Director GRC & Security Architecture Job no: 502862 College / VP Area: Vice President for IT Work ... This role provides enterprise-wide leadership across governance, risk management, regulatory ...
Director GRC & Security Architecture Job no: 502862 College / VP Area: Vice President for IT Work ... This role provides enterprise-wide leadership across governance, risk management, regulatory ...
Director GRC & Security Architecture Apply now Job no: 502862 College / VP Area: Vice President for ... This role provides enterprise-wide leadership across governance, risk management, regulatory ...
Director GRC & Security Architecture Apply now Job no: 502862 College / VP Area: Vice President for ... This role provides enterprise-wide leadership across governance, risk management, regulatory ...
This senior leadership role involves overseeing the enterprise-wide governance, risk management ... GRC) program. • Establish and maintain security policies, standards, procedures, and control ...
This senior leadership role involves overseeing the enterprise-wide governance, risk management ... GRC) program. • Establish and maintain security policies, standards, procedures, and control ...
Owns continuous improvement of TPRM tools, data, workflows, reporting, and GRC system capabilities ... Bachelor's degree in Risk Management, Finance, Business Administration, Accounting, or a related ...
Owns continuous improvement of TPRM tools, data, workflows, reporting, and GRC system capabilities ... Bachelor's degree in Risk Management, Finance, Business Administration, Accounting, or a related ...
Senior Systems Engineer - IAM
Wilmington, DE · On-site
$101K - $138K/yr
Collaboration with project managers and technical teams to deliver customer-centric solutions ... Governance, Risk, and Compliance (GRC): Develop and implement GRC strategies to ensure IAM ...
Senior Systems Engineer - IAM
Wilmington, DE · On-site
$101K - $138K/yr
Collaboration with project managers and technical teams to deliver customer-centric solutions ... Governance, Risk, and Compliance (GRC): Develop and implement GRC strategies to ensure IAM ...
Senior Systems Engineer - IAM
Wilmington, DE · On-site
$101K - $138K/yr
Collaboration with project managers and technical teams to deliver customer-centric solutions ... Governance, Risk, and Compliance (GRC): Develop and implement GRC strategies to ensure IAM ...
Senior Systems Engineer - IAM
Wilmington, DE · On-site
$101K - $138K/yr
Collaboration with project managers and technical teams to deliver customer-centric solutions ... Governance, Risk, and Compliance (GRC): Develop and implement GRC strategies to ensure IAM ...
Senior Systems Engineer - IAM
$101K - $138K/yr
Collaboration with project managers and technical teams to deliver customer-centric solutions ... Governance, Risk, and Compliance (GRC): Develop and implement GRC strategies to ensure IAM ...
Senior Systems Engineer - IAM
$101K - $138K/yr
Collaboration with project managers and technical teams to deliver customer-centric solutions ... Governance, Risk, and Compliance (GRC): Develop and implement GRC strategies to ensure IAM ...
Experience with Enterprise Governance Risk& Compliance (GRC) systems (e.g. Archer) * Experience with third party and vendor management preferable Summary of Qualifications: * Demonstrated ability to ...
Experience with Enterprise Governance Risk& Compliance (GRC) systems (e.g. Archer) * Experience with third party and vendor management preferable Summary of Qualifications: * Demonstrated ability to ...
... Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), or Certified ... compliance (GRC) platforms such as Archer. About the team Our inclusive and global teams win ...
... Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), or Certified ... compliance (GRC) platforms such as Archer. About the team Our inclusive and global teams win ...
Support compliance technology initiatives and GRC platform evolution. Minimum Qualifications: * Bachelor's degree or equivalent experience. * 5+ years experience in compliance, risk management, audit ...
Support compliance technology initiatives and GRC platform evolution. Minimum Qualifications: * Bachelor's degree or equivalent experience. * 5+ years experience in compliance, risk management, audit ...
Support compliance technology initiatives and GRC platform evolution. Minimum Qualifications: * Bachelor's degree or equivalent experience. * 5+ yearsexperience in compliance, risk management, audit ...
Support compliance technology initiatives and GRC platform evolution. Minimum Qualifications: * Bachelor's degree or equivalent experience. * 5+ yearsexperience in compliance, risk management, audit ...
