Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Sr. Manager, Information Security

Advance Auto Parts

Role Summary

The Cybersecurity Compliance Manager is responsible for designing, operating, and continuously improving the company’s cybersecurity compliance program within a large-scale retail environment. This role leads the day‑to‑day execution of compliance activities using the OneTrust GRC platform, with a strong focus on automation, controls monitoring, and audit‑ready evidence generation.

Job Description

The Cybersecurity Compliance Manager is responsible for designing, operating, and continuously improving the company’s cybersecurity compliance program within a large‑scale retail environment. This role leads the day‑to‑day execution of compliance activities using the OneTrust GRC platform, with a strong focus on automation, controls monitoring, and audit‑ready evidence generation.

The role ensures enterprise alignment with NIST Cybersecurity Framework (CSF) and regulatory requirements including PCI DSS, HIPAA, and U.S. state privacy regulations (CCPA/CPRA).

This role is hybrid and based in our corporate headquarters in Raleigh, NC.

Key Responsibilities
Cybersecurity Compliance Program Execution
  • Operate and mature the enterprise cybersecurity compliance program aligned to NIST CSF and applicable regulatory frameworks (PCI DSS, HIPAA, CCPA/CPRA).
  • Translate regulatory and framework requirements into clear, monitored internal controls mapped to business systems and processes.
  • Serve as a subject matter expert for cybersecurity control compliance across IT, cloud, retail, e‑commerce, and corporate environments.
  • Lead day‑to‑day use of the OneTrust GRC compliance modules, including:
    • Control libraries and framework mappings
    • Automated evidence collection and surveys
    • Workflow‑driven control testing and remediation tracking
    • Compliance reporting and dashboards
  • Implement and enhance automation to reduce manual effort and eliminate point‑in‑time compliance gaps.
  • Partner with IT, Audit and Security teams to integrate OneTrust with upstream systems where feasible (e.g., vulnerability management, asset inventories).
Controls Monitoring & Assurance
  • Establish and operate a continuous controls monitoring (CCM) model in dynamic retail and cloud environments.
  • Monitor control performance, SLA adherence, and exception trends across in‑scope systems (e.g., PCI environments, customer data platforms).
  • Track control effectiveness metrics and produce regular compliance reporting for leadership.
  • Coordinate and support internal and external audits and assessments, including:
    • PCI DSS attestations
    • HIPAA risk and compliance reviews
    • Privacy regulatory inquiries and assessments
  • Maintain audit‑ready evidence within OneTrust and drive timely remediation of findings.
  • Partner with IT, Internal Audit, Legal, and Privacy to ensure consistent interpretation and execution of control requirements.
  • Work closely with system owners, IT leaders, cybersecurity team, and business partners to ensure controls are properly implemented and operated.
  • Assign control ownership, track accountability, and facilitate risk acceptance where appropriate.
  • Provide guidance and training to control owners on compliance expectations, evidence requirements, and remediation processes.
Required Qualifications
  • 6+ years of experience in cybersecurity compliance, GRC, or IT risk management, preferably in a retail or consumer‑facing enterprise.
  • Strong working knowledge of:
    • NIST Cybersecurity Framework (CSF)
    • PCI DSS
    • HIPAA Security Rule
    • CCPA/CPRA and U.S. privacy obligations
  • Experience supporting audits and regulatory assessments in complex, distributed environments.
Preferred Qualifications
  • Hands‑on experience with OneTrust GRC (or comparable GRC platforms) including compliance automation and evidence workflows.
  • Experience implementing continuous controls monitoring (CCM) or security metrics programs.
  • Retail industry experience supporting point‑of‑sale (POS), e‑commerce, or cardholder data environments (CDE).
  • Familiarity with third‑party risk and vendor compliance monitoring.
  • Relevant certifications (preferred, not required):
    • CISA, CISSP, CRISC, PCI ISA, or similar.
Key Competencies
  • Strong analytical and risk‑based thinking
  • Ability to translate regulatory language into practical, business‑aligned controls
  • Excellent stakeholder communication and influence skills
  • Detail‑oriented with a strong audit and evidence mindset
  • Comfortable operating in fast‑moving, matrixed retail organizations
California Residents Click Below For Privacy Notice

We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity, status as a veteran and basis of disability or any other federal, state or local protected class.

#J-18808-Ljbffr
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Sr. Manager, Information Security in Raleigh, NC vacancy
  •  ...Our Team This position is for a Cloud Product SOC Manager in the Security Center of Excellence for PC and Smart Devices business (...  ...analysis and reporting Perform event correlation using information gathered from a variety of sources within the enterprise... 
    Senior
    Local area
    Immediate start
    Home office

    Lenovo

    Raleigh, NC
    5 days ago
  •  ...Columbus, United States | Posted on 05/19/2026 Atlas Advisors is seeking a Senior Security Manager to provide personnel security, information security, SCIF management, access control, badging, classified document control, and security management assistance in support... 
    Senior
    Temporary work
    Work at office
    Local area
    Overseas
    Relocation package

