Risk Lead, IT Risk Management
Posted 1ds ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Cisco Risk Lead building AI-enabled IT risk intelligence, assurance, and closed-loop remediation. Guiding resilience, controls, and AI safeguards across Cisco’s technology organization.
Responsibilities:
- Own the IT Risk Management standard and methodology, including risk sensing, aggregation, prioritization, risk appetite, taxonomy, thresholds, and common methods
- Lead the AI-enabled risk intelligence model and define how sub-agents prioritize exposure by business impact
- Provide real-time leadership insight across AI and IT signals
- Define the assurance model for critical service outcomes, failure tolerances, resilience, control effectiveness, and AI lifecycle safeguards
- Challenge disaster-recovery capability through evidence-based testing of objectives, dependencies, and recovery procedures
- Operate the closed-loop model through named owners, action tracking, risk acceptance and escalation paths, and verification of risk reduction
- Feed incidents, test results, and lessons back into standards and design
- Provide technical thought leadership on AI-enabled risk management
- Partner with Software Engineering and leaders across AI + IT, STO, Finance, Security, Compliance, and Resiliency
- Set guardrails, evaluate agent behavior, enable automation and telemetry, and preserve domain ownership of risk decisions and remediation execution
Requirements:
- 12+ years of experience in IT risk, GRC, audit, control assurance, or technology risk program management
- Experience establishing a common risk framework, taxonomy or scoring method, enterprise risk register, and recurring executive review cadence
- Experience partnering with executive team members and domain owners to define RACI, escalation paths, risk acceptance, and decision rights
- Experience working across at least two of: SOX or control assurance, vulnerability management, lifecycle management, business continuity or disaster recovery, application resiliency, CMMC, or GRC or audit
- Bachelor’s degree or equivalent experience in Information Systems, Risk Management, Computer Science, Business, or a related field (preferred)
- Demonstrated experience applying AI, agentic workflows, automation, or sophisticated analytics to technology risk, security, resilience, control assurance, or operations
- Experience with guardrails and human-in-the-loop review
- Experience leading evidence-based resilience, control-effectiveness, or AI lifecycle testing
- Experience connecting fragmented risk or compliance programs into a common operating model
- Experience building closed-loop risk management with named owners, action tracking, verified closure, and risk-reduction measures
- Ability to foster candid communication, balanced debate, and consensus on business-improving decisions
Benefits:
- Medical, dental and vision insurance
- 401(k) plan with a Cisco matching contribution
- Paid parental leave
- Short- and long-term disability coverage
- Basic life insurance
- Cisco restricted stock unit grants may be available
- 10 paid holidays per full calendar year
- 1 floating holiday for non-exempt employees
- Paid employee birthday
- Paid year-end holiday shutdown
- 4 paid personal wellness days
- 16 days of paid vacation per full calendar year for non-exempt employees
- Flexible vacation time off program for exempt employees
- 80 hours of sick time off provided on hire date and each January 1st thereafter
- Up to 80 hours of unused sick time carried forward
- Additional paid time away for critical or emergency family issues
- Optional 10 paid volunteer days per full calendar year
- Annual bonuses for non-sales roles, subject to Cisco policies









