IT Security GRC Program Manager

,


Apply Save

Type: Direct-Hire

Category: Information Technology

Salary: 130,000.00

Reference ID: 10023379

Shortcut: http://addisongroup.gosnaphop.com/mE41Li


IT Security GRC Compliance Program Manager

Alameda, CA

Starting Base Salary Is: $120,000-$145,000

Visa Transfer for those that have 1 year or more on an active H1B Visa


Individual compensation will vary based on factors such as qualifications, skill level, competencies, work location and shift, and will increase over time based on meeting performance and business needs.


The IT Compliance Program Manager will oversee the IT controls, processes, and transactions to ensure they follow all relevant regulatory, legal, and internal compliance guidelines.

What You'll Work On

· Develop the IT General Controls Framework, implement and manage an effective IT controls audit and compliance program for the enterprise across all domains of IT, and manage cybersecurity risk to the business.

· Ability to self-audit with limited assistance from system or service owners across all IT domains i.e., Network, Cloud, IAM, Data, Application, IoT, IT and Security Operations/ Engineering.

· Partner with peer teams and business where necessary. Expected to be self-reliant on security audits, reviews, evidence retrieval. Engage with 3rd party auditors on testing/walk-throughs and address any security gaps.

· Create and manage effective action plans in response to audit discoveries and compliance violations.

· Partner with system owners on IT services audit outcomes, risk management and compliance reporting.

· Advise management on the company’s compliance with laws and regulations through detailed reports.

· Develop, and up-keep company IT security policies and procedures. Regularly audit company procedures, practices, and documents to identify possible weaknesses or risks.

· Ensure stakeholders are educated on the latest regulations and processes. Resolve business concerns about regulatory and legal compliance.

· Maintain positive rapport with IT teams, business, and auditors through effective communications.

· Develop, self-audit, manage, and oversee IT Controls across all domains of IT i.e., Network security, Cloud Security, Infrastructure security, End-point security, IAM, Data security, Endpoint security, Application security, IT/ Security operations, ensuring internal and regulatory compliance, working with peer teams to address any gaps and report on compliance.

· Adhere to the Company’s Quality Management System (QMS) as well as domestic and global quality system regulations, standards, and procedures.

· Understand relevant security, privacy and compliance principles and adhere to the regulations, standards, and procedures that are applicable to the Company.

· Ensure other members of the department follow the QMS, regulations, standards, and procedures.

· Perform other work-related duties as assigned.

What You'll Bring

· Bachelor's degree in computer science or related field with 10+ years of experience, or equivalent combination of education and experience

· 10+ years’ hands-on experience preferred in developing, implementing, and managing enterprise IT audit, governance, and compliance framework.

· Ability to develop ITGC framework, implement and manage audit, governance, and compliance across all IT domains i.e., Network, Cloud, IAM, Endpoint, Data, Applications and Operations

· Self-reliant & motivated, with expert level understanding of IT technology stack across Network, IAM, Endpoint, Data, Applications.

· Fully self-reliant, hands-on capability across IT technology stack across Network, Cloud, IAM, Endpoint, Data & Applications. This role will be responsible for accessing and auditing, IT controls, configuration hardening, IAM configurations etc. across routers, switches, WLC’s etc. Example: Given an application domain, you will be responsible for auditing applications security stack, runtime protection, API security etc.

· Expert level knowledge of audit, governance, and compliance frameworks

· Expert level knowledge of cybersecurity risk management frameworks

· Strong knowledge of technology landscape, regulatory/legal requirements, and procedures

· Highly analytical with strong attention to detail.

· Strong oral, written, and interpersonal communication skills

· Proficiency with MS Word, Excel, and PowerPoint

· Excellent organizational skills with ability to prioritize assignments while handling various projects simultaneously.

  • Senior Cloud Security Engineer

    Alameda, CA

    Senior Cloud Security Engineer Alameda, CA $200K-$220K/year Visa Transfer for those that have 1 year or more remaining on an H1B Visa Job Description: The Senior Cloud Security Engineer will be a member of the Information Security & Compliance team. Th...

