• Номер вакансии: RMS0226337

Cyber Security Manager

  • Сектор: Automotive
  • Местонахождение: Michigan
  • Тип работы: Permanent
  • Дата публикации: 04.08.2020
  • Длительность: perm
Отправляйте похожие вакансии на мою электронную почту Что это?

The Role:
Cyber Security Manager of Governance, Risk, Compliance

The Manager of Governance, Risk, Compliance will be responsible for supporting the evolution (implementation, and daily activities) of the GRC function within the Global Security Office. This role will be focused on the continuous improvement the firms' security governance model through framework alignment, controls definition and assessment, maturation of risk processes, compliance with contractual/regulatory requirements, and third-party vendor management.


 Support the development and maintenance of security plans, policies, procedures, standards, and guidelines aligned to ISO27001 and NIST.
 Support and enhance the firm's Heightened Security Process which entails working with business stakeholders globally to ensure appropriate security measures are in place at the engagement level.
 Respond to, and mature the process of handling external client security assessments, RFP/RFI's. Coordinate responses to client questionnaires by working with internal stakeholders across disciplines.
 Manage, mature, and execute on the process of third-party vendor diligence. Laisse with business stakeholders to identify global suppliers, evaluate risk, and perform assessments.
 Manage activities pertaining to risk; execute a risk strategy inclusive of identification, categorization and prioritization, the development and maintenance of the register, and associated activities.
 Define and perform internal control assessments (e.g. ISO27001, HIPAA) to identify opportunities for improvement and drive the development of action plans with stakeholders.
 Working with Legal, review contractual security provisions for alignment with firm controls. Identify compliance requirements and define controls that can be used to meet those requirements.
 Implement and maintain GRC tools to improve efficacy and provide visibility.


 5+ security governance, risk, and compliance experience or related.
 Experience as an ISO27001 practitioner, assessor, or certified auditor a plus.
 Broad understanding of cyber security concepts and risks.
 Strong familiarity with industry frameworks such as ISO standards, NIST, and SOC reports.
 Working knowledge of common audit and compliance tools. Experience with a Governance/Risk/Compliance (GRC) platform required.
 Experience with security policy, standards, and controls definition.
 Hands-on experience performing and evaluating risk assessments.
 Demonstrable knowledge in the management of third-party suppliers.
 Strong analytical thinking, written, and oral communication skills.
 Ability to drive responsibilities independently, while serving as a valued team member in the greater context.


 Bachelor Degree - preferably in Information Security, Computer Science or related area.
 Industry recognized certification in security (e.g. CISSP, CISA, CEH, CRISC).

About Fircroft:
Fircroft has been placing people in specialist technical industries for over 50 years, focusing on mid to senior level engineers for contract and permanent roles worldwide. By applying for this job you give consent for Fircroft to contact you, via email & telephone, to discuss your application along with future positions and Fircroft's services.

Fircroft is registered as a Data Controller with the Information Commissioner as required under the General Data Protection Regulation 2016/679. Fircroft will only process your personal data for the specific purposes of managing your application.

Похожие вакансии
Deputy IT Manager Местонахождение Iraq Длительность permanent The Role: Job-Specific Skills: * Skilled in computing and...
Business Development Manager Местонахождение Dubai Длительность permanent The Role: BDM 1. 5+ years of experience in Business...
Solutions Engineer, Ads Местонахождение Dubai Длительность permanent The Role: Solutions Engineer, Ads Key Responsibilities *...

Назад к началу

Нажав «Сохранить», вы даете свое согласие на
получение подходящих вакансий в соответствии с
описанием/страницей, которую вы просматриваете по электронной почте от
компании Fircroft, как подробно описано в нашей
Компания Fircroft хотела бы держать вас в курсе наших текущих вакансий и актуальных обновлений компании по электронной почте. Иногда коммерческая деятельность Fircroft может содержать информацию о сторонних лицах или партнерах, однако мы не будем передава
Fircroft хотел бы держать вас в курсе последних обновлений компании и вакансий с помощью СМС / текстовых сообщений
Варианты вашего согласия выше означают, что Fircroft не может связываться с вами по поводу каких-либо новых или альтернативных вакансий. Если вы хотите, чтобы Fircroft связывался только с вами по поводу вакансий, на которые вы подали заявку, пожалуйста, п