Enterprise Security And Privacy Risk ManagerUnder limited supervision, deliver RGA’s enterprise security and privacy risk strategy, policies, standards and best practices approach aligned with RGA's security and privacy needs. Ensure assigned information requests are processed and completed within a defined response timeframe. Assist in tracking of incoming requests with appropriate GSPO, IT, and business stakeholders.
Follow up on any activities identified to meet associated due dates to ensure they are completed timely.Responsibilities:Assist with resolving security and privacy matters that impact business operations:Assist with execution and maintenance of security and privacy programs in the assigned regionsAdvise and liaise as needed with regional Risk Oversight on security and privacy matters including driving risk assessments and promoting risk appetites across regional multiple businessesAssist with security and privacy risk reporting for RGA including but not limited to regulators, internal and external auditorAssist with developing and implementing frameworks and approaches for identifying and reporting global risk, and enabling the business while establishing an effective and appropriate security and privacy environment for the organization:Communicate difficult concepts and collaborate with business and GSPO matters related with security and privacyPropose changes to existing policies and procedures to ensure effective risk mitigation, operating efficiency, and regulatory complianceAssist with establishing governance structures that will serve to support the enterprise security and privacy frameworks, improve the overall risk management competency and capability enterprise wide, and use subject matter expertise to resolve complex business challenges and promote best practices to improve business processes and mitigate risk across a broad geographic areaConsult to major application initiatives positively impacting the achievement of objectives, and leads or participates in high profile cross functional project teams with moderate resource requirements, risk, and/or complexity, while ensuring security and privacy issues are taken into account and addressed early, including external RFP’sAssist in the management of enterprise security and privacy programs and communication for designated area of responsibility.Participate in security and privacy architectural review process that evaluates exceptions requests against accepted standards and business needs.Advocate for data privacy, data protection, and information risk management best practices working with all other appropriate stakeholders and works as a liaison with regional regulatory authorities as required.Lead special projects to enhance communication and the business experienceAssist with Incident response, management, reporting and documentationRequirements:EDUCATION AND EXPERIENCERequired:Bachelor’s degree or equivalent related experiencePreferred:IAPP CertificationCISSP, CISA,CISM CertificationExperience and SkillsRequired:4+ years experience in security, privacy, fraud, or data safeguarding methods.Intermediate knowledge of the security, privacy, and fraud fields best practices and associated program policies.Basic knowledge of global standards and regulations regarding security, privacy, and fraud.Intermediate ability to learn and stay current on data privacy, data security, and fraud threats and vulnerabilities.Intermediate ability to be flexible when needed, take initiative, and demonstrate accountability.Intermediate oral and written communication skills demonstrating ability to share and impart knowledge.Intermediate ability to quickly adapt to new methods, work under tight deadlines and stressful conditions.Intermediate ability to set goals and handle multiple tasks, clients, and projects simultaneouslyIntermediate ability to appropriately balance priorities, deadlines, and deliverablesIntermediate ability to work well within a team environment and participate in department/team projectsIntermediate ability to balance detail with departmental goals/objectivesIntermediate ability to foster customer service as neededIntermediate negotiating and persuasion skillsStrong interpersonal, presentation, verbal and written communication skills with the ability to effectively interact with internal and external business partnersKnowledge of Microsoft Office Suite and other business-related software systems, including processing systems and applicationsStrong business communication and soft skillsAdvanced skills in MS Word, Excel, Visio, PowerPoint, and SharePointAbility to quickly adapt to new methods, work under tight deadlines and stressful conditionsAdvanced investigative, analytical and problem-solving skillsAdvanced ability to set goals and handle multiple tasks, clients, and projects simultaneouslyAbility to work well within a team environment and participate in department/team projectsAdvanced ability to translate business needs and problems into viable/accepted solutionsStrong technical writing skills and experience in creating dashboards or reports for executivesAdvanced ability to liaise with individuals across a wide variety of operational, functional and technical disciplinesCompany OverviewRGA Empowers Employees. It’s one thing to hire smart people, it’s another to empower them. This is one of the most important differences between RGA and its competitors.
RGA empowers its employees to use their intelligence and creativity to find solutions for its customers. To be proactive in their approach to bringing value to our customers.