Files
2026-08-14 17:33:55 +02:00

3.8 KiB

Tasks & work activities — cybersecurity risk manager

Source: O*NET 30.3, occupation 13-1199.04 (Business Continuity Planners).

Task statements

  • [Core] Write reports to summarize testing activities, including descriptions of goals, planning, scheduling, execution, results, analysis, conclusions, and recommendations.
  • [Core] Maintain and update organization information technology applications and network systems blueprints.
  • [Core] Interpret government regulations and applicable codes to ensure compliance.
  • [Core] Establish, maintain, or test call trees to ensure appropriate communication during disaster.
  • [Core] Design or implement products and services to mitigate risk or facilitate use of technology-based tools and methods.
  • [Core] Create business continuity and disaster recovery budgets.
  • [Core] Create or administer training and awareness presentations or materials.
  • [Core] Attend professional meetings, read literature, and participate in training or other educational offerings to keep abreast of new developments and technologies related to disaster recovery and business continuity.
  • [Core] Test documented disaster recovery strategies and plans.
  • [Core] Review existing disaster recovery, crisis management, or business continuity plans.
  • [Core] Recommend or implement methods to monitor, evaluate, or enable resolution of safety, operations, or compliance interruptions.
  • [Core] Prepare reports summarizing operational results, financial performance, or accomplishments of specified objectives, goals, or plans.
  • [Core] Analyze impact on, and risk to, essential business functions or information systems to identify acceptable recovery time periods and resource requirements.
  • [Core] Identify opportunities for strategic improvement or mitigation of business interruption and other risks caused by business, regulatory, or industry-specific change initiatives.
  • [Core] Develop disaster recovery plans for physical locations with critical assets, such as data centers.
  • [Core] Create scenarios to reestablish operations from various types of business disruptions.
  • [Core] Conduct or oversee contingency plan integration and operation.
  • [Core] Develop emergency management plans for recovery decision making and communications, continuity of critical departmental processes, or temporary shut-down of non-critical departments to ensure continuity of operation and governance.
  • [Core] Analyze corporate intelligence data to identify trends, patterns, or warnings indicating threats to security of people, assets, information, or infrastructure.
  • [Supplemental] Identify individual or transaction targets to direct intelligence collection.
  • [Supplemental] Conduct or oversee collection of corporate intelligence to avoid fraud, financial crime, cyber attack, terrorism, and infrastructure failure.

Detailed work activities

  • Advise others on analytical techniques.
  • Analyze budgetary or accounting data.
  • Analyze business or financial data.
  • Apply mathematical models of financial or business conditions.
  • Assess risks to business operations.
  • Develop business or financial information systems.
  • Develop contingency plans to deal with organizational emergencies.
  • Develop emergency response plans or procedures.
  • Develop training materials.
  • Evaluate applicable laws and regulations to determine impact on organizational activities.
  • Gather organizational performance information.
  • Identify strategic business investment opportunities.
  • Investigate legal issues.
  • Maintain data in information systems or databases.
  • Monitor organizational compliance with regulations.
  • Oversee business processes.
  • Prepare operational reports.
  • Prepare research reports.
  • Train personnel in organizational or compliance procedures.
  • Update professional knowledge.