Senior Manager, Cybersecurity & IT GRC
BERWYN, PA, US, 19312
TE Connectivity
TE connectors and sensors are embedded in many types of technological devices, where reliable and persistent data, power, signal, and sensing connectivity are required.At TE, you will unleash your potential working with people from diverse backgrounds and industries to create a safer, sustainable and more connected world.
Job Overview
The ideal candidate for the Senior Manager, Cybersecurity & IT GRC role will have a strong desire to be part of a information security team in a high-volume, dynamic environment with sufficient experience to hit the ground running. This individual will focus on the execution and coordination of IT security governance, risk & compliance processes related to a broad range of business requirements and government/industry regulations.
The Senior Manager, Cybersecurity & IT GRC will play a key role in identifying, assessing, and mitigating risks while ensuring compliance with laws, regulations, and standards. You will play a pivotal role in shaping and advancing our cybersecurity posture and risk management framework. This position entails a blend of strategic leadership and hands-on execution across various cybersecurity and GRC initiatives.
The Senior Manager, Cybersecurity & IT GRC is a leader in the Governance, Risk and Compliance (GRC) team within TE’s Security & Risk Management (SRM) function. The SRM function is part of TEIS (TE Information Solutions) and has global responsibility for cyber/information security, technology risk and controls, IT Compliance, audit & assurance, and related areas across TE Connectivity.
RESPONSIBILITIES
- Spearhead the development, implementation or enhancement of programs to manage cybersecurity & IT governance, risk, and compliance across the global organization.
- Serve as a key advisor to senior management in Business Units and Corporate Functions on cybersecurity & IT GRC matters, helping to shape strategic decisions.
- Manage, coach and develop less experienced GRC team members across the globe.
- Lead the global IT compliance function to manage key compliance obligations related to Information Security and data. Ensure compliance with local, state, federal, and international laws and regulations relevant to cybersecurity and TE’s IT operations. Collaborate with senior management to integrate compliance controls into existing business practices.
- Lead the IT Risk Management function within TE Connectivity by conducting risk assessments, identifying potential areas of vulnerability and risk, and developing/implementing risk treatment plans.
- Lead and manage third-party cyber-risk management program including supplier security reviews, contract management, and related activities.
- Lead IT and security control governance, management, gap analysis, and testing leveraging international frameworks and in support of TE’s risk & compliance programs
- Oversee and drive the risk and security metrics program
- Lead the Security Awareness program within TE Connectivity by overseeing the development and delivery of security awareness programs including training and education on cybersecurity and information protection
- Oversee assurance activities including control validation, customer questionnaires, cyber-insurers, and internal & external audits
- Collaborate with Legal teams to ensure alignment regarding IT and Legal requirements to meet compliance obligations
- Identify gaps in the design and operating effectiveness of controls and identify opportunities for improvements that reduce risk and/or align TE with industry recognized internal control frameworks.
What your background should look like:
SKILLS & KNOWLEDGE
- Thought leader with demonstrated ability in setting strategic direction for cybersecurity & IT GRC initiatives in a global company, advising and influencing senior management, and inspiring a team towards achieving shared goals.
- Expertise in regulations relevant to IT security and compliance for a public, global manufacturing company (e.g., SOX; PCI; HIPAA: US and international privacy regulations; US and international cybersecurity regulations and export restrictions such as CMMC/DFARS, ITAR and UKML) and/or Controls Frameworks (e.g., COSO, COBIT, NIST CSF, ISF Standards of Good Practice, ISO 27001); and industry or regionally specific certifications (e.g., TISAX; CyberEssentials).
- General knowledge of information security and related technologies, including identity & access management; database, operating system, and network security; endpoint security; application security; data protection and leakage; vulnerability management; security logging and monitoring; etc.
- Experience with any of the following is a plus: BISO model; Archer GRC tool; manufacturing and OT/ICS systems; IT audit; risk management frameworks; and Kaizen/lean methodologies.
- Proven experience in leading and managing diverse teams across multiple geographies.
- Ability to be a change agent - identify opportunities for improvement, gain consensus, and execute on them.
- Ability to work successfully in a cross-functional team environment.
- Bachelor’s degree in Management Information Systems, Information Technology, Engineering or related field
- A master’s degree with IT-related majors or relevant certification (e.g., CISA, CISSP, CRISC, CGEIT)
- Minimum of 7 years of experience in GRC roles, with at least 4 years in a management or leadership position.
Competencies
Motivating OthersBuilding Effective TeamsManaging and Measuring WorkValues: Integrity, Accountability, Inclusion, Innovation, TeamworkSET : Strategy, Execution, Talent (for managers)ABOUT TE CONNECTIVITY
TE Connectivity is a global industrial technology leader creating a safer, sustainable, productive, and connected future. Our broad range of connectivity and sensor solutions enable the distribution of power, signal and data to advance next-generation transportation, renewable energy, automated factories, data centers, medical technology and more. With more than 85,000 employees, including 8,000 engineers, working alongside customers in approximately 140 countries. TE ensures that EVERY CONNECTION COUNTS. Learn more at www.te.com and on LinkedIn, Facebook, WeChat, Instagram and X (formerly Twitter).
COMPENSATION
• Competitive base salary commensurate with experience: $173,000 – 259,000 (subject to change dependent on physical location)
• Posted salary ranges are made in good faith. TE Connectivity reserves the right to adjust ranges depending on the experience/qualification of the selected candidate as well as internal and external equity.
• Total Compensation = Base Salary + Incentive(s) + Benefits
BENEFITS
• A comprehensive benefits package including health insurance, 401(k), disability, life insurance, employee stock purchase plan, paid time off and voluntary benefits.
EOE, Including Disability/Vets
Tags: Application security Audits BISO CISA CISSP CMMC COBIT Compliance CRISC DFARS Endpoint security Governance HIPAA ICS Industrial ISO 27001 Monitoring Network security NIST Privacy Risk assessment Risk management RMF SOX Strategy TISAX Vulnerability management
Perks/benefits: Competitive pay Equity / stock options Health care Insurance
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.