Manager, Governance, Risk & Compliance
New
V
VocateHigher Education
Remote (RMT)Full-TimeManager
Salary150,000 - 159,390 USD per year
Apply NowOpens the employer's application page
Job Details
- Languages
- English
- Required Skills
- HIPAA
Requirements
- Bachelor’s degree in cybersecurity, information security, information systems, computer science, risk management, or business administration.
- Progressive experience in information security governance, cybersecurity risk management, or regulatory compliance.
- Experience leading and developing team members or directing complex, cross-functional GRC programs.
- Experience managing a vulnerability management program including assessments, patching, and remediation.
- Experience conducting third-party security and privacy risk assessments.
- Working knowledge of NIST Cybersecurity Framework, NIST Special Publications, and CIS Critical Security Controls.
- Experience developing security and GRC metrics, KPIs, KRIs, and executive-level dashboards.
- Experience using GRC platforms such as ServiceNow IRM/GRC, OneTrust, LogicGate, Tenable, Qualys, or Rapid7.
- Ability to communicate fluently in verbal and written English.
- Ability to work effectively in a remote home office setting with high-speed internet and participate on camera.
Responsibilities
- Develop, implement, and enhance the institution’s governance, risk management, and compliance framework.
- Lead cybersecurity and technology risk identification, assessment, monitoring, and mitigation strategies.
- Manage regulatory compliance initiatives including FERPA, GLBA, FTC Safeguards Rule, and HIPAA.
- Lead the institution’s vulnerability management program including risk-based prioritization and remediation tracking.
- Conduct third-party information security and privacy risk assessments for vendors and external partners.
- Develop and maintain an institutional AI governance program for ethical and secure AI technology use.
- Design and deliver institution-wide security awareness and compliance training programs.
- Lead, coach, and develop team members while managing departmental GRC projects and initiatives.
View Full Description & ApplyYou'll be redirected to the employer's site