Cybersecurity Governance Program Manager

Insight Global

San Jose (CA)

On-site

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Insight Global is seeking an experienced risk management professional to lead cybersecurity initiatives in San Jose, California. This role involves finalizing and securing approval for critical cybersecurity policies and managing the integration of GRC platforms like ServiceNow.

The ideal candidate will have at least 7 years of experience in Third Party Risk Management, strong analytical abilities, and exceptional communication skills. The company values diversity and is committed to inclusive work environments.

Qualifications

  • 7+ years of experience in Third Party Risk Management or Vendor Risk Management.
  • Proven experience designing or re-engineering TPRM programs.
  • Hands-on vendor assessments across Data Security and Compliance.

Responsibilities

  • Finalize and secure approval for the Cybersecurity Policy.
  • Lead completion of the ServiceNow GRC module integration.
  • Drive approval of core security standards like Network Security.

Skills

Third Party Risk Management
Vendor Risk Management
Audit Risk Advisory
Analytical skills
Problem-solving skills
Communication skills
Data Security

Tools

SQL
Python
ServiceNow
JIRA

Job description

What You'll Do:
  • Policy Development: Finalize and secure formal approval for the enterprise-wide Cybersecurity Policy.
  • GRC Platform Integration: Lead the completion of the ServiceNow (SNOW) GRC module integration, ensuring alignment with ISO 27001 requirements.
  • Security Standards Implementation: Drive the completion and approval of core security standards, including Network Security, Okta, Device Management, Incident Response, Third-Party Risk Management (TPRM), and Logging.
  • Process Implementation: Design, document, and implement a formal process for managing security exceptions.
Skills and Requirements
Minimum Qualifications & Expertise (Required Day One):
  • 7+ years of dedicated experience in Third Party Risk Management (TPRM), Vendor Risk Management, or Audit/Risk Advisory.
  • Demonstrated experience independently designing, building, or completely re‑engineering a TPRM program from the ground up.
  • Multidisciplinary Review Expertise: Proven hands‑on experience independently executing vendor assessments across Data Security, Data Privacy, Legal/Regulatory Compliance, and Contract Review.
  • Excellent analytical and problem‑solving skills, with the ability to navigate complex vendor structures.
  • Exceptional written and verbal communication skills, with experience developing training/policy materials and presenting to leadership.
  • Independent and self‑sufficient; capable of executing full scope of work with minimal day‑to‑day oversight and strong time‑management skills to balance operational and project work.
  • Previous experience utilizing A.I. tools to complete day‑to‑day job responsibilities specific to Risk Management, Compliance, Governance, Audit, etc.
  • Proven ability to read most common software coding languages, and proficiency in writing basic data querying & exporting scripts (e.g., SQL, Python) independently (unassisted by the use of A.I., apps, tools, or the internet).
Preferred Qualifications:
  • Relevant industry certifications (e.g., CTPRP, CISSP, CISA, CIPP, CRISC).
  • Experience in the telecommunications, ISP, or high‑growth tech sectors.
  • Expertise utilizing standard GRC or TPRM platforms (e.g., JIRA, ServiceNow, Whistic).

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Program Manager
Cybersecurity Program Manager

Cloud Hybrid Technologies, LLC • Dallas (TX)

On-site
USD 90,000 - 120,000
Sr. Cybersecurity GRC Analyst (Remote)
Sr. Cybersecurity GRC Analyst (Remote)

RadNet, Inc. • United States

On-site
USD 90,000 - 115,000
Senior ServiceNow GRC Solution Architect
Senior ServiceNow GRC Solution Architect

Veriipro • Washington

On-site
USD 150,000 - 190,000
Information Technology Security Analyst
Information Technology Security Analyst

The Phoenix Group • Charlotte (NC)

Hybrid
USD 54,000 - 90,000
Hybrid work model
Relocation assistance
Certifications support
Senior Third Party Cybersecurity GRC Analyst
Senior Third Party Cybersecurity GRC Analyst

Jobtailor • Indianapolis (IN)

On-site
USD 95,000 - 130,000
Product Manager - ServiceNow GRC & SecOps
Product Manager - ServiceNow GRC & SecOps

SHI International Corp. • New Jersey

On-site
USD 150,000 - 180,000
Medical benefits
401K
Flexible spending
Manager - IT Governance, Risk and Compliance
Manager - IT Governance, Risk and Compliance

Plexus Corp • Neenah (WI)

On-site
USD 112,000 - 169,000
Cybersecurity GRC Specialist
Cybersecurity GRC Specialist

The TemPositions Group of Companies • New York (FL)

On-site
USD 140,000 - 190,000
Sr. Cybersecurity GRC Analyst (Remote)
Sr. Cybersecurity GRC Analyst (Remote)

TPx • United States

On-site
USD 105,000 - 145,000
IT Security GRC Analyst
IT Security GRC Analyst

The Phoenix Group • Charlotte (NC)

On-site
USD 85,000 - 120,000