Manager, Cybersecurity Policy, Risk & Governance
$110k - $130kHowmet Aerospace
Manager, Cybersecurity Policy, Risk & Governance
Howmet Aerospace Inc. has an exciting opportunity to join our dynamic Cybersecurity team as a Manager, Cybersecurity Policy, Risk & Governance. This position will report directly to the Chief Information Security Officer (CISO). This strategic role is responsible for leading the development, implementation, and oversight of our Cyber Policy, Risk & Governance strategy related to evolving cyber regulations and laws.
This role requires deep technical expertise, strong leadership, and the ability to translate complex regulatory and security requirements into scalable, business-friendly solutions. As a subject matter expert in Cyber Policy, Risk & Governance, you will play a pivotal role in ensuring that cybersecurity controls are effectively designed, implemented, and communicated across the organization to protect Howmet Aerospace's global information assets.
Major activities/key challenges:
- Align cybersecurity governance strategy with Howmet's strategic priorities, business strategies, and standard processes.
- Partner with Global Information Services (GIS) directors/teams and functional groups (HR, Legal, Privacy, Trade Compliance, EHS, etc.) to standardize and evolve cybersecurity posture.
- Consult with Business Unit (BU) and Functional Area Leaders to assess governance and risk needs, delivering impactful programs in policy development, training, mentorship, and risk management.
- Lead the global governance and risk management process to support cybersecurity maturity and performance alignment.
- Build, lead, and mentor a high-performing cyber governance & risk team, fostering innovation and accountability.
- Design and deliver training, communications, and tools to support cybersecurity initiatives across GIS and BU teams.
- Develop and implement change management strategies to support adoption of new cybersecurity policies and practices.
- Provide organizational maturity assessments and interventions to enhance cybersecurity capabilities.
- Monitor industry trends, conduct benchmarking, and recommend solutions aligned with Howmet's cybersecurity strategy.
- Collaborate with CIS teams to align business processes and technology platforms for optimal governance and risk outcomes.
- Support the CISO in strategic planning, compliance certifications (e.g., CMMC, ISO 27001), and regulatory interpretation (e.g., NIST 800-171, NIS2, UK Cyber Essentials).
- Create and manage procedures, work instructions, and contribute to corporate cybersecurity policies and standards.
- Track and report performance metrics to guide program investments and continuous improvement.
- Oversee internal teams and external vendors to meet governance and risk objectives within budget and timelines.
- Represent CIS in cross-business planning initiatives and support CISO in governance-related audits, customer inquiries, and leadership engagements.
- Serve as a leadership proxy for the CISO when required.
Essential knowledge, skills, and abilities:
- Proficiency in Microsoft Office Suite (Word, Excel, PowerPoint, Visio, Project, Outlook, SharePoint).
- Expertise in designing and delivering GRC programs and cybersecurity governance frameworks.
- Strong understanding of global cybersecurity laws, regulations, and standards (e.g., NIST CSF & RMF, ISO 27001, TISAX, AirCyber).
- Ability to interpret and apply regulatory requirements to policy development and risk mitigation strategies.
- Skilled in risk tracking and analysis using tools such as risk registers.
- Strong analytical and decision-making capabilities based on data and cybersecurity trends.
- Experience in incident response planning and governance issue resolution.
- Exceptional communication and presentation skills for both technical and non-technical audiences.
- Proven ability to influence and collaborate across all organizational levels without direct authority.
- Experience presenting to executive leadership and boards.
- Deep understanding of IT systems, infrastructure, and cybersecurity technologies.
- Demonstrated leadership, problem-solving, and change management skills in a global, decentralized environment.
Qualifications:
Basic Qualifications:
- Bachelor's degree in business administration, Cybersecurity, Management of Information Systems (MIS), or a related field from an accredited institution.
- At least 5 years of experience leading cybersecurity programs, including 2+ years in cyber governance and risk management in a global organization.
- At least one Industry certifications such as CISSP, ISO 27001, CMMC CCP or equivalent.
- Hands on experience implementing successful ISO27001 certifications
- Must be legally authorized to work in the United States without sponsorship.
Preferred Qualifications:
- Juris Doctor (JD) in Cyber Law, Intellectual Property Law, or related governance field.
- Advanced certifications: CMMC CCA, CISM, ISO 27001 Lead Implementer, ITIL, CRISC, GRC, or CISO-level credentials.
- Experience leading global cyber governance programs in a complex enterprise environment; preferably in a manufacturing environment
Work Location & Travel Requirements This position follows a hybrid or remote work model based on the candidate's proximity to a Howmet Aerospace facility:
- Candidates located within 65 miles of a Howmet facility will be expected to work a hybrid schedule aligned with local site expectations.
- Candidates located outside of a commuting distance may be eligible for remote work, with predetermined travel to the Pittsburgh Howmet Corporate Center (typically one week per month or as business needs require).
- Outside of remote and hybrid location travel schedules, additional travel up to 25% may be required.
