliers
  • Team worker as well as able to work on own initiative
  • Customer focused, with a strong ethic of service and fairness to the customer

Competencies

  • Achievement drive
  • Analytical thinking
  • Strategic thinking
  • Service focus
  • Team working
  • Forward thinking
  • Conceptual thinking
Essential Criteria
  • Minimum 5 years of underwriting experience in healthcare-related insurance segments such as Miscellaneous Medical, Allied Healthcare, or Healthcare Professional Liability, including risk assessment, pricing, and portfolio management.
  • Advanced analytical and financial skills with the ability to interpret underwriting guidelines, perform exposure evaluations, and make data-driven decisions.
  • High proficiency in Microsoft Excel (including pivot tables, VLOOKUP, and complex formulas) and strong communication skills for negotiating terms and presenting underwriting decisions to brokers, clients, and internal stakeholders.

Who We Are:

Beazley is a specialist insurance company with over 30 years' experience helping people, communities and businesses to manage risk all around the world. Our mission is to inspire our clients and people with the confidence and freedom to explore, create and build - to enable businesses to thrive. Our clients want to live and work freely and fully, knowing they are benefitting from the most advanced thinking in the insurance market. Our goal is to become the highest performing sustainable specialist insurer.

Our products are wide ranging, from cyber & tech insurance to marine, healthcare, financial institutions and contingency; covering risks such as the weather, film production or protection from deadly weapons.

Our Culture

We have a wonderful mix of cultures, experiences, and backgrounds at Beazley with over 2,000 of us working around the world.Employee's diversity,experience and passion allow us to keep innovating and moving forward, delivering the best. We are proud of our family-feel culture at Beazley that empowers our staff to work from when and where they want, in an adult environment that is big on collaboration, diversity of thought and personal accountability. Our three core values inspire the way we work and how we treat our people and customers.

  • Be bold
  • Strive for better
  • Do the right thing

Upholding these values every day has enabled us to become an innovative and responsive organization in touch with the changing world around us - our ambitious inclusion & diversity and sustainability targets are testament to this.

We are a flexible and innovative employer offering a friendly, collaborative, and inclusive working environment. We actively encourage and expect applications from all backgrounds. Our commitment to fostering a supportive and dynamic workplace ensures that every employee can thrive and contribute to our collective success.

Explore a variety of networks to assist with professional and/or personal development. Our Employee Networks include:

  • Beazley RACE - Including, understanding and celebrating People of Colour
  • Beazley SHE - Successful, High potential, Empowered women in insurance
  • Beazley Proud - Our global LGBTQ+ community
  • Beazley Wellbeing - Supporting employees with their mental wellbeing
  • Beazley Families - Supporting families and parents-to-be

We encourage internal career progression at Beazley, giving you all the tools you need to drive your own career here, such as:

  • Internal Pathways (helping you grow into an underwriting role)
  • iLearn (our own learning & development platform)
  • LinkedIn Learning
  • Mentorship program
  • External qualification sponsorship
  • Continuing education and tuition reimbursement
  • Secondment assignments

The Rewards

  • The opportunity to connect and build long-lasting professional relationships while advancing your career with a growing, dynamic organization
  • Attractive base compensation and discretionary performance related bonus
  • Competitively priced medical, dental and vision insurance
  • Company paid life, and short- and long-term disability insurance
  • 401(k) plan with 5% company match and immediate vesting
  • 22 days PTO (prorated for 1st calendar year of employment), 11 paid holidays per year, with the ability to flex the religious bank holidays to suit your religious beliefs
  • Up to $700 reimbursement for home office setup
  • Free in-office lunch, travel reimbursement for travel to office, and monthly lifestyle allowance
  • Up to 26 weeks of fully paid parental leave
  • Up to 2.5 days paid annually for volunteering at a charity of your choice
  • Flexible working policy, trusting our employees to do what works best for them and their teams

Salary for this role will be tailored to the successful individual's location and experience. The expected compensation range for this position is $120,000K - $160,000K per year plus discretionary annual bonus.

