Назад
Company hidden
13 часов назад

Lead Associate Principal, Security Governance (Cybersecurity)

122 100 - 170 500$
Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Lead Associate Principal, Security Governance (Cybersecurity): Managing the end-to-end lifecycle of information security policies, procedures, standards, controls, and regulatory remediation with an accent on NIST frameworks, compliance governance, and control testing. Focus on analyzing audit and regulatory findings, strengthening security compliance, facilitating governance programs, and coordinating with Compliance, Legal, Internal Audit, risk management, and regulators.

Location: Chicago, United States; hybrid work environment with up to 2 days per week of remote work

Salary: $122,100–$170,500 per year; annual discretionary incentive target of 8%–15%

Company

hirify.global is a systemically important financial market utility providing clearing and settlement services for options, futures, securities lending transactions, exchanges, and trading platforms under the oversight of U.S. financial regulators.

What you will do

  • Lead the lifecycle and change management of Security Services policies, procedures, standards, controls, and governance documentation.
  • Align security governance documentation with NIST frameworks, regulatory requirements, industry standards, and risk management objectives.
  • Support regulatory examination and Internal Audit remediation by analyzing root causes and trends, developing solutions, tracking actions, and escalating issues.
  • Facilitate the Security Working Group Program and maintain its governance records and obligations.
  • Support management self-testing of controls and drive improvements to process performance, integrity, and compliance.
  • Act as a liaison with Compliance, Internal Audit, Enterprise Risk Management, Legal, senior management, and regulators.

Requirements

  • Extensive experience writing and managing information security policies, procedures, and controls.
  • Thorough understanding of information technology and technology risk management.
  • Extensive experience with security and technology frameworks, including NIST CSF, NIST 800-53, CIS, COBIT, COSO, ITIL, ISO 27001, or CSA CCM.
  • Knowledge of information security regulatory and legal requirements, including SEC, CFTC, and Federal Reserve requirements.
  • 7+ years of experience in information security, compliance, risk management, project management, or data analytics, preferably in financial services.
  • Bachelor’s degree in computer science, management information systems, business studies, or a related field, or equivalent experience.

Nice to have

  • Cloud implementation and cloud compliance experience.
  • Knowledge of Agile SDLC and secure software development lifecycle processes.
  • GIAC, CISSP, CISA, CISM, or CRISC certification.

Culture & Benefits

  • Collaborative and supportive work environment focused on work-life balance and employee wellness.
  • Tuition reimbursement and student loan repayment assistance.
  • Technology stipend for remote work, generous PTO, and parental leave.
  • 401(k) employer match and medical, dental, and vision benefits.
  • Visa sponsorship is not available for this position.

Hiring process

  • Submit an application and resume through the hirify.global careers site.
  • Receive email confirmation that the application was received.
  • Selected candidates may be contacted to schedule an interview.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →