Manager of Cybersecurity GRC

Salt Lake City, UT, US • Posted 1 day ago • Updated 1 hour ago
Full Time
On-site
$150,000 - $170,000 annually
Company Branding Image
Fitment

Dice Job Match Score™

⭐ Evaluating experience...

Job Details

Skills

  • Internal Control
  • Documentation
  • Organizational Architecture
  • Payment Card Industry
  • CISSP
  • CISM
  • ISACA
  • Information Systems
  • Information Security
  • Leadership
  • Risk Assessment
  • Risk Management
  • Security Awareness
  • Training
  • Sarbanes-Oxley
  • NIST SP 800 Series
  • ISO/IEC 27001:2005
  • PCI DSS
  • Reporting
  • Management
  • Data Security
  • Analytical Skill
  • Problem Solving
  • Conflict Resolution
  • Communication
  • Legal
  • SAP GRC
  • Auditing
  • Regulatory Compliance
  • Cyber Security
  • Privacy
  • Artificial Intelligence
  • Messaging

Summary

RESPONSIBILITIES:
Kforce's client in Salt Lake City, UT is seeking an experienced Cybersecurity Governance, Risk & Compliance (GRC) Manager to lead enterprise cybersecurity risk management, compliance initiatives, and governance programs. This individual will play a key role in strengthening the organization's security posture by overseeing risk assessments, policy development, regulatory compliance efforts, vendor security reviews, security awareness programs, and cybersecurity reporting.

Key Responsibilities:
* Lead enterprise cybersecurity governance and risk management initiatives
* Conduct ongoing risk assessments to identify threats, vulnerabilities, and emerging cybersecurity concerns
* Develop, maintain, and execute risk treatment and mitigation plans aligned with business objectives
* Monitor organizational risk exposure and communicate risk findings to leadership and stakeholders
* Ensure alignment with industry standards, regulatory requirements, and internal controls
* Develop and maintain cybersecurity policies, standards, procedures, and governance frameworks
* Evaluate and update security documentation to align with evolving threats, business needs, and regulatory expectations
* Partner with business units to drive policy adoption, awareness, and compliance throughout the organization
* Design and manage enterprise-wide cybersecurity awareness programs
* Deliver training initiatives focused on security best practices, compliance obligations, and emerging cyber threats
* Measure program effectiveness and continuously improve awareness efforts based on risk trends and organizational needs
* Serve as a primary cybersecurity contact for internal and external audit activities
* Coordinate audit responses, remediation efforts, and compliance reporting
* Support payment card industry (PCI) compliance programs and ensure ongoing adherence to applicable requirements

REQUIREMENTS:
Preferred Certifications:
* CISSP (Certified Information Systems Security Professional)
* CISM (Certified Information Security Manager)
* CRISC (Certified in Risk and Information Systems Control)
* CDPSE (Certified Data Privacy Solutions Engineer)

* 5+ years of experience in cybersecurity governance, risk management, compliance, or information security leadership
* Experience conducting enterprise risk assessments and developing risk mitigation strategies
* Proven success creating and maintaining cybersecurity policies, standards, and governance frameworks
* Experience managing security awareness and training programs
* Strong understanding of audit processes and regulatory compliance requirements
* Experience supporting compliance efforts related to PCI-DSS, GDPR, CCPA, SOX, or similar frameworks

Desired:
* Strong knowledge of cybersecurity control frameworks including NIST CSF, NIST 800-series, ISO 27001, and PCI-DSS
* Expertise in cybersecurity risk identification, assessment, reporting, and remediation planning
* Experience managing third-party and vendor cybersecurity risk programs
* Familiarity with AI governance, emerging technology risks, and security implications of AI adoption
* Knowledge of privacy regulations and data protection standards
* Strong analytical, organizational, and problem-solving capabilities
* Excellent verbal and written communication skills with the ability to engage both technical and non-technical stakeholders
* Ability to build relationships and influence cross-functional teams across technology, legal, privacy, audit, and business functions

Preferred:
* Experience leading enterprise GRC programs, partnering with audit and compliance organizations, and operating within regulated environments will be highly successful in this role
* Experience developing cybersecurity metrics, vendor risk programs, and privacy-focused security initiatives is strongly preferred

The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.

We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.

Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.

This job is not eligible for bonuses, incentives or commissions.

Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

By clicking ?Apply Today? you agree to receive calls, AI-generated calls, text messages or emails from Kforce and its affiliates, and service providers. Note that if you choose to communicate with Kforce via text messaging the frequency may vary, and message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You will always have the right to cease communicating via text by using key words such as STOP.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: kforcecx
  • Position Id: ITWQG2184029
  • Posted 1 day ago

Company Info

About Kforce Technology Staffing

Kforce is a solutions firm specializing in technology, finance and accounting, and professional staffing services. Our KNOWLEDGEforce® empowers industry-leading companies to achieve their digital transformation goals. We curate teams of technical experts who deliver solutions custom-tailored to each client’s needs. These scalable, flexible outcomes are shaped by deep market knowledge, thought leadership and our multi-industry expertise. 

Our integrated approach is rooted in 60 years of proven success deploying highly skilled professionals on a temporary and direct-hire basis. Each year, approximately 18,000 talented experts work with the Fortune 500 and other leading companies. Together, we deliver Great Results Through Strategic Partnership and Knowledge Sharing®

NYSE: KFRC

About_Company_One
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Tempe, Arizona

Today

Full-time

$160,000 - $190,000 annually

Kansas City, Missouri

Today

Full-time

$116,000 - $130,000 annually

Frisco, Texas

Today

Contract

$35.70 - $48.25 hourly

St. Louis, Missouri

Today

Contract

$35 - $48 hourly

Search all similar jobs