Don't meet all the requirements? At Beazley we're committed to building a diverse, inclusive, and authentic workplace. If you're excited about this role but your experience doesn't perfectly align with every requirement and qualification in the job specification, we encourage you to apply anyway. You might just be the right candidate for this, or one of our other roles.

Not Specified
Safety Operations Specialist
Salary not disclosed
Palo Alto, CA 3 days ago

About the Role



This position is also open in Singapore; Beijing, China; Shanghai, China. We are looking for a detail-oriented and highly execution-focused Safety Policy Operations Manager to join our international Trust and Safety team.



In this role, you will be responsible for risk monitoring, emergency response, and operational optimization across our global content platform, ensuring content safety, user protection, and regulatory compliance worldwide.



Responsibilities



  • Monitor platform risks and establish risk early-warning mechanisms to enable timely detection and response to critical incidents.
  • Coordinate cross-functional resources to manage risk incidents, including violations, anomalous user behavior, and fraudulent or malicious activities.
  • Work closely with moderation teams to ensure effective implementation of risk mitigation strategies and continuously improve operational processes.
  • Analyze risk data and operational metrics to identify emerging trends, evaluate mitigation effectiveness, and support ongoing improvements in risk governance.



Qualifications



  • Bachelor’s degree or above in any field; background in Computer Science, Data Science, Law, or Public Administration is a plus.
  • 3+ years of experience in internet risk control, Trust & Safety operations, content moderation, or related operational roles.
  • Strong understanding of content safety risks, fraudulent tactics, and common abuse patterns, with hands-on experience handling complex risk scenarios.
  • Strong analytical and execution capabilities, with the ability to drive solutions effectively under pressure.
  • Fluent in English and comfortable working in cross-cultural, multi-time-zone environments.


Preferred Qualifications



  • Experience in Trust & Safety operations, risk control operations, or anti-fraud for content platforms.
  • Experience collaborating with policy teams, moderation teams, vendor teams, or international teams.
  • Experience participating in risk governance or safety initiatives at large internet companies or content platforms.
  • Chinese as a working language.


Pay range and compensation package



Expected compensation details are not provided in the original description.



Equal Opportunity Statement



We are committed to diversity and inclusivity in our hiring practices.

Not Specified
HR Control Director
🏢 GEICO
Salary not disclosed
New york city, NY 3 days ago
HR Control Director

GEICO is seeking a visionary and strategic HR 1st Line of Defense Control/Risk Director to drive risk management and controls across our Human Resources (HR) functions. This high-impact role is designed for an initiative-taking leader who excels in partnership, thrives in collaborative environments, and brings a strong action-oriented approach. The ideal candidate will champion a process mindsetidentifying enhancement and re-engineering opportunities and leveraging AI and automation to deliver efficiency and effectiveness in key HR activities. Most importantly, this leader will demonstrate a \"can do\" mentality, focused on \"getting to yes\" and breaking down barriers to achieve solutions that align with both risk management objectives and business priorities.

Location

This hybrid role requires on-site presence three days per week at one of GEICO's office locations: Chevy Chase, MD; Chicago, IL; Dallas, TX; or New York, NY.

Key Responsibilities
  • Strategic Partnership: Build and nurture strong relationships across HR, business units, and Technology functions to seamlessly integrate risk management into HR initiatives.
  • Risk-Based Approach: Understand and prioritize business needs, applying a risk-based mindset to HR processes and controls.
  • Process Mindset & Innovation: Advocate for process improvement, actively seeking opportunities for enhancement, re-engineering, and leveraging AI or automation to maximize efficiency and effectiveness.
  • Can Do Mentality & Getting to Yes: Approach challenges with optimism, persistence, and resourcefulnessalways striving to find practical solutions and drive consensus that aligns business objectives with risk mitigation.
  • Continuous Improvement: Deliver ongoing transformation within HR controls, supporting business growth and compliance through innovative process changes.
  • Governance and Compliance: Develop, implement, and maintain policies and procedures that fulfill regulatory requirements and uphold internal standards.
  • Team Leadership: Build, guide, and empower a collaborative team focused on designing, monitoring, and remediating HR controls.
  • Stakeholder Communication: Clearly and effectively communicate risk events, issues, and process updates to HR leadership, the Audit Committee, and external auditors.
  • Training and Awareness: Lead educational sessions for HR staff on risk management, controls, and compliance.
Required Skills and Qualifications
  • Bachelor's degree in human resources, business, finance, or a related field; or equivalent relevant experience.
  • 8+ years of experience in risk management, internal controls, or compliance, preferably within HR or large, complex organizations.
  • Demonstrated partnership and collaboration skills, with the ability to influence stakeholders across diverse functions.
  • Initiative-taking, action-oriented mindset with a focus on results and continuous improvement.
  • Process-driven, with the ability to propose and implement enhancement opportunities, including re-engineering and AI/automation.
  • Excellent written and verbal communication skills, with the ability to distill and present complex issues clearly.
  • Strong prioritization skills for thriving in fast-paced, changing environments.
Preferred Qualifications
  • Master's degree in HR, business, or finance (HR certifications or risk management credentials are a plus).
  • Experience with data analysis, process automation, or HR analytics.
  • Background in SOX compliance, forensic audit, or control design relating to HR.

