Director of Cyber Security Governance and Risk Management (Boston) Job at MassMutual, Boston, MA

L1Vob080Sy9JVmRPRDhaeCtnUzRIU1Y3ckE9PQ==
  • MassMutual
  • Boston, MA

Job Description

The Opportunity

We are seeking a Director of Cyber Security Governance who will lead the development, implementation, and oversight of a comprehensive cyber governance program at Mass Mutual. This individual will ensure the organization's cyber policies, standards, and processes align with regulatory requirements, industry best practices, and enterprise governance objectives. As a key leader within the Cyber Security team, the Director will drive cross-functional collaboration within the cyber organization and build a culture of compliance.

The Team

The Director of Cyber Security Governance will drive the Cyber organization in achieving its objectives through the proactive evaluation and compliance of program activities and controls that prevent or mitigate the impact of compliance risk.

The Impact - Responsibilities (in partnership with Enterprise Technology & Experience [ETX] Governance & Risk):

Governance & Policy Management:

  • Develop, implement, and maintain cybersecurity policies, standards, and guidelines.
  • Ensure alignment with the enterprise technology governance framework and methodology, along with such frameworks as NIST Cybersecurity Framework (CSF), and ISO 27001.
  • In partnership with the ETX Governance & Risk, establish governance processes to monitor compliance with internal cyber policies and regulatory requirements.

Risk Management:

  • Oversee cyber risk assessment processes, identifying key risks and recommending mitigations.
  • Partner with enterprise governance and risk management to integrate cyber risks into the broader risk management framework.
  • Provide strategic recommendations to leadership on risk acceptance, mitigation, and transfer.

Regulatory Compliance & Audit:

  • Lead efforts to prepare for and respond to internal and external cybersecurity audits.
  • Ensure compliance with industry regulations such as NYDFS, PCI DSS, and data protection laws.
  • Collaborate with legal, compliance, and audit teams to address findings and implement corrective actions.

Metrics & Reporting:

  • Develop and track Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs) related to cybersecurity governance.
  • Prepare and present regular reports to executive leadership on our cyber governance posture.

Leadership & Collaboration:

  • Lead and mentor a team of cyber governance professionals.
  • Collaborate with various stakeholders such as IT, Legal, Compliance, and others to promote a secure culture.
  • Partner with external agencies, consultants, and vendors to stay abreast of emerging risks and best practices.

The Minimum Qualifications:

  • Bachelor’s degree, preferably in information security, Computer Science, Risk Management, or a related field.
  • 8+ years of experience in cybersecurity, with 4+ years in a leadership capacity.

The Ideal Qualifications

  • Deep understanding of cybersecurity frameworks (e.g., NIST, ISO, CIS).
  • Strong knowledge of regulatory requirements.
  • Excellent leadership, communication, and interpersonal skills.
  • Ability to articulate complex cybersecurity concepts to non-technical stakeholders.
  • Proven experience in the insurance or financial services industry is highly desirable.
  • Relevant certifications such as CISSP, CISM, CRISC, CGRC or CGEIT are highly preferred.
#J-18808-Ljbffr

Job Tags

Full time,

Similar Jobs

MedPro Healthcare Allied Staffing

Travel Speech-Language Pathologist - Acute Care - $2,145 per week Job at MedPro Healthcare Allied Staffing

 ...Commission-certified staffing agency, is seeking a quality Speech Language Pathologist for an assignment with one of our top healthcare clients....  ...Current state license as a Speech Language Pathologist / SLP or proactively in the process of the application process for... 

DISH

Retention Call Center Agent - No Experience Necessary Job at DISH

 ...Company Summary Non-Negotiable Base Pay: $20.50/hour + Uncapped Commission 1st Year On-Target Earnings: $68,000. No sales experience required. Paid full-time training provided! Department Summary Our award-winning Inside Sales & Retention team excels at driving... 

PRIDE Health

Travel MRI Technologist (Siemens Sola 1.5) - $3,086 per week Job at PRIDE Health

PRIDE Health is seeking a travel MRI Technologist for a travel job in Sturtevant, Wisconsin. Job Description & Requirements ~ Specialty: MRI Technologist ~ Discipline: Allied Health Professional ~ Start Date: 06/30/2025~ Duration: 13 weeks ~40 hours per ...

The United Green

Extraction Manager Job at The United Green

 ...Job description Job Title: Lab Manager Location: Springfield, Illinois Schedule: MondayThursday, 10-hour shifts Position Summary The Lab Manager is responsible for leading day-to-day cannabis extraction and distillation operations while ensuring all activities... 

Excite Health Partners Allied

Travel CT Technologist - $2,618 per week Job at Excite Health Partners Allied

 ...Manager, and the Radiologist performs technical procedures and assists in the clinical evaluation and care of the patients in a fast-...  ...images and provide their patients with a safe and positive experience. Technologists support teaching and continue learning as the technology...