- Lead security risk assessments across the company — identify, analyze, and prioritize risks across engineering, IT, operations, and business functions
- Maintain a risk register and a clear, current view of Muon's risk posture for leadership
- Partner with teams across the company to drive remediation of identified risks and track them to closure
- Assess the security risk of new tools, vendors, third parties, and architectural or process changes before adoption
- Define and apply a consistent risk framework and methodology — likelihood and impact scoring, risk acceptance, and exceptions
- Map risks and controls to compliance requirements such as NIST 800-171 and CMMC, and support audits and assessments
- Report risk trends and metrics to leadership and recommend where to invest to reduce the most risk
- Help teams build risk-aware processes and take ownership of the risks they hold