Manager, Information Security Risk - Governance, Risk, Compliance - Audit - Hybrid, Cary, North ... Partner with business, technology, and service provider stakeholders to identify, assess, monitor ...
New
Manager, Information Security Risk - Governance, Risk, Compliance - Audit - Hybrid, Cary, North ... Partner with business, technology, and service provider stakeholders to identify, assess, monitor ...
New
Manager, Information Security Risk - Governance, Risk, Compliance - Audit - Hybrid, Cary, North ... Partner with business, technology, and service provider stakeholders to identify, assess, monitor ...
New
Support risk and security discussions with both technical and non-technical stakeholders * Manage ... cybersecurity, IT compliance, or related field * Strong working knowledge of: * CMMC framework
Quick apply
Support risk and security discussions with both technical and non-technical stakeholders * Manage ... cybersecurity, IT compliance, or related field * Strong working knowledge of: * CMMC framework
Saint Charles, IL · On-site
$103K - $144K/yr
... forward-thinking IT professional to lead and strengthen our cybersecurity and compliance ... Examples of Duties Cybersecurity & Risk Management - Assess, analyze, and recommend security ...
Saint Charles, IL · On-site
$103K - $144K/yr
... forward-thinking IT professional to lead and strengthen our cybersecurity and compliance ... Examples of Duties Cybersecurity & Risk Management - Assess, analyze, and recommend security ...
... IT, Security, Internal Audit, Finance, and business stakeholders to support TKO's control ... compliance obligations, and risk management initiatives. This role requires both subject matter ...
... IT, Security, Internal Audit, Finance, and business stakeholders to support TKO's control ... compliance obligations, and risk management initiatives. This role requires both subject matter ...
... IT, Security, Internal Audit, Finance, and business stakeholders to support TKO's control ... compliance obligations, and risk management initiatives. This role requires both subject matter ...
... IT, Security, Internal Audit, Finance, and business stakeholders to support TKO's control ... compliance obligations, and risk management initiatives. This role requires both subject matter ...
Fleetwood, PA · On-site
$80K - $100K/yr
... Information Security. Primary Responsibilities: · The position serves as the compliance manager ... risk experience * Excellent analytical and research skills * Strong written and verbal ...
Fleetwood, PA · On-site
$80K - $100K/yr
... Information Security. Primary Responsibilities: · The position serves as the compliance manager ... risk experience * Excellent analytical and research skills * Strong written and verbal ...
Information Security * Risk Management * Data Privacy The ideal candidate's experience may include ... Familiarity or direct experience with GRC/Cybersecurity solutions, tools and technologies * Control ...
Information Security * Risk Management * Data Privacy The ideal candidate's experience may include ... Familiarity or direct experience with GRC/Cybersecurity solutions, tools and technologies * Control ...
... Corporate IT. #LI-JM1 Responsibilities Essential Functions * Facilitates and manages risk ... Collaborates with the corporate Information Security and Compliance team to ensure IT alignment ...
... Corporate IT. #LI-JM1 Responsibilities Essential Functions * Facilitates and manages risk ... Collaborates with the corporate Information Security and Compliance team to ensure IT alignment ...
Risk Management Support * Assess cybersecurity, technology, artificial intelligence, data ... Facilitate information security risk assessments supporting governance, compliance, and enterprise ...
Risk Management Support * Assess cybersecurity, technology, artificial intelligence, data ... Facilitate information security risk assessments supporting governance, compliance, and enterprise ...
Risk Management Support * Assess cybersecurity, technology, artificial intelligence, data ... Facilitate information security risk assessments supporting governance, compliance, and enterprise ...
Risk Management Support * Assess cybersecurity, technology, artificial intelligence, data ... Facilitate information security risk assessments supporting governance, compliance, and enterprise ...
Shrewsbury, NJ · On-site
$105K/yr
IT Security Analyst Position Summary Our client is seeking an IT Security Analyst to serve as a key ... Key Responsibilities Risk Management & Compliance * Conduct and document security risk assessments ...
Shrewsbury, NJ · On-site
$105K/yr
IT Security Analyst Position Summary Our client is seeking an IT Security Analyst to serve as a key ... Key Responsibilities Risk Management & Compliance * Conduct and document security risk assessments ...
Boston, MA · On-site
$99K - $232K/yr
... As a Security Risk & Engineering - Tech and Cyber Risk & Compliance - Manager, you will play a ... disability; genetic information (including family medical history); veteran, marital, or ...
