AXIS Management Group | Hiring | Data Visualization Specialist | Remote | BigDataKB.com | 25-09-2022

Job Location: Remote

Title: Director of Security Governance and Risk
Location: Miami, FL / Hybrid
Duration: Permanent
Compensation: $160,000 Annual Salary plus 25k Bonus
Work Requirements: US Citizen, GC Holder or Authorized to Work in US.


Overview:

TekPartners has some of the most sought after Information Technology positions available. As a reputable company in the IT staffing industry, you can trust us to place you in the right position. We currently have an opportunity for a Director of Security Governance and Risk.

Qualifications:

  • Bachelorโ€™s Degree Information Security, Information Technology, Audit, Risk Management
  • Certified in Governance of Enterprise IT (CGEIT) by ISACA, COBIT 5 Foundation/Implementer/Assesor by ISACA, Certified in Risk and Information Systems Control (CRISC), among others
  • 10+ yearsโ€™ of progressive IT, auditing, investigations, strategic risk management, and/or business/management consulting with exposure to Fortune 500, culminating in an IS security role.
  • 3-5 yearsโ€™ experience managing cross-functional, multi-business unit projects reflective of leadership role.
  • Experience building and/or growing an IT Security practice with direct hands-on technology skillsets.
  • OneTrust hands-on experience.
  • Recent experience leading an IT organization and establishing governance and strategy for a global organization.
  • Exceptional and current experience in third party risk management, managing security risks, developing and implementing security training programs.
  • Experience leading corporate privacy and third-party initiatives is also a plus
  • Demonstrated experience in communicating effectively in written and spoken form to broad internal and external entities including non-technical executives, corporate officers, business colleagues, product and service vendors and external peers.
  • Strong ability to influence and persuade others through collaboration.
  • Strategic thinker who can translate vision into tactical execution; strong decision-making and project management skills; and ability to prioritize effectively in a highly dynamic work environment.
  • Experience interviewing, hiring, and counseling direct report employees.
  • Delegating activities to appointed managers and other team members.
  • Ensuring that responsibilities, authorities, and accountability of all subordinates are defined and understood.
  • Experience in establishing IT governance, policies and standards.
  • Experience managing third party vendors.
  • Experience working and excelling in a Global organization.
  • Manage and control Operational and Capital budgets.
  • Demonstrated ability to manage multiple work streams and initiatives simultaneously.
  • Ability to work in a fast-paced setting.
  • Strong knowledge of risk identification, assessment, and management frameworks.
  • Proven ability to drive change despite internal and external challenges – a self-starter with a desire to learn and continuously improve, intellectual curiosity.
  • Strong business acumen.
  • Ability to analyze complex problems that include interrelationships and dependencies in order to identify common themes and solutions.
  • Inquisitive nature, resourceful, and an ability to seek out information.
  • Advanced proficiency in Microsoft Office suite including Power BI and Power Automate.
  • Personal initiative, and enthusiasm for success in a complex and challenging environment.

Responsibilities:


Governance and Strategy:

  • Collaborate with Legal, Privacy, Compliance and key business leaders to identify information management and protection laws and regulations and implement actions to ensure compliance.
  • Identify global cyber security regulatory, legislative, and industry specific compliance requirements.
  • Establish annual and long-term goals, defining risk and governance strategies, metrics, and reporting mechanisms.
  • Develop strategies and action plans to drive security maturity improvement in areas where controls do not adequately mitigate risks.
  • Foster and maintain business relationships in representing GISCS during executive steering committees across each of the company Brands.
  • Support the development of executive and board level communications as related to corporate cybersecurity posture.
  • Develop, document, and assess measures, metrics, and internal controls related to cyber security program maturity.

Policies and Standards:

  • Lead the development and implementation of effective and reasonable policies and practices to secure sensitive data and ensure security and compliance with contracts, regulatory requirements, and industry standards.
  • Collaborate across the Brands, Legal, Regional Information Security and Compliance Teams, IT teams, HR and Global Data Privacy Council in the development of global security policies.
  • Champion the annual global security policies and standards review with key stakeholders to ensure alignment with corporate business strategy, cybersecurity strategy and regulatory requirements.

Security Risk Management & Tracking:

  • Develop and manage the cybersecurity risk management strategy, framework and approach. Integrate cyber security risk reporting and aggregate reporting into an Enterprise risk framework.
  • Provide briefings to leadership and advise of critical issues that may affect business or enterprise cybersecurity objectives in partnership with the Regional Information Security Officers.
  • Partner with Global Security Architecture & Engineering, Global Threat Intelligence & Readiness, and Compliance Assurance teams, to develop risk mitigation strategies, solutions, and recommendations to reduce components, systems, or enterprise security risk.
  • Develop and maintain a Security Risk Management Framework (RMF) per industry standards and applicability (Eg. NIST CSF). Perform annual Security Risk Assessment against RMF. Recommend programs to enhance maturity in Security and track their progress
  • Evaluate existing risk monitoring metrics and tools, develop metrics and insights, and seek to enhance maturity of analytics. Develop security reports and dashboards for varied audience
  • Develop risk register and manage remediation plans to respond to previously unidentified or inadequately addressed risk areas.
  • Understand legal requirements and identify emerging security risks and work with the relevant business groups to facilitate proactive implementation of mitigation measures. Review contractual language for security related
  • Implement and Manage the GRC platform (OneTrust) and its integration with other IT tools
  • Security Awareness & Training – Champion and manage Global Information Security Awareness and Training programs. Support Regional Information Security and Compliance teams to host business outreach campaigns. Distribute security bulletins, alerts, updates, and other security related information.
  • Develop a comprehensive control catalog and work flows with cross-walks. Monitor compliance to the controls and catalog risk assessment utilized by the business as it pertains to security risk and evaluate for best practices and gaps.
  • Maintain a rolling three-year compliance risk and governance strategy to facilitate discussion with senior leadership of the key challenges and opportunities around security risk. This will drive our focus on continuous improvement and prioritization of programs within the organizationโ€™s plan process.
  • Identify, engage, coach and broker appropriate talent to ensure highest performance of Governance and Risk function. Set teamโ€™s goals and coach the team members to attain maximum productivity through motivation and dedication


Our benefits package includes:

  • Comprehensive Medical Benefits
  • Competitive Pay, 401K
  • Retirement Plan
  • And Much More


About TekPartners:

TekPartners is one of the fastest growing private staffing firms in the United States. We are a premierprovider of highly qualified IT talent, Workforce Solutions and Business Intelligence Solutions to many enterprise organizations across the nation. As experts in the industry, our team continues to match proven talent to the right job opportunity every day.

TekPartners is an Equal Opportunity Employer.

Apply Here

Submit CV To All Data Science Job Consultants Across United States For Free

๐Ÿ” Explore All Related ITSM Jobs Below! ๐Ÿš€ โœ… Select your preferred “Job Category” in the Job Category Filter ๐ŸŽฏ ๐Ÿ”Ž Hit “Search” to find matching jobs ๐Ÿ”ฅ โž• Click the “+” icon that appears just before the company name to see the Job Detail & Apply Link ๐Ÿ“๐Ÿ’ผ

Comments

Leave a Reply

Your email address will not be published. Required fields are marked *