Howmet Aerospace reserves the right to modify work location expectations based on evolving business needs
Salary Range: $110k - $130k/year approximation (actual compensation is subject to variation due to factors such as education, experience, skillset, and/org. location).
About Us
Howmet Aerospace Inc. (NYSE: HWM), headquartered in Pittsburgh, Pennsylvania, is a leading global provider of advanced engineered solutions for the aerospace and transportation industries. Our primary businesses focus on jet engine components, aerospace fastening systems, titanium structural parts and forged wheels. With $8.3 Billion in revenue in 2025, our products play a crucial role in enabling fuel efficiency and lightweighting, contributing to our customers' success and making a positive impact on the world.
Equal Opportunity Employer:
Howmet is proud to be an Equal Employment Opportunity employer. We are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or other applicable legally protected characteristics.
If you need assistance to complete your application due to a disability, please email View email address on click.appcast.io
$222.5k - $261.9k
...impact? West Monroe is excited to hire a Cybersecurity - Senior Manager to lead carveout, merger integration, and... ...architecture/design, process & policy creation, security controls implementation, governance/risk/compliance (GRC) standup, resiliency planning...PolicyRiskLocal areaImmediate startFlexible hours- ...Primary Purpose This position manages a section or multiple... ...products or platforms. It balances risk reduction, service quality,... ...outcomes. The Information & Cybersecurity Governance team establishes and... ...executive-ready intelligence, drive policy adoption, enable integrated...PolicyRiskRelocation
- Overview The Global Cybersecurity Governance Senior Manager will be responsible for leading the Information Security... ...and monitor Global Cybersecurity policies, standards, and guidelines to ensure... ...Global Cybersecurity Governance, Risk and Compliance Director. #J-18808-Ljbffr...PolicyRisk
$150k - $175k
...The Global Cybersecurity Governance Senior Manager will be responsible for leading the Information Security Governance... ...of the Global Cybersecurity policies, standards, and guidelines to ensure... ...the Global Cybersecurity Governance, Risk and Compliance Director. The Global...PolicyRiskFull timeWork experience placement- ...Manager, Cybersecurity Governance and Risk, Washington, DC The Manager, Cybersecurity Governance and Risk will lead IT risk management (ITRM) initiatives... ...Manager will also assist in developing methodologies, policies, processes, and tools to support InfoSec and...PolicyRisk
- ...future with United Rentals! The Sr. Manager of Cybersecurity GRC (Gov, Risk Mgt & Comp) is a leader responsible for shaping the firm’s governance, risk, compliance, and data privacy... ...is a hybrid role What you’ll do: Policy, Procedure, and Standards Governance...PolicyRiskHourly payContract workWork at office
- ...Project Manager – IT Security / Cybersecurity Governance Career Developers Inc., a distinguished staffing and consulting... ...established group cybersecurity policies by coordinating audits, managing... ...of applications based on risk and criticality, scheduling reviews...PolicyRiskContract workFor contractorsRemote work
- ...Cybersecurity Manager - SME ECS is seeking a Cybersecurity Manager - SME to... ...executive-level leadership, governance, and accountability for enterprise... ...operational priorities, risk tolerance thresholds, and... ...DoD and ARNG cybersecurity policy. Direct 24x7x365 cybersecurity...PolicyRiskContract work
- ...face constantly shifting risks. Riveron helps... ...organizations implement leading governance, risk and compliance... ...include building GRC/Cybersecurity programs from the... ...critical security domains, managed internal controls... ...and access risk review, policy and procedure development...PolicyRiskFull timeWork at officeShift work
- ...strategic leadership for enterprise-wide cybersecurity and HIPAA compliance within a hospital environment. Oversees security governance, risk management, and incident response while... ...infrastructure. Develops and enforces security policies, conducts risk and vulnerability...PolicyRisk
- ARMA International seeks a Cyber Governance, Risk & Compliance Manager to enhance cybersecurity across the Santa Clara Valley Transportation Authority. This leadership role involves overseeing cyber policy enforcement, regulatory compliance, and incident response coordination...PolicyRisk
- ...Industrial Cyber Security Manager to join our Cyber... ...responsible to lead the Security governance activities to protect and... ...Digital Security Policy in a Global security risk-based approach and support... ...GICSP Global Industrial Cybersecurity Practitioner (GIAC) ~...PolicyRiskContract workFor subcontractorWork at officeLocal areaRemote workVisa sponsorshipFlexible hours
$70 - $80 per hour
...Our client is seeking a Cybersecurity Project Manager to lead highly visible cybersecurity... ...(PAM) Identity Governance & Administration (IGA)... ...outcomes Manage project risks, issues, dependencies, and... ...cancel and HELP for help. You can access our privacy policy atPolicyRiskLocal area- ...Insight Global is seeking an experienced Cybersecurity Governance Program Manager for a contract position. As... ...and implementation of essential policies, standards, and processes. What... ...Incident Response, Third-Party Risk Management (TPRM), and Logging. ?...PolicyRiskContract work
