841,941open jobs
53,762companies
142,138added this week
Browse all
Salary
$160k – $215k per year
Location
In office (New York)
Seniority
Senior · 5+ years exp

Confirmed on the employer's own hiring board on Sep 26, 2026. First seen by Alion on Sep 26, 2026.

Overview
Company
Impact
Profile match
Headquartered in New York City, New York, Bloomberg is a global leader in financial technology, data, and business media. The company is best known for its proprietary Bloomberg Terminal, which provides financial professionals with real-time market analytics, trading tools, and execution capabilities. Through its multi-platform news division, it delivers economic reporting, research, and analysis across television, digital, print, and audio outlets worldwide.

We’re looking for an Information Security Risk Manager who can bring together cybersecurity knowledge, risk management, and strong analytical skills.

Reporting to the Head of Information Security Risk within the Chief Risk Office, you will support independent oversight and credible challenge across the firm’s information security program. You will work closely with colleagues across Information Security, CISO, Engineering, Technology Risk, and Enterprise Risk Management to identify, assess, communicate, and resolve cybersecurity risks.

This role is well suited to someone with a strong foundation in cybersecurity who is looking to broaden their experience within an independent risk oversight function. You will have exposure to a range of security topics, from technical security findings and control effectiveness to cyber resilience, emerging threats, and regulatory requirements. You will help translate technical security risks into clear, actionable insights and support the organization in understanding where controls can be strengthened and risks appropriately managed.

Key Responsibilities

  • Support Second Line oversight and credible challenge of cybersecurity and information security risks across the organization.
  • Assess security risks and consult on the design and effectiveness of security controls across technology initiatives and security programs.
  • Review security programs and initiatives to assess alignment with enterprise risk standards, established security frameworks, and regulatory expectations.
  • Partner with Information Security, CISO, Engineering, Technology Risk, and Enterprise Risk Management teams to strengthen risk awareness, accountability, and control ownership.
  • Analyze security findings, incidents, control weaknesses, and risk scenarios to identify themes, root causes, and opportunities for improvement.
  • Develop practical recommendations to address identified security and control risks.
  • Assist in developing cybersecurity risk assessments, reporting, metrics, and materials for management and governance forums.
  • Monitor emerging cybersecurity threats, regulatory developments, and industry practices and assess their potential relevance to the organization.
  • Participate in risk assessments of areas including cloud security, application security, identity and access management, cyber defense, vulnerability management, and cyber resilience.
  • Build strong relationships across technical and risk teams and provide thoughtful, constructive challenge when appropriate.

Required Qualifications

  • Bachelor’s degree or equivalent professional experience.
  • 5+ years of relevant experience across Security Engineering, Security Architecture, Application Security, Cyber Defense, or a related technical discipline.
  • Working knowledge of cybersecurity risks, controls, and security principles.
  • Experience assessing technology or security risks and communicating findings and recommendations to stakeholders.
  • Familiarity with one or more cybersecurity or technology control frameworks, such as NIST CSF, NIST 800-53, MITRE ATT&CK, ISO 27001, COBIT, or CIS.
  • Strong written and verbal communication skills, including the ability to explain technical risks to both technical and non-technical audiences.
  • Ability to work collaboratively across technology, security, and risk teams.
  • Authorized to work in the United States.

Preferred Qualifications

  • Experience conducting assessments as part of Information Security, Technology Risk, Risk Management, Internal Audit, Security Architecture, or another technology control function.
  • Relevant technical or professional certification such as CISSP, CISM, CRISC, CISA, GIAC, or FAIR.
  • Familiarity with enterprise risk management concepts and risk assessment methodologies.
  • Experience within a regulated industry, including financial services, is helpful but not required.

Core Competencies

  • Strong analytical and problem-solving skills.
  • Technical depth in one or more security domains.
  • Ability to assess information objectively and provide constructive challenge.
  • Clear and concise written and verbal communication.
  • Strong collaboration and stakeholder-management skills.
  • Ability to manage multiple priorities in a fast-moving environment.
  • Attention to detail while maintaining an understanding of broader risk implications.
  • High integrity, sound judgment, and a commitment to independent risk management.

