Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Advisor, Information Security GRC

Daimler AG

Overview Mercedes-Benz USA is responsible for the sales, marketing and service of all Mercedes-Benz and Maybach products in the United States. In our people, you will find tremendous commitment to our corporate values. Our products and employees reflect this dedication. We are looking for diverse top-notch individuals to join the Mercedes-Benz Team and uphold these hallmarks. The Information Security GRC Lead is responsible for leading the design, implementation, and continuous improvement of Governance, Risk, and Compliance (GRC) programs to ensure alignment with regulatory requirements, corporate policies, and industry frameworks. This role will drive a risk-based security posture, ensure sustainable, audit-ready controls while reduce organizational risk and maintaining a defensible compliance position. The GRC Lead provides security governance, risk management, compliance monitoring, and audit management, in close collaboration with the Information Security Officer (ISO), senior leadership, and global cybersecurity stakeholders. The role will lead the team through establishing highly effective policies based on the RISE (Regulations for Information Security) Cybersecurity Framework, establishing sustainable processes for assessing and tracking cybersecurity risk, performing security control testing, and delivering performance metrics and reporting for each program under its management scope. In addition, this role requires a forward-thinking person who is committed to evolving into a strong AI-oriented cybersecurity professional, capable of leveraging AI and automation to enhance risk detection, improve audit efficiency, and accelerate remediation outcomes. Responsibilities Lead and continuously enhance the Information Security Risk Management Program aligned with Mercedes-Benz A22 RISE policies. Establish governance for secure and responsible adoption of AI (AI-on-AI security) ensuring compliance with corporate and regulatory expectations. Define, implement, and enforce security policies, standards, and control frameworks across business and technology units. Establish and monitor KPIs to proactively identify risk trends through Risk & Business Impact Assessments. Maintain enterprise security architecture aligned with evolving threat landscape and business strategy. Partner with senior leadership to drive a consistent, repeatable, and measurable risk management strategy. Oversee Business Continuity and resiliency programs ensuring organizational readiness. Ensure audit readiness and drive successful closure of all Audits (corporate, AMBISS and internal assessments). Lead audit planning, execution, and audit preparedness activities, including internal audits and control testing. Use AI to predict audit findings, identify control gaps early, and recommend remediation actions. Implement AI-driven control validation and evidence collection to accelerate audit cycles and reduce manual effort. Design and implement controls, policies, and procedures driven by audit requirements. Maintain controls monitoring dashboards and provide transparency on compliance posture. Coordinate with DPO and BISO to ensure adherence to data privacy regulations (state and global). Act as the primary interface with auditors, regulators, and internal compliance stakeholders. Embed security into the software lifecycle and enable secure digital transformation. Integrate AI-driven security testing and code analysis across SDLC and DevSecOps pipelines. Leverage AI for automated vulnerability triage, root cause analysis, and remediation recommendations. Enable “shift-left + auto-fix” capabilities, reducing resolution time through intelligent automation/AI. Drive adoption of AI copilots for developers to enforce secure coding practices in real time. Govern security quality gates with AI-backed risk scoring before production releases. Lead third-party cyber risk management (TPCRM) ensuring vendors meet security and compliance requirements. Define and enforce security requirements in procurement processes and vendor onboarding. Conduct cloud security assessments and ensure alignment with enterprise security standards. Define and Implement AI-powered third-party cyber risk management (TPCRM) for continuous vendor monitoring and risk scoring. Establish governance frameworks for AI systems, including model risk, data integrity, and adversarial threats. Leverage AI to analyze vendor risks, detect anomalies, and automate risk mitigation strategies. Support governance and risk management for emerging technologies including AI and digital platforms. Ensure all external and SaaS integrations adhere to corporate security and privacy standards. Drive operational excellence, incident preparedness, and a security-first culture. Develop and maintain enterprise Incident Response plans covering key cyber-attack scenarios. Support cybersecurity incident response activities and post-incident improvements. Lead enterprise-wide security awareness programs including phishing campaigns, training, and annual events. Modernize awareness programs using AI-driven simulations, adaptive phishing campaigns, and behavioral insights. Train application owners and business leaders on security policies, ensuring consistent adoption. Report this position reports to NAFTA Information Security Officer, closely working with the Director Cyber Security & Cross Functions. Qualifications Education: Bachelor's Degree (accredited school) or equivalent with emphasis in Computer Science/Information Technology. Minimum of 10+ years of relevant work experience in IT. Experience in many of the following areas: Deep knowledge of Information Security Governance, Risk Management, and Compliance frameworks (NIST, ISO 27001, Mercedes-Benz A22 RISE). Strong understanding of enterprise risk management, audit processes, control design, and regulatory compliance. Knowledge of audit methodologies, evidence collection, and control validation techniques. Familiarity with data privacy regulations and frameworks (state, global, GDPR-aligned concepts). Understanding of AI/ML fundamentals and their application in cybersecurity and risk management. Knowledge of AI governance principles, including Model risk, data integrity, and adversarial threats. Responsible AI usage and compliance expectations. Drive adoption of AI/automation to significantly reduce remediation timelines and manual efforts. Ability to create awareness, accountability, and ownership across the organization. Skills to train, coach, and empower teams to integrate security into daily operations. Ability to translate complex security, audit, and AI concepts into simple, business-relevant outcomes. Awareness of automation and analytics tools that enhance risk detection and remediation. Knowledge of IT guidelines and corporate IT policies, IT standards, knowledge of IT organization (e.g., escalation paths for non-standard requests). Overview of current threats, risks, information security techniques, and controls to mitigate them. In-depth knowledge of IT security, in particular firewalls, protocols, encryption, authentication and authorization, and secure system design and programming. Additional experience: Experience with MBUSA, Mercedes-Benz's work culture, and association with IT leadership, supervisors, and employees would be a big plus. Strong ability to deal with conflicts. Driving initiatives and successfully managing scope, timeline, budgets, and quality. Motivating and inspiring team members. Experience with Networking, SAP Security, Cloud-based applications, Server hardening/security baseline standards, patch management, and remediations. Experience with Security Operations, Incident Response Identity, and Access Management (MFA, SSO). Identify and estimate the future needs of the organization through constant interaction with the users and IT leadership, conducting regularly scheduled user status/planning meetings. Excellent written, verbal communication, interpersonal and collaborative skills; and the ability to communicate security and risk-related concepts to technical and non-technical audiences. Strong proficiency with common management frameworks, regulatory requirements, and industry-leading practices. Certifications: CISA, CISM, CISSP preferred. Experience with or willingness to pursue AI-related security certifications is strongly preferred. Must pursue current & future Mercedes-Benz-mandated certifications. Additional Information No Sponsorship/Visa Transfer Available. Must be able to work flexible hours/work schedule. Travel Domestic and International. Work Holidays, Weekends when required. EEO Statement Mercedes-Benz USA is committed to fostering an inclusive environment that appreciates and leverages the diversity of our team. Accordingly, we provide equal employment opportunity (EEO) to all qualified applicants and employees without regard to race, color, ethnicity, gender, age, national origin, religion, marital status, veteran status, physical or other disability, sexual orientation, or gender identity. #J-18808-Ljbffr

