Manager - Information Security Compliance

Koitecc Solutions

Reston, Northern (VA, KY)

Hybrid

USD 136,000 - 184,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Discretionary bonus
Stock awards

Job summary

Verisign seeks an experienced Information Security GRC leader to drive enterprise governance, risk, and compliance initiatives from Reston, VA. This hybrid role oversees control assurance, regulatory obligations, and automated monitoring across complex IT environments.

You will brief stakeholders from engineers to senior leadership, evolve security controls, and push for measurable improvements while aligning with company priorities and industry frameworks.

Qualifications

  • Domain expertise in cyber security standard methodologies and security control frameworks such as CIS Controls, SOC 2/3 Trust Services Criteria, NIST Cybersecurity Framework, and NIST SP800-53; with hands-on experience testing and mapping controls across frameworks
  • Experience in a public company environment managing compliance across multiple regulatory and security frameworks
  • Technical understanding of security controls, identifying control objectives, and how to implement them in a complex enterprise IT environment
  • Ability to creatively develop and refine control tests tailored to specific control implementations
  • 8+ years progressively responsible experience in information security governance, risk, compliance, or security assessment/audit
  • 4+ years of security control assessment experience required
  • 2+ years of related experience leading or managing others
  • Professional security management certification, such as a CISSP, CISA, CISM, or CRISC are preferred
  • Bachelor's degree in Information Systems, Computer Science, or related field, or equivalent experience, required

Responsibilities

  • Manage a security control assurance program, including planning and executing test procedures, assessing design and operating effectiveness, and driving identified gaps to remediation
  • Manage compliance with external regulatory obligations, translating requirement into control objectives, coordinating regulator information requests, and tracking remediation commitments
  • Build a continuous control monitoring program by collaborating with control and system owners and translating security control requirements into automated tests
  • Interface directly with technical engineering teams to design and improve security controls, define implementation requirements, and determine what effective security control operations should look like
  • Report on compliance and control assessment results, risk trends, and remediation priorities to audiences ranging from controls owners to senior leadership through clear reporting, executive briefings, and dashboards
  • Assist with the development of enterprise information security policies and standards
  • Lead a team of practitioners, setting priorities and quality standards, and ensuring commitments are met

Skills

GRC management
security controls
regulatory compliance
policy & standards
security risk assessment
automation in security
stakeholder briefings

Education

Bachelor's degree in Information Systems/CS
Security certifications preferred

Job description

Verisign helps enable the security, stability, and resiliency of the internet. We are a trusted provider of internet infrastructure services for the networked world and deliver unmatched performance in domain name system (DNS) services.

We are a mission focused, values driven company where each individual can contribute to building a stronger, more secure internet. We offer a dynamic and flexible work environment with competitive benefits and the ability to grow your career.

Verisign is seeking a hands-on technical manager to join an impactful Information Security Governance, Risk, and Compliance (GRC) team. In this role, you will support an enterprise-wide governance, risk, and compliance program focusing on security control assurance, security risk management, policies and standards, continuous control monitoring, and ensuring compliance with internal and external security requirements.

Some immediate focus areas include:
  • Reviewing information security control design and conducting tests
  • Standing up automated evidence collection practices
  • Responding to external regulatory information requests

An ideal candidate cares deeply about automation and reducing friction. We expect the candidate to possess competencies that allow them to bring noticeable and measurable improvements in some of the above-mentioned areas. This position requires the technical depth and communication range to brief audiences from system engineers to senior leadership.