Salary Range = 160,000 - 215,000 USD Annual + Benefits + Bonus

The referenced salary range is based on the Company's good faith belief at the time of posting. Actual compensation may vary based on factors such as geographic location, work experience, market conditions, education/training and skill level.

We offer one of the most comprehensive and generous benefits plans available and offer a range of total rewards that may include merit increases, incentive compensation (exempt roles only), paid holidays, paid time off, medical, dental, vision, short and long term disability benefits, 401(k) +match, life insurance, and various wellness programs, among others. The Company does not provide benefits directly to contingent workers/contractors and interns.

Discover what makes Bloomberg unique - watch our podcast series for an inside look at our culture, values, and the people behind our success.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
841,941 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
New York
$82k per year • Equity • In office • 4+ years exp • Associate's Degree
DevOps
IAM
Apply
$82k per year • Equity • In office • 4+ years exp • Associate's Degree • Butler
DevOps
IAM
Apply
$82k per year • Equity • In office • 4+ years exp • Associate's Degree • Butler
DevOps
IAM
Apply
≈ $116k – $231k per year (Estimated) • In office • 7+ years exp • Bachelor's Degree • Oakland
Management
Agile
Apply
$160k – $183k per year • Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • New York • Denver • Princeton • Indianapolis • Minneapolis
AI/ML
Copilot
AI Agents
LLM
RAG
DevOps
Azure
Cybersecurity
OWASP Top 10
Threat Modeling
Apply
$215k – $290k per year • In office • 10+ years exp • Bachelor's Degree • New York
Cybersecurity
ISO 27001
NIST CSF
NIST 800-53
Apply
$200k – $260k per year • In office • 10+ years exp • United States
AI/ML
Prompt Engineering
AI Agents
Agentic Workflows
Machine Learning
DevOps
GCP
Azure
AWS
Cybersecurity
Okta
MITRE ATT&CK
Exabeam
Microsoft Entra ID
Active Directory
SIEM
Apply
In office
Databases
MS SQL
DevOps
CI/CD
Cybersecurity
ISO 27001
Apply
Hybrid • 5+ years exp
DevOps
IAM
Cybersecurity
NIST CSF
IoT
OPC UA
Apply
Hybrid • 3+ years exp • Bachelor's Degree
Python
PowerShell
DevOps
GCP
Azure
AWS
Cybersecurity
Microsoft Sentinel
ISO 27001
Elastic SIEM
Microsoft Defender
GDPR
SIEM
Apply
$215k – $290k per year • In office • New York
Python
SQL
Cybersecurity
DLP
Apply
In office • 3+ years exp • London
Python
Go
JavaScript
Rust
TypeScript
C++
AI/ML
Model Context Protocol
LLM
RAG
Agentic Workflows
Frontend
npm
DevOps
GCP
Azure
Jenkins
AWS
Docker
Kubernetes
GitHub
Cybersecurity
Semgrep
CodeQL
OWASP Top 10
Apply
$200k – $240k per year • In office • 10+ years exp • New York
DevOps
IAM
Apply
$215k – $290k per year • In office • 10+ years exp • Bachelor's Degree
DevOps
SLI/SLO/SLA
Cybersecurity
ISO 27001
NIST CSF
NIST 800-53
Apply
$135k – $230k per year • In office • 3+ years exp • Bachelor's Degree • New York
AI/ML
Human-in-the-Loop
Machine Learning
Apply
$130k – $160k per year • Hybrid • 5+ years exp • Bachelor's Degree • New York
Management
Outlook
Microsoft Office
Apply
$63k – $68k per year • Hybrid • New York
Management
Agile
Apply
≈ $155k – $297k per year (Estimated) • In office • Full-Time • New York
Apply
≈ $155k – $297k per year (Estimated) • Hybrid • 2+ years exp • Bachelor's Degree • New York
Apply
≈ $78k – $193k per year (Estimated) • In office • High School Diploma • New York
Apply
See all jobs
This is one of many
841,941 more open roles from verified company boards, updated every day.