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Advisor, Information Security GRC in Atlanta, GA vacancy
  •  ...Overview The Engineer, Information Security GRC is part of a team responsible for the global Information Security program. The role would gain exposure to the full suite of businesses and products which underpin the Parent ICE company. Job Purpose Information Security... 
    Suggested
    Work experience placement

    Intercontinental Exchange Holdings, Inc.

    Atlanta, GA
    4 days ago
  •  ...Daimler Trucks North America LLC is seeking an experienced Advisor, Information Security GRC to lead Governance, Risk, and Compliance programs. The role requires a minimum of 10 years' experience in IT, emphasizing Information Security Governance and Risk Management. Located... 
    Suggested

    Daimler Trucks North America

    Atlanta, GA
    1 day ago
  • Lumen is seeking a Lead Information Security Architect focused on Governance, Risk, and Compliance. This remote role includes conducting risk assessments...  ...communication skills. Join us to lead initiatives that embed GRC principles into security architecture while collaborating... 
    Suggested
    Remote job

    Lumen

    Atlanta, GA
    3 days ago
  •  ...projects including SOC examinations, audits, and compliance. The role requires a minimum of 3 years of relevant experience in Information Security or IT, a degree in a related field, and proficiency in technical frameworks such as COBIT and ISO standards. The position... 
    Suggested

    Frazier & Deeter

    Atlanta, GA
    4 days ago
  • $133.2k - $199.8k

     ...Governance, Risk & Compliance (GRC)Applylocations: Atlanta,...  ...operations design and material and information flow. We deliver exceptional...  ...management, compliance, and security assurance programs. This role...  ....* Serve as a trusted advisor on cybersecurity governance,... 
    Suggested
    Local area

    Material Handling Systems, Inc.

