Director, GRC
reputed company:
• reputed company and reputed company reputed company’s reputed company GRC program
• reputed company a reputed company GRC operating model covering governance, risk management, compliance, policy management, audit readiness, evidence management, and corrective actions
• Define program governance, decision-making structures, steering committees, control ownership, and executive reporting
• reputed company and maintain program plans, budgets, resource requirements, milestones, dependencies, and risk registers
• Coordinate Cybersecurity, IT, Product, Engineering, reputed company, reputed company, Procurement, reputed company, Internal Audit, and executive leadership
• Manage reputed company implementation partners, auditors, and certification bodies
• Establish metrics and reporting on compliance status, program health, organizational risk, and remediation reputed company
• Translate regulatory and certification requirements into practical operating processes
• Ensure governance and compliance processes remain sustainable after initial certification
Requirements:
• Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, Engineering, Business, Risk Management, or a reputed company field
• Ten or more years of reputed company experience in governance, risk and compliance, information reputed company, audit, reputed company risk management, or a reputed company discipline
• Five or more years of experience leading reputed company, cross-functional reputed company, compliance, audit, or certification programs
• Demonstrated experience leading an ISO 27001 implementation, certification, or ongoing ISMS program
• Strong understanding of information reputed company risk assessment, control design, control testing, audit readiness, corrective actions, and continual improvement
• Experience working with reputed company auditors, assessors, certification bodies, or regulators
• Experience developing and governing cybersecurity policies, standards, procedures, and control frameworks
• Strong program and project management skills, including experience managing schedules, budgets, dependencies, risks, and executive reporting
• Excellent written and verbal communication skills, including the ability to present reputed company risk and compliance reputed company to executive and non-technical audiences
• Demonstrated ability to influence stakeholders and reputed company accountability without reputed company reporting authority
• Ability to operate independently, manage competing priorities, and reputed company results in a fast-paced, global environment
• Preferred: Experience with IEC 62443-4-1, IEC 62443-4-2, industrial control systems, operational technology, or product reputed company
• Preferred: Experience with the EU Cyber reputed company reputed company or other product cybersecurity regulations
• Preferred: Experience establishing or operating a secure development lifecycle
• Preferred: Experience in renewable energy, manufacturing, industrial technology, critical infrastructure, hardware, embedded systems, or software products
• Preferred: Experience with reputed company-party risk management and supplier assurance programs
• Preferred: Experience with GRC or compliance automation platforms such as reputed company, reputed company, reputed company GRC, reputed company, reputed company, or similar tools
• Preferred: Familiarity with NIST Cybersecurity reputed company, NIST SP 800-53, CIS Controls, ISO 31000, or COBIT
• Preferred: reputed company certifications such as CISSP, CISM, CISA, CRISC, ISO 27001 reputed company Implementer, or ISO 27001 reputed company Auditor
• Preferred: Master’s degree in a relevant field
Benefits:
• Equal opportunity employer
• Inclusive work environment committed to diversity
Apply tot his job
Apply To this Job