Apply

Information Security Manager - GRC

Posted 2024-11-16

View full description

💎 Seniority level: Manager, Minimum of 5 years

📍 Location: United Kingdom

🔍 Industry: SaaS-based Global Employment Platform

🏢 Company: G-P

⏳ Experience: Minimum of 5 years

🪄 Skills: LeadershipAgileAnalytical SkillsAgile methodologiesAttention to detailOrganizational skillsCompliance

Requirements:
  • Bachelor’s degree in Information Security, Computer Science, or a related field.
  • Industry certifications like CISSP, CISM, or CISA are preferred.
  • Minimum of 5 years of experience in information security, risk management, audit, or compliance roles.
  • Strong understanding of global regulatory requirements, including GDPR, SOC2, and ISO 27001.
  • Proven experience in managing third-party risk assessments.
  • Excellent analytical and problem-solving skills with an outcome-driven mindset.
  • Strong interpersonal skills for engaging cross-functional teams.
  • Superior time-management abilities with high attention to detail.
Responsibilities:
  • Design, implement, and maintain a comprehensive GRC framework aligned with industry standards and regulatory requirements.
  • Develop, review, and update security policies, standards, and procedures in collaboration with stakeholders.
  • Conduct risk assessments and provide insights to executive leadership.
  • Oversee vendor risk management and ensure compliance with security standards.
  • Develop incident response plans and lead post-incident evaluations.
  • Ensure ongoing compliance with global regulations through audits.
  • Develop training programs to enhance security awareness across the organization.
  • Coordinate internal and external audits, ensuring timely and thorough preparation.
  • Identify and implement process improvements to enhance security posture.
  • Manage and mentor a small GRC team, fostering alignment with organizational objectives.
Apply

Related Jobs

Apply

📍 Northern Ireland

🔍 SaaS-based Global Employment

  • Bachelor’s degree in Information Security, Computer Science, or a related field.
  • Industry certifications like CISSP, CISM, or CISA preferred.
  • Minimum of 5 years in information security, risk management, audit, or compliance roles with a focus on GRC.
  • Strong understanding of global regulatory requirements, including GDPR, SOC2, ISO 27001, and familiarity with frameworks like NIST.
  • Experience in managing third-party risk assessments.
  • Excellent analytical and problem-solving skills.
  • Strong interpersonal and communication skills.
  • Superior time-management abilities and attention to detail.

  • Design, implement, and maintain a comprehensive GRC framework aligned with regulatory requirements.
  • Develop, review, and update security policies and procedures to ensure compliance.
  • Conduct risk assessments and provide actionable insights to leadership.
  • Oversee third-party risk management and ensure compliance from vendors.
  • Develop incident response plans and lead investigations.
  • Ensure ongoing compliance through regular audits and assessments.
  • Create security awareness training programs.
  • Coordinate audits and ensure thorough preparation.
  • Identify and implement process improvements.
  • Manage and mentor a small team of GRC professionals.

LeadershipAgileAnalytical SkillsAgile methodologiesAttention to detailOrganizational skillsCompliance

Posted 2024-11-16
Apply