HireRight-posted 15 days ago
Full-time • Mid Level
Nashville, TN
5,001-10,000 employees

Reporting to the Director of Information Security Governance, Risk & Compliance, the InfoSec GRC Sr. Manager – Customer Trust leads the strategic execution of customer trust initiatives within the GRC program. This role is responsible for overseeing cybersecurity compliance attestation, customer-facing security communications, and customer-initiated security reviews. The Sr. Manager ensures that security policies and controls are effectively communicated, implemented, and maintained across customer interactions, audits, and assessments. The ideal candidate will partner closely with the Sales, Account Management, and Legal teams to meet with Customers security contacts and instill confidence in the organization’s security and compliance posture. The role also drives continuous improvement in compliance posture and risk mitigation strategies, aligning with business objectives and regulatory requirements, and oversees the same for a team of specialists.

  • Lead the development and execution of customer trust strategies within HireRight’s GRC’s selected industry frameworks ensuring timely and accurate responses to customer security assessments, RFPs, and due diligence questionnaires.
  • Manage and mentor a team of GRC specialists focused on customer-facing risk assessments, audits, and compliance communications.
  • Serve as a primary liaison for customer security inquiries, audits, and escalations, ensuring timely and accurate responses.
  • Develop consistent messaging around security compliance posture that aligns with the company’s brand and regulatory obligations.
  • Develop and maintain standard operating procedures (SOPs) for customer trust engagements and audit readiness.
  • Monitor and report on compliance metrics, KPIs/KRIs, risk treatment plans, and remediation progress to senior leadership.
  • Drive continuous improvement in customer-facing GRC processes, Trust Center, tools, and documentation.
  • Monitor regulatory and industry trends impacting customer trust expectations and recommend program enhancements.
  • Represent the organization in external forums and industry groups related to cybersecurity trust and assurance.
  • Bachelor’s degree in Information Security, Computer Science, Information Technology, or related field.
  • 7+ years in Information Security, GRC, or cybersecurity compliance roles with at least 3 years in a customer-facing or leadership role.
  • Proven experience managing customer trust programs or client-facing security assurance.
  • Strong background in regulatory frameworks: ISO 27001, SOC 2, ISO 27701.
  • Experience with third-party risk platforms (e.g., AuditBoard, CyberGRX, SIG).
  • Demonstrated success in leading cross-functional teams and managing complex projects with competing priority.
  • Strategic thinker with strong analytical and problem-solving skills.
  • Excellent communication and stakeholder management abilities.
  • High proficiency in project management tools (e.g., Jira, Confluence).
  • Deep understanding of IT and security technologies.
  • Fluent in English (speaking, writing, comprehension).
  • Security certifications preferred: Sec+, CISM, CISSP, ISO 27001 Lead Auditor, or similar.
  • Medical
  • Dental
  • Vision
  • Paid Life/AD&D Insurance
  • Voluntary Life Insurance
  • Short & Long Term Disability
  • Flexible Spending Accounts
  • 401K
  • Generous Vacation and Sick Program
  • 10 Paid Holidays
  • Education Assistance Program
  • Business Casual Attire
  • Generous Referral Program
  • Employee Discounts and Rewards
  • And much more!
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service