    Recommended

  • SNOC Engineer II

    Pittsburgh, PA

    Job Title: SNOC Engineer II Office Location: Onsite Location: Pittsburgh, PA Salary: $85000 — $100000 Education/Experience · Bachelor’s degree from an accredited college or university in Computer Science, Information Systems, or related field. An equiv...

    Recommended

  • Sr. Network Security Engineer

    Alameda, CA

    Sr. Network Security Engineer Alameda, CA $200-215K Base Must be onsite 3X week Client will transfer a Visa with 1 year or more remaining. Job Description: The Sr. Network Security Engineer will be a member of the Information Security & Compliance team...

    Recommended

  • IT Security - GRC Lead (Remote)

    Chicago, IL

    Title: Security - IT GRC Lead Location: Remote USA Salary: $125-135K + Bonus No sponsorship offered Our client is a public organization with locations all over the world. They have a 75 year track record of being a subscription/SaaS based organization....

    Recommended

  •  Senior IT Auditor

    Bellevue, WA

    Job Name: Senior IT Auditor Location: Bellevue, WA (4 days in-office) Pay Rate: $120 - $130K/Year Job ID: 10021180 Company Overview: Our client is a stable Bellevue, WA public company with operations across the globe. We are recruiting for a skilled Se...

    Recommended

  • SCCM Engineer

    Houston, TX

    RESPONSIBILITIES Advanced End User System Support · Provides support for incidents and problems escalated from our tier 1 and tier 2 support teams with a particular focus on PC hardware, operating systems, peripherals, IoT, and other issues. · Support ...

    Recommended

  • Chief Information Security Officer (CISO)

    Austin, TX

    Chief Information Security Officer (CISO) Reporting to the CIO, the Chief Information Security Officer (CISO) is a key role on the leadership team of the IT department. This position is responsible for the security of data and information assets. This ...

    Recommended

  • Application Manager

    League City, TX

    Application Manager Beaumont, TX Hybrid schedule Essential Duties and Responsibilities: Define and implement Enterprise Application strategy in alignment with the overall IT and Business strategy, including roadmap and release management, and related p...

    Recommended

  • Environmental Specialist

    ,

    Position Summary: The Environmental Compliance Manager II will support a dynamic EHS team who aspire to deliver solutions and provide support to our team of 1,400+ employees in 130 locations in the United States and Canada. The successful candidate wil...

    Recommended

  • Voice Engineer

    Houston, TX

    Title: Voice Engineer Office Location / Status: Houston, Texas (Onsite Monday – Thursday, Remote Fridays) Duration: 6-month (contract to hire) The essential job functions include but are not limited to. · Voice Network Design and Implementation: Design...

    Recommended

  • Instrumentation and Controls Engineer

    New Orleans, LA

    Instrumentation and Controls Engineer Location: New Orleans, LA Salary: $70,000 - $90,000 Job Summary The Controls Engineer will be a critical member of the Company’s Engineering & Construction team, reporting directly to the Director, Platform Instrum...

    Recommended

  • Workday Application Analyst

    Houston, TX

    Job Title: Workday Application Analyst Office Status: Onsite Key Responsibilities/Duties: • Serve as point of contact and technology advocate for all assigned applications and the gathering of business requirements from company stakeholders regarding t...

    Recommended

  • Senior Azure Data Architect

    Frederick, MD

    Our client is looking for a Senior Data Architect to help design, build, and expand a leading technology platform in the financial services industry. As a Sr. Data Architect, you will be pivotal in shaping the organization's data strategy and infrastru...

    Recommended

  • Cybersecurity Engineer

    Washington, DC

    Position: Cybersecurity Engineer Location: District of Columbia - Hybrid Are you looking for a growth opportunity for a reputable company with a positive work environment? Our client is looking for a Cybersecurity Engineer to join their team. Please co...

    Recommended

  • AV Network Administrator

    ,

    Position :AV Network Administrator Location: 100% Remote - (Must be able to drive to Wheaton, MD) Are you looking for a growth opportunity for a reputable company with a positive work environment? Our client is looking for a AV Network Administrator to...

    Recommended