Lead Adobe’s Security Risk and Governance program by advancing the security risk strategy through qualitative and quantitative analysis.
Improve decision-making using security insights, data analytics, and modeling to validate the organization’s risk landscape.
Manage Adobe’s Security Management framework, integrate industry-leading risk measurement models, and provide senior leadership with actionable insights.
Drive the Security Policy & Procedures framework and transform the PSOP program to align technical risks with business outcomes.
Maintain and enhance Adobe’s security risk framework, ensuring accurate risk capture, prioritization, and compliance with regulatory changes.
Lead the Security Governance and Policy program, aligning policies and standards with input from Security Architecture, Adobe CCF, Cyber Operations, and Product Security.
Apply industry risk frameworks (e.g., FAIR, OCTAVE, NIST RMF, ISO 27005) to governance processes and quantify risks in financial terms to support executive decision-making.
Requirements
10+ years of experience in Security Risk Management (or 13+ years with a Bachelor's degree).
3-5 years of experience managing high-performing teams.
Expertise in security risk management models (e.g., FAIR, OCTAVE, NIST RMF, ISO 27005) and regulatory frameworks.
Proficiency in threat modeling, data analytics, AI/ML, and automation tools for risk analysis.
Strong knowledge of security concepts, tools, industry trends, and vulnerabilities.
Experience with complex security policies and standards (e.g., Cloud Architecture, Vulnerability Management).