GRC Manager
Austin, TX - USA
Job Summary
Job Description :
Position - Governance Risk & Compliance (GRC) Manager
Location - Austin Texas
Hybrid - 3 days in office
The Governance Risk & Compliance (GRC) Manager will lead the GRC Program providing strategic direction oversight and operational leadership across governance regulatory compliance and cyber risk management activities. This role requires strong expertise in security and privacy principles regulatory obligations impacting a UK business and industry security frameworks.
The GRC Manager will partner closely with the BISO Technology leadership Legal Risk Audit and key business stakeholders to ensure cyber risks are effectively identified managed and reported while maintaining compliance with applicable standards and regulations.
Whats the Role
Own and lead the Cyber GRC program ensuring alignment with enterprise risk strategy and business objectives.
Serve as the primary point of contact for cyber compliance activities including PCI DSS GDPR Privacy SOX (where applicable) and relevant regulatory frameworks.
Lead and oversee enterprise-wide and third-party risk assessments ensuring appropriate evaluation of security controls and risk exposure.
Manage audits external assessments and assurance processes including PCI DSS NIST CSF ISO 27001 and other relevant frameworks.
Develop implement and maintain cyber security policies standards and governance processes to ensure regulatory and internal compliance requirements are met.
Establish and own meaningful KPIs and KRIs to measure cyber risk posture and the effectiveness of the GRC function.
Oversee compliance readiness assessments and assurance activities against policy and control objectives.
Lead the tracking remediation and reporting of technology and cyber-related audit findings and risk actions.
Maintain and continuously improve the cyber security risk register ensuring accurate reporting and executive visibility.
Provide structured and simplified risk reporting to senior leadership and governance committees.
Lead third-party security risk management activities including assessments against industry and internal standards.
Drive cyber awareness and compliance education initiatives across the organisation.
Mentor and support junior GRC analysts (if applicable) fostering capability development within the function.
Who Are You
5 years experience within Cyber Security with significant experience in Governance Risk & Compliance functions.
Demonstrated leadership experience within complex cyber security and technology environments.
Strong working knowledge of industry frameworks and standards such as NIST CSF PCI DSS ISO 27001 and GDPR.
Experience operating in regulated environments including SOX compliance (desirable).
Strong understanding of cloud security principles particularly AWS environments.
Proven ability to communicate cyber risk and compliance requirements effectively to both technical and non-technical stakeholders including senior leadership.
Strong analytical reporting and stakeholder management skills.
Degree in Information Security Computer Science Engineering or a related discipline.
Professional certifications such as CISSP CISM CISA CRISC or similar strongly preferred.
Equal Opportunity Employer
All qualified applicants will receive consideration for employment without regard to race color religion sex age national origin protected veteran status disability status or any other protected characteristic. EEO/Disabled/Vets
Reasonable Accommodation
We are committed to providing reasonable accommodation for qualified individuals with disabilities in our job application and/or interview process. If you need assistance or accommodation in completing your application or participating in an interview due to a disability email us at . Please put Reasonable Accommodation in the subject line and provide a brief description of the type of assistance you need. This inbox will not be monitored for application status updates.
Please refer to the privacy notice at the bottom of this page for submitting any data access deletion or other data subject rights requests where permitted under your local laws and regulations.
Base Pay Range: 120000 - 145000Were committed to offering competitive and flexible compensation to attract top talent. This pay range reflects our good faith estimate for the role and may vary based on a candidates experience skills location and other relevant factors.
For bonus-eligible roles targets are determined based on multiple considerations including market benchmarks and individual contributions.
For benefits-eligible roles we offer a comprehensive and competitive benefits package covering health retirement wellbeing and more along with optional benefits to meet the diverse needs of our employees.
Required Experience:
Manager