    Atlanta, GA
    3 days ago
  • $115k - $135k

     ...key subject matter expert and advisor to Fujifilm business teams on...  ...data mapping and inventory information, collaborating with Data Governance...  ...Collaborate with information security team to ensure that security...  ...) and privacy management or GRC platforms. Experience with... 
    Remote work
    Flexible hours

    FUJIFILM Corporation

    Atlanta, GA
    4 days ago
  •  ...Chief Information Security Officer The mission of the Georgia Student Finance Commission is to promote and increase access to education beyond...  ...and manage a comprehensive Governance, Risk, and Compliance (GRC) program. Lead continuous information security risk... 
    For contractors
    Work at office
    Monday to Friday

    Georgia

    Atlanta, GA
    2 days ago
  • $67.9k - $199.14k

     ...leadership team to keep initiatives moving, ensure decision‑ready information reaches the right people, and represent the office with...  ...resources Preferred Qualifications Experience in information security, infrastructure, or enterprise technology organizations Proven... 
    Hourly pay
    Full time
    Temporary work
    Work at office
    Local area
    Shift work

    Hispanic Alliance for Career Enhancement

    Atlanta, GA
    5 days ago
  •  ...Information Technology Security Manager We are looking for a skilled cybersecurity professional with relevant technical experience. As the Information...  ...), Tenable.io, Nessus, Splunk, SolarWinds, Varonis, GRC tools, CrowdStrike Falcon, and LogRhythm. Knowledge & experience... 
    Work experience placement

    BizTek People

    Atlanta, GA
    2 days ago
  • $140.8k - $186.5k

     ...exposure to cybersecurity, IT risk, or GRC preferred. Strong understanding of IT infrastructure...  ...similar. Education Bachelor’s degree in Information Systems, Computer Science, Cybersecurity...  ..., recruiting system usage/interaction, security and preference information. Rivian may... 
    Full time
    Contract work
    Temporary work
    Part time
    Local area
    Shift work

    Rivian

    Atlanta, GA
    5 days ago
  •  ...responsible for strengthening Veritiv’s security posture through both cybersecurity operations...  ...to automate and streamline GRC and security operations processes (e.g.,...  ...Preferred### ### ### ### ### ### ● Certified Information Systems Auditor (CISA) - Information Systems... 
    Work experience placement
    Work at office

    Veritiv Operating Company

    Sandy Springs, GA
    4 days ago
  • $173k

     ...authority on designing and validating technical security systems to protect company assets in...  ...-performing engineering and technical GRC professionals, managing technical risk...  ...Experience: Minimum of 8–10+ years of information security experience, with a proven track... 
    Work at office
    Local area

    Boston Consulting Group

    Brookhaven, GA
    4 days ago
  • $104k - $156k

     ...Posting Type Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build,...  ...qualifications: ~ Bachelor's in Computer Science, Information Security, or equivalent experience. ~2+ years of... 
    Remote work

    Relativity

    Atlanta, GA
    4 days ago
  •  ...skillsets: 1. Payment Card Industry - Data Security Standard (PCI-DSS) Expertise: Minimum 5...  ...architecture, cloud computing, and information security. Self-motivated, able to work independently...  ...of Governance, Risk & Compliance (GRC) initiatives and drive special projects... 
    Work at office

    Nlb Services

    Atlanta, GA
    4 days ago
  • $184.3k

     ...to safeguard and protect private and personally identifiable information you submit. The information that you submit will be collected...  .... Job Description: At Regions, the Enterprise and Cyber Security Architecture Manager directs the program to develop, maintain,... 
    Full time
    Work at office
    Relocation
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    3 days per week

    Regions Bank

    Atlanta, GA
    6 days ago
  • $69k - $101k

     ...reach higher. We do the right thing—today and for generations to come. Job Purpose and Impact ~ The Application Developer- SAP/GRC Security job maintains, integrates and implements software applications for SAP within the organization. With limited supervision, this... 
    Work experience placement

    Cargill

    Atlanta, GA
    5 hours ago
  • $140.6k - $175.8k

     ...desire to protect it for future generations. Role Summary As a Security Engineer at Rivian, you will spearhead the adversarial...  ...the first of the month following 90 days of employment. More information about benefits is available at rivianbenefits.com. Equal... 
    Full time
    Contract work
    Temporary work
    Part time
    Local area
    Shift work

    Rivian

    Atlanta, GA
    2 days ago
  •  ...J Cybersecurity & GRC Analyst We are CirrusLabs. Our vision is to become the world...  ...Supporting modules like: IT & Security Risk Third-Party Risk Audit Management...  ...'s or Master's in: Cybersecurity Information Systems Computer Science Risk Management... 

