Manager Cybersecurity Governance, Risk & Compliance

Remote, USA Full-time
Summary: This role is responsible for leading the Cybersecurity Governance, Risk, & Compliance function with responsibility for a risk-‑based compliance program that integrates Assessment & Authorization (A&A/RMF), policy and planning, and continuous monitoring across on-premise‑ and cloud environments. Coordinates security control assessments and system authorizations per NIST RMF practices and develops/maintains cybersecurity policy and governance to ensure alignment with enterprise goals and regulatory obligations (e.g., SOX, NIST 800-NNN‑, ISO/IEC 27001, privacy laws). Primary alignment to NICE Systems Authorization and Cybersecurity Policy & Planning work roles, with additional responsibilities consistent with the Authorizing Official/Designating Representative role for risk acceptance and accreditation decisions. Essential Functions: • Lead the enterprise Assessment & Authorization (A&A) lifecycle-categorization, control selection/implementation, assessment, authorization, and continuous monitoring-using the NIST RMF and organizational procedures. • Oversee and perform security control assessments; document results, identify systemic issues, and track remediation to closure. • Prepare, review, and maintain authorization packages (e.g., SSP, SAR, POA&M); recommend risk disposition and authorization decisions. • Develop, publish, and maintain cybersecurity policies, standards, and implementation guidelines; ensure policy alignment to business objectives and regulations. • Establish compliance metrics and executive reporting (e.g., control effectiveness, residual risk trends, time-to‑-‑remediate, audit closure rate); drive continuous improvement. • Coordinate internal/external audits; design and implement independent audit processes for applications, networks, and systems; validate corrective actions. • Govern third-party‑ / supplier compliance (security and privacy requirements, contractual clauses, assessments) and track risk treatment. • Advise leadership on risk acceptance and authorization determinations; ensure decisions reflect organizational risk tolerance and mission impacts • Integrate policy, standards, and A&A activities with security architecture/engineering and IT operations to embed compliance by design. • Monitor emerging regulations and technologies; update policy and control baselines accordingly. Qualifications: • Bachelor's degree in information systems, computer science, cybersecurity, or related field (or equivalent experience). • Certifications: CISA, CISM, CRISC, CIPM, CGEIT, or CISSP (preferred). • 5+ years in IT Compliance / GRC, including RMF based A&A, policy governance, audit management, and third party risk. • Hands on with NIST control baselines, ISO/IEC 27001 controls, SOX ITGCs, and privacy obligations, • Experience with GRC platforms, evidence automation, and cloud compliance tooling. • Strong leadership, stakeholder communication, and executive reporting skills. Apply tot his job
Apply Now

Similar Jobs

Supervisor, HIM

Remote, USA Full-time

Non fiction ghost writer

Remote, USA Full-time

Strategic Account Manager (Public Sector)

Remote, USA Full-time

Experienced Remote Data Entry Associate – Entry Level Opportunity with Amazon for Detail-Oriented and Tech-Savvy Individuals

Remote, USA Full-time

**Job Title:** Remote Data Entry Specialist - Entry-Level Opportunity (Competitive Salary & Benefits)

Remote, USA Full-time

Entry Level Sales Customer Representative - Remote

Remote, USA Full-time

Centralized Scheduler (Remote/No Degree/Experience Required/Entry Level)

Remote, USA Full-time

Live Chat Agent - Remote - Entry Level Night Shift - No Degree Required - $25-$35/hr

Remote, USA Full-time

Senior Governance Risk Compliance Analyst

Remote, USA Full-time

Procurement and Contracts Officer (Procurement & Contract Specialist 2) – Limited-Duration Hybrid Remote Work Opportunity

Remote, USA Full-time

Experienced Remote Data Engineer – Big Data Processing, Cloud Migration, and Distributed Systems Expertise

Remote, USA Full-time

Compliance Program Specialist

Remote, USA Full-time

**Experienced Remote Data Entry Specialist – Flexible Work Arrangement for Administrative Professionals at blithequark**

Remote, USA Full-time

Document Controller - Part-time Remote Opportunity with Global Reach - VacancyGlobal

Remote, USA Full-time

**Experienced Customer Support Associate – Global Financial Services**

Remote, USA Full-time

Brand Rep - Baby Jogger - $26/hr

Remote, USA Full-time

Bookkeeper/Accounting Assistant Remote (Day & Night Shift USA Based Only)

Remote, USA Full-time

[Remote] Appointment Setter

Remote, USA Full-time

100% Remote - Payroll Specialist

Remote, USA Full-time

Experienced Remote Data Entry E-commerce Specialist for Blithequark – No Prior Experience Necessary for a Rewarding Career in Online Retail

Remote, USA Full-time
Back to Home