This is an exceptional opportunity to join GEICO during a period of transformationleading impactful change in HR risk management, promoting a culture of \"getting to yes,\" and helping shape the future of our organization.

Annual Salary $146,575.00 - $229,600.00. The above annual salary range is a general guideline. Multiple factors are taken into consideration to arrive at the final hourly rate/annual salary to be offered to the selected candidate. Factors include, but are not limited to, the scope and responsibilities of the role, the selected candidate's work experience, education and training, the work location as well as market and business considerations.

At this time, GEICO will not sponsor a new applicant for employment authorization for this position.

The GEICO Pledge:

Great Company: At GEICO, we help our customers through life's twists and turns. Our mission is to protect people when they need it most and we're constantly evolving to stay ahead of their needs.

We're an iconic brand that thrives on innovation, exceeding our customers' expectations and enabling our collective success. From day one, you'll take on exciting challenges that help you grow and collaborate with dynamic teams who want to make a positive impact on people's lives.

Great Careers: We offer a career where you can learn, grow, and thrive through personalized development programs, created with your career and your potential in mind. You'll have access to industry leading training, certification assistance, career mentorship and coaching with supportive leaders at all levels.

Great Culture: We foster an inclusive culture of shared success, rooted in integrity, a bias for action and a winning mindset. Grounded by our core values, we have an established culture of caring, inclusion, and belonging, that values different perspectives. Our teams are led by dynamic, multi-faceted teams led by supportive leaders, driven by performance excellence and unified under a shared purpose.

As part of our culture, we also offer employee engagement and recognition programs that reward the positive impact our work makes on the lives of our customers.

Great Rewards: We offer compensation and benefits built to enhance your physical well-being, mental and emotional health and financial future.

  • Comprehensive Total Rewards program that offers personalized coverage tailor-made for you and your family's overall well-being.
  • Financial benefits including market-competitive compensation; a 401K savings plan vested from day one that offers a 6% match; performance and recognition-based incentives; and tuition assistance.
  • Access to additional benefits like mental healthcare as well as fertility and adoption assistance.
  • Supports flexibility- We provide workplace flexibility as well as our GEICO Flex program, which offers the ability to work from anywhere in the US for up to four weeks per year.

The equal employment opportunity policy of the GEICO Companies provides for a fair and equal employment opportunity for all associates and job applicants regardless of race, color, religious creed, national origin, ancestry, age, gender, pregnancy, sexual orientation, gender identity, marital status, familial status, disability or genetic information, in compliance with applicable federal, state and local law. GEICO hires and promotes individuals solely on the basis of their qualifications for the job to be filled.

GEICO reasonably accommodates qualified individuals with disabilities to enable them to receive equal employment opportunity and/or perform the essential functions of the job, unless the accommodation would impose an undue hardship to the Company. This applies to all applicants and associates. GEICO also provides a work environment in which each associate is able to be productive and work to the best of their ability. We do not condone or tolerate an atmosphere of intimidation or harassment. We expect and require the cooperation of all associates in maintaining an atmosphere free from discrimination and harassment with mutual respect by and for all associates and applicants.

