B

Manager, IT Governance, Risk, and Compliance (GRC)

Remote
This Job is No Longer Active This position is no longer accepting applications

Lead IT GRC initiatives to ensure technology environments are secure, compliant, and aligned with business goals. Collaborate across departments to translate regulatory requirements into practical solutions. Requires technical expertise, strong communication, and a balanced risk-based approach.

Key Highlights
Manage IT Governance, Risk, and Compliance (GRC) program.
Ensure technology environment is secure, compliant, and aligned with business goals.
Collaborate with various departments to implement risk and compliance solutions.
Key Responsibilities
Understand business priorities and activities at BCBST and subsidiaries.
Maintain current knowledge of applicable regulatory and compliance issues related to Information Security.
Plan, develop, document, maintain and monitor progress of Information Security Program components consistent with applicable regulatory and compliance requirements.
Develop, maintain and communicate policies, standards and procedures to manage security functions relative to information technology systems (including systems under development), networks, applications, and voice and data communications that are consistent with applicable regulatory and compliance requirements.
Understand the threat landscape and attack trends as they relate to intelligence gathering, dissemination and defense coordination.
Manage information risk management program including facilitated risk decisions with decision making authorities and being an engaged partner with lines of business.
Develop and implement an effective policy compliance monitoring and enforcement program.
Manage the security operations and/or engineering functions including incident response, security monitoring, security design and engineering and security architecture.
Develop and manage Enterprise Information Security Threat Management Program.
Manage teams tasked with vulnerability discovery and reporting.
Coordinate the use of external resources involved in the performance of security testing (i.e., penetration tests, vulnerability scans).
Ensure that an Information Security training program is addressed as part of the overall compliance training to ensure the organization’s workforce is knowledgeable of Information Security policies, practices and relevant guidance appropriate to their role in the organization.
Develop and report business-relevant metrics to measure the efficiency and effectiveness of the Information Security Program, facilitate appropriate resource allocation and increase the maturity of the security program.
Provide subject matter expertise on a broad range of information security standards and best practices, such as NIST, PCI, ISO 27001, MAR and others as applicable.
Work with Information Security Directors, CISO and appropriate stakeholders to prepare and present relevant information on security as required.
Facilitate and participate in the organization’s Enterprise Security Committee as appropriate.
Manage the process of hiring, developing, and evaluating performance of Information Security department staff.
Establish and manage operating budgets.
Collaborate with other departments across BCBST including Human Resources, Legal, Privacy, Procurement and Compliance to ensure information security alignment across the company.
Technical Skills Required
PowerBI
Benefits & Perks
Fully remote role
Nice to Have
Experience presenting to executive audiences
Experience in healthcare (or other regulated industries)

Job Description

We’re looking for a who enjoys helping teams navigate risk and compliance in a practical, collaborative way. This role plays an important part in keeping our technology environment secure, compliant, and aligned with our business goals—without slowing innovation.In this role, you’ll work closely with partners across IT, Security, Internal/External Audit, Legal, Privacy, and the business to turn regulatory requirements and risk frameworks into solutions that actually work in the real world. You’ll help guide risk assessments, develop and improve policies and controls, support audits, and strengthen our overall GRC program in a way that’s thoughtful and sustainable.
Want the full job description? Read the complete details on LinkedIn, the original posting.
Continue on LinkedIn

This is a short excerpt. All rights to the full description belong to its original publisher.

See Jaabz jobs first on Google 1 tap · free · in AI Overviews Jaabz is on your Google Manage Preferred Sources

Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

SIDRAM TECHNOLOGIES

United State

Technical Support Engineer

Networking
•
21h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Associate

savvymoney

United State
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

talenthop

United State

Subscribe our newsletter

New Things Will Always Update Regularly