Lead InfoSec Risk Manager, GRC & Audit (Hybrid)

SAS

Cary (NC)

Hybrid

USD 140,000 - 190,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

401k plan
Tuition assistance
Generous vacation and holidays

Job summary

SAS is seeking a Manager, Information Security Risk – Governance, Risk, Compliance – Audit (GRC-A) to lead risk management programs in a hybrid Cary, NC environment. You will oversee risk assessments across SAS and third parties and guide the team in delivering independent risk insights.

In this working management role, partner with stakeholders across IT and business domains, monitor regulatory requirements (NIST CSF, PCI DSS, CIS Controls), and drive program execution with senior leadership.

Qualifications

  • Bachelor’s or Master’s degree in Business, IT, Cybersecurity, Project Management or related field.
  • ],
  • job_responsibilities_description . . .
  • CoT_job_summary_short
  • job_responsibilities_description[]
  • CoT_job_summary_short
  • job_responsibilities_description

Responsibilities

  • Lead and mature the information security risk management program and third-party risk assessments, guiding a team to improve risk management practices.
  • Partner with business, technology, and service provider stakeholders to identify, assess, monitor, and manage information security risks.
  • Monitor evolving regulatory requirements and incorporate them into program practices.

Skills

Risk management
Leadership
Stakeholder engagement
GRC tooling
Project management
Communication
Problem solving

Education

Bachelor’s or Master’s degree in Business, IT, Cybersecurity, Project Management or related field

Tools

ServiceNow IRM

Job description

SAS is seeking a Manager, Information Security Risk – Governance, Risk, Compliance – Audit (GRC-A) to lead risk management programs in a hybrid Cary, NC environment. You will oversee risk assessments across SAS and third parties and guide the team in delivering independent risk insights.

In this working management role, partner with stakeholders across IT and business domains, monitor regulatory requirements (NIST CSF, PCI DSS, CIS Controls), and drive program execution with senior leadership.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, GRC-A (Information Security Risk)
Manager, GRC-A (Information Security Risk)

SAS • Cary (NC)

Hybrid
USD 140,000 - 190,000
401k plan
Tuition assistance
Generous vacation and holidays
Hybrid GRC Security Lead: Audits, Risk & Compliance
Hybrid GRC Security Lead: Audits, Risk & Compliance

Early Warning Services LLC • Chicago (IL)

Hybrid
USD 116,000 - 145,000
Healthcare Coverage
401(k) Match
Paid Time Off
+2
Director, GRC & Information Security — Hybrid Leader
Director, GRC & Information Security — Hybrid Leader

Surescripts • Minneapolis (MN)

Hybrid
USD 209,000 - 255,000
Comprehensive healthcare
Infertility coverage
Paid time off
+4
Hybrid GRC Analyst I: Risk, Audit & Compliance
Hybrid GRC Analyst I: Risk, Audit & Compliance

Geographic Solutions, Inc. • Palm Harbor (FL)

Hybrid
USD 65,000 - 85,000
Information Security GRC Lead - Policy & Risk Management
Information Security GRC Lead - Policy & Risk Management

NorthMark Compute & Cloud • Dallas (TX)

On-site
USD 90,000 - 120,000
Lunch stipend
Medical benefits
Dental & Vision
+7
Lead GRC Analyst — Hybrid IT Risk & Compliance Leader
Lead GRC Analyst — Hybrid IT Risk & Compliance Leader

Msig USA • Northern (KY)

Hybrid
USD 120,000 - 160,000
GRC & Security Risk Lead (Hybrid) — Build Mature Program
GRC & Security Risk Lead (Hybrid) — Build Mature Program

CHAOS Industries • Washington

On-site
USD 110,000 - 150,000
Health benefits
401k match
Free daily lunch
+3
Senior GRC & Security Leader: Risk & Compliance
Senior GRC & Security Leader: Risk & Compliance

ABB Inc. • Cary (NC)

Hybrid
USD 180,000 - 260,000
Health benefits
401k with company match
Paid holidays
Senior GRC Manager — Remote, Risk & Compliance Strategy
Senior GRC Manager — Remote, Risk & Compliance Strategy

Sound Physicians • United States

On-site
USD 130,000 - 160,000
InfoSec GRC Senior Manager: Security Governance & Risk
InfoSec GRC Senior Manager: Security Governance & Risk

BlackBerry Inc. • MacGregor Park (NC)

Hybrid
USD 180,000 - 230,000
Health, Life & Disability
401k with Company Contributions
Employee Stock Purchase Plan