Governance, Risk and Compliance Manager

United States

Position Summary: As the Information Security Governance Risk and Compliance (GRC) Manager, you will play a key role in supporting the Enterprise Information Security team governing the Cyber Risk Management, Training & Awareness Programs, and general security risk governance. The role will require strong attention to detail and a thorough knowledge of information security risk management and will be a key member of the Global Cybersecurity team to assess and implement the controls necessary to ensure the protection of information systems.  Finally, you must possess strong skills to identify security risks and remediation or mitigating control options, be proactive in solving problems, and coordinate efforts across the Global IT department.  Summary Of Key Job Responsibilities:
  • Manage the development, implementation, and maturity of Conair’s Information Security Risk Management Program 
  • Partner and coordinate with IT stakeholders, auditors (internal/external), management, and other groups to best address relevant risks to Conair as part of 3rd party risk management, Payment Card Industry (PCI), and Sarbanes Oxley compliance.  
  • Lead the selection process and implementation of a GRC platform 
  • Continuously identify areas of improvement, create action plans, and execute to implement changes in a timely manner.  
  • Develop a cloud risk management program to support Conair’s expansion into public cloud infrastructure. 
  • Acts in a key role supporting technology compliance initiatives.
  • Own and maintain security policies and procedures in support of legal, regulatory and compliance objectives.
  • Conduct routine and ad-hoc information security risk assessments and or compliance reviews.
  • Supporting vendor due-diligence process and help with overall third-party risk management efforts.
  • Supporting vulnerability management efforts, which include remediation tracking, status reporting and program enhancements.
  • Maintain the Conair Risk Register
  • Assist with data analytics and compile metrics.
  • Training & Awareness:
    • Assist with documentation (e.g., desktop procedures, newsletters, tip sheets, and security alerts/advisories)
    • Work with the Global Security Team to coordinate logistics for Training and Awareness exercises across Conair.
    • Acts as a key resource driving the security awareness strategy and developing a security conscious culture. 
 Requirements & Qualifications:  
  • 5+ years of experience in IT risk management, IT governance, or internal controls. 
  • Experience with implementing and operationalizing IT General Controls, CIS Critical Security Controls, and/or other similar security frameworks. 
  • Knowledge of SAP controls 
  • Experience with Microsoft Purview 
  • Experience in ensuring compliance with multiple compliance requirements, include Payment Card Industry (PCI) and SWIFT as well as familiarity with privacy requirements. 
  • Experience in major cloud security provider security and protection techniques which would include security assessments and the application of enterprise security strategies, etc. 
  • Practical & technical understanding of network, system, application, cybersecurity, and cloud security controls.
  • Experience with policy development and designing information security controls.
  • Knowledge regarding risk management practices, GRC concepts, and automation tools.
  • Involvement in coordinating cyber security awareness programs.
  • Experience with PowerBI is a plus
  • Knowledge of, and experience using Third-Party Risk Management methodologies.
  • Strong understanding of the MS O365 Suite including SharePoint 
  • Ability to work in or lead projects with cross-functional teams for projects and initiatives.
  • CISA, CISSP, CCSK, CRISC, CIPP, or other professional certifications/associations is a plus
  • Bachelor’s Degree in computer information systems, cybersecurity or a related field 
  • This position is Remote but the candidate must live in the Metro NYC area.
Environmental Factors: 
  • Working conditions are normal for an office environment.
  • Must be able to sit for extended periods of time.
  • Must be able to use a computer keyboard and view a monitor for extended periods of time.
  • Must be able to travel domestically and internationally for business (% if needed)
  • This position is remote but the candidate must live in the Metro NYC area.
What we offer:
  • Comprehensive Medical/Dental/Vision plans
  • Generous Paid Time Off Programs
  • Life & Disability Insurance
  • FSA/HRA/Dependent Care FSA
  • Paid Parental Leave
  • 401k and company match
  • EAP & Employee Wellness Programs
  • Volunteer Days Paid Time Off
  • Free Lunch at our Stamford location
About Us: Conair is a leading international designer, manufacturer, and marketer of branded personal care and small kitchen appliances, cookware, hairbrushes & accessories, cosmetic bags, and travel accessories.  Conair has always been driven by a passion for innovation; it’s part of the Company’s DNA. Trendsetting products have been invented by Conair since its inception in 1959, keeping the Company always a step ahead of the competition. The company's domestic and international divisions offer a diversified mix of consumer and professional products sold in over 120 countries. The Family of Conair brands includes CONAIR, Cuisinart, BabylissPRO, Scünci , TRAVELSMART by CONAIR, and Waring.  Conair’s passion for innovation gets stronger with each decade, as evidenced by the over 1,000 patents the Company has obtained worldwide. Today, Conair and its brands are names known throughout the world. Conair continues to introduce its brands to new and emerging markets, year after year. By the 1990s, most households in America owned at least one Conair product. Today many have more than one, and the Company’s goal is to ensure that every household in the world eventually owns one of our products.  At Conair, we inspire our customers with innovative high-quality products andiconic brands that enhance their lives.Are you passionate about this opportunity but worried that you don’t have 100% of the experience we’re looking for?  We still want to hear from you! Apply online and let us know why you would make a great addition to Conair! 

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  2  0  0

Tags: Analytics Automation CCSK CIPP CISA CISSP Cloud Compliance CRISC Data Analytics Governance Privacy Risk assessment Risk management SAP Security assessment SharePoint Strategy Vulnerability management

Perks/benefits: 401(k) matching Career development Health care Insurance Medical leave Parental leave Wellness

Regions: Remote/Anywhere North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.