The Associate Director of Governance, Risk, and Compliance (GRC) is a resourceful and experienced information security leader responsible for managing, and continuously improving, the organization’s information security GRC program. This position provides strategic direction and operational oversight for the organization’s information security governance framework, including the development and maintenance of security policies, standards, and procedures; coordination of security audits and assessments; management of information security risks and exceptions; oversight of third-party security risk; and delivery of meaningful program reporting to leadership and governance committees. The Associate Director ensures that the organization’s information security governance practices remain aligned with applicable regulatory requirements, contractual obligations, industry standards, and organizational risk objectives. This individual reports to, and works closely with, the Deputy CISO and partners across the organization with Enterprise Risk Management, Internal Audit, Legal, Privacy, Compliance, Information Technology, and other business leaders to promote effective governance, strengthen risk management, and support the continuous improvement of the information security program.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Manager