Not Specified
Compliance Privacy Advisor, Senior Associate
Salary not disclosed
Richmond, VA 2 days ago
Compliance Privacy Advisor, Senior Associate

Capital One's technology transformation has presented an exciting opportunity to usher in leading edge, innovative approaches to compliance risk management working closely with our business partners. Capital One leverages cutting edge technology to further its most dynamic and innovative products. This calls for new and creative ways for us to think about compliance and risk in a way that helps the business succeed safely and quickly. Privacy Compliance is at the center of these activities and performs a key risk management role to ensure the business and corporate initiatives comply with applicable federal, state, and international privacy laws and regulations.

The Process and Governance (ProGov) team sits in the second line of defense, is an integral part of Privacy Compliance and Risk (PC&R), and performs key privacy compliance activities that help to manage privacy risk across the company. The ProGov team is responsible for creating and maintaining external privacy disclosures, internal privacy policies, standards, and procedures; creating enterprise-wide training on a variety of privacy laws and regulations; and developing other tools and processes to facilitate a well-managed privacy program across the company.

The Compliance Privacy Senior Associate performs a key second line of defense role to ensure business lines and corporate initiatives comply with applicable federal and state Privacy laws and regulations related to the use and sharing of customer data. Under managerial supervision, the Compliance Privacy Senior Associate will work closely with the business, legal, tech, and risk partners, and be a resource on issues related to complying with current and emerging privacy laws and managing privacy risk. The advisor will collaborate with an experienced and diverse group of Compliance professionals and help ensure adherence to our Compliance Management Policy by providing advice and effective challenge to our business partners. A successful Senior Associate is highly motivated, enjoys problem solving, and is able to work well in a team environment.

Responsibilities:

  • Assess and document business initiatives that may use or share customer data and determine the need to perform relevant suppression practices
  • Under managerial supervision, provide effective challenge and guidance on compliance risks and support lines of business through various interactions and forum engagements
  • Advise lines of business on application of Compliance requirements, such as: new products, process development, development of controls and monitoring, remediation/corrective action of compliance breakdowns, and change in law or regulation
  • Advise lines of business in the development and maintenance of the Compliance Program, such as how to monitor, report, and train
  • Support lines of business through advice, influence adjustments to the processes, procedures, and controls
  • Review Complaints generated from lines of business and provide guidance on remediation, escalate and facilitate with subject matter experts, when necessary
  • Conduct targeted validations on controls over applicable regulations
  • Involvement with compliance testing and third party compliance, as directed
  • Maintain understanding of Compliance Risk Management Framework and applicable laws and regulations
  • Identify trends in data produced by lines of business
  • Assist in capturing, maintaining, and analyzing compliance data, interpreting it to ensure consistency and adequate Compliance Risk Management
  • Actively participate on projects through providing guidance, advise, and effective challenge
  • Participate in reporting activities, as directed

Basic Qualifications:

  • Associate's Degree or Military Experience
  • At least 1 year of experience in financial services, specifically within accounting, audit, or an analytical disciplined field

Preferred Qualifications:

  • Bachelor's Degree
  • 2+ years of experience in privacy compliance, legal, or risk management.
  • 2+ years of experience in financial services consumer compliance monitoring, risk, or auditing experience.
  • CIPP (Certified International Privacy Professional) or CRCM (Certified Regulatory Compliance Manager) certification

The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

McLean, VA: $94,600 - $107,900 for Compliance Advisory Specialist II

Richmond, VA: $86,000 - $98,200 for Compliance Advisory Specialist II

Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.

Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.

This role is expected to accept applications for a minimum of 5 business days. No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-8 or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

For technical support or questions about Capital One's recruiting process, please send an email to .

Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.

Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).

Not Specified
Compliance Privacy Advisor, Sr. Manager
🏢 Capital One
Salary not disclosed
Richmond, VA 2 days ago
Compliance Privacy Advisor, Sr. Manager

The Capital One Privacy Compliance & Risk team is seeking a Senior Manager with a passion for mitigating privacy risk at a tech-focused financial institution. The Senior Manager will join us to perform key privacy compliance activities on the second line of defense and will help manage privacy risk.

