Enterprise Risk Governance Consultant Contract Length: 6-12 months+ Location: Remote – USA (must reside in the US)
We are seeking an experienced Enterprise Risk Governance Consultant to design and implement a comprehensive risk management framework for our client. This role will focus on building scalable, audit-ready governance processes, enabling effective risk identification, prioritization, and ongoing management across the organization. This is an opportunity to play a key role in shaping enterprise-wide risk management practices, driving meaningful impact, and delivering structured, scalable solutions that support long-term business resilience.
Qualifications/Skills:
8+ years of experience in enterprise risk management, including designing risk registers, governance frameworks, and scoring models
Deep experience developing risk scoring and prioritization methodologies (likelihood/impact models)
Proven ability to define and operationalize governance processes and workflows
Strong experience engaging stakeholders and driving cross-functional alignment
Strong documentation skills with the ability to produce audit-ready deliverables
Proven ability to lead knowledge transfer and enablement efforts
Experience working within cybersecurity and enterprise technology risk environments
Strong facilitation and communication skills, including leading workshops and stakeholder sessions
Relevant industry certifications such as CRISC (Certified in Risk and Information Systems Control), CISM (Certified Information Security Manager), CISSP (Certified Information Systems Security Professional), or CGEIT (Certified in the Governance of Enterprise IT) are strongly preferred.
Key Responsibilities:
Design and implement end-to-end risk governance workflows, including risk intake, review, validation, acceptance, mitigation, transfer, and ongoing monitoring
Establish clear roles and responsibilities across risk owners, reviewers, and governance bodies
Develop escalation and reporting processes for high-risk and accepted risks
Partner with stakeholders across business, technology, security, and governance teams to define and validate risk requirements
Facilitate workshops and working sessions to drive adoption of risk frameworks and processes
Support onboarding and documentation of initial risks into the enterprise risk register
Create clear, audit-ready documentation including risk register structure, data definitions, and governance procedures
Define and document risk scoring methodologies, including likelihood and impact models
Provide knowledge transfer and enablement to internal teams to ensure long-term sustainability
Key Deliverables:
Enterprise Risk Register Framework
Standardized risk register template and taxonomy
Risk scoring and prioritization model, including likelihood and impact scales
Risk governance model with defined workflows and decision authorities
Roles and responsibilities (RACI) matrix
Initial population of the risk register reflecting current cybersecurity and technology risks
Final documentation package with operating procedures and guidance for ongoing risk management
Genius Road, LLC is proud to be a Certified Women’s Business Enterprise, an Equal Opportunity Employer and values diversity. All employment is decided on the basis of qualifications, merit and business need.