Senior GRC Information Security Manager

Hybrid in Austin, TX, US • Posted 2 hours ago • Updated 1 hour ago
Contract Independent
Contract W2
No Travel Required
On-site
Depends on Experience
Fitment

Dice Job Match Score™

📋 Comparing job requirements...

Job Details

Skills

  • Cyber Security
  • IT Risk Management
  • IT Security
  • Information Security
  • GRC

Summary

Role: GRC Information Security Manager (Level 3) 
Duration: 3 Months (3 Years Ext)
Location: Austin, RX (100% Remote)
Experience: 15+ Years

Primary Skills: ERM, Risk Register Design, Risk Scoring Models, Governance Workflows, Cyber Risk, Stakeholder Engagement, Audit Documentation
Project Responsibilities:
  •  Define end to end governance workflows for: 
o Risk identification and intake o Risk review and validation o Risk acceptance, mitigation, or transfer o Ongoing monitoring and periodic reassessment
  • Establish roles and responsibilities for risk owners, reviewers, and governance bodies.
  • Design escalation and reporting processes for high risk and accepted risks.
  • Engage key stakeholders across business, technology, security, and governance functions to validate risk requirements and workflows.
  • Facilitate working sessions or workshops to socialize the risk register and governance processes.
  • Support onboarding of initial risks into the enterprise risk register.
 Produce clear, audit ready documentation covering:  
o Risk register structure and data definitions o Risk scoring methodology o Governance workflows and decision authorities
  • Provide knowledge transfer to designated security staff to ensure sustainability beyond the contract term.
The contractor shall provide the following deliverables during the engagement:
  1.  Enterprise Risk Register Framework
o Standardized risk register template and taxonomy
  1.  Risk Scoring and Prioritization Model
o Documented likelihood and impact scales o Scoring methodology and prioritization logic
  1.  Risk Governance Model
o Defined workflows for risk intake, review, acceptance, and monitoring o Roles and responsibilities matrix
  1.  Initial Population of Risk Register
o Initial set of documented risks reflecting current cybersecurity and technology risk posture
  1.  Final Documentation Package
o Consolidated guidance and operating procedures for ongoing risk management

Required Skills:
  • 8 Years of Required Experience with Risk Register Design and Framework 
  • 8 Years of Required Experience with Risk Scoring and Prioritization Model 
  • 8 Years of Required Experience with Governance Processes and Workflows 
  • 8 Years of Required Experience with Stakeholder and Enablement 
  • 8 Years of Required Demonstrated skill with documentation and knowledge transfer
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91102157
  • Position Id: 8957410
  • Posted 2 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Hybrid in Austin, Texas

2d ago

Easy Apply

Contract, Third Party

$60 - $65

Remote or Austin, Texas

Yesterday

Contract, Third Party

Remote or Austin, Texas

8d ago

Easy Apply

Contract, Third Party

Depends on Experience

Remote or Austin, Texas

Today

Easy Apply

Full-time, Part-time, Contract, Third Party

Search all similar jobs