Назад
Company hidden
2 дня назад

Manager, Technology Risk & Compliance (Cybersecurity)

150 000 - 210 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Manager, Technology Risk & Compliance (Cybersecurity): Driving risk management and compliance across multiple lines of business with an accent on risk identification, prioritization, and remediation. Focus on automating GRC processes, managing vendor risk, and establishing an AI risk posture.

Location: Hybrid: Must be based in South Charlotte, NC (onsite Tuesday through Thursday, remote Mondays and Fridays)

Salary: $150,000 - $210,000 per year

Company

A global portfolio of high-growth companies delivering seamless digital experiences for consumers and solving large-scale growth challenges for Fortune 100 clients.

What you will do

  • Own the end-to-end technology risk lifecycle, including assessment, prioritization, remediation tracking, and executive reporting.
  • Manage the exception program and vendor/third-party risk assessment processes in coordination with Procurement and Legal.
  • Maintain compliance posture and obligation calendars for PCI, SOC2, ISO 27001, and NYDFS.
  • Automate manual GRC and compliance workflows to reduce operational friction.
  • Lead the organization's AI and emerging technology risk posture, advising on responsible usage and data handling.
  • Directly manage and develop a technical risk team, growing its scope over time.

Requirements

  • 7+ years of experience in cybersecurity, technology risk, or security operations.
  • Proven track record of owning a technology risk program and managing technical teams.
  • Deep knowledge of risk frameworks including NIST, ISO 27001, and FAIR.
  • Experience working in regulated environments (SOC2, PCI, NYDFS).
  • Ability to automate manual security or GRC processes.
  • Must be based in South Charlotte, NC for the required hybrid schedule.

Nice to have

  • Experience operating in federated environments with multiple business units.
  • Hands-on experience with GRC platforms like ServiceNow, Archer, OneTrust, Drata, or Vanta.
  • Experience building vendor risk assessment programs and executive risk dashboards from scratch.

Culture & Benefits

  • Flexible PTO policy (20 days annually, increasing to 25 after five years).
  • 401(k) with company match.
  • Comprehensive health insurance (medical, dental, and vision).
  • Paid parental bonding benefit program.
  • Hybrid work arrangement with two fully remote days per week.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →