Manager Security Compliance and Risk Management

LexisNexis Risk Solutions

Raleigh (NC)

Hybrid

USD 118,300 - 219,800

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

LexisNexis Risk Solutions, located in Raleigh, NC, seeks a Manager of Security Compliance & Risk Management to lead the security risk program, own the risk register, and coordinate audit responses across the organization.

You will mentor a team of security engineers, align controls with NIST CSF, ISO 27001, and SOC 2, and provide risk insights to executives and the board.

This hybrid role offers growth, partnership with regulators, and a path to maturity in enterprise risk management.

Responsibilities

  • Lead the security compliance and risk management program across policy, risk registers, and ConMon.
  • Manage audit engagements, evidence collection, and remediation tracking with auditors.
  • Apply frameworks (NIST CSF, ISO 27001, SOC 2) and drive continuous improvement.
  • Act as advisory bridge to executives and business on risk matters.

Job description

## Manager Security Compliance and Risk ManagementApplylocations: Raleigh, NCtime type: Full timeposted on: Posted Todayjob requisition id: R116072**Manager, Security – Security Compliance & Risk Management****Function:**Information Security / Compliance & Risk**Location:**[Raleigh / Hybrid]**About the Role**The Manager, Security – Security Compliance & Risk Management is responsible for leading the Security Compliance and Risk Management function within the Information Security organization. This role owns the frameworks, processes, and programs that provide structured oversight of technology and security risk across the company. This manager serves as a critical bridge between the security program and the business — translating risk into actionable insight for executives, boards, auditors, regulators, and customers.This is a people manager role overseeing a team of security engineers responsible for the day-to-day operationalization of audit, compliance, control, and FedRAMP Continuous Monitoring activities. The right candidate is both a capable program builder and an engaged people leader who can develop talent, allocate work effectively, and drive consistent execution across the team.**Core Responsibilities****People Leadership*** Manage, mentor, and develop a team of security engineers* Set clear priorities, delegate work effectively, and maintain team capacity across concurrent audit, compliance, and ConMon activities* Foster a culture of quality, accountability, and continuous improvement within the team**Risk Management*** Own and operate the enterprise technology and security risk register, including risk identification, scoring, tracking, and reporting* Lead the risk exception and risk acceptance process, ensuring appropriate documentation, approvals, and periodic review* Drive identification, escalation, and resolution of cybersecurity risks and issues across the organization* Serve as a trusted advisor to business and technology stakeholders on compliance and risk matters* Provide risk-based reporting to support executive and board-level decision-making on the state of the security program**Compliance & Control Governance*** Oversee enterprise control management activities, including control design, testing, effectiveness tracking, issue management, and remediation* Map controls to applicable frameworks including NIST CSF, ISO 27001, SOC 2, and other relevant technology-sector obligations* Support and maintain cybersecurity compliance certifications and initiatives (e.g., ISO 27001, SOC 2, Cyber Essentials)* Perform regulatory horizon scanning to identify emerging compliance requirements and assess organizational impact* Coordinate and monitor recurring security and compliance assessments, including internal reviews, control self-assessments, and gap analyses* Develop and maintain metrics that measure organizational adherence to security policies, and report findings to leadership with recommendations for remediation where gaps exist**Audit & Assurance Operationalization*** Oversee the team’s end-to-end execution of audit engagements, ensuring the audit calendar, evidence collection, issue tracking, and management responses are completed accurately and on time* Serve as the primary interface for internal audit, external auditors, regulators, and customer assurance reviews, directing team members on their respective workstreams* Ensure cross-functional coordination is in place so that business and technical stakeholders are audit-ready and delivering evidence on time* Oversee the maintenance and integrity of the assurance evidence library to support efficient, repeatable, and high-quality audit response across all engagements**FedRAMP Continuous Monitoring*** Provide oversight and direction for the FedRAMP Continuous Monitoring program, ensuring all ConMon obligations are met in accordance with FedRAMP requirements* Oversee the team’s execution of recurring ConMon activities, ensuring deliverables are accurate, timely, and aligned with agency expectations* Ensure findings and remediation activities are tracked and managed to resolution within required timeframes* Serve as an escalation point for ConMon-related issues and interface with relevant stakeholders on program status and riskU.S. National Base Pay Range: $118,300 - $219,800. Geographic differentials may apply in some locations to better reflect local market rates.This job is eligible for an annual incentive bonus.**We know your well-being and happiness are key to a long and successful career. We are delighted to offer country specific benefits. Click** **here** **to access benefits specific to your location.**We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form or please contact 1-855-833-5120.**Criminals may pose as recruiters asking for money or personal information. We never request money or banking details from job applicants. Learn more about spotting and avoiding scams** **here****.**Please read our Candidate Privacy Policy.We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Application Engineer, Cyber Security
Sr. Application Engineer, Cyber Security

Inmar Inc. • Northern (KY)

Hybrid
USD 140,000 - 190,000
Medical, Dental, Vision
401(k) retirement plans
Flexible time off
+1
Manager, Security Compliance
Manager, Security Compliance

CardWorks Servicing LLC • United States

On-site
USD 128,000 - 143,000
Competitive pay
Medical, Dental, and Vision coverage
401(k) Plan with Company Match
+1
Manager Security Compliance and Risk Management
Manager Security Compliance and Risk Management

RELX • Raleigh (NC)

On-site
USD 118,000 - 220,000
Annual incentive bonus
Cyber Compliance Manager (Financial Services)
Cyber Compliance Manager (Financial Services)

Rsm Us Llp • New York (NY), Northern (KY)

Hybrid
USD 107,000 - 215,000
GRC Analyst
GRC Analyst

NorthMark Strategies LLC • Dallas (TX)

On-site
USD 95,000 - 125,000
Company-Paid Lunch Stipend
Employer-Paid Medical (HDHP) including
Dental and Vision benefits
+4
Cyber Risk Assessor III
Cyber Risk Assessor III

Hard Rock International • Town of Florida (NY)

Hybrid
USD 100,000 - 130,000
Comprehensive benefits package
Creative work environment
Manager Security Compliance and Risk Management
Manager Security Compliance and Risk Management

LexisNexis • Raleigh (NC)

On-site
USD 118,000 - 220,000
Security, Risk and Compliance Consultant
Security, Risk and Compliance Consultant

SEI • Charlotte (NC)

On-site
USD 90,000 - 120,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

LexisNexis Risk Solutions • Boca Raton (FL)

On-site
USD 115,000 - 192,000
Annual incentive bonus
Country-specific benefits
Disability accommodations
Cyber Defense & Data Security Lead - Americas
Cyber Defense & Data Security Lead - Americas

Ralliant • Raleigh (NC)

Hybrid
USD 104,300 - 193,700
Eligible for bonus and equity
Diversity-focused workplace