Cybersecurity Program Assurance & Strategy Manager (CISO Office)
Location
New York
Business Area
Legal, Compliance, and Risk
Ref #
10050713
Description & Requirements
Our Team
We protect Bloomberg.
The Program Assurance & Strategy (PAS) team sits within the Chief Information Security Office (CISO) and plays a critical role in shaping how security is measured, understood, and improved across the firm. We operate at the intersection of cybersecurity, data, and strategy, helping leadership make informed decisions about the most important security risks and investments.
Our team partners closely with security, engineering, and risk functions to transform complex inputs into clear, actionable insights that strengthen Bloomberg’s security posture.
What’s in it for you
- This is not a traditional reporting or analytics role.
- You will operate at the intersection of security expertise, data analytics, and executive storytelling, helping elevate how cybersecurity is communicated and acted upon across the firm. You’ll drive a more strategic, insight-driven approach to security oversight, influencing both direction and decision-making.
You’ll own and shape how we:
- Measure the effectiveness of the security program
- Translate complex data into executive-level insights
- Identify systemic trends, risks, and opportunities
- Drive continuous improvement across the CISO organization
We’ll trust you to
- Synthesize qualitative and quantitative inputs across security domains into clear, executive-ready insights
- Develop materials for senior leadership that articulate risks, trade-offs, and strategic recommendations
- Define and evolve how we measure security program effectiveness, including KPIs, KRIs, and maturity indicators
- Identify emerging themes, systemic risks, and areas of improvement across the security landscape
- Lead initiatives that communicate security performance in a data-driven and impactful way
- Partner with domain leaders to challenge, refine, and strengthen program narratives and internal operations
- Drive improvements in reporting frameworks, visualization standards, and data pipelines
- Build strong cross-functional relationships to enhance firmwide security outcomes
- Influence adoption of dashboards, tools, and insights across stakeholders
- Operate across multiple initiatives, balancing strategy, execution, and delivery
You’ll need to have
- 6 – 10 years of experience in strategy, management reporting, cybersecurity, data analytics, or technology program strategy roles
- Strong ability to translate complex data into meaningful insights and narratives
- Experience creating materials for senior leadership and/or executive audiences
- Demonstrated ability to influence stakeholders across technical and business functions
- Proven track record of leading cross-functional initiatives
- Strong analytical thinking, problem-solving, and attention to detail
- Excellent written and verbal communication skills
We’d love to see
- Familiarity with security, engineering, or enterprise risk
- Strong Excel and PowerPoint skills (especially for executive storytelling)
- Experience with AI/ML tools and exploration
- Experience with BI and visualization tools (e.g., Qlik Sense, Qlik Cloud, Power BI)
- Exposure to data pipelines or large-scale data environments
- Understanding of probability, statistics, or quantitative analysis
- Experience designing dashboards or interfaces for insight generation and decision support
- Prior experience in a strategy, consulting, or transformation-oriented role
Why this role matters
- You will help shift the organization from reporting on security to driving strategic security decisions.
- Your work will enable leadership to:
- Focus on what matters most
- Understand risk in a connected, enterprise-wide way
- Make faster, better-informed decisions
Salary Range = 160,000 - 215,000 USD Annual Benefits Bonus
The referenced salary range is based on the Company's good faith belief at the time of posting. Actual compensation may vary based on factors such as geographic location, work experience, market conditions, education/training and skill level.
We offer one of the most comprehensive and generous benefits plans available and offer a range of total rewards that may include merit increases, incentive compensation (exempt roles only), paid holidays, paid time off, medical, dental, vision, short and long term disability benefits, 401(k) match, life insurance, and various wellness programs, among others. The Company does not provide benefits directly to contingent workers/contractors and interns.
We offer one of the most comprehensive and generous benefits plans available and offer a range of total rewards that may include merit increases, incentive compensation (exempt roles only), paid holidays, paid time off, medical, dental, vision, short and long term disability benefits, 401(k) match, life insurance, and various wellness programs, among others. The Company does not provide benefits directly to contingent workers/contractors and interns.
Discover what makes Bloomberg unique - watch our podcast series for an inside look at our culture, values, and the people behind our success.
- Back to Job Search
Synthesize qualitative and quantitative inputs across security domains into clear, executive-ready insights Develop materials for senior leadership that articulate risks, trade-offs, and strategic recommendations Define and evolve how we measure security program effectiveness, including KPIs, KR - Is, and maturity indicators Identify emerging themes, systemic risks, and areas of improvement across the security landscape Lead initiatives that communicate security performance in a data-driven and impactful way Partner with domain leaders to challenge, refine, and strengthen program narratives and internal operations Drive improvements in reporting frameworks, visualization standards, and data pipelines Build strong cross-functional relationships to enhance firmwide security outcomes Influence adoption of dashboards, tools, and insights across stakeholders Operate across multiple initiatives, balancing strategy, execution, and delivery You’ll need to have 6 – 10 years of experience in strategy, management reporting, cybersecurity, data analytics, or technology program strategy roles Strong ability to translate complex data into meaningful insights and narratives Experience creating materials for senior leadership and/or executive audiences Demonstrated ability to influence stakeholders across technical and business functions Proven track record of leading cross-functional initiatives Strong analytical thinking, problem-solving, and attention to detail Excellent written and verbal communication skills We’d love to see Familiarity with security, engineering, or enterprise risk Strong Excel and PowerPoint skills (especially for executive storytelling) Experience with AI/ ML tools and exploration Experience with BI and visualization tools (e.g., Qlik Sense, Qlik Cloud, Power BI) Exposure to data pipelines or large-scale data environments Understanding of probability, statistics, or quantitative analysis Experience designing dashboards or interfaces for insight generation and decision support Prior experience in a strategy, consulting, or transformation-oriented role Why this role matters You will help shift the organization from reporting on security to driving strategic security decisions. Your work will enable leadership to: Focus on what matters most Understand risk in a connected, enterprise-wide way Make faster, better-informed decisions
search terms: Assurance+Security
Local Job Bulletin is an independent Job Search Engine. Local Job Bulletin is not endorsed, sponsored or affiliated with the actual employer of the job. All trademarks, service marks, logos, domain names, and job descriptions are the property of their respective holder.
Assurance Job Openings: Earn $15-$45/Hr. Immediate Hire
New York
Upload your Resume - Let Employers find you!
Local Job Bulletin is an independent Job Search Engine. Local Job Bulletin is not an agent or representative and is not endorsed, sponsored or affiliated with any employer. Local Job Bulletin uses proprietary technology to keep the availability and accuracy of its job listings and their details. All trademarks, service marks, logos, domain names, job descriptions and other company descriptions / details are the property of their respective holder. Local Job Bulletin does not have its users apply for a job on the LocalJobBulletin.com website. Additionally, Local Job Bulletin may provide a list of third-party job listings that may not be affiliated with any employer. Please make sure you understand and agree to the website's Terms & Conditions and Privacy Policies you are applying on as they may differ from ours and are not in our control.;