IT Security Manager (GRC)
1872 Consulting
IT Security (GRC) Manager
The IT Security (GRC) Manager function is responsible for maintaining overall security risk management program, which is designed to ensure the company's Infrastructure and Applications are adequately protected. The Manager is responsible for identifying, analyzing, evaluating and reporting on information security risks. S/he works proactively with various IT and business departments to implement practices that meet the policies and standards for information security risk management. The Manager is a proven thought leader and problem solver, as well as, an effective internal consultant, who will regularly advise business leaders on information security risk issues. S/he must possess domain competencies in a number of IT-risk-related disciplines, including security, disaster recovery, privacy and compliance.
Responsibilities
- Work with the Director of Information Security to manage all the risk-related activities of the IT organization, including planning, testing, reporting and recommending appropriate remediation measures.
- Manage a staff of information security professionals, which includes but is not limited to, recruiting, hiring and training new staff, conducting performance reviews and providing leadership and coaching for team members.
- Manage oversight and monitoring of risk mitigation via the coordination of information security management systems and controls.
- Manage the oversight of risk assessments, including but not limited to, vulnerability scanning, penetration testing, new infrastructure/applications and third party service provider reviews.
- Partner with appropriate staff within IT and other business departments to facilitate risk analysis and risk management processes to identify acceptable levels of residual risk.
- Remain current with industry best practices and monitor the legal and regulatory environment for developments that could require changes to established policies, standards and practices.
- Provide security communication, awareness and training for audiences, which includes staff and lawyers.
- Work as a liaison with IT, legal and procurement to establish mutually acceptable contracts and service-level agreements, which should cover information security and disaster recovery content.
- Assist resource owners and IT staff with understanding and responding to security audit findings reported by internal and external auditors.
- Follow up on deficiencies identified in monitoring reviews, self-assessments, automated assessments and internal and external audits to ensure appropriate remediation measures are taken.
- Coordinate information security and risk management projects.
- Work with the Director of Information Security to develop budget projections based on short- and long-term goals and objectives.
- Work with the Director of Information Security and Information Security Manager for Architecture, Engineering, and Monitoring to define metrics and reporting strategies that effectively communicate successes and progress of the security program.
- Provide support and guidance for legal and regulatory compliance efforts, including leading client information security assessments and audits.
- Other duties, as assigned.
Requirements
- Bachelor's degree or equivalent combination of education and/or experience.
- Minimum of 8 years of experience in IT risk management or a related discipline such as security, privacy, business continuity management or compliance, with at least 1 year in a leadership role.
- Experience with information risk assessment methodology development and application.
- Working knowledge ISO 27001/27002 with practiced program alignment and integration.
- Working knowledge of IT management frameworks such as Control Objectives for Information and Related Technology (COBIT) and/or Information Technology Infrastructure Library (ITIL).
- Experience developing, deploying and integrating security policy and standards documentation.
- Experience in developing, managing or providing direct support for IT security vulnerability and threat management
Nice To Haves
- Certified Information Security Manager, Certified Information Systems Security Professional (CISSP) or equivalent
- Experience initiating cloud assessments
- Experience conducting senior/executive level presentations
- ...Senior IT Security Specialist – GRC Responsibilities: Respond to security assessments, questionnaires and audits from clients and third... ...Security consulting to technical / non-technical management and staff. Manage and support the 3rd Party Security Vendor...SuggestedRemote work
$145k - $170k
...want to hear from you. The Role As the Information Security Manager, you will lead our security operations function, the team... ...defined handoff processes between operations, engineering, and GRC functions The Ideal Candidate You run a tight operation and...SuggestedFull time- ...Governance, Risk, and Compliance (GRC) Associate Location: Onsite... .../ In a Nutshell: Risk Management: Experience performing annual... ..., Archer, or ZenGRC. Security Awareness: Experience managing... ...Program! 2500 Do you know other IT professionals? Turn those...SuggestedExtra income
$96.6k - $130k
...Cybersecurity Governance, Risk, and Compliance (GRC) Associate Join a team that values your ambition... ...'s GRC program, with a specialized focus on security framework compliance and information security risk management. Reporting to the Vice President of Information...SuggestedPermanent employmentTemporary workWork at officeFlexible hours- ...IT Security Program Manager blueStone Executive Search has a distinct focus on recruiting IT professionals with an emphasis on the areas of leadership, business transformation and enterprise. Job Description Provide multi-system security software administration...SuggestedRemote work
$125k - $150k
Olivine, Inc. is seeking an experienced IT Manager in Chicago, IL, responsible for driving the strategic direction of corporate IT while ensuring stability, security, and performance of computing systems. This role includes leading IT projects, mentoring staff, and managing...$125k - $150k
Olivine, Inc. is seeking an experienced IT Manager to lead and mentor their IT team while driving the strategic direction of corporate information technology. The role includes overseeing cybersecurity, managing compliance initiatives, and ensuring the performance of IT...$222.5k - $261.9k
...Monroe is excited to hire a Cybersecurity - Senior Manager to lead carveout, merger integration, and other... ...architecture/design, process & policy creation, security controls implementation, governance/risk/compliance (GRC) standup, resiliency planning, application &...Local areaImmediate startFlexible hours- ...Cyber Security expertise/Cybersecurity Segment Head Chicago, IL... ...achievement, Customer stakeholder management, Sourcing, programs delivery... ...good knowledge of rest including GRC, MDR etc. Experience in Cyber... ...R&D/Product teams or Internal IT/Security orgs) • Technical...Full timeContract workWork at office
$96.6k - $130k
...Description The Sr. Cybersecurity Governance, Risk, and Compliance (GRC) Associate supports the organization’s GRC program with a focus on security framework compliance and information security risk management. Reporting to the Vice President of Information Security...Permanent employmentTemporary workWork at officeFlexible hours- ...IT Security Operations Manager Chicago, IL (WFH 2 days/week, onsite in the loop 3 days/week) Summary The IT Security Operations Manager will be managing the security operations team, and reporting to the CISO. This role will focus on managing the technical aspects...Work from home2 days per week3 days per week
$88k - $124k
Cooley LLP is looking for an IG Compliance & Security Analyst to join their Information Governance & Data Privacy team in Chicago. The role... .... The ideal candidate should have 3+ years of experience in GRC processes and possess certifications such as CISSP. Cooley offers...- ...organization's cybersecurity control framework. This role proposes and advocates to the Global Director and Senior Manager of Information Security on GRC strategies. Engage with stakeholders to understand their security requirements and develop and implement...
