Manager of Cyber Risk Management GRC

Request Technology, LLC

Oakland (CA)

On-site

USD 140,000 - 190,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Prestigious Enterprise Company is seeking a Manager of GRC and Cyber Risk Management to lead a team of five and oversee security programs spanning authentication, PKI, data loss prevention, third-party risk, and security event analytics. The role requires hands-on leadership, collaboration with security architects, legal, and audit, and the ability to translate complex risks into actionable controls.

You will mentor staff and help mature assurance service delivery while aligning with regulatory

Qualifications

  • 3+ years formal management experience over GRC and Cyber Risk
  • Experience with Azure and Oracle public cloud infrastructures
  • Ability to analyze business requirements and recommend timely, effective solutions
  • Demonstrated collaboration with security, legal, and audit teams

Responsibilities

  • Lead a team of 5 over the processes, maintain internal frameworks, create documentation templates, and implement tooling to support and mature assurance service delivery.
  • Collaborate with security specialists, enterprise architects, and other technical leaders to ensure security solutions sufficiently mitigate risks and align with business objectives and regulatory requirements.
  • Analyze risk exposure and consult on the design of cyber risk management capabilities where improvements are needed.
  • Assess the effectiveness of cybersecurity capabilities, provide guidance on managing risks associated with ineffective controls, and influence decision-making by educating stakeholders.
  • Track and report issue status, ensuring timely resolution of identified risks.
  • Communicate cybersecurity risks and solutions to technical and non-technical audiences across all levels of management.
  • Advise on enterprise-level decisions by presenting insights to senior leadership, including technology executives and governance bodies.
  • Collaborate with legal, compliance, and audit teams to ensure alignment with regulatory expectations and contractual obligations.
  • Maintain ongoing communication with leadership regarding developments in assigned areas and contribute to special projects as needed.
  • Provide thought leadership and consulting support in the creation and maintenance of security-enabled processes across cybersecurity and technology teams.
  • Mentor team members on technical topics, interpersonal dynamics, organizational policies, and enterprise operations.
  • Partner with infrastructure, application, and data teams to ensure security controls are embedded across technology lifecycles and operational processes.
  • Conduct regular risk assessments to ensure compliance with internal policies, external regulations, and industry standards; update unified requirements and document corrective actions.
  • Define and track key performance indicators (KPIs) for cyber risk management capabilities, including issue closure rates, control effectiveness, and remediation timelines.
  • Stay current with emerging threats, trends, and technologies, and provide strategic recommendations to enhance the organizations security posture.
  • Contribute to the development and enforcement of cybersecurity policies, standards, and guidelines to ensure consistent and effective practices.
  • Advise on the selection and implementation of security tools and technologies aligned with the cyber risk management strategy.

Skills

GRC management
Cyber risk
Team leadership
Azure
Oracle Cloud

Job description

***We are unable to sponsor for this permanent full-time role***

***Position is bonus eligible***

Prestigious Enterprise Company is currently seeking a Manager of GRC and Cyber Risk Management.. Candidate will will be hands-n and manage 5 people over enterprise information security solutions and services, including authentication and authorization, public key infrastructure, data loss prevention, third-party risk management, and security event analytics. This role requires formal management experience overproactive research and analysis of complex, enterprise-scale cybersecurity challenges. In addition to evaluating processes and technologies, the engineer advises on the development and maintenance of security systems.

Responsibilities:

Lead a team of 5 over the processes, maintain internal frameworks, create documentation templates, and implement tooling to support and mature assurance service delivery.

Collaborate with security specialists, enterprise architects, and other technical leaders to ensure security solutions sufficiently mitigate risks and align with business objectives and regulatory requirements.

Analyze risk exposure and consult on the design of cyber risk management capabilities where improvements are needed.

Assess the effectiveness of cybersecurity capabilities, provide guidance on managing risks associated with ineffective controls, and influence decision-making by educating stakeholders.

Track and report issue status, ensuring timely resolution of identified risks.

Communicate cybersecurity risks and solutions to technical and non-technical audiences across all levels of management.

Advise on enterprise-level decisions by presenting insights to senior leadership, including technology executives and governance bodies.

Collaborate with legal, compliance, and audit teams to ensure alignment with regulatory expectations and contractual obligations.

Maintain ongoing communication with leadership regarding developments in assigned areas and contribute to special projects as needed.

Provide thought leadership and consulting support in the creation and maintenance of security-enabled processes across cybersecurity and technology teams.

Mentor team members on technical topics, interpersonal dynamics, organizational policies, and enterprise operations.

Partner with infrastructure, application, and data teams to ensure security controls are embedded across technology lifecycles and operational processes.

Conduct regular risk assessments to ensure compliance with internal policies, external regulations, and industry standards; update unified requirements and document corrective actions.

Define and track key performance indicators (KPIs) for cyber risk management capabilities, including issue closure rates, control effectiveness, and remediation timelines.

Stay current with emerging threats, trends, and technologies, and provide strategic recommendations to enhance the organizations security posture.

Contribute to the development and enforcement of cybersecurity policies, standards, and guidelines to ensure consistent and effective practices.

Advise on the selection and implementation of security tools and technologies aligned with the cyber risk management strategy.

Qualifications

3+ years formal management experience over GRC and Cyber Risk

Demonstrated empathy and ability to build trust within teams.

Proven ability to research and maintain current technical knowledge in a rapidly evolving environment.

Experience with Azure and Oracle public cloud infrastructures.

Expertise in preparing business plans, IT strategies, technology roadmaps, and technical proposals.

Ability to analyze business requirements and recommend timely, effective solutions.

Demonstrated creativity and problem-solving skills in directing analysis and developing solutions.

  • Knowledge of project development life cycle, with ability to coordinate and prioritize multiple initiatives.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Strategic Cyber Risk & GRC Leader
Strategic Cyber Risk & GRC Leader

Request Technology, LLC • Oakland (CA)

On-site
USD 140,000 - 190,000
GRC (Governance, Risk, and Compliance) Consultant
GRC (Governance, Risk, and Compliance) Consultant

Zoho • United States

Remote
USD 120,000 - 180,000
Senior Manager of Risk and Compliance
Senior Manager of Risk and Compliance

PTR Global • United States

On-site
USD 100,000 - 130,000
Manager Security Compliance and Risk Management
Manager Security Compliance and Risk Management

RELX • Raleigh (NC)

On-site
USD 118,300 - 219,800
Annual incentive bonus
Senior Cybersecurity Risk & Governance Analyst
Senior Cybersecurity Risk & Governance Analyst

mTrade • Oxford (MS)

On-site
USD 110,000 - 160,000
Senior Cyber Security & GRC Lead
Senior Cyber Security & GRC Lead

Emergent Software • Hartford (CT)

On-site
USD 140,000 - 170,000
GRC Analyst
GRC Analyst

AccruePartners • Fort Mill (SC)

On-site
USD 70,000 - 95,000
Direct-hire opportunity
Ownership of GRC initiatives
Exposure to NIST / CIS Controls / SOC
Senior Cybersecurity Risk & Governance Analyst
Senior Cybersecurity Risk & Governance Analyst

Mortgage-Trade-Holding-Company,-LL • Oxford (MS)

On-site
USD 110,000 - 150,000
Technology Risk Manager
Technology Risk Manager

Selby Jennings • Richmond (VA)

On-site
USD 120,000 - 180,000
Group Director, Cyber Risk & Security Engineering
Group Director, Cyber Risk & Security Engineering

Brobston Group LLC • New York (NY)

On-site
USD 180,000 - 240,000