Manager - IT Governance, Risk and Compliance

Plexus Corp.

Neenah (WI)

On-site

USD 112,600 - 169,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Plexus Corp. is seeking a leader for the IT Governance, Risk, and Compliance (GRC) team. This role focuses on developing the GRC framework, ensuring compliance with global regulations, and enhancing the organization's cybersecurity posture. The ideal candidate will have a Bachelor’s Degree and over 5 years of experience in IT governance.

Responsibilities include managing audits, risk assessments, and continuous improvement initiatives. Strong leadership and communication skills are essential for this position.

Qualifications

  • Advanced leadership experience in dynamic environments.
  • Strong verbal and written communication skills.
  • Self-motivated with ability to work independently and in a team.

Responsibilities

  • Lead and manage the IT GRC team and develop cybersecurity framework.
  • Drive continuous improvement in security controls and GRC processes.
  • Coordinate internal and external cybersecurity audits and assessments.

Skills

Leadership
Decision making
Problem solving
Communication skills
Project management

Education

Bachelor’s Degree with 5+ years related experience

Tools

GRC software platforms (e.g., Vanta, ServiceNow GRC)

Job description

Purpose Statement

Lead and manage the IT Governance, Risk, and Compliance (GRC) team, driving the development, maintenance, and execution of the GRC framework, ensuring compliance with global regulations and industry standards, and maturing the organization's overall cybersecurity posture.

Salary Range: $112,600.00 - $169,000.00

Key Job Accountabilities
  • IT Governance, Risk, and Compliance Program Leadership:
    • Develop and maintain the Cybersecurity GRC framework, policies, standards, and procedures in alignment with regulatory requirements (e.g., ISO 27001, NIST CSF, Cyber Essentials +, SOC 2, GDPR, CMMC Level 2,3).
    • Develop, maintain, and socialize IT and cybersecurity policies, standards, and procedures across the organization.
    • Oversee risk mitigation and the IT risk register, lead risk assessments.
    • Develop, and oversee IT control effectiveness. Experience with IT Control design review and validation.
    • Coordinate internal and external cybersecurity audits and assessments, tracking findings through remediation.
    • Oversee customer assessments and questionnaires.
    • Build, coordinate and oversee Third‑Party risk management.
  • Strategic Program Management and Continuous Improvement: Lead the execution of the multi‑year GRC Program roadmap, tracking and reporting on key performance indicators (KPIs) and key risk indicators (KRIs) to executive leadership. Drive continuous improvement in security controls and GRC processes by implementing best practices and automating controls where feasible.
  • Talent Management and Core Values: Responsible to exemplify and hold team members accountable to demonstrating the Plexus Core Values. Lead will focus on evaluating potential, driving succession planning, and ensuring employees receive the development and coaching required to realize their full potential.
  • All GT leaders are accountable for upholding the organization's cybersecurity posture by adhering to security policies and procedures, actively participating in training, protecting data and systems, actively identifying and mitigating vulnerabilities, and promptly reporting any suspicious activity or potential security incidents.
Education / Experience Qualifications
  • Bachelor’s Degree with 5 or more years of related experience is preferred. An equivalent combination of education and/or experience will be considered.
Other Qualifications
  • Advanced leadership experience in dynamic, fast paced environments.
  • Advanced decision making, problem solving, and prioritization skills.
  • Advanced verbal and written communication skills.
  • Good interpersonal, communication and leadership skills; ability to motivate people and manage resources effectively and work with business partners to achieve goals.
  • Business acumen, knowledge and professionalism; understand how a business operates with the ability to develop and articulate the value proposition of a new process.
  • Functional knowledge in project management skills.
  • Must be self‑motivated with the ability to work independently and in a team environment.
  • Knowledge of industry‑standard security frameworks (e.g., NIST CSF, ISO 27001, CIS Controls) and regulatory requirements (e.g., SOX, SEC, GDPR, HIPAA, CMMC).
Preferred Qualifications
  • Experience building an IT GRC function within a global organization.
  • Experience building an IT Third‑Party Risk function within a global organization.
  • Industry recognized certifications such as the CRISC, CISA, CISSP, CISM, and/or CGEIT are preferred.
  • Experience in the use and administrative setup of GRC software platforms (e.g., Vanta, ServiceNow GRC).
Physical Requirements

Professional office environment with suitable lighting, comfortable temperatures, and low noise level. May require prolonged periods of sitting at a desk, using a computer, and other office equipment. Minimal physical activity is generally involved, emphasizing the importance of good posture and ergonomic workplace arrangements.

Travel Requirements

5%

Accommodations

We are pleased to provide reasonable accommodations to individuals with disabilities or special requirements. If you need an application accommodation, please contact us by email at GHQ.TA@plexus.com. This email is for accommodation requests only and cannot be used to inquire about the status of applications.

Equal Opportunity Employer

We are an Equal Opportunity Employer (EOE) and do not discriminate based on race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

Background Check

Some offers of employment are contingent upon successfully passing a drug screen and/or background check.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager - IT Governance, Risk and Compliance Neenah, WI IT Mgmt Posted 20 hours ago
Manager - IT Governance, Risk and Compliance Neenah, WI IT Mgmt Posted 20 hours ago

Plexus Corp. • Neenah (WI)

On-site
USD 130,000 - 194,000
Manager, IT Security, Governance, Risk and Compliance
Manager, IT Security, Governance, Risk and Compliance

Burlington Stores, Inc. • Beverly (NJ)

Hybrid
USD 115,000 - 150,000
Medical, dental, and vision coverage
Paid time off and holidays
401(k) plan
Information Technology Security Analyst
Information Technology Security Analyst

The Phoenix Group • Charlotte (NC)

Hybrid
USD 95,000 - 116,000
Hybrid work model
Relocation assistance
Certification sponsorship
Lead GRC Analyst (IT/Security)
Lead GRC Analyst (IT/Security)

Ultra Clean Technology • Manor (TX)

On-site
USD 90,000 - 120,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta-Denta • St. Louis (MO)

Hybrid
USD 75,000 - 110,000
Manager Security Compliance and Risk Management
Manager Security Compliance and Risk Management

LexisNexis • Raleigh (NC)

On-site
USD 118,000 - 220,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta Dental of Missouri • Missouri

Hybrid
USD 80,000 - 100,000
Manager of Information Security and Compliance
Manager of Information Security and Compliance

iboss • United States

On-site
USD 100,000 - 130,000
Health, Vision, Dental
401(k) with company match
Unlimited Paid Time Off
+1
Sr. Lead Information Security Governance, Risk, and Compliance (GRC) Analyst
Sr. Lead Information Security Governance, Risk, and Compliance (GRC) Analyst

Visa Hunt • United States

On-site
USD 89,000 - 151,000
Data Protection and Governance Director
Data Protection and Governance Director

Plexus Corp. • Neenah (WI)

On-site
USD 112,000 - 169,000
Comprehensive benefits package
Opportunities for professional development
Work-life balance initiatives