- ...Compliance and Assurance Specialist for its Chicago Headquarters. This hybrid role focuses on supporting the Information Security Governance and Risk Management program, ensuring that Alliant meets regulatory obligations. The ideal candidate will have a minimum of 2 years'...
$63.3k - $117.2k
...for Career Enhancement is seeking a compliance professional in Chicago, IL. The role involves monitoring regulatory developments, managing the regulatory compliance management (RCM) process, and serving as the primary contact for stakeholders. Candidates should possess...$150.4k - $178.6k
...Travel is required. About the role As a Data Protection Manager, you'll lead the delivery of data protection and data... ...outcomes, and guide clients and junior team members through complex security and compliance initiatives. What you'll do Lead or co...Work at officeLocal areaRemote work$101.84k - $127.34k
...Information Security Manager At The Obama Foundation, our mission is to inspire, empower, and connect people to change their world. We seek... .... You will serve as the primary technical steward for our IT security infrastructure, protecting the Foundation's digital assets...Work at office- ...You'll work alongside a team of seasoned security professionals conducting threat assessments... .... You'll collaborate with our OneProtect managed security team to deliver 24/7 protection... ...also offer rotation programs across our GRC, VAPT, and incident response teams to build...Work at officeRemote workVisa sponsorshipFlexible hours3 days per week
$110k - $130k
...the driving force behind our Cyber Risk Management Program, serving as the primary custodian... ...risk posture and ensuring the continuous security and compliance of our platforms. What... ...information security, risk management, or GRC within the technology, AI, or healthcare...- ...Manager, Cybersecurity Governance and Riskm Chicago, IL The Manager... ...Governance and Risk will lead IT risk management (ITRM)... ...education efforts from an Information Security perspective. This position is... ..., risk and compliance (GRC) practices and technologies across...
$150k - $210k
...Medical Device Cybersecurity Senior Manager Passionate about precision medicine and advancing the healthcare industry? Recent advancements... ...Senior Manager, you will own the medical device cyber security program at Tempus AI. You will act as the crucial bridge...Shift work$115.2k - $136.8k
...outcomes, and guide clients and junior team members through complex security and compliance initiatives. Responsibilities Lead or co‑lead... .... Contribute to estimations, delivery planning, and risk management. Support solutioning efforts, proposals, and internal...Local area- Business Development Executive - Healthcare Avanade seeks a Business Development Executive who is a deal hunter, deal maker, originator and self-starter who can develop and win new business in a complex consulting environment with sophisticated technology solutions. For...Internship
- ...Manager, Cybersecurity Work Location: Chicago Due to the highly interactive and team-based... ...for driving the success of our security programs; interfacing with most areas of... ...and review, and working closely with the IT technical teams to recommend and support...
$140k - $200k
...US Broking CyQu Advisory Manager This will be a hybrid role based out of our Chicago... ...relationships through the evaluation of security programs and facilitating Aon proprietary... ...threat intelligence services. Discuss IT network and security architectures as they...Full timeTemporary workPart timeWork experience placementWork at officeLocal area$205.7k - $278.3k
...Description: Functional Roles and Responsibilities Manage the end-to-end Cyber Security business in US Geography for LSHCERU business group reporting... ...Security Architect, ISSAP BA or BS or equivalent in IT related degrees Ability to travel as per the business...- Information Security Officer/Client Facing Security Officer (CFSO) Contract Founded in 2009... ...technology and contingent workforce solutions. It operates in seven business segments... ...recruitment, career transition, and vendor management services. We strongly believe: “If...Permanent employmentContract workRemote work1 day per week
- ...responsibility to advise clients on a range of US-focused privacy, security, and other data-related compliance counseling. Responsibilities... ..., and implementation of data protection compliance programs, managing compliance projects such as risk and gap assessments,...Contract work
- ...Chief Information Security Officer (CISO) About the Company Accomplished executive search firm Industry Staffing and Recruiting... ...of security policies, procedures, and standards, as well as managing security awareness and training programs. The CISO will also be...
- ...Virtual Chief Information Security Officer (CISO) About the Company Flourishing provider... ...programs. Strong governance, risk management, and executive communication skills are essential... ...regulated environments. Familiarity with IT/OT convergence, cloud environments, and...Part time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Security Manager (GRC). Be the first to apply!