The Compliance Privacy Senior Manager performs a key risk management role to ensure compliance with applicable federal and state Privacy laws and regulations and a growing portfolio of international Privacy laws and regulations. The Compliance Privacy Senior Manager will apply risk, process management, and analytical skills to drive action to support privacy risk objectives. A successful Compliance Privacy Senior Manager is a highly motivated, forward-thinking self-starter who takes ownership, can work autonomously, is quick to adapt, technologically adept, and a committed learner.

Responsibilities:

  • Actively follow privacy trends across the country, including the development of new privacy laws and emerging privacy risks
  • Maintain subject matter expertise of applicable privacy international and domestic laws and regulations, including but not limited to TCPA, TSR, CAN-SPAM, GLBA, FCRA, FACTA, FFIEC guidance, CCPA, and GDPR
  • Provide advice and effective challenge on privacy risks and support business lines through various interactions and forum engagements
  • Actively engage with others within the department, including other subject matter experts and transaction testing team members
  • Advise business lines on application of privacy requirements, development of controls and monitoring, remediation/corrective action of compliance breakdowns, and changes in law or regulation
  • Participate on complex projects by providing guidance, advice, and effective challenge
  • Participate in reporting activities used by Senior Leadership
  • Travel to various Capital One locations as necessary

The ideal candidate will possess:

  • Clear results orientation and focus on achieving both short- and long-term goals
  • A proven track record of supporting and working across business lines and functions and with a senior management team
  • Ability to navigate \"white space\" or ambiguous situations to drive and execute an agenda in a fluid environment
  • Solid teamwork skills: ability to build and leverage the capabilities of a high-performing team
  • Highly developed interpersonal, presentation, and communications skills (written and oral) coupled with strategic influencing skills and the ability to drive agreement through intellect, interpersonal, and negotiation skills
  • Strong judgment, influencing skills, integrity, and discretion in handling highly sensitive issues
  • Ability to effectively challenge first line of defense risk taking, risk assessments, and risk mitigation efforts
  • Successful track record of thriving in both a highly regulated industry and a fast paced, entrepreneurial, and dynamic environment
  • Strong project management, process management, and organizational skills
  • A collaborative, energetic, solution-oriented, and innovative leadership style
  • Ability to balance operating independently with appropriate escalation and interaction with senior leadership
  • Willingness to work as a team player and interact with associates across functions, departments, and job levels, both inside and outside the Compliance Department
  • Understanding of key regulatory and audit requirements and three lines of defense risk management framework

Basic Qualifications:

  • Bachelor's degree or military experience
  • At least 7 years of privacy, compliance, risk management, legal or audit experience

Preferred Qualifications:

  • Juris Doctor or Master's degree
  • 8+ years of privacy, compliance, risk management, legal or audit experience at a financial institution
  • 3+ years of experience in strategic consulting and strategic initiative management
  • 3+ years of people management experience
  • Certified Information Privacy Professional (CIPP), Certified Risk Professional (CRP) or Certified Regulatory Compliance Manager (CRCM)

At this time, Capital One will not sponsor a new applicant for employment authorization for this position.

The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based on the agreed upon number of hours to be regularly worked.

McLean, VA: $170,800 - $194,900 for Compliance Advisor Sr. Manager

New York, NY: $186,300 - $212,700 for Compliance Advisor Sr. Manager

Richmond, VA: $155,300 - $177,200 for Compliance Advisor Sr. Manager

Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.

This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.

Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website.

Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.

Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace.

Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-8 or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

For technical support or questions about Capital One's recruiting process, please send an email to .

Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.

Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).

Not Specified
Information Security Manager
✦ New
Salary not disclosed
Norfolk, VA 1 day ago

Information Security Manager

Norfolk, VA


About Titan America

Titan America LLC (NYSE: TTAM), a TITAN Group Company, is one of the premier producers of cement and building materials in the eastern United States and the North American subsidiary of the TITAN Group. With a history spanning over 100 years, Titan America has consistently delivered innovation, operational excellence, and sustainable solutions. Our comprehensive portfolio—including cement, aggregates, fly ash, ready-mix concrete, and specialty admixtures—serves diverse customer needs across commercial, industrial, and infrastructure markets.


