Jobbeskrivelse
Om jobbet
Stillingsbeskrivelsen fra ACI Risk Measure
About the Role
We are looking for a Cyber Security Quantification Specialist to join our Quantification Services team. This role sits at the intersection of cyber security and financial risk management, translating technical and operational risk into quantifiable financial terms that leadership, the board, and business stakeholders can use to make informed decisions.
You will apply quantitative risk methodologies — such as the FAIR (Factor Analysis of Information Risk) model — to build loss-exceedance curves, estimate expected financial impact of cyber events, and support risk-informed investment and insurance decisions across client organisations. You will also support bespoke cyber risk management projects.
Key Responsibilities
- Apply cyber risk quantification methodologies (primarily FAIR) to model the financial impact of cyber security risks and scenarios.
- Build and maintain loss models, including frequency and magnitude estimates, loss-exceedance curves, and scenario-based analyses.
- Translate technical vulnerabilities, threats, and control gaps into business-relevant financial risk metrics.
- Partner with security, IT, and business teams to gather the inputs (asset value, threat intelligence, control effectiveness) needed for accurate quantification.
- Support risk-based prioritisation of security investments and remediation efforts using quantified data.
- Prepare clear, data-driven reports and presentations of cyber risk exposure for senior leadership, risk committees, and the board.
- Maintain and improve quantification tools, models, and data pipelines used for ongoing risk assessment.
- Support cyber insurance renewal processes by providing quantified loss estimates and risk narratives.
- Stay current on emerging quantification methodologies, industry loss data, and threat trends relevant to financial modelling.
- Contribute to the development of internal risk quantification standards, playbooks, and documentation.
Required Qualifications
- 2–5 years of experience in cyber security risk management, risk analysis, or a related quantitative risk discipline.
- Practical experience applying the FAIR model or comparable cyber risk quantification frameworks.
- Strong understanding of core cyber security concepts (threats, vulnerabilities, controls, incident types).
- Comfortable working with statistical/probabilistic concepts (e.g., Monte Carlo simulation, probability distributions).
- Experience translating technical risk into business/financial language for non-technical stakeholders.
- Strong Excel/data analysis skills is a plus.
- Bachelor’s degree in Cyber Security, Risk Management, Finance, Statistics, Computer Science, or related field (or equivalent experience).
Preferred Qualifications
- FAIR certification (Open FAIR / FAIR Institute) strongly preferred.
- Experience with scripting/data tools (Python, R, or SQL) for building or automating models.
- Familiarity with cyber insurance processes and underwriting data requirements.
- Experience presenting risk findings to executive leadership or board-level audiences.
What We Offer
- Hybrid working model (2-3 days per week at office)
- A centrally located office in the heart of Copenhagen
- Clear career progression path within the Cyber Security / Risk function.
- A supportive work environment, focused on well being and excellence.
How to Apply
If you’re interested in the role, please send your resume and a cover letter to ish@acirm.dk. Please write the name of the position you’re applying for in the subject line.
We’ll be reviewing applications on an ongoing basis, and will close the position when we have found the right candidate.
Kilde: Originalt opslag på Jobnet ↗ · Opslags-ID: 69b1a0e0-47d0-4166-b1c8-58204396a81a