Manager - IT Governance, Risk and Compliance

Plexus

Neenah (WI)

On-site

USD 112,600 - 169,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Plexus in Wisconsin is seeking a senior IT Governance, Risk, and Compliance leader to drive the GRC program and mature the cybersecurity posture. You will develop and socialize policies, oversee risk assessments, audits, and third-party risk, and lead a multi-year GRC roadmap while aligning with global regulations and standards.

The role requires 5+ years in GRC with strong leadership, communication, and strategic program management, and a proven ability to partner with executives to improve

Qualifications

  • Bachelor’s degree with 5+ years of related experience preferred.
  • Advanced leadership experience in dynamic environments.
  • Strong written and verbal communication and collaboration with business partners.
  • Knowledge of frameworks (NIST CSF, ISO 27001, CIS Controls) and regulatory requirements (SOX, SEC, GDPR, HIPAA, CMMC).

Responsibilities

  • Lead IT Governance, Risk, and Compliance program and drive the GRC framework.
  • Coordinate internal and external cybersecurity audits and remediation tracking.
  • Develop policies, standards, and procedures across the organization.
  • Oversee third-party risk management and risk assessments.

Skills

GRC Leadership
Policy Development
Risk Assessments
Audit Coordination
Third-Party Risk
Regulatory Compliance
NIST CSF
ISO 27001
CMMC
GDPR
HIPAA

Education

Bachelor’s Degree

Tools

Vanta
ServiceNow GRC

Job description

Our commitment to pay range transparency fosters an equitable workplace, where everyone can feel valued. The annual compensation range for this position is stated below. The salary offered within this range will be based upon the geographic location, work experience, education, licensure requirements and/or skill level.

Salary Range: $112,600.00 - $169,000.00

Purpose Statement

Lead and manage the IT Governance, Risk, and Compliance (GRC) team, driving the development, maintenance, and execution of the GRC framework, ensuring compliance with global regulations and industry standards, and maturing the organization's overall cybersecurity posture.

Key Job Accountabilities
  • IT Governance, Risk, and Compliance Program Leadership:
    • Develop and maintain the Cybersecurity GRC framework, policies, standards, and procedures in alignment with regulatory requirements (e.g., ISO 27001, NIST CSF, Cyber Essentials +, SOC 2, GDPR, CMMC Level 2,3)
    • Develop, maintain, and socialize IT and cybersecurity policies, standards, and procedures across the organization.
    • Oversee risk mitigation and the IT risk register, lead risk assessments.
    • Develop, and oversee IT control effectiveness. Experience with IT Control design review and validation.
    • Coordinate internal and external cybersecurity audits and assessments, tracking findings through remediation.
    • Oversee customer assessments and questionnaires.
    • Build, coordinate and oversee Third-Party risk management.
  • Strategic Program Management and Continuous Improvement: Lead the execution of the multi-year GRC Program roadmap, tracking and reporting on key performance indicators (KPIs) and key risk indicators (KRIs) to executive leadership. Drive continuous improvement in security controls and GRC processes by implementing best practices and automating controls where feasible.
  • Talent Management and Core Values: Responsible to exemplify and hold their team accountable to demonstrating the Plexus Core Values. Leader will focus on evaluating potential, driving succession planning, and ensuring their employees receive the development and coaching required to realize their full potential.
  • All GT leaders are accountable for upholding the organization's cybersecurity posture by adhering to security policies and procedures, actively participating in training, protecting data and systems, actively identifying and mitigating vulnerabilities, and promptly reporting any suspicious activity or potential security incidents.
Education/Experience Qualifications
  • Bachelor’s Degree with 5 or more years of related experience is preferred. An equivalent combination of education and/or experience will be considered.
Other Qualifications
  • Advanced leadership experience in dynamic, fast paced environments.
  • Advanced decision making, problem solving, and prioritization skills.
  • Advanced verbal and written communication skills.
  • Good interpersonal, communication and leadership skills; ability to motivate people and manage resources effectively and work with business partners to achieve goals.
  • Business acumen, knowledge and professionalism; understand how a business operates with the ability to develop and articulate the value proposition of a new process.
  • Functional knowledge in project management skills.
  • Must be self-motivated with the ability to work independently and in a team environment.
  • Knowledge of industry-standard security frameworks (e.g., NIST CSF, ISO 27001, CIS Controls) and regulatory requirements (e.g., SOX, SEC, GDPR, HIPAA, CMMC).
Preferred Qualifications
  • Experience building an IT GRC function within a global organization.
  • Experience building an IT Third-Party Risk function within a global organization.
  • Industry recognized certifications such as the CRISC, CISA, CISSP, CISM, and/or CGEIT are preferred.
  • Experience in the use and administrative setup of GRC software platforms (e.g., Vanta, ServiceNow GRC).
Physical Requirements

Professional office environment with suitable lighting, comfortable temperatures, and low noise level. May require prolonged periods of sitting at a desk, using a computer, and other office equipment. Minimal physical activity is generally involved, emphasizing the importance of good posture and ergonomic workplace arrangements.

Travel Requirements

5%

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager - IT Governance, Risk and Compliance Neenah, WI IT Mgmt Posted 20 hours ago
Manager - IT Governance, Risk and Compliance Neenah, WI IT Mgmt Posted 20 hours ago

Plexus Corp. • Neenah (WI)

On-site
USD 130,000 - 194,000
Manager - IT Governance, Risk and Compliance
Manager - IT Governance, Risk and Compliance

Plexus Corp. • Neenah (WI)

On-site
USD 112,000 - 169,000
Manager Security Compliance and Risk Management
Manager Security Compliance and Risk Management

RELX • Raleigh (NC)

On-site
USD 118,000 - 220,000
Annual incentive bonus
Manager, Cybersecurity Risk and Compliance
Manager, Cybersecurity Risk and Compliance

The Judge Group • Trenton (NJ)

Hybrid
USD 140,000 - 170,000
Health benefits and insurance
PTO
401k
Manager Security Compliance and Risk Management
Manager Security Compliance and Risk Management

LexisNexis • Raleigh (NC)

On-site
USD 118,000 - 220,000
IT GRC Lead Analyst
IT GRC Lead Analyst

Westfield Insurance • Westfield Center (OH)

Hybrid
USD 90,000 - 120,000
Manager, IT Risk & Compliance 2
Manager, IT Risk & Compliance 2

Celestica • United States

On-site
USD 107,000 - 147,000
Lead GRC Analyst (IT/Security)
Lead GRC Analyst (IT/Security)

Ultra Clean Technology • Manor (TX)

On-site
USD 90,000 - 120,000
Manager of Cybersecurity GRC
Manager of Cybersecurity GRC

Kforce Inc • West Valley City (UT)

On-site
USD 130,000 - 180,000
Medical Insurance
Dental Insurance
Vision Insurance
+6
Manager, IT Security, Governance, Risk and Compliance
Manager, IT Security, Governance, Risk and Compliance

Burlington Stores, Inc. • Beverly (NJ)

Hybrid
USD 115,000 - 150,000
Medical, dental, and vision coverage
Paid time off and holidays
401(k) plan