Sr. Manager Risk & Governance

AdobeSan Jose, CA
1d$122,600 - $263,700

About The Position

Opportunity: Lead Adobe’s Security Risk and Governance program by advancing the security risk strategy through qualitative and quantitative analysis. Improve decision-making using security insights, data analytics, and modeling to validate the organization’s risk landscape. Manage Adobe’s Security Management framework, integrate industry-leading risk measurement models, and provide senior leadership with actionable insights. Drive the Security Policy & Procedures framework and transform the PSOP program to align technical risks with business outcomes. The Challenge: Transform the security risk program with qualitative and quantitative insights, using AI, data analytics, and financial analysis. Maintain and enhance Adobe’s security risk framework, ensuring accurate risk capture, prioritization, and compliance with regulatory changes. Lead the Security Governance and Policy program, aligning policies and standards with input from Security Architecture, Adobe CCF, Cyber Operations, and Product Security. Apply industry risk frameworks (e.g., FAIR, OCTAVE, NIST RMF, ISO 27005) to governance processes and quantify risks in financial terms to support executive decision-making. Develop dashboards and BI tools to visualize risk metrics for technical and non-technical partners. Manage and mentor a high-performing risk and governance team, fostering collaboration and growth. Optimize GRC platforms (e.g., ServiceNow IRM, Archer, Vanta, Drata) and integrate them with enterprise tools. Prepare business-focused reports and presentations for senior leadership, bridging technical details with strategic insights.

Requirements

  • 10+ years of experience in Security Risk Management (or 13+ years with a Bachelor's degree).
  • 3-5 years of experience managing high-performing teams.
  • Expertise in security risk management models (e.g., FAIR, OCTAVE, NIST RMF, ISO 27005) and regulatory frameworks.
  • Proficiency in threat modeling, data analytics, AI/ML, and automation tools for risk analysis.
  • Strong knowledge of security concepts, tools, industry trends, and vulnerabilities.
  • Experience with complex security policies and standards (e.g., Cloud Architecture, Vulnerability Management).
  • Comfortable leading the Policy Governance function and has indepth understanding and knowledge working with complex security policies and standards (e.g. Cloud Architecture, Vulnerability Management etc.)
  • Led Compliance with Audit Frameworks (e.g. SOC2, ISO 27001, NIST 800-53 etc.)
  • Relevant certifications such as CISSP, CISM, CISA, CRISC

Responsibilities

  • Lead Adobe’s Security Risk and Governance program by advancing the security risk strategy through qualitative and quantitative analysis.
  • Improve decision-making using security insights, data analytics, and modeling to validate the organization’s risk landscape.
  • Manage Adobe’s Security Management framework, integrate industry-leading risk measurement models, and provide senior leadership with actionable insights.
  • Drive the Security Policy & Procedures framework and transform the PSOP program to align technical risks with business outcomes.
  • Transform the security risk program with qualitative and quantitative insights, using AI, data analytics, and financial analysis.
  • Maintain and enhance Adobe’s security risk framework, ensuring accurate risk capture, prioritization, and compliance with regulatory changes.
  • Lead the Security Governance and Policy program, aligning policies and standards with input from Security Architecture, Adobe CCF, Cyber Operations, and Product Security.
  • Apply industry risk frameworks (e.g., FAIR, OCTAVE, NIST RMF, ISO 27005) to governance processes and quantify risks in financial terms to support executive decision-making.
  • Develop dashboards and BI tools to visualize risk metrics for technical and non-technical partners.
  • Manage and mentor a high-performing risk and governance team, fostering collaboration and growth.
  • Optimize GRC platforms (e.g., ServiceNow IRM, Archer, Vanta, Drata) and integrate them with enterprise tools.
  • Prepare business-focused reports and presentations for senior leadership, bridging technical details with strategic insights.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service