Youngsoft - Dearborn, MI

posted 4 days ago

Full-time - Mid Level
Dearborn, MI
Professional, Scientific, and Technical Services

About the position

The IT Governance, Risk and Compliance (GRC) Program Manager at Youngsoft, Inc. is responsible for overseeing IT security risk and controls across the organization. This role involves developing and maintaining policies and procedures for IT, coordinating with various departments to ensure compliance with enterprise-wide standards. The GRC Program Manager will also manage corporate-wide IT security and risk assessment programs, facilitate training for proactive risk management, and support audit preparations and compliance reviews.

Responsibilities

  • Develop, implement, and maintain the information security program, risk and controls function.
  • Collaborate and drive business and cyber risk program alignment across the enterprise.
  • Assist with the implementation and ongoing support for security measures to ensure PII security and compliance with regulations.
  • Manage enterprise-wide data governance framework, focusing on improving organizational policies and standards.
  • Plan, execute, and manage multiple projects to budget, completing audits and business process control reviews.
  • Review and test company-wide IT Security & Controls processes to assess business risks and controls effectiveness.
  • Develop and execute project and vendor risk assessments, recommending risk mitigation techniques.
  • Maintain active communication with project teams and vendors, managing expectations and adherence to policies.
  • Act as the key contact for the company's GRC team.
  • Work with IT to complete audits and update Component Assessments as needed.
  • Create and update content for compliance and privacy training, facilitating sessions as needed.
  • Stay current on the information security and privacy landscape, ensuring policies and controls are relevant.

Requirements

  • 7+ years of multi-disciplined experience within an IT environment.
  • 5 years of leadership experience in information security, privacy, and information protection.
  • Experience in IT Security & Controls policy and compliance enforcement.
  • Proven experience in scoping, planning, and driving technology development projects.
  • Experience in creating and enforcing security policies for the Enterprise and Suppliers.
  • ISO information security experience is a plus.
  • Audit experience.

Nice-to-haves

  • Master's degree in Information Technology or related field.
  • Security or control related certification (CISSP, CISM, GIAC, GISP).

Benefits

  • Competitive salary
  • Health insurance
  • 401k plan
  • Paid time off
  • Professional development opportunities
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service