Lead, Governance, Risk & Compliance
Skills
AdoptionBusiness Continuity PlanningCSFIdentity And Access ManagementInformation ProtectionLabelsPrevention
What the job involves
The main requirements, responsibilities and hiring steps.
Requirements
- Bachelor’s degree in Business or Information Systems or equivalent experience
- 5+ years in cybersecurity compliance or risk management or 7+ years related industry experience
- Experience leading cybersecurity projects and programs
- Experience working with cybersecurity tools methodologies and technologies
- Experience supporting cybersecurity programs within manufacturing environments
- Familiarity with cybersecurity risks in industrial operations
- Understanding of network and computing vulnerability management IAM and PAM
- Familiarity with Sarbanes Oxley SSAE 18 SOC reports NIST CSF ISO27001 and CMMC
- Strong interpersonal collaboration and communication skills
- Program management and organizational skills
- Ability to author policy documents and provide business risk assessments
- Ability to identify sensitive information such as PII PHI and clinical data
- Demonstrated experience working across organizations to resolve conflicts
- Demonstrated experience with organization-wide communications
- Demonstrated experience managing and documenting security risks
Nice to have
- Hands-on
- Collaborative
- Strategic
- Influential
- Detail-oriented
- Executive-facing
Day to day
- Oversee cybersecurity governance risk management and compliance programs with a strong focus on data protection and security awareness training
- Lead implementation of data classification data loss prevention information protection and data governance capabilities while partnering with business stakeholders to safeguard sensitive information
- Build and maintain cybersecurity risk registers governance frameworks policies metrics and executive reporting while supporting audits manufacturing security and cross-functional initiatives