    CirrusLabs

    Atlanta, GA
    24 days ago
  •  ...company’s readiness to comply with emerging laws, and implementation of best practices. This role will be involved in the overall Information Security Management (ISM) activities as they are developed, with the objective that the Data Privacy (DP) and ISM areas will support... 

    Murata Manufacturing Co., Ltd.

    Atlanta, GA
    5 days ago
  • $140.6k - $186.36k

     ...Third-Party Risk Management (TPRM) lead, security engineering teams, and other functions....  ...and risk management tooling, including GRC, IRM, or dedicated risk platforms. ~ Working...  ...following 90 days of employment. More information about benefits is available at... 
    Full time
    Contract work
    Temporary work
    Part time
    Local area
    Shift work

    Rivian

    Atlanta, GA
    4 days ago
  •  ...About the job IT Security - Managing Consultant Job Title: IT Security Consultant (Manager) Full-time, direct employment...  ...a management consultant approach, coupled with expertise in information security and risk management methodologies. You'll engage... 
    Full time
    Remote work
    Visa sponsorship

    4 Staffing Corp

    Atlanta, GA
    4 days ago
  •  ...A leading consultancy firm is seeking a Senior Consultant in Risk Technology to support SAP Security and GRC solutions in Atlanta. The role involves designing and implementing SAP Security measures across diverse platforms while collaborating with experienced teams. Candidates... 
    Flexible hours

    Ernst & Young Oman

    Atlanta, GA
    4 days ago
  • $70.3k

     ...Job Description At Regions, the Cyber Security Analyst is responsible for analyzing, identifying, and documenting cybersecurity information and risks. This role requires proactiveness and an understanding of core technology and cybersecurity principles, along with industry... 
    Full time
    Work at office
    Relocation
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    Shift work
    3 days per week

    Regions Bank

    Atlanta, GA
    1 day ago
  •  ...Regions Bank is hiring a Cyber Security Analyst responsible for analyzing cybersecurity risks and threats. Ideal candidates will have experience in information security, relevant certifications, and the ability to work on pre-determined shifts. The position is full-time... 
    Full time
    Remote work
    Shift work

    Regions Bank

    Atlanta, GA
    18 hours ago
  •  ...investigations, intelligence collection, and extracting actionable information from intelligence sources. Conduct all‑source analysis of...  ...with a PhD. 6-8 years' experience in payment card or information security industry, all‑source cyber intelligence organizations,... 
    Work experience placement
    Work at office
    Local area
    Weekend work

    Visa

    Atlanta, GA
    1 day ago
  •  ...NCR Voyix is seeking a Threat Intel & Cyber Defense Analyst to strengthen their global information security team in Atlanta, GA. In this role, you will protect information resources and enhance detection capabilities against cyber threats. Applicants should possess strong... 

    NCR Voyix

    Atlanta, GA
    1 day ago
  • $87.7k - $164k

     ...Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting,... 
    Summer holiday
    Local area
    Flexible hours

    Ernst & Young Oman

    Atlanta, GA
    4 days ago
  •  ...Unfortunately, we cannot consider applicants requiring visa or OPT sponsorship. Cytel is seeking a Cyber Security Analyst to support and enhance the organization’s information security operations. This role is responsible for monitoring, investigating, and responding to... 
    Permanent employment

    Cytel

    Atlanta, GA
    19 hours ago
  •  ...Honeywell International, Inc. is looking for a highly experienced SAP Security professional in Atlanta, Georgia. This role involves leading SAP...  ...initiatives with a primary focus on S/4HANA implementations and GRC upgrades. The ideal candidate will possess in-depth knowledge of... 

    Honeywell

    Atlanta, GA
    4 days ago
  • $70.3k

     ...to safeguard and protect private and personally identifiable information you submit. The information that you submit will be collected...  ...of the system. Job Description: At Regions, the Cyber Security Analyst is responsible for analyzing, identifying, and documenting... 
    Full time
    Work at office
    Relocation
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    Shift work
    3 days per week

    Regions Bank

    Atlanta, GA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Advisor, Information Security GRC. Be the first to apply!