Boston, MA · On-site
$99K - $232K/yr
... As a Security Risk & Engineering - Tech and Cyber Risk & Compliance - Manager, you will play a ... disability; genetic information (including family medical history); veteran, marital, or ...
Collaborate with IT, Security, TPRM, Legal, Compliance, and Internal Audit to ensure that ORM contributes to strengthening the overall effective management of IT and Security risk across the ...
Collaborate with IT, Security, TPRM, Legal, Compliance, and Internal Audit to ensure that ORM contributes to strengthening the overall effective management of IT and Security risk across the ...
Seattle, WA · On-site
$99K - $232K/yr
... As a Security Risk & Engineering - Tech and Cyber Risk & Compliance - Manager, you will play a ... disability; genetic information (including family medical history); veteran, marital, or ...
Seattle, WA · On-site
$99K - $232K/yr
... As a Security Risk & Engineering - Tech and Cyber Risk & Compliance - Manager, you will play a ... disability; genetic information (including family medical history); veteran, marital, or ...
The IT Security Program Manager is responsible for executing and managing the day-to-day operations ... Risk and Compliance Leadership * Ensure continuous compliance with HIPAA , HITECH , and NIST 800-53 ...
The IT Security Program Manager is responsible for executing and managing the day-to-day operations ... Risk and Compliance Leadership * Ensure continuous compliance with HIPAA , HITECH , and NIST 800-53 ...
Manage SOC operations with prioritization of IT security, production integrity, and supply chain ... Compliance & Risk Management * Ensure alignment with SOX, ISO 27001, NIST CSF / NIST 800-53 ...
Manage SOC operations with prioritization of IT security, production integrity, and supply chain ... Compliance & Risk Management * Ensure alignment with SOX, ISO 27001, NIST CSF / NIST 800-53 ...
Mobile, AL · On-site
Monitor regulation compliance for current and future standards, including PCI, HIPAA * Develop and ... Develop and maintain a vendor risk management system with assessments of the risks. * Audit ...
Mobile, AL · On-site
Monitor regulation compliance for current and future standards, including PCI, HIPAA * Develop and ... Develop and maintain a vendor risk management system with assessments of the risks. * Audit ...
$92K - $126K/yr
The Senior IT Security Engineer works closely with the IT Security Administrator, IT Operations ... GRC (Governance, Risk, and Compliance) • Direct the organization's risk management program ...
$92K - $126K/yr
The Senior IT Security Engineer works closely with the IT Security Administrator, IT Operations ... GRC (Governance, Risk, and Compliance) • Direct the organization's risk management program ...
Foster City, CA · On-site
$20 - $55/hr
Collaborate closely with Risk and Compliance Managers to ensure the effective and efficient ... k Management, IT SOX Compliance, Security Governance, Responsible AI Process Governance, and ...
New
Foster City, CA · On-site
$20 - $55/hr
Collaborate closely with Risk and Compliance Managers to ensure the effective and efficient ... k Management, IT SOX Compliance, Security Governance, Responsible AI Process Governance, and ...
New
Ensures that Information Security risk to the institution is appropriately managed. Subject matter ... Education Bachelor's Degree in computer science, information technology, or related field
Ensures that Information Security risk to the institution is appropriately managed. Subject matter ... Education Bachelor's Degree in computer science, information technology, or related field
$85K - $93K
21% of jobs
$94.1K is the 25th percentile. Wages below this are outliers.
$93K - $101K
27% of jobs
$101K - $109K
0% of jobs
$109K - $117K
0% of jobs
The median wage is $117.8K / yr.
$117K - $125K
22% of jobs
$132.2K is the 75th percentile. Wages above this are outliers.
$125K - $133K
5% of jobs
$133K - $141K
3% of jobs
$141K - $149K
2% of jobs
$149K - $157K
2% of jobs
$157K - $165K
15% of jobs
$165K - $173K
2% of jobs
$85K
$120.3K
$173K
Cities with the most It Security Risk Compliance Manager job openings:
States with the most job openings for It Security Risk Compliance Manager jobs include:
For It Security Risk Compliance Manager jobs, the most frequently searched job titles are:

Cary, NC • Hybrid
Full-time
Posted yesterday
New
Manager, Information Security Risk - Governance, Risk, Compliance – Audit - Hybrid, Cary, North Carolina
We’re a leader in data and AI. Through our software and services, we inspire customers around the world to transform data into intelligence - and questions into answers.
If you're looking for a dynamic, fulfilling career with flexibility and a world-class employee experience, you'll find it here. We're recognized around the world for our inclusive, meaningful culture and innovative technologies by organizations like Fast Company, Forbes, Newsweek and more.
