Director of Cybersecurity Governance Risk & Compliance (GRC)

Andover, MA, United States

Apply now Apply later

Job Summary:

The Director of Cybersecurity Governance Risk & Compliance (GRC) reports to the CISO and is responsible for day-to-day operations to support and augment the CISO’s overall responsibilities, in addition to leading governance, risk and compliance. The Director of Cybersecurity GRC is an advanced role supporting both the GRC and entire cybersecurity program. This individual provides leadership, executive support, strategic and tactical guidance, and supports execution for a world-class cybersecurity program supporting global enterprise security initiatives. As directed by the CISO, the Director of Cybersecurity GRC supports and reports on strategic planning and execution of the governance, risk and compliance portion of the cybersecurity program.

The Director of Cybersecurity GRC is expected to be skilled at effective communication and possess business acumen to align and work closely with business leaders. The successful candidate must be capable of working closely with C-level leadership and third parties.

Job Responsibilities:

  • Support the CISO when the CISO is unavailable, work closely with security leadership, and lead the security governance, risk and compliance program.
  • Be actively informed and engaged in daily security operations.
  • Enforce a strong security culture set forth by the CISO, ensuring uniformity across security leadership, business units and employees.
  • Foster strong relationships with internal business units and external entities to maintain a strong network.
  • In tandem with the CISO, manage the security budget and additional fiduciary responsibilities.
  • Advise on enterprise-wide people, process and technology security recommendations.
  • Ensure security projects are delivered on time and within budget.
  • Sponsor vendor and technology solution selection, as well as third-party consulting services as needed.
  • In conjunction with security team, define key performance indicators (KPIs) and metrics aligning with business initiatives and deliver to non-technical teams in terms that are readily comprehensible.
  • Work closely with operational risk, compliance, legal and audit teams.
  • Stay abreast of new laws, regulations and standards, and assess their impacts to the business.
  • Verify security content training initiatives, as well as internal and external communication are conducted regularly.
  • Oversee testing and validation of security controls across projects.
  • Perform other duties as assigned.

 

Required Qualifications:

  • Bachelor's degree in business administration, information assurance or related technical field.
  • Ideally10+ years’ cybersecurity management experience.
  • Ideally 3 years’ experience working with business leadership and with fiscal responsibilities.
  • Certified in CISSP, CISM, CRISC, or CISA.
  • Driven to build a strong, cohesive team and positive enterprise-wide security culture.
  • Proven high level of integrity, trustworthiness and confidence, as well as ability to represent the company and security leadership with the highest level of professionalism.
  • Strategic vision and ability to influence others.
  • Strong project management and organizational skills.
  • Ability to motivate the team to achieve excellence, while giving credit and recognition where it is due.
  • Demonstrated understanding and comprehension of a wide range of cybersecurity solutions.
  • US Citizenship and have the ability to obtain a DoD Secret Clearance.

 

Preferred Qualifications:

  • Master’s or other advanced degree (MBA, information assurance, computer science, etc.) preferred
  • Analytical and problem-solving mindset.
  • Highly organized and efficient.
  • Demonstrated strategic and tactical thinking, along with decision-making skills and business acumen.

Location:

This position is hybrid and can be located in the following Mercury locations:

  • Andover, MA - ideally
  • Hudson, NH
  • Chantilly, VA or 
  • Arlington, VA

 

"This position requires you to have or obtain a government security clearance. Security clearances may only be granted to U.S. citizens."

 

Qualifications Why should you join Mercury Systems?

Mercury Systems is a technology company that makes the world a safer, more secure place. We push processing power to the tactical edge, making the latest commercial technologies profoundly more accessible for today's most challenging aerospace and defense missions. From silicon to system scale, Mercury enables customers to accelerate innovation and turn data into decision superiority. Headquartered in Andover, Massachusetts, Mercury employs more than 2,300 people in 24 locations worldwide. To learn more, visit mrcy.com

Our Culture

We are committed to making Mercury a great place to work, no matter where our employees are located. We offer a casual and enjoyable atmosphere that allows employees to learn and grow. We help and care for one another and work as one to achieve results for us and for our customers. We value communication and transparency, and strive to foster two-way dialogue at all levels of the organization. We are committed to lifelong learning, offering comprehensive skills training and tuition reimbursement. Whether you're just starting out on your career journey or you are an experienced professional, it's important to us that you feel recognized and rewarded for your contributions.

To find out more about Why Mercury?, or visit the Mercury Community or find answers to general questions at Mercury FAQs

Mercury Systems is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex (including pregnancy), sexual orientation, gender identity, national origin, genetic information, creed, citizenship, disability, protected veteran or marital status.

As an equal opportunity employer, Mercury Systems is committed to a diverse workforce. In order to ensure reasonable accommodation for individuals protected by Section 503 of the Rehabilitation Act of 1973, the Vietnam Veterans' Readjustment Act of 1974, and Title I of the Americans with Disabilities Act of 1990, applicants that require accommodation in the job application process may contact the number below for assistance.

(978) 256-1300

Click here read about our recent press release.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0

Tags: C CISA CISM CISO CISSP Clearance Compliance Computer Science CRISC DoD Governance KPIs Security Clearance

Perks/benefits: Career development Transparency

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.