Cyber Governance – Advisor II
Fiserv
- Location
- Berkeley Heights New Jersey
- Work model
- On-Site
- Level
- Senior
- Posted
- 16h ago
Skills
About this role
Calling all innovators - find your future at Fiserv. We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants and consumers to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv. Job Title Cyber Governance – Advisor II About your role: As a Cyber Risk Manager, you will help identify, assess, manage, and communicate cybersecurity risk across business initiatives, platforms, and services. You will be a partner with business, technology, and security stakeholders to strengthen control effectiveness, support risk-based decisions, and improve cybersecurity governance. Your work will help align cybersecurity practices with enterprise requirements, regulatory expectations, and applicable industry frameworks.
What you'll do
Support the implementation and ongoing management of cybersecurity policies, standards, and control requirements. Establish and maintain governance processes for the cybersecurity control catalog. Evaluate cybersecurity risks, threats, vulnerabilities, and control gaps, and communicate findings to business and technology stakeholders. Review control design and control effectiveness and track remediation activities through closure. Partner with cross-functional teams to embed security-by-design practices across architecture, infrastructure, applications, projects, and operational processes. Develop and deliver cybersecurity risk reporting, including dashboards, metrics, trend analysis, and summaries for leadership and governance stakeholders. Translate risk, control, issue, exception, and remediation data into clear insights and practical recommendations for decision-making. Responsibilities listed are not intended to be all-inclusive and may be modified as necessary. Experience you'll need to have: 6+ years of experience in cybersecurity, information technology, or technology risk management. 5+ years of experience performing cyber risk assessments, control evaluations, control gap analysis, and remediation tracking. 5+ years of experience developing and delivering cybersecurity risk reporting, dashboards, metrics, and presentations for technical and non-technical stakeholders. Experience interpreting and applying cybersecurity frameworks and guidance, including National Institute of Standards and Technology (NIST), International Organization for Standardization 27001 (ISO 27001), Control Objectives for Information and Related Technologies (COBIT), Federal Financial Institutions Examination Council (FFIEC), Center for Internet Security (CIS) Controls, and Payment Card Industry Data Security Standard (PCI DSS). Experience defining, tracking, and reporting key risk indicators, key performance indicators, and control effectiveness measures. Preferred certifications include Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Auditor (CISA), or equivalent certification-related experience where applicable. Bachelor's degree in information assurance, computer science, business administration, or a related field, or equivalent combination of education, related experience and/or military experience. Experience that would be great to have: Experience working in financial services or another highly regulated industry. Experience supporting policy governance, exception management, and risk treatment activities. Experience preparing risk reporting for leadership, audit, regulatory, or governance committees. Experience using tools for risk reporting, dashboarding, metrics, and issue tracking. How you'll work: This role is on-site Monday