This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
General Motors is seeking a diligent and analytical Senior Risk Mitigation Analyst to join our team. In this pivotal role, you will be responsible for identifying, assessing, and mitigating potential cyber risks across GM. A core aspect of this position involves conducting thorough root cause analyses (RCA) for identified incidents and vulnerabilities, as well as developing, implementing, and tracking corrective remediation plans to enhance our control environment and operational resilience. The ideal candidate will possess strong problem-solving skills, meticulous attention to detail, and the ability to collaborate with cross-functional teams to safeguard the company's assets, operations, and reputation.
Job Responsibility:
Conduct regular risk assessments to proactively identify potential threats (operational, financial, regulatory, etc.) and evaluate their likelihood and potential impact on business objectives
Perform in-depth investigations and root cause analyses on risk incidents and control failures to determine the underlying issues, using methodologies like the 5 Whys or Fishbone diagrams
Develop and propose effective risk mitigation and remediation strategies, collaborating with department heads to implement corrective action plans and ensure sustainable solutions
Maintain a comprehensive risk register to document and track identified risks, their status, and the progress of mitigation and remediation efforts
Prepare detailed reports and presentations on risk analysis findings, emerging trends, and the effectiveness of risk management strategies for senior management and stakeholders
Monitor the effectiveness of existing controls and ensure compliance with industry regulations and internal policies, supporting internal and external audit reviews as needed
Proactively identify opportunities for continuous process optimization and improvements to the overall risk management framework
Requirements:
Bachelor's degree in Finance, Business Administration, Accounting, or a related quantitative field is required
Minimum of 4+ years of experience in cyber risk management, compliance, auditing, or a control-related function
Strong analytical and problem-solving skills, with the ability to interpret complex data, identify patterns, and draw sound conclusions
Expertise in Microsoft Office Suite, particularly Excel, and familiarity with risk management software and data analysis tools (e.g., SQL, Tableau)
Excellent written and verbal communication skills, with the ability to present complex information clearly to diverse audiences
Meticulous attention to detail to ensure accuracy in risk assessments and documentation
Proven ability to work effectively, both independently and as part of a cross-functional team
Nice to have:
Bachelor's degree in a relevant field or equivalent practical experience
4-6 years of cybersecurity experience with at least 3 years in risk mitigation, threat intelligence, or security analysis
Proven expertise in root cause analysis, vulnerability management, and risk mitigation
Strong analytical skills, enabling the interpretation of data to drive informed decisions
Familiarity with security frameworks and standards
Excellent interpersonal skills for effective stakeholder engagement
Solid written and verbal communication abilities
Ability to work collaboratively in cross-functional environments
Relevant certifications such as CISSP, CISA, or equivalent are advantageous