NA InfoSec Leader - GRC, Risk & Cyber Resilience

Kia America

Irvine (CA)

On-site

USD 140,000 - 225,000

Full time

6 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Premium medical
Dental coverage
Vision coverage
401(k) matching
Paid time off
Lease/purchase programs

Job summary

Kia America is seeking a seasoned Information Security leader to guide GRC, cyber resilience, and security program management across North America. This executive role partners with legal, internal audit, and business leaders to protect critical assets and ensure ISO27001 alignment.

Based in Irvine, CA, the role leads audits, risk management, and incident readiness, reporting to the Head of Information Security.

Qualifications

  • Bachelor’s degree in Information Security, Information Technology, Computer Science, Business Administration, Risk Management, or a related field.
  • Master's degree preferred.
  • Professional certifications such as CISSP, CISM, CRISC, CISA, ISO27001 Lead Implementer, ISO27001 Lead Auditor, or equivalent are strongly preferred.

Responsibilities

  • Lead and manage the North America Information Security Governance Program.
  • Maintain Information Security policies, standards, procedures, and guidelines.
  • Manage the Information Security Management System (ISMS).
  • Coordinate Information Security Management Committee (ISMC) activities.
  • Ensure ongoing ISO27001 certification readiness.
  • Manage internal and external security audit activities.
  • Coordinate remediation of audit findings.
  • Monitor regulatory and compliance requirements impacting cybersecurity programs.
  • Own and maintain the enterprise cybersecurity risk management program.
  • Facilitate periodic risk assessments and risk treatment planning.
  • Maintain and report on the enterprise Risk Register.
  • Manage security exception and risk acceptance processes.
  • Establish and oversee Third-Party Risk Management (TPRM) activities.
  • Assess cybersecurity risks associated with vendors, suppliers, and business partners.
  • Track remediation of identified third-party security risks.
  • Develop and manage the Cyber Resilience Program.
  • Lead Executive Cyber Table Top Exercises.
  • Coordinate cyber incident response simulations and readiness assessments.
  • Support business continuity and disaster recovery testing.
  • Track lessons learned and remediation activities from exercises and incidents.
  • Partner with HAEA and business units to improve cyber readiness.
  • Lead execution of strategic cybersecurity initiatives.
  • Coordinate North America Information Security Workshops.
  • Facilitate collaboration among KUS, KCA, KaGA, and KMX security teams.
  • Drive regional security maturity improvement initiatives.
  • Manage key cybersecurity program milestones, deliverables, and metrics.
  • Support annual cybersecurity planning and roadmap activities.
  • Lead enterprise Security Awareness programs.
  • Manage new-hire security training and annual awareness campaigns.
  • Establish metrics to measure security culture and employee engagement.
  • Develop executive cybersecurity dashboards and KPI reporting.
  • Support board-level and executive-level reporting requirements.
  • Establish governance processes for emerging technologies, including Generative AI and Cloud Services.
  • Promote responsible and secure adoption of new technologies.

Skills

Leadership
Governance, Risk & Compliance
Information Security
Regulatory compliance
Stakeholder management

Education

Bachelor’s degree in Information Security, Information Technology, Computer Science, Business Administration, Risk Management, or a related field
Master's degree preferred

Tools

CISSP
CISM
CRISC
CISA
ISO27001 Lead Implementer
ISO27001 Lead Auditor

Job description

Kia America is seeking a seasoned Information Security leader to guide GRC, cyber resilience, and security program management across North America. This executive role partners with legal, internal audit, and business leaders to protect critical assets and ensure ISO27001 alignment.

Based in Irvine, CA, the role leads audits, risk management, and incident readiness, reporting to the Head of Information Security.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

NA Information Security Governance Lead
NA Information Security Governance Lead

Kia Corp. • Irvine (CA)

On-site
USD 140,000 - 225,000
Medical, dental and vision coverage
401(k) matching
Paid time off
National Manager, Information Security
National Manager, Information Security

Kia America • Irvine (CA)

On-site
USD 140,000 - 225,000
Premium medical
Dental coverage
Vision coverage
+3
National Manager, Information Security
National Manager, Information Security

Kia Corp. • Irvine (CA)

On-site
USD 140,000 - 225,000
Medical, dental and vision coverage
401(k) matching
Paid time off
Senior GRC & Security Leader: Risk & Compliance
Senior GRC & Security Leader: Risk & Compliance

ABB Inc. • Cary (NC)

Hybrid
USD 180,000 - 260,000
Health benefits
401k with company match
Paid holidays
Hybrid IT Security & GRC Lead — Own & Build the Program
Hybrid IT Security & GRC Lead — Own & Build the Program

Prosum • Irvine (CA)

Hybrid
USD 125,000 - 145,000
Hybrid work model (2 days onsite)
Annual bonus (up to 10%)
Senior Risk Operations Analyst – IT Risk & IRM Leader
Senior Risk Operations Analyst – IT Risk & IRM Leader

Hyundai Autoever America • Irvine (CA)

On-site
USD 120,000 - 170,000
AI-Driven GRC Strategy Leader
AI-Driven GRC Strategy Leader

TransUnion LLC • Crum Lynne (PA)

Hybrid
USD 143,000 - 238,000
Health insurance
401(k) with employer match
Employee stock purchase plan
+1
GRC Cybersecurity Analyst — Policy, Risk & Compliance
GRC Cybersecurity Analyst — Policy, Risk & Compliance

Central Business Solutions, Inc • Atlanta (GA)

On-site
USD 95,000 - 110,000
Senior Information Security Principal - Risk & Strategy
Senior Information Security Principal - Risk & Strategy

Capital Group • Los Angeles (CA)

On-site
USD 150,000 - 190,000
Senior GRC Security Analyst - Lead Risk & Compliance
Senior GRC Security Analyst - Lead Risk & Compliance

Kura Sushi Corporate Support Center • Irvine (CA)

Hybrid
USD 120,000 - 160,000