We have an excellent opportunity within our IT department at our Corporate Office in Norfolk, VA.


Role Overview

The Information Security Manager is responsible for leading and executing the organization’s information security program with a strong focus on regulatory compliance, risk management, governance, and strategic enablement of the business. This role serves as the primary owner and stakeholder for IT and Information Security compliance initiatives, including SOX, U.S. Coast Guard regulatory requirements, and enterprise security governance, while providing leadership across mergers and acquisitions, internal audit engagement, and enterprise security communications.

The position balances hands-on program management, strategic planning, and people leadership, ensuring security initiatives align with organizational objectives, regulatory obligations, and evolving threat landscapes.


Key Responsibilities

Security Governance, Risk, and Compliance

  • Own and manage IT and Information Security compliance tools and platforms (e.g., AuditBoard), ensuring effective evidence collection, control mapping, issue tracking, and reporting.
  • Act as the primary IT/Information Security SOX Compliance Owner and Stakeholder, partnering with Finance, Internal Audit, and external auditors to ensure timely and effective control execution.
  • Lead U.S. Coast Guard (USCG) cybersecurity and regulatory compliance efforts, ensuring adherence to applicable maritime, industrial, and critical infrastructure security requirements.
  • Develop, maintain, and oversee information security policies, standards, procedures, and guidelines to ensure regulatory compliance and alignment with industry’s best practices.
  • Provide oversight and coordination for Information Security internal and external audits, including remediation planning, validation, and executive reporting.


Mergers, Acquisitions, and Enterprise Risk

  • Lead Information Security due diligence for mergers, acquisitions, divestitures, and integrations.
  • Assess cybersecurity risk posture of target organizations and define remediation and integration roadmaps.
  • Partner with Legal, Finance, IT, and business leadership to ensure security risks are identified, communicated, and managed throughout transaction lifecycles.


Strategic Planning and Program Execution

  • Define and execute the Information Security strategic roadmap aligned to business objectives, regulatory requirements, and enterprise risk tolerance.
  • Translate security strategy into measurable initiatives, roadmaps, and key performance indicators (KPIs).
  • Serve as a trusted advisor to business leaders, enabling secure business operations, innovation, and growth.
  • Provide Information Security program management oversight, including initiative prioritization, resource planning, and progress reporting.


Enterprise Communication and Stakeholder Engagement

  • Lead and coordinate security communications across Titan Group / Titan America, ensuring consistent messaging, risk awareness, and executive-level visibility.
  • Prepare and deliver security updates, risk summaries, and compliance status reports to senior leadership and key stakeholders.
  • Partner with IT, Legal, HR, Compliance, and Operations to embed security into enterprise processes and culture.


People Leadership and Professional Development

  • Build, mentor, and develop a high-performing Information Security team.
  • Drive professional growth through targeted training, career development planning, and succession planning.
  • Encourage and support attainment and maintenance of professional certifications and continuous learning.
  • Foster a culture of accountability, collaboration, and continuous improvement.


Training and Awareness

  • Oversee Information Security professional training programs and enterprise security awareness initiatives.
  • Ensure employees, contractors, and third parties understand security responsibilities, regulatory obligations, and risk management practices.


Qualifications

Required

  • A Bachelor's degree in Information Security, Computer Science, Information Systems, or a closely related field, or equivalent relevant experience, is required.
  • 7+ years of progressive experience in Information Security, IT Risk, or Compliance roles.
  • Demonstrated experience managing SOX IT controls, audits, and regulatory compliance programs.
  • Strong knowledge of security governance frameworks (e.g., NIST, ISO 27001, CIS, SOC).
  • Experience with GRC platforms such as AuditBoard or similar tools.
  • Proven ability to manage complex, cross-functional initiatives and executive stakeholders.


Preferred

  • Experience supporting U.S. Coast Guard or maritime/industrial regulatory environments.
  • M&A cybersecurity due diligence and post-merger integration experience.
  • Prior people management and team leadership experience.
  • Strong understanding of enterprise risk management and internal audit practices.