    Atlas Advisors

    Raleigh, NC
    2 days ago
  •  ...computing power for the connections that are changing business and society. About Our Team This position is for a Senior Manager Software Security in the Security Center of Excellence for PC and Smart Devices business (PCSD). This is an exciting role where you will be... 
    Senior
    Local area
    Home office

    Lenovo

    Raleigh, NC
    5 days ago
  • $170.6k - $390k

     ...practice – the best place in the world to grow your career in information security! The opportunity The Senior Network Security...  ...security operations teams. Join our dynamic team as a Senior Manager in Cybersecurity Engineering, where you will play a pivotal... 
    Senior
    Summer holiday
    Remote work
    Flexible hours

    EY

    Raleigh, NC
    5 days ago
  •  ...A prominent financial services organization is seeking a Sr. Manager to lead its Digital Service Technology Engineering team. This remote role involves managing a team of developers and quality engineers to enhance the Online Banking platform. The ideal candidate will... 
    Senior
    Remote work

    First Citizens Bank

    Raleigh, NC
    3 hours ago
  •  ...Senior Manager, 1LoD Business Controls Manager Under direction of the Director, 1LoD...  ...the control identification for RBC Bank's Securities Based Lending (SBL) products and broader...  ...with control owners Provide informed and valuable risk and control perspectives... 
    Senior
    Flexible hours

    RBC

    Raleigh, NC
    3 days ago
  •  ...Durham, United States | Posted on 08/08/2023 Sr. Technical Project Manager position, based in Durham, North Carolina - We...  ...professional to lead complex projects within the Information Technology - Computer & Network Security industry, specifically those with previous... 
    Senior
    Full time
    Work experience placement

    Career-Mover

    Raleigh, NC
    2 days ago
  • $90k - $105k

    Technology Partner is seeking a Low Voltage Project Manager in Raleigh-Durham, NC. The candidate will manage large scale enterprise security projects including Access Control and CCTV/IP video. With a salary range of $90K - $105K based on experience, the role offers excellent... 
    Senior

    Technology Partner

    Raleigh, NC
    1 day ago
  • $90k - $105k

    Technology-Partner is seeking a Low Voltage Project Manager in Raleigh-Durham, NC, offering an annual salary of $90K - $105K along with...  ...over 5 years of experience managing large scale enterprise security projects and possess strong project management skills. This role... 
    Senior

    Technology-Partner

    Raleigh, NC
    2 days ago
  • Sr. Information Security Risk Analyst [Must Have HIPAA & HITRUST & NIST SP 800-30, NIST SP 800-53] 221 E Lane Street, Raleigh, NC/REMOTE 12 Months Description: The North Carolina Health Information Exchange Authority is seeking a skilled Information Security Risk Analyst... 
    Senior
    Contract work
    Remote work

    Software Technology, Inc.

    Raleigh, NC
    5 days ago
  • 慨正橡扯 seeks an experienced Product Manager to join our Trust and Security team. This role involves leading strategy, discovery, and delivery for innovative products that ensure customer protection and enhance their experience. The ideal candidate will have a minimum of... 
    Senior

    慨正橡扯

    Raleigh, NC
    5 days ago
  • $55.3k - $126k

     ...Booz Allen Hamilton is looking for a Senior SCIF Entry Control Point Manager in North Carolina. This role requires overseeing physical security and ensuring compliance with access control procedures in a SCIF environment. The successful candidate will have over 3 years... 
    Senior
    Flexible hours

    Booz Allen Hamilton

    Raleigh, NC
    2 days ago
  • Instrata is seeking an experienced Project Manager in Raleigh, NC, to drive multiple low-voltage projects. The role involves ensuring project execution, managing client relationships, and mentoring junior professionals. With 7-10 years of experience and strong skills in... 
    Senior
    Work at office

    Instrata

    Raleigh, NC
    1 day ago
  •  ...Labcorp is seeking a Senior Manager, HR Technology (Workday Security) for a team in Durham, NC. The Senior Manager, HR Technology (Workday Security)...  ...foregoing benefits except PTO or FTO. For more detailed information, please click here. Equal Opportunity Employer Labcorp... 
    Senior
    Full time
    Temporary work
    Casual work
    Internship
    Work at office
    Local area
    Monday to Friday
    Flexible hours
    Day shift
    3 days per week

    LAB Labcorp Early Development Laboratories Inc.

    Raleigh, NC
    2 days ago
  • $100.3k - $150.5k

     ...Principal/Sr Principal Software Engineer (*Active TS/SCI required...  ...to support Application Management (AM) Software Development. What...  ...highly self-motivated, reporting information to leads and the customer....  ...Information (SCI) security clearance at the time of application... 
    Senior
    Work experience placement
    Relocation package
    Monday to Thursday
    Shift work

    Northrop Grumman

    Morrisville, NC
    6 days ago
  • $183.62k - $244.83k

     ...Lumen is seeking a Senior Director of Security Architecture & Engineering to lead its cybersecurity architecture for the Public Sector. The position involves setting strategic direction while ensuring compliance with federal standards such as FISMA and FedRAMP. The ideal... 
    Senior
    Remote work

