Lead, Governance, Risk & Compliance

Skills
AdoptionBusiness Continuity PlanningCSFIdentity And Access ManagementInformation ProtectionLabelsPrevention
Role

What the job involves

The main requirements, responsibilities and hiring steps.

Requirements

  • Bachelor’s degree in Business or Information Systems or equivalent experience
  • 5+ years in cybersecurity compliance or risk management or 7+ years related industry experience
  • Experience leading cybersecurity projects and programs
  • Experience working with cybersecurity tools methodologies and technologies
  • Experience supporting cybersecurity programs within manufacturing environments
  • Familiarity with cybersecurity risks in industrial operations
  • Understanding of network and computing vulnerability management IAM and PAM
  • Familiarity with Sarbanes Oxley SSAE 18 SOC reports NIST CSF ISO27001 and CMMC
  • Strong interpersonal collaboration and communication skills
  • Program management and organizational skills
  • Ability to author policy documents and provide business risk assessments
  • Ability to identify sensitive information such as PII PHI and clinical data
  • Demonstrated experience working across organizations to resolve conflicts
  • Demonstrated experience with organization-wide communications
  • Demonstrated experience managing and documenting security risks

Nice to have

  • Hands-on
  • Collaborative
  • Strategic
  • Influential
  • Detail-oriented
  • Executive-facing

Day to day

  • Oversee cybersecurity governance risk management and compliance programs with a strong focus on data protection and security awareness training
  • Lead implementation of data classification data loss prevention information protection and data governance capabilities while partnering with business stakeholders to safeguard sensitive information
  • Build and maintain cybersecurity risk registers governance frameworks policies metrics and executive reporting while supporting audits manufacturing security and cross-functional initiatives