Support compliance technology initiatives and GRC platform evolution. Minimum Qualifications: * Bachelor's degree or equivalent experience. * 5+ yearsexperience in compliance, risk management, audit ...
Support compliance technology initiatives and GRC platform evolution. Minimum Qualifications: * Bachelor's degree or equivalent experience. * 5+ yearsexperience in compliance, risk management, audit ...
The position will focus on the oversight and management of current and emerging risks across ... global GRC tool. * Participate and drive the development of risk action and mitigation plans ...
The position will focus on the oversight and management of current and emerging risks across ... global GRC tool. * Participate and drive the development of risk action and mitigation plans ...
Grc Manager information
What does a typical day look like for a GRC Manager?
A typical day for a GRC Manager involves coordinating risk assessments, reviewing regulatory compliance requirements, and working closely with departments such as IT, Legal, and Internal Audit to implement controls and mitigate risks. This role often includes developing or updating policies, conducting training sessions, and preparing reports for senior leadership or regulatory bodies. GRC Managers also keep an eye on emerging risks and compliance trends, ensuring that the organization proactively adapts its governance and risk strategies. Collaboration and regular communication with diverse teams make the work dynamic and engaging, as no two days are exactly the same.
What are the key skills and qualifications needed to thrive in the Grc Manager position, and why are they important?
To thrive as a GRC Manager, you need a deep understanding of governance, risk management, and compliance frameworks, often supported by a bachelor's degree in business, information security, or a related field. Experience with GRC platforms (such as RSA Archer, MetricStream, or ServiceNow), risk assessment tools, and certifications like CISA, CRISC, or CISSP are highly valued. Leadership, strong analytical skills, and effective communication are vital soft skills for influencing stakeholders and managing cross-functional teams. These abilities are essential to ensure regulatory adherence, mitigate organizational risks, and drive a culture of compliance throughout the company.
What is a GRC Manager job?
A GRC (Governance, Risk, and Compliance) Manager is responsible for developing and overseeing an organization's risk management, regulatory compliance, and corporate governance programs. They ensure that internal policies and external regulations are followed to mitigate risks and maintain legal and ethical standards. Their role includes implementing frameworks, conducting risk assessments, and collaborating with different departments to align business objectives with compliance requirements. GRC Managers also provide training and guidance to employees on regulatory changes and best practices.

Full-time
Posted 2 days ago
University Of Delaware rating
5.7
Based on 21 frontline employees who took The Breakroom Quiz
576th of 612 rated colleges and universities
Job description
Job no: 502862
College / VP Area: Vice President for IT
Work type: Staff
Location: Newark, DE
Categories: Information Technology, Legal & Compliance, Full Time
Curious about the full value of working at UD? In addition to salary, our Total Rewards benefits and Compensation Estimator give you a clear view of the complete package.
Pay Grade: 33S
Context of Job:
The Director of GRC and Security Architecture is a senior leadership role responsible for governing the organization's information security risk, compliance, and architectural security posture. This role provides enterprise-wide leadership across governance, risk management, regulatory compliance (including HIPAA), and security architecture to ensure security controls are designed, implemented, and operating effectively in support of business, academic, and clinical objectives.
Serving as the designated HIPAA Security Officer, this role partners closely with Legal, Privacy, Compliance, IT, Cloud, Application, and Security Operations teams to ensure regulatory readiness, risk-informed decision-making, and secure-by-design technology architecture across on-premises, cloud, and SaaS environments.
This position reports to the Chief Information Security Officer of the University.
Major Responsibilities:
Governance, Risk & Compliance (GRC)
- Lead the enterprise Information Security Governance, Risk, and Compliance (GRC) program.
- Establish and maintain security policies, standards, procedures, and control frameworks aligned with NIST, HITRUST, ISO 27001, and other applicable frameworks.
- Oversee enterprise risk assessments, third-party risk management, and control effectiveness evaluations.
- Translate regulatory, legal, and contractual requirements into actionable security controls and architectural standards.
- Ensure ongoing compliance with applicable regulations and standards, including HIPAA, PCI DSS, FERPA, SOC 2, and FIPS-140, as applicable
HIPAA Security Officer Responsibilities
- Serve as the organization's designated HIPAA Security Officer.
