Randstad Digital Americas · 11 hours ago
Cyber Risk Metrics & KRI Design Lead
Randstad Digital Americas is seeking a Cyber Risk Metrics & KRI Design Lead, a senior-level individual contributor responsible for defining and driving the adoption of enterprise security performance metrics. The role involves partnering with cyber domain leaders to translate technical security outcomes into business-relevant language for executive leadership and managing the full lifecycle delivery of metrics from strategy to implementation.
Information Technology & Services
Responsibilities
Lead the design and ongoing evolution of the enterprise security metric taxonomy, ensuring consistent definitions for KRIs and KPIs
Build and maintain a security metrics library detailing definitions, formulas, risk mapping, and escalation logic
Ensure all metrics align with the enterprise risk appetite, security strategy, and regulatory expectations
Facilitate working sessions and workshops with security leaders to drive alignment on performance expectations and ownership
Define and build repeatable metric operational procedures, including refresh cycles, validations, and approvals
Maintain metric reporting calendars and ensure metric owners provide inputs within defined timelines
Track metric completion, dependencies, and exceptions
Serve as a reliable point of contact for stakeholders seeking metric clarification or audit support
Maintain and validate dashboards in Power BI, Tableau, or Qlik, ensuring visual consistency and accurate annotations
Produce recurring executive and operational reporting packages, including monthly security scorecards and risk reports
Provide deep-dive analysis beyond the numbers, identifying trend drivers, root causes, and leading indicators
Perform rigorous quality checks to validate data integrity, including variance analysis and logic validation
Establish controls and QA checkpoints to ensure metrics are accurate, consistent, and traceable to systems-of-record
Partner with engineering teams to automate metric feeds and reduce manual reporting efforts
Enforce metric governance to reduce 'metric sprawl' and maintain documentation
Qualification
Required
Experience: 8+ years in cybersecurity metrics, risk reporting, GRC, or business intelligence supporting InfoSec. (Minimum 5 years for operational focus)
Technical Proficiency: Advanced Excel skills (formula checks, variance analysis)
Proficiency in at least one BI tool (Power BI, Tableau, or Qlik)
Expert-level PowerPoint skills for executive storytelling
Domain Knowledge: Strong understanding of security domains such as SOC/IR, Vulnerability Management, IAM/PAM, Cloud Security, and AppSec
Industry Experience: Prior banking or financial institution experience is a significant asset
Communication: Ability to translate technical security data into business-relevant narratives for executives
Precision: A data-quality mindset with high attention to detail for detecting anomalies
Organization: Comfort managing recurring deadlines and structured refresh cycles
Facilitation: Strong workshop leadership skills to align multiple stakeholders on metric definitions
Benefits
Medical
Prescription
Dental
Vision
AD&D
Life insurance offerings
Short-term disability
401K plan
Company
Randstad Digital Americas
Randstad Digital is a trusted digital enablement partner that facilitates accelerated transformation for businesses by providing global talent, capacity, and solutions across specialized domains.