About the job
The Manager, Governance, Risk, Compliance – Audit (GRC-A) is a hands on management role combining technical risk management expertise with people leadership, overseeing a team that evaluates information security and cybersecurity risks across SAS and our third-parties. As a working manager, the position is actively involved in risk analysis and problem-solving while also guiding program execution, stakeholder engagement, and continuous improvement efforts.
The Governance, Risk, Compliance - Audit team provides independent assessment and advisory services, facilitates compliance with regulatory and security requirements, performs assurance activities, and delivers information that enables informed business and risk decisions. Through collaboration, innovation, and practical risk management, the team helps protect SAS while enabling business success.
As a Manager, Information Security Risk - Governance, Risk, Compliance – Audit you will:
Lead and continuously mature the information security risk management and third-party security risk assessment programs, providing direction to team members while driving initiatives that enhance SAS's risk management program.
Partner with business, technology, and service provider stakeholders to identify, assess, monitor, and manage information security risks.
Monitor evolving regulatory and industry requirements affecting cybersecurity, technology risk, privacy, operational resilience, and third-party risk management, and incorporate applicable requirements into program practices.
Internal Information Security Risk
Perform information security risk assessments and document threats, vulnerabilities, controls, and residual risks across internal systems, cloud services, third-party vendors, and enterprise initiatives.
Oversee risk assessment activities and risk treatment plans, ensuring clear ownership, timely remediation, and accountability for mitigation actions.
Maintain and enhance risk management methodologies, risk scoring models, governance processes, and the risk register to support consistent and effective risk decision-making.
Define, track, and communicate cybersecurity risk metrics, key risk indicators (KRIs), dashboards, and assessment results through recurring reporting for senior leadership.
Third-Party Risk Management (TPRM) – Information Security
Manage the third-party security risk assessment team, providing guidance on complex assessments and ensuring cybersecurity, privacy, compliance, and operational risks are consistently identified, evaluated, reported, and managed.
Collaborate with Procurement, Legal, and Third-Party Risk Management (TPRM) stakeholders to integrate security and compliance requirements throughout vendor onboarding, contracting, and ongoing oversight processes.
Define, track, and communicate third-party security risk metrics, key risk indicators (KRIs), dashboards, and assessment results through recurring reporting for senior leadership.Embrace curiosity, passion, authenticity and accountability. These are our values and influence everything we do.
Required qualifications
Bachelor's or Master’s degree in Business, IT, Cybersecurity, Project Managementor related field.
Typically requires 4-8 years of demonstrated success performing risk management. Experience in a regulated (pharmaceutical, banking, insurance, government) industry (may be concurrent with the above functional experience).
Demonstrated strong management and leadership skills.
Excellent awareness of GRC tooling, such as ServiceNow IRM
Excellent ability to handle multiple projects at the same time.
Excellent ability to supervise and train employees with varying skill sets in a high-pressure environment.
Excellent verbal, written, and interpersonal skills.
Demonstrated ability to solve complex problems.
Equivalent combination of related education, training and experience may be considered in place of the above qualifications.
Deep understanding of information security risk frameworks (NIST CSF, CRI Profile, PCI DSS, CIS Controls, etc.) and enterprise risk management principles, with practical experience applying them across systems, processes, and third-party vendors.
Ability to lead projects from start to finish, working independently, escalating issues, as appropriate and being flexible, when needed.
Additional competencies, knowledge and skills
Strategic Planning -Obtains information and identifies key issues and relationships relevant to achieving a long-range goal; committing to a course of action to accomplish a long-range goal after developing alternatives based on logical assumptions, facts, available resources, constraints, and organizational values.
Leading Change -Drives organizational and cultural changes needed to achieve strategic objectives; catalyzing new approaches to improve results by transforming organizational culture, systems, or products/services; helping others overcome resistance to change
Global Perspective - Demonstrates awareness of and sensitivity to the international market, cultural, technological, political, and legal factors that impact individual and work group priorities and results; leveraging own understanding of the organization’s global strategy, global business trends, and regional differences to enhance individual and work group results.
Ability to interview and manage staff, providing appropriate training and guidance as well as ongoing performance management.
Strong management, leadership, and executive presentation skills.
Experience applying enterprise risk management (ERM) principles and methodologies to identify, assess, prioritize, and communicate technology, cybersecurity, operational, or third-party risks.
Sourced by ZipRecruiter
Software development
10,000+ Employees
Cary, NC, US
1976