Primary Responsibilities:
  • Manage a security control assurance program, including planning and executing test procedures, assessing design and operating effectiveness, and driving identified gaps to remediation.
  • Manage compliance with external regulatory obligations, translating requirement into control objectives, coordinating regulator information requests, and tracking remediation commitments.
  • Build a continuous control monitoring program by collaborating with control and system owners and translating security control requirements into automated tests.
  • Interface directly with technical engineering teams to design and improve security controls, define implementation requirements, and determine what effective security control operations should look like.
  • Report on compliance and control assessment results, risk trends, and remediation priorities to audiences ranging from controls owners to senior leadership through clear reporting, executive briefings, and dashboards.
  • Assist with the development of enterprise information security policies and standards.
  • Lead a team of practitioners, setting priorities and quality standards, and ensuring commitments are met.
Qualifications:
  • Domain expertise in cyber security standard methodologies and security control frameworks such as CIS Controls, SOC 2/3 Trust Services Criteria, NIST Cybersecurity Framework, and NIST SP800-53; with hands‑on experience testing and mapping controls across frameworks
  • Experience in a public company environment managing compliance across multiple regulatory and security frameworks
  • Technical understanding of security controls, identifying control objectives, and how to implement them in a complex enterprise IT environment
  • Ability to creatively develop and refine control tests tailored to specific control implementations
  • 8+ years progressively responsible experience in information security governance, risk, compliance, or security assessment/audit
  • 4+ years of security control assessment experience required
  • 2+ years of related experience leading or managing others
  • Professional security management certification, such as a Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), or Certified in Risk and Information Systems Control (CRISC) are preferred
  • Bachelor's degree in Information Systems, Computer Science, or related field, or equivalent experience, required

This position is based in our Reston, VA office and offers a hybrid work schedule.

The pay range is $135,800 - $183,800.

The anticipated annual base salary range for this position is noted above, however, base pay offered may vary depending on job‑related knowledge, skills, experience. Verisign offers a discretionary bonus which is based on individual and company performance, and certain roles may be eligible for discretionary stock awards.

Verisign is an equal opportunity employer. That means we recruit, hire, compensate, train, promote, transfer, and administer all terms and conditions of employment without regard to their race, color, religion, national origin, sex, sexual orientation, gender identity, age, protected veteran status, disability, or other protected categories under applicable law.

Additional Information:
  • Our Careers Page
  • Our Benefits Summary
  • Verisign in the Community
  • Our EEO Statement
  • Our Privacy Notice for Job Applicants/Candidates
  • Reasonable Accommodations

Staffing agency policy: No fees will be paid for unsolicited resumes submitted to Verisign or our employees by third parties.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager - Information Security Compliance
Manager - Information Security Compliance

Verisign Inc. • Reston (VA)

Hybrid
USD 136,000 - 184,000
Discretionary bonus
Stock awards
Manager - Information Security Compliance
Manager - Information Security Compliance

Verisign • Reston (VA)

Hybrid
USD 136,000 - 184,000
Discretionary bonus
Stock awards
InfoSec GRC Manager: Automation, Controls & Compliance
InfoSec GRC Manager: Automation, Controls & Compliance

Verisign Inc. • Reston (VA)

Hybrid
USD 136,000 - 184,000
Discretionary bonus
Stock awards
Director of Identity and Access Management Engineering
Director of Identity and Access Management Engineering

Verisign • Reston (VA)

On-site
USD 180,000 - 245,000
Competitive benefits
Hybrid work environment
Discretionary bonuses
Sr Product Manager
Sr Product Manager

Verisign • Reston (VA)

Hybrid
USD 149,000 - 202,000
Sr Research Engineer
Sr Research Engineer

Verisign • Reston (VA)

On-site
USD 164,000 - 223,000
InfoSec Compliance & GRC Leader (Automation)
InfoSec Compliance & GRC Leader (Automation)

Koitecc Solutions • Reston (VA), Northern (KY)

Hybrid
USD 136,000 - 184,000
Discretionary bonus
Stock awards
Senior Manager Infrastructure
Senior Manager Infrastructure

VERISIGN • Great Falls Crossing (VA)

Hybrid
USD 164,000 - 223,000
Discretionary bonus
Possible stock awards
Senior InfoSec Tools Engineer
Senior InfoSec Tools Engineer

VeriSign, Inc. • Reston (VA)

Hybrid
USD 135,000 - 184,000
Discretionary bonus
Discretionary stock awards
InfoSec GRC Manager - Controls, Compliance & Automation
InfoSec GRC Manager - Controls, Compliance & Automation

Verisign • Reston (VA)

Hybrid
USD 136,000 - 184,000
Discretionary bonus
Stock awards