Find Job

lead, is Risk assessmentsRoyal Caribbean Cruises

Salary: Agreement
Work form: Full time
Posting Date: 10/02/2026
Deadline: 26/06/2021

This job has expired, you can refer to some similar jobs here:


WELCOME TO A CAREER WITHOUT BOUNDARIES
A game-changer in the industry - and for your career: Celebrating 40 years as a leader in the industry, Royal Caribbean International has been Anchored In Excellence, and consistent in providing the best vacations for our guests. Our success is achieved through the incredible talent and collaboration of our shipboard teams, through our large and complex operations; and as we continue to grow and evolve as a company, we always challenge ourselves to innovate and exceed expectations.
OUR VISION
Our vision is to empower and enable our EMPLOYEES to deliver the best vacation experience to our GUESTS, thereby generating superior returns to our STAKEHOLDERS and enhancing the wellbeing of our COMMUNITIES
Position Summary:
Royal Caribbean Group is in search of a Lead, IS Risk Assessments within the GIS department to supervise the evaluation and management of risk involving systems and applications.
The goal of the IS Risk Assessment program is to create and manage an automated, auditable, repeatable, and demonstrable program to manage information security risk to Royal Caribbean Group information assets.
This position assesses the risk of the group's applications and systems using structured interview processes, questionnaires, and review of security, compliance, and data protection documentation.
Essential Duties and Responsibilities:
Supervise the IS risk assessment program intake, assessment, remediation, and risk treatment processes
Create and introduce advanced processes and methodologies of IS risk assessments
Improve IS risk management processes based on changing requirements.
Lead discussions on the history and future perspective of IS risk assessment programs
Lead the establishment of organizational IS risk management policies.
Analyze application and system controls, documentation, and settings to identify information security risks to RCG
Predict security issues and their potential impact on customer operations.
Ensure potential information security and regulatory compliance risks (such as Sarbanes-Oxley (SOX), Payment Card Industry Data Security Standard (PCI-DSS), etc.) associated with systems and applications are examined thoroughly, documented, communicated, treated, and monitored
Create enterprise-wide systems and practices for securing information
Collaborate with RCG business sponsors, technology departments, and third parties (where applicable) to communicate requirements, initiate, conduct, and complete risk assessments in a timely manner
Interact and collaborate with key personnel in various departments including, but not limited to, Procurement, technology departments, Legal, Crisis Management, Compliance and Ethics, Human Resources, Internal Audit, etc
Manage and assist in developing and onboarding IS risk assessment tools, templates, and associated processes to provide transparent reporting on activities and portfolio management.
Participate in established project management office (PMO) protocols to integrate IS risk assessment requirements (initiation, planning, analysis, design, build, test, deploy, closeout, etc.)
Performance of other duties and responsibilities as assigned
Qualifications, Knowledge, and Skills:
Bachelor's in IT / IS, Computer Science, or related discipline is preferred. Non-technical degrees with Computer Science fundamentals will be considered combined with technology experience
At least one Information Security certification such as Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), etc. required
5 years of IT / IS Risk experience
Demonstrated experience in performing audit / compliance assessments.
Experience with internal project consulting to provide compliance and security requirements and guidance
Significant experience in SOX, PCI-DSS, Global Data Protection Regulation (GDPR), Health Insurance Portability and Accountability Act (HIPAA) and other regulatory compliance requirements and controls
Superior written and verbal communication skills required
Display sound judgement with a high level of integrity, ethics, and ability to calmly, diplomatically, and effectively handle stressful situations.
Ability to formulate and communicate exceptions / findings and technical solutions
Proven ability to collaborate with technical and business peers.
Demonstrate a degree of creativity with strong, analytical problem-solving skills
Self-starter able to perform assessments with minimal guidance.
Strong with methodologies, tools, best practices and processes related to IS risk assessments
Ability to work in a fast-paced environment with multiple active projects at one time
Exceptional work ethic and organization skills with a detail oriented approach
Excellent verbal, presentation, and written communication skills for both technical and non-technical audiences
High familiarity with ISO27001/2, NIST, FISMA, PCI-DSS, and other industry standards and frameworks
Fast-paced, fluid, open, and innovative work environment.
Requires flexibility and exceptional interpersonal relationship skills.
Requires up to 20% local travel to meet with internal and/or external RCG business partners.
Requires up to 10% international travel to RCG internal offices and/or RCG ships.
It is the policy of the Company to ensure equal employment and promotion opportunity to qualified candidates without discrimination or harassment on the basis of race, color, religion, sex, age, national origin, disability, sexual orientation, sexuality, gender identity or expression, marital status, or any other characteristic protected by law. RCL and each of its subsidiaries prohibit and will not tolerate discrimination or harassment
We know there's a lot to consider. As you go through the application process, our recruiters and will be glad to provide guidance, and more relevant details to answer any additional questions.
Thank you again for your interest in Royal Caribbean Group. We'll hope to see you onboard soon.
Royal Caribbean Cruises

Other Info

Philippines
Permanent
Full-time

Submit profile

Royal Caribbean Cruises


Position lead, is Risk assessments recruited by the company Royal Caribbean Cruises at , Joboko automatically collects the salary of , finds more jobs on Lead, IS Risk Assessments or Royal Caribbean Cruises company in the links above
  • Employer support:
  • +84 962.107.888