✦ Luna Orbit — Cybersecurity

Director, Cybersecurity Due Diligence & Assessments

at Reinsurance Group of America

Unknown 💰 $126K – $188K USD / year Posted April 17, 2026
Salary $126K – $188K USD / year
Type Not Specified
Experience executive
Exp. Years 5+ years progressive professional experience (7+ years in a complex global corporation)
Education Bachelor's Degree in Arts/Sciences (BA/BS) or equivalent experience
Category Cybersecurity

This director role leads cybersecurity due diligence and assessment activities within RGA’s Global Security Office. It manages risk reporting and a security risk register, oversees vendor/supplier security risk evaluations, and ensures control validation results are accurately risk-rated and integrated into the security risk management process.

  • Manage team for timely risk management reporting and maintain the security risk register
  • Oversee vendor and supplier security risk evaluation process
  • Lead technical security assessments and control validation with accurate risk interpretation and integration
  • Facilitate cross-functional review of findings to determine risk-based outcomes and remediation resources/timelines
  • Lead cyber security risk management initiatives and participate in GSO governance and process improvement workshops

The technical scope centers on cybersecurity risk assessments and control validation across complex IT environments. The role requires deep understanding of security technologies such as SSO (Single Sign-On), IAM (Identity and Access Management), DLP (Data Loss Prevention), EDR (Endpoint Detection and Response), SIEM (Security Information and Event Management), firewalls, IDS/IPS (Intrusion Detection System / Intrusion Prevention System), CASB (Cloud Access Security Broker), SSDLC (Secure Software Development Lifecycle), cryptography, and PKI (Public Key Infrastructure).

The ideal candidate is a senior cybersecurity leader with 5+ years of progressive experience managing cybersecurity due diligence and assessments in complex IT environments, including 7 years in a complex global corporation. They have advanced knowledge of IT and security domains (SSO, IAM, DLP, EDR, SIEM, IDS/IPS, CASB, SSDLC, cryptography, PKI) and can lead teams managing risk registers, vendor assessments, and control validation with accurate risk ratings.

5+ Years progressive professional experience evaluatingdeliveringand/or managing in a complex IT environment(s)Advanced understanding of IT domains: infrastructurenetworkingstoragedatabasesoperating systemscloudapplicationsetc.Advanced understanding of security technologies and domains including SSOIAMDLPEDRSIEMfirewallsgatewaysIDS/IPSCASBSSDLCcryptographyPKIManaging a team for timely and effective risk management reportingMaintain the security risk registerOversee process to evaluate the security risks associated with vendors and suppliersOversees technical security assessments and other control validation activities with accurate interpretation and risk integration into the security risk management process
security risk registerrisk management reportingsecurity governancecybersecurity risk assessments
security governancesecurity risk management reportingcybersecurity risk assessmentssecurity risk registerrisk thresholdsrisk appetiterating methodologiesvendor risk managementsupplier security risktechnical security assessmentscontrol validationSSOIAMDLPEDRSIEMfirewallsgatewaysIDS/IPSCASBSSDLCcryptographyPKI
security governancesecurity risk management reportingcybersecurity risk assessmentssecurity risk registerrisk management frameworkrisk thresholdsrisk appetiterating methodologiesvendor risk managementsupplier security risk evaluationcross-functional review of findingsrisk-based outcome determinationcontrol validation activitiestechnical security assessmentsrisk ratingSSOSingle Sign-OnIAMIdentity and Access ManagementDLPData Loss PreventionEDREndpoint Detection and ResponseSIEMSecurity Information and Event ManagementfirewallsgatewaysIDS/IPSIntrusion Detection System / Intrusion Prevention SystemCASBCloud Access Security BrokerSSDLCSecure Software Development LifecyclecryptographyPKIPublic Key InfrastructureIT infrastructurenetworkingstoragedatabasesoperating systemscloudapplications
people leadershipcommunicationsoft skillsmaintaining global business relationshipsmentoringdirecting associateshiringtrainingevaluatingcoachingfacilitating cross-functional reviewescalating newly identified risksleading development and implementation of cyber security risk management initiativesparticipating in governance process improvement workshops
Industry Insurance
Job Function Direct cybersecurity due diligence and assessments to drive risk management reporting, vendor assessments, and control validation outcomes.
Role Subtype GRC Analyst
Tech Domains Cybersecurity
DirectorCybersecurity Due Diligence & AssessmentsGlobal Security Office (GSO)security governancesecurity risk management reportingcybersecurity risk assessmentssecurity risk registerrisk thresholdsrisk appetiterating methodologiesvendor risk managementsupplier security risktechnical security assessmentscontrol validationSSOSingle Sign-OnIAMIdentity and Access ManagementDLPData Loss PreventionEDREndpoint Detection and ResponseSIEMSecurity Information and Event ManagementfirewallsgatewaysIDS/IPSIntrusion Detection System / Intrusion Prevention SystemCASBCloud Access Security BrokerSSDLCSecure Software Development LifecyclecryptographyPKIPublic Key Infrastructure5+ Years7+ Yearscomplex global corporation

Bachelor's Degree in Arts/Sciences (BA/BS) or equivalent experience, 5+ Years progressive professional experience evaluating, delivering, and/or managing in a complex IT environment(s), Advanced understanding of IT domains and security technologies/domains listed (SSO, IAM, DLP, EDR, SIEM, firewalls, gateways, IDS/IPS, CASB, SSDLC, cryptography, PKI), People leadership experience managing and directing associates

Apply for this Position →

Get matched to jobs like this

Luna finds roles that fit your skills and career goals — no endless scrolling required.

Create a Free Profile