Professional Certifications (Preferred or Supported)

  • CISM, CISSP, CRISC, CISA
  • GIAC certifications
  • PMP or other program/project management certifications


Key Competencies

  • Strategic thinking and execution
  • Regulatory and audit leadership
  • Risk-based decision making
  • Executive communication and influence
  • Program and portfolio management
  • Talent development and team leadership


Success Measures

  • Effective and timely completion of SOX, USCG, and regulatory audits with minimal findings
  • Maturity and adoption of security governance and compliance processes
  • Successful integration of security into M&A activities
  • Improved security posture and risk visibility across the enterprise
  • Growth and retention of a highly skilled Information Security team


Join us in shaping the future of building materials with innovation, excellence, and sustainability at our core. Explore more about Titan America's transformative impact by visiting

Not Specified
Head of GIA Investment Performance Measurement and Analytics
Salary not disclosed
Springfield, MA 2 days ago

Head of GIA Investment Performance Measurement and Analytics

Investment Management

Full-Time

New York, NY, Boston, MA or Springfield, MA

The Opportunity

MassMutual Investment Management (IM) seeks a seasoned investment management and operations professional to lead the investment performance function for MassMutual’s General Investment Account (GIA). This role reports to the Head of Manager Oversight and will:

  • Design, and oversee implementation of models, policies, and procedures for a best-in-class performance and attribution reporting function.
  • Help drive strategy and execution of investment performance measurement, attribution, and reporting programs supporting MassMutual’s Board, CIO, and other key stakeholders.
  • Help shape market commentary and attribution narratives for internal and external stakeholders, including affiliate managers and GPs.
  • Complete the feedback loop for MassMutual Investment Management in the performance space by collaborating with teams supporting product profitability analysis and PMs managing ALM and capital allocation decisions.

The Team

The Manager Oversight team is part of IM’s Strategy and Governance organization, reporting to MassMutual’s CIO. The team oversees IM’s asset manager relationships and functions, including manager operational due diligence, investment mandate onboarding & lifecycle management, and investment performance. Adjacent teams handle business strategy and planning, vendor oversight, investment compliance, and investment reporting for MassMutual’s Board & Investment Committee.

The Impact and Key Responsibilities:

Lead MassMutual’s investment performance measurement, attribution, and reporting function for a $250B+ General Investment Account (GIA). In this role you will be on the starting line to help influence, design and implement a state-of-the-art performance measurement and attribution capability. This senior leadership role requires strategic planning, influence, executive visibility, and the opportunity to transform performance analytics and attribution capabilities for a prestigious insurance company.

  • Evolve existing practices and refresh methodologies, assumptions, and models to introduce new and industry best practice approaches for presenting performance across products, asset classes, and instruments.
  • Lead strategic platform rationalization and evaluate performance engines to enhance analytics.
  • Provide technical expertise in portfolio management, finance, capital markets, and investment performance reporting, guiding decisions to align with market standards.
  • Contribute to portfolio reporting and attribution by applying experience across asset classes and investment strategies, ensuring liability-driven investment strategies and ALM models are accurately derived and validated.
  • Collaborate directly with portfolio managers and lead teams to achieve strategic alignment across functions, simplifying complex income and return objectives under liability constraints while maintaining precision and accuracy in reporting.
  • Manage the evolution of the program to maximize total-portfolio view and coverage for GIA reporting, expanding capabilities important to investment team members.
  • Help develop a long-term roadmap to unlock value and greater ROI for the Performance program, including performance monitoring as a compensating control for financial reporting.
  • Help drive the development of reporting standards for leadership and Board materials, framing investment successes, market impacts, and risk-adjusted performance drivers.
  • Help with the design of data integration between IBOR/ABOR systems and performance engines to optimize data validation, reporting efficiency, and portfolio transparency.
  • Lead strategic initiatives to align performance reporting with insurance industry practices, NAIC classifications, and risk-based capital requirements, ensuring compliance and strategic flexibility.
  • Serve as a trusted advisor to the CIO and Senior Leadership Team, influencing investment strategy communication and Board-level reporting.