- Oversee administrative, technical, and physical safeguards required under the HIPAA Security Rule.
- Partner with Privacy, Legal, Compliance, and Health IT leadership on risk analyses, remediation plans, and regulatory inquiries.
- Support audits, investigations, and compliance reviews related to protected health information (PHI).
- Ensure appropriate security awareness and HIPAA training programs are developed and delivered across the organization.
Security Architecture & Secure Design - Own and lead the security architecture function, defining enterprise security architecture principles, reference architectures, and design standards.
- Review and approve security architecture for new systems, applications, cloud services, and major technology initiatives.
- Ensure security is embedded early in system lifecycle activities through secure-by-design and defense-in-depth principles.
- Partner with infrastructure, cloud, application, and DevOps teams to integrate security requirements into platforms and solutions.
- Guide architectural decisions related to identity, network segmentation, encryption, key management, logging, and data protection.
Strategic Planning & Program Leadership
- Contribute to and lead multi-year security strategy and roadmap development in alignment with organizational objectives.
- Actively participate in enterprise security and risk governance forums, advising executive leadership on risk posture and architectural trade-offs.
- Balance risk reduction with operational efficiency, usability, and institutional mission requirements.
- Serve as a trusted advisor to schools, departments, and business units on risk and architectural security decisions.
Oversight of Security Technologies & Controls
- Provide governance and oversight for security technologies supporting risk management, compliance, and architectural controls.
- Ensure alignment between security architecture standards and operational security tooling.
- Evaluate new security technologies and frameworks to address evolving regulatory and threat landscapes.
Metrics, Reporting & Communication
- Develop and report meaningful risk and compliance metrics to senior leadership and governance committees.
- Communicate complex security and compliance topics clearly to technical and non-technical stakeholders.
- Provide executive-level reporting on risk trends, compliance posture, and architectural maturity.
Leadership & Talent Development
- Lead and develop GRC and security architecture professionals.
- Establish clear role definitions, performance expectations, and professional development pathways.
- Foster a culture of accountability, continuous improvement, and collaboration across security and IT teams.
Budget, Vendor & Resource Management
- Manage budgets associated with GRC, compliance, and security architecture programs.
- Oversee vendor relationships related to risk management, compliance tooling, and architectural services.
- Ensure responsible financial stewardship and alignment with strategic priorities.
Qualifications:
- Bachelor's degree in Information Security, Computer Science, Information Systems, or a related field (Master's preferred).
- Seven years of progressive experience in information security, risk management, or IT, including leadership roles.
- Demonstrated experience leading GRC programs, regulatory compliance efforts, and enterprise risk management.
- Strong knowledge of HIPAA Security Rule, PCI DSS, and related regulatory frameworks.
- Proven experience defining and governing security architecture across enterprise and cloud environments.
- Excellent written and verbal communication skills, including executive-level presentations.
- Experience supporting healthcare, higher education, or regulated enterprise environments preferred.
- Hands-on experience with NIST, HITRUST CSF, ISO 27001, SOC 2, and third-party risk frameworks preferred.
- Professional certifications such as CISSP, CISM, CRISC, or equivalent preferred.
- Experience partnering closely with SOC, IR, Privacy, and Legal teams preferred.
- Demonstrated success leading organizational change and maturing security governance programs preferred.
Notice of Non-Discrimination and Equal Opportunity
The University of Delaware does not discriminate against any person on the basis of race, color, national origin, sex, gender identity or expression, sexual orientation, genetic information, marital status, disability, religion, age, veteran status or any other characteristic protected by applicable law in its employment, educational programs and activities, admissions policies, and scholarship and loan programs as required by Title IX of the Educational Amendments of 1972, the Americans with Disabilities Act of 1990, Section 504 of the Rehabilitation Act of 1973, Title VII of the Civil Rights Act of 1964, and other applicable statutes and University policies. The University of Delaware also prohibits unlawful harassment including sexual harassment and sexual violence.
Applications close:
Whatsapp Facebook LinkedIn Email App
What University Of Delaware employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About University of Delaware
Sourced by ZipRecruiter
Industry
Colleges, universities, and professional schools
Company size
1,001 - 5,000 Employees
Headquarters location
Newark, DE, US
Year founded
1743