- ...einer angemessenen Cyber Security in den Bereichen Governance (z. B. ISMS, ISO 2700x, BSI IT‑Grundschutz), Information Risk und Compliance Du berätst unsere Kunden bei... ...auch in Teilzeit anzubieten. Dank Mobile Work Policy arbeitest Du bequem von zuhause oder in einem unserer...PolicyRisk
- ...Insight Global is seeking an experienced Cybersecurity Governance Program Manager for a contract position. As... ...and implementation of essential policies, standards, and processes.... ...Incident Response, Third-Party Risk Management (TPRM), and Logging. •...PolicyRiskContract workRemote work
- ...Software Security Assurance Project Manager Cyber Command is in urgent... ...security services including risk assessments, architecture... ...alignment with security policies. Review and interpret security... ...and refinement of policy and governance documents related to software...PolicyRiskWork at officeRemote workMonday to Friday
$80k - $158k
..._Data & Cloud Security Manager This is a managerial... ...to various compliance policies & regulations and managing... ...for Data Security Governance, Cloud Compliance & Data... ...driving cross-functional cybersecurity initiatives, continuously identify risks & issues and enforce robust...PolicyRiskMinimum wageLocal area$181.9k - $236.5k
Cyber Governance, Risk & Compliance Manager Job Posting Feb. 27, 2026 $181,896.00 - $236,496.00 Annually The... ...lead and advance our enterprise-wide cybersecurity governance, compliance, and risk... ...critical leadership role oversees cyber policy enforcement, regulatory compliance...PolicyRisk- ...talent and entertainment space is looking for a Senior Manager, Cybersecurity Governance, Risk & Compliance (GRC) responsible for owning cybersecurity... ...accountable for AI governance scope including AI Acceptable Use policy, AI third-party risk assessment, and AI security...PolicyRiskRemote work
- ...Sr. Manager - Cybersecurity and Identity Management Date: May 9, 2026 Location... ...material cybersecurity risks associated with information... ...of AI and the governance required to manage the associated... ...cybersecurity and access‑related policies, standards, and procedures...PolicyRiskFor contractorsWork experience placementRemote work
- ...provide all-inclusive education management services. At Charter One we... ...school boards can focus on governance and policy issues to be sure that the... ..., Information Technology, Cybersecurity, Software Engineering, or... ...audits, and managing risk. Preferred Qualifications...PolicyRiskWork experience placement
- ...Role Summary The Manager, Cybersecurity owns the enterprise-wide cybersecurity... ...leader is accountable for risk management, security... ...identity access management, governance, and regulatory compliance,... ...enterprise cybersecurity strategy, policies, and roadmap aligned to...PolicyRisk
- ...Manager, Cybersecurity Work Location: Chicago Due to the highly interactive... ...business; helping to shape policy and process; communicating the... ...including project management and risk assessment 3+ years in... ...prohibited by law. This policy governs all aspects of employment,...PolicyRisk
- ...Title: Manager Cybersecurity Architecture Location: Houston, TX, 77064... ...Manager leads the design and governance of the organization's... ...with business objectives, risk tolerance, and regulatory requirements... ...to change management policies and governance standards, with...PolicyRiskLocal areaFlexible hours
- ...Manager Cybersecurity 1 At Northrop Grumman, our employees have incredible opportunities to... ...program control processes that mitigate risk and support system Assessment and... ...Lead the implementation of required government policy (i.e., DAAG, JSIG, ICDs) to ensure compliance...PolicyRiskFull timeWork at officeRemote workFlexible hours
- ...Role GM’s Product Cybersecurity Team safeguards the security... ...security, and risk-based threat analysis,... ...Vehicle Cybersecurity Manager leads the engineering... ...security). Program Governance & Lifecycle Security... ...posting of interest. The policy of General Motors is...PolicyRiskLocal areaWork from homeRelocation package
$190k
...Cybersecurity Consultant Locations: Atlanta | Austin | Boston | Brooklyn | Chicago | Dallas... ..., Cybersecurity, and Technology Risk Management. Our Tech Advisory and Delivery Chapter... ...Developing cybersecurity strategies, policies, processes, and procedures to protect...PolicyRiskWork at office$133.3k - $219.1k
...00.00 POSITION SUMMARY The Senior Manager, Cybersecurity and Network is responsible for leading... ...oversight. This leader partners across IT, risk, and business functions to align... ...belonging. We offer an accrued leave policy with paid holidays, paid time off, and...PolicyRiskTemporary workInternshipWorldwideFlexible hours- ...seeking a Senior Project Manager with demonstrated... ...programs within the Federal Government. The Project Manager... ...lead and coordinate cybersecurity assessment initiatives... ...actionable outcomes to enhance risk management and improve... ..., service needs, and policy or procedure changes...PolicyRiskContract workFor contractorsLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manager, Cybersecurity Policy, Risk & Governance. Be the first to apply!
- cyber security lead United States
- director - cyber security United States
- cybersecurity project manager United States
- cyber security program manager United States
- cyber security project manager United States
- cybersecurity manager United States
- cyber security account manager United States
- senior manager cyber security United States
- quality risk manager United States
- enterprise risk manager United States