    Lumen Inc

    Raleigh, NC
    2 days ago
  •  ...Atlas Advisors is looking for a Senior Security Manager based in Wiesbaden, Germany, to oversee personnel security and SCIF management. The role includes developing security objectives, conducting security briefings, and managing classified programs. Ideal candidates... 
    Senior
    Overseas

    Atlas Advisors

    Raleigh, NC
    2 days ago
  •  ...Atlassian, and Microsoft. As a Senior Security Engineer at Lucid, you will serve as a...  ...of security controls across Lucid's information systems. Evaluate, recommend, and configure...  ...~ Deep familiarity with identity management solutions such as Active Directory, Azure... 
    Senior
    Remote work

    Lucid Software

    Raleigh, NC
    6 days ago
  •  ...Ensono is looking for a Security Senior Solution Architect to lead security architecture...  ...This role requires strong expertise in information security and active participation in project...  ...with cross-functional teams, manage client security infrastructures, and suggest... 
    Senior
    Remote work

    Ensono

    Raleigh, NC
    5 days ago
  • $172k - $250k

     ...Grant Thornton is seeking a Director of Information Security Audit & Compliance to join the team. Approved office locations can be found below...  ...be responsible for establishing global delivery centers, managing internal and external audits, and ensuring the information security... 
    Internship
    Seasonal work
    Work at office
    Local area
    Flexible hours
    3 days per week

    Grant Thornton

    Raleigh, NC
    4 days ago
  •  ...Please review the following job description: Truist Senior Audit Manager is responsible for providing a leadership role in the...  ...Development Life Cycle (SDLC). Significant knowledge of IT, information security and Cloud management and control frameworks (COSO, COBIT, NIST... 
    Senior
    Full time
    Part time
    Work at office
    Relocation
    Shift work
    Day shift

    Cooper Lighting Solutions

    Raleigh, NC
    2 days ago
  • $89k - $118k

    Sr. Technical Project Manager (Enterprise Operations) Chicago, IL; Denver, CO; Kansas City, MO; Raleigh, NC At MERGE, we are Built Different ....  ...Familiarity working in environments with data privacy, security, and compliance considerations such as GDPR, SOC2, and CCPA... 
    Senior
    Flexible hours

    MERGE

    Raleigh, NC
    5 days ago
  • $130k - $140k

     ...Job Description Role: Manager, Security Operations Location: United States (Hybrid - Durham, NC) Department: Cybersecurity - Security...  ...eligible to participate in an annual incentive program, and information on benefits offered is here. #LI-EB1 Who we are: At... 
    Full time

    Pearson

    Raleigh, NC
    4 days ago
  • $230k - $285k

     ...Director, Senior Counsel - Corporate & Securities (Remote)Applyremote type: Remotelocations...  ...and Assistant Corporate Secretary and manages day-to-day corporate legal work while...  ...disability benefits, and more. For additional information on Company benefits, please visit... 
    Senior
    Contract work
    Remote work

    United Therapeutics

    Raleigh, NC
    2 days ago
  •  ...ideas into reality. We Are Platform Security professionals develop and deliver solutions...  ...based security, and ERP vulnerability management solutions that minimize the impact of...  ...-on" work · Strong understanding of information security management principles, SAP application... 
    Senior
    Contract work
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Raleigh, NC
    6 days ago
  •  ...Description: The Network Engineer III manages the purchase, installation, and support...  ...zones. ~ Knowledge of DNSSEC and secure zone transfers. ~ Knowledge of...  ...with Product Managers, Platform Leads, and Information Security teams, to design and implement... 
    Senior
    H1b
    Work at office
    Local area
    Immediate start
    Remote work
    Visa sponsorship
    Work visa
    1 day per week

    Advance Auto Parts

    Raleigh, NC
    4 days ago
  •  ...in NC, AZ, TX, and VA. This position leads daily engineering, operations, analysis, management, and administration of tools, systems, or processes that secure the Bank's information assets and technology infrastructure. Assesses organizational networks, applications,... 
    Remote work

    First Citizens Bank

    Raleigh, NC
    5 days ago
  • $150k - $180k

     ...150,000.00 - $180,000.00 per year Job Category: Marketing Title: Sr. Director of Franchise Operations – Cluck Face Restaurants LM Restaurants...  ...looking for someone who thrives in fast‑paced environments, can manage multiple moving pieces at once, and knows how to take projects... 
    Senior
    Hourly pay
    Full time
    For contractors
    Home office

    LM Restaurants

    Raleigh, NC
    2 days ago
  • 慨正橡扯 is seeking a Senior Business Engagement Specialist to join our Information Security organization in Raleigh, North Carolina. This role focuses on embedding security principles into the business lifecycle and requires expertise in building relationships across teams... 
    Senior
    Flexible hours

    慨正橡扯

    Raleigh, NC
    5 days ago
  • $148k - $296k

     ...impactful work lead to the same place. We are seeking a Senior Manager, Security Operations to join the firm. The Senior Manager, Security...  ...results and addressing deficiencies. Work with security information and event management (SIEM) to manage/tune the system, create... 
    Senior
    Work at office
    Remote work

    K&L Gates

    Raleigh, NC
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Sr. Manager, Information Security. Be the first to apply!