Director, Cyber GRC

Mariner
Remote

About The Position

Join Mariner as the Director, Cyber GRC, where you will play a mission-critical role protecting the organization by shaping and executing our cybersecurity governance, vendor risk, and security awareness strategies. You’ll lead high-impact teams, collaborate across business units, and drive enterprise-wide initiatives to ensure we are not only compliant but ahead of the curve in protecting our people, assets, and stakeholders. If you thrive in dynamic environments and want to make a visible difference at a leading financial firm where innovation meets stewardship, this is your opportunity.

Requirements

  • 10–12 years’ progressive experience in cybersecurity and risk management, with proven leadership of GRC, compliance, or vendor risk teams.
  • Demonstrated success building and evolving world-class security governance programs.
  • Financial services background strongly preferred; expertise in highly regulated sectors and exam processes—banking, insurance, capital markets—and the ability to address wealth management-specific demands (SEC, FINRA, NYDFS).
  • Hands-on experience transforming technology risk, security assurance, or compliance programs, and integrating risk management into business operations to drive strategic impact.
  • Data-driven approach to operationalizing cybersecurity metrics, risk quantification, and executive-level reporting.
  • Skilled at translating technical risk into actionable insights for business leaders.
  • Outstanding cross-functional leadership, communication, and influence skills, with a strong ability to partner across security, IT, legal, finance, and business teams.

Nice To Haves

  • Preferred certifications: CISM, CRISC, CISA, CGEIT, CISSP, or equivalent.

Responsibilities

  • Champion and build the Cyber GRC function, from vision through execution—including the creation and optimization of cybersecurity policy, control framework implementation (NIST CSF 2.0, CIS Controls v8, ISO 27001), compliance monitoring, and audit readiness tailored for SEC, FINRA, and state regulations like NYDFS.
  • Lead the third-party vendor risk management program, embedding cybersecurity into every aspect of the vendor lifecycle. Conduct vendor security assessments, ensure rigorous contract requirements, and partner with procurement and AI review teams to keep risk management agile and integrated with business needs.
  • Design, mature, and execute a high-impact security awareness and training program, combining role-based curricula, engaging phishing simulations, and innovative culture-building initiatives to tangibly reduce human-factor risk.
  • Spearhead AI governance within cybersecurity: create forward-thinking policies for acceptable use, risk-tiering for use cases, and robust oversight of third-party AI tools. Ensure the organization’s digital worker initiatives stay compliant and future ready.
  • Establish a state-of-the-art cyber risk management capability delivering actionable, quantified reporting and dashboards that provide leadership with real-time insights, supporting CISO-level and board-level reporting on cyber posture and risk.
  • Act as a strategic advisor, partnering with Security Architecture & Engineering, Monitoring & Response, Legal, and IT governance teams. Integrate GRC into strategic planning, M&A due diligence, product launches, and change management to align security with business growth.
  • Represent Mariner in high-visibility engagements with regulators, auditors, and third-party assessors. Manage regulatory examinations and responses, ensuring a strong and proactive relationship with external stakeholders in partnership with the CISO.

Benefits

  • progressive opportunities
  • nurturing professional growth
  • giving back to the community
  • building a diverse culture
  • support they need to achieve their career goals
  • innovative workplace
  • culture that fosters camaraderie, teamwork and work-life balance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service