Search Remote Jobs

Director, Cybersecurity GRC

Job not on LinkedIn

🔥 5 minutes ago

🇺🇸 United States – Remote

⏰ Full Time

đź”´ Lead

👮‍♂️ Cybersecurity / Security Engineer

đź‘» Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Momentive Software

Momentive Software

1001 - 5000 employees

🤝 B2B

🤝 Non-profit

B2B • Non-profit • Software

Momentive Software is a provider of a comprehensive suite of software solutions tailored for nonprofits and associations. The company aims to streamline operations, enhance member and donor engagement, and drive impactful results for mission-driven organizations. Their offerings include tools for association management, fundraising, event management, learning management, and data analytics, allowing organizations to efficiently manage their financials and foster deeper community connections.

đź“‹ Description

• Manage the people, processes, and technology of Momentive Software's Cybersecurity GRC group • Oversee governance, risk, compliance, client audit support, RFP responses, internal IT audit, and contract review • Serve as process owner for IS GRC-related projects and activities • Assist the CISO in planning, developing, and overseeing the cybersecurity program • Integrate cybersecurity activities across Cybersecurity, Information Technology, new business development, Legal, and professional responsibility functions • Maintain responsibility for IS GRC governance, risk assessment, compliance, and audit support • Lead continual improvement of the cybersecurity program and manage IS GRC standards, guidelines, procedures, toolsets, platforms, and budget • Lead the System Governance Virtual Team and maintain the Firm's Cybersecurity Management System (ISMS) • Provide direction on risk assessments, risk treatment plans, IS controls, control metrics, and ISMS documentation • Co-develop and align AI policies and governance practices with the Director, AI Governance • Coordinate with Cybersecurity Operations and Engineering on service delivery, vendor risk assessments, and platform compliance • Serve on the Computer Cybersecurity Incident Response Team (CSIRT) • Provide evidence and expert support for client audits, RFP responses, and regulatory reviews • Track regulatory and accreditation changes and monitor compliance • Manage cybersecurity awareness initiatives, including phishing simulations and outreach • Mentor and lead the Cybersecurity GRC group, including TPRM Advisors, with full people-management accountability • Transform executive priorities into operational GRC initiatives and report status and metrics to the CISO • Contribute to strategic planning, roadmap development, DR/BCP practices, and cybersecurity innovation

🎯 Requirements

• 10-12+ years of experience in cybersecurity, with 3-5 years in a leadership or program management role • Thorough knowledge of professional management practices including supervisory techniques, leadership principles, and employment practices • Excellent verbal and written communication skills, including public speaking and the ability to convey complex cybersecurity concepts to non-technical stakeholders • Ability to think and communicate strategically about the role of cybersecurity in a global organization • Ability to quickly assess an organization's capability-maturity level and apply that knowledge to RFPs, audits, contract reviews, and internal operations • Proficiency in at least one major EGRC/ITGRC platform (e.g., ServiceNow GRC, Archer, OneTrust, LogicGate) • Comprehensive understanding of NIST CSF, CIS Controls, SOC2T2, and COBIT • Familiarity with GDPR, PCI-DSS, GLBA, FISMA, HIPAA, and ITAR • Advanced understanding of technical controls, risk, and mapping controls to framework and regulatory requirements • Broad understanding of TCP/IP, DNS, common network services, and foundational infrastructure concepts • Knowledge of server, workstation, and Active Directory technologies as they relate to cybersecurity controls • Familiarity with SIEM, IDS, log management, and vulnerability assessment technologies • Ability to gather and analyze facts, define problems, draw conclusions, and recommend solutions • Ability to maintain objectivity and composure under pressure • Ability to set priorities independently given broad executive requirements • Demonstrated flexibility in response to changing priorities • Rigorous and disciplined approach to operational oversight • One or more relevant certifications: CISSP, CISM, or CRISC; ISO 27001 Lead Implementer or Lead Auditor is a plus • Eligibility to work in the United States without sponsorship • Minimum age of 18

🏖️ Benefits

• Medical, Dental & Vision Benefits • 401(k) Savings Plan with Company Match • Flexible Planned Paid Time Off • Generous Sick Leave • Inclusive & Welcoming Environment • Purpose-Driven Culture • Work-Life Balance • Commitment to Community Involvement • Employer-Paid Parental Leave • Employer-Paid Short-Term Disability • Remote Work Flexibility

Apply Now

Similar Jobs

🔥 2 hours ago

Johnson & Johnson

10,000+ employees

🏥 Healthcare

đź’Š Pharmaceuticals

🧬 Biotechnology

Cybersecurity director leading Johnson & Johnson’s post-close security strategy for acquisitions, divestitures, and integrations. Governing risk, compliance, technical execution, and enterprise security transformation.

🔥 2 hours ago

Johnson & Johnson

10,000+ employees

🏥 Healthcare

đź’Š Pharmaceuticals

🧬 Biotechnology

Cybersecurity Director leading Johnson & Johnson’s pre-close security strategy for acquisitions, divestitures, and strategic transactions. Governing due diligence, transaction risk, and integration or separation readiness.

🔥 14 hours ago

Cyera

201 - 500

🏥 Healthcare

đź’Ľ Consulting

📦 Logistics

Regional Sales Director leading Mid-Atlantic and TOLA sales teams for Cyera’s AI security platform. Driving territory growth, enterprise deals, coaching, and quota achievement.

đź•’ 2 days ago

ASRC Federal

5001 - 10000

🎖️ Defense

🚀 Aerospace

🏛️ Government

Information Security Engineer securing ASRC Federal’s DSOP platforms. Conducting Kubernetes assessments, vulnerability management, STIG hardening, and DevSecOps security integration.

đź•’ 2 days ago

GitLab

1001 - 5000

đź’Ľ Consulting

📣 Marketing

🤖 Artificial Intelligence

Regional Sales Director leading GitLab’s National Security Group sales team. Driving federal DevSecOps platform adoption, enterprise revenue, and complex government deals.