In collaboration with the CISO, contribute to maintaining risk registers, control gap analysis, and mitigation strategies aligned with NIST CSF, NIST AI RMF and privacy frameworks; ensure risks, incorporate AI risks and all institutional risks are clearly mapped to HIPAA, FERPA, PCI DSS, and other regulatory obligations, with defensible documentation and audit-ready evidence. Demonstrate knowledge and experience across a broad range of information security management technologies and processes, including identity provisioning, life cycle management, governance, separation of duties analysis, role management, access request systems, privileged access management, entitlement reviews, data loss prevention, firewalls, privacy, and incident response.