The Minimum Qualifications

  • Bachelor’s degree in STEM, Finance-Accounting, Actuarial Science, or related field.
  • 10+ years in investment management with progressive experience focusing on performance measurement, attribution, and reporting.
  • 5+ years in leading teams and/or investment strategy and decision-making for an asset owner, allocator or investment advisor, in a role focused on: investment performance, attribution and analysis; portfolio management; product management or research; portfolio strategy or securities research [investment selection].
  • Experience with liability-driven investment strategies, including ALM frameworks, duration matching, and immunization techniques.
  • Experience designing, building, and calibrating investment return, valuation, or risk models for capital allocation in multi-asset portfolios.
  • Advanced Excel and quantitative modeling; familiarity with GIPS® standards and compliance; strong understanding of risk-adjusted return metrics (TWR, IRR, Brinson attribution, factor attribution).
  • Ability to integrate cash flow projections and liability schedules into performance analytics; can source index and reported market yields or returns as benchmarks, model, select “best-fit,” and defend rationale in Q&A with investment professionals.
  • Deep knowledge of fixed income, structured credit, private credit, and alternative investments; understanding of insurance asset management and regulatory frameworks; working knowledge of NAIC and statutory accounting preferred.
  • Expertise in designing attribution models that incorporate liability benchmarks; ability to optimize portfolios for duration and convexity matching; strong leadership and stakeholder engagement across investment, actuarial, and risk teams.
  • Proven ability to establish and maintain strong relationships with peers and key partners throughout the organization and in their external, professional networks.

Familiar with full spectrum of geographic and credit risk demographics: IG, HY, and Distressed; NA, EMEA, APAC; Developed or Emerging Markets.

Technical Skills Covering:

  • Multi-Asset (total portfolio) Total-Return Presentation and Public Market Benchmark Selection
  • Relative-Spread, Relative-Yield, and Relative-Market/Index Return Comps (Alts-Benchmarks)
  • Bond-Factor Analytics (and to a lesser extent, Equity-Factors)
  • Duration-Adjusted Return Modeling
  • Portfolio Hedge Attribution: Global Asset-Country and FX Risk; Key-Rate Risk: Default Risk

The Ideal Qualifications

  • Master’s degree in STEM, Finance, Quantitative Analytics, or MBA; CPA or actuarial credentials for ALM depth a plus.
  • CFA, CIPM or equivalent designation strongly preferred; CAIA or FRM a plus.
  • Deep familiarity with Global Investment Performance Standards (GIPS®); experience managing GIPS verification and composite construction for liability-driven portfolios.
  • Proven ability to implement automation for performance and ALM reporting; experience with data governance and integration of liability projections into performance dashboards.
  • Experience configuring, and testing platforms integrated across the investment ecosystem, such as Performance Engines (SS&C Advent Geneva/APX, Eagle Performance, Clearwater Analytics), Portfolio Management and IBOR Platforms (BlackRock Aladdin, SimCorp Dimension, Charles River IMS), ALM & LDI Tools (Bloomberg PORT, proprietary actuarial systems, Beacon), and Instrument Cashflow and CP-Credit Risk Modeling Services (Intex, Moody’s, S&P).
  • Experience implementing BlackRock PBOR

Experience with majority of investments or instruments in: Gov & Corporate Debt, Bank Loans, PE Sponsor and Non-Sponsored Mid-Market Loans and Private Credit, Commercial & Residential Real Estate Debt, Consumer/Retail and Real Estate ABS, Structured ABF, Structured Credit, CLOs/CDOs, Municipal Bonds, Private LP’s, Direct-PE.

Technical Skills Covering:

  • Private Equity & Equity-Pacing Models
  • Cash-Weighted Returns (IRR and realized-CF holding-period yield)
  • Capital-Multipliers (for closed & evergreen portfolios/private-alts strategies)

#LI-LC1

MassMutual is an equal employment opportunity employer. We welcome all persons to apply.

If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need.

California residents: For detailed information about your rights under the California Consumer Privacy Act (CCPA), please visit our California Consumer Privacy Act Disclosures page.
permanent
jobs by JobLookup
✓ All jobs loaded