Назад
Company hidden
4 часа назад

Associate Director of Information Security GRC (Cybersecurity)

112 000 - 190 500$
Формат работы
hybrid
Тип работы
fulltime
Грейд
director
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Associate Director of Information Security GRC (Cybersecurity): Managing and continuously improving an organization's information security governance, risk, and compliance program with an accent on policy management, regulatory compliance, audits, and third-party risk. Focus on aligning security controls with NIST and regulatory frameworks, maintaining risk and exception processes, and delivering metrics and reporting to leadership.

Location: New Haven, Connecticut, United States; hybrid work arrangement

Salary: $112,000–$190,500 per year when performed in Connecticut.

Company

hirify.global is a Catholic fraternal benefit society providing life insurance, long-term care insurance, disability income insurance, investment, and annuity products while supporting charitable and faith-based initiatives.

What you will do

  • Lead, develop, mentor, and retain the Information Security GRC team while setting objectives, performance measures, and development plans.
  • Develop and improve the information security governance, risk, and compliance strategy, operating model, and roadmap.
  • Maintain security policies, standards, control frameworks, risk registers, exception processes, and governance workflows.
  • Oversee compliance activities, security audits, assessments, examinations, and relationships with internal and external auditors and regulators.
  • Manage third-party security risk and evaluate risks related to new technologies, cloud services, major system changes, and strategic initiatives.
  • Create dashboards, reports, control metrics, key indicators, and security maturity measures for leadership and governance committees.

Requirements

  • At least five years of relevant Governance, Risk, and Compliance experience and proven experience performing the listed responsibilities.
  • Bachelor’s degree in information security, cybersecurity, computer science, or a related field.
  • Extensive knowledge of information security GRC practices, documentation, workflow diagrams, risk management, and regulatory compliance.
  • Understanding of the NIST CSF and related cybersecurity standards, including regulatory requirements such as NYDFS, GDPR, CCRA, and CCPA.
  • Exceptional written, oral, and interpersonal communication skills with the ability to manage multiple projects and meet tight deadlines.
  • Authorization to work in the United States is required; visa sponsorship is not available.

Nice to have

  • CISSP, CISM, CRISC, CISA, or another security management certification.
  • Experience in the insurance or financial services industry.

Culture & Benefits

  • Mission focused on family, faith, charitable giving, and supporting members and their communities.
  • Thirteen paid holidays, vacation and sick leave, and flexible workweek schedules.
  • Certification, designation, and tuition reimbursement programs.
  • 401(k) matching contributions and company-funded cash balance retirement plans.
  • Health, dental, vision, disability, life insurance, health club reimbursement, and an Employee Assistance Program.
  • Paid childbirth leave under the short-term disability policy and paid parental leave for new, adoptive, and foster parents.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →