Sr. Manager, Information Security GRC

3 weeks ago


New York, United States Fanatics Full time

Job DescriptionThe Role The Sr. Manager, Information Security GRC (Fanatics Corporate) reports to the VP, Information Security (GRC) and will focus efforts on managing all cyber and third-party risks for Fanatics Corporate. In this you will play a crucial role in assessing, managing, and driving mitigation of risks associated with both our third-parties (vendors, suppliers, and partners) and our wider cybersecurity program. You will drive a comprehensive risk management approach, while supporting subsidiary cybersecurity teams in maturing and standardizing their risk programs. What You'll Do: Oversee cyber and third-party risk management for the corporate entity, ensuring alignment with business objectives. Assist subsidiary InfoSec teams in developing and maturing their risk management programs. Establish consistent reporting mechanisms for executives and board functions, providing clear risk insights. Drive adoption of enterprise-wide risk assessment methodologies, frameworks, and tools. Collaborate with key stakeholders to enhance risk governance and ensure compliance with regulatory requirements. Monitor emerging threats, evolving regulations, and industry best practices to continuously improve risk posture. Identify risks associated with potential Corporate third-party vendors, by conducting thorough risk assessments and due diligence to ensure Corporate standards are met and maintained Coordinate and perform risk re-assessment of existing third-party vendors to ensure the continued management and reduction of risk. Perform vendor continuous monitoring tasks, utilizing cyber rating platforms to ensure timely alerting of any vendor decreasing controls, or other relevant intelligence. Monitor and track the off-boarding process for vendors, ensuring that all security-related aspects are addressed and terminated in a secure manner. Collaborate with stakeholders and cross-functional teams (i.e., business owners, procurement, legal, privacy, IT teams, and other InfoSec teams etc.) to support the holistic review of the vendor and services/products being provided. Assist with the administration and maintenance of the global GRC platform. What We're Looking For: Considerable experience working in Information Security GRC, with focus on leading a risk management program, or ability to step up into such a position. Considerable experience of working with third-party risk assessment tools and cyber rating platforms. Strong understanding of Information Security risk frameworks (e.g., ISO, NIST, FAIR etc.). Strong understanding of Information Security control frameworks (e.g., NIST, CIS, SCF etc.). Strong understanding of Information Security Third-Party frameworks and processes. Ability to work collaboratively in teams and develop meaningful relationships to achieve common goals. Excellent presentation and communication skills. Excellent influencing and problem resolution skills. Job Locations: New York - NY, Jacksonville - FL, Atlanta - GA. Mandatory office attendance: four days per week, with flexibility to choose which days in coordination with your manager. In NYC, the salary range for this position is $165,000 to $200,000, which represents base pay only and does not include short-term or long-term incentive compensation. When determining base pay, as part of a final compensation package, we consider several factors such as location, experience, qualifications, and training. About Us Fanatics is building a leading global digital sports platform. We ignite the passions of global sports fans and maximize the presence and reach for our hundreds of sports partners globally by offering products and services across Fanatics Commerce, Fanatics Collectibles, and Fanatics Betting & Gaming, allowing sports fans to Buy, Collect, and Bet. Through the Fanatics platform, sports fans can buy licensed fan gear, jerseys, lifestyle and streetwear products, headwear, and hardgoods; collect physical and digital trading cards, sports memorabilia, and other digital assets; and bet as the company builds its Sportsbook and iGaming platform. Fanatics has an established database of over 100 million global sports fans; a global partner network with approximately 900 sports properties, including major national and international professional sports leagues, players associations, teams, colleges, college conferences and retail partners, 2,500 athletes and celebrities, and 200 exclusive athletes; and over 2,000 retail locations, including its Lids retail stores. Our more than 22,000 employees are committed to relentlessly enhancing the fan experience and delighting sports fans globally.



  • New York, NY, United States Fanatics Full time

    Job DescriptionThe Role The Sr. Manager, Information Security GRC (Fanatics Corporate) reports to the VP, Information Security (GRC) and will focus efforts on managing all cyber and third-party risks for Fanatics Corporate. In this you will play a crucial role in assessing, managing, and driving mitigation of risks associated with both our third-parties...


  • New York, New York, United States Fanatics Full time $150,000 - $220,000 per year

    Job DescriptionThe RoleThe Sr. Manager, Information Security GRC (Fanatics Corporate) reports to the VP, Information Security (GRC) and will focus efforts on managing all cyber and third-party risks for Fanatics Corporate. In this you will play a crucial role in assessing, managing, and driving mitigation of risks associated with both our third-parties...


  • New York, United States RIT Solutions, Inc. Full time

    Cybersecurity Sr. GRC Analyst Location: 3-day Hybrid (Tue-Thu) in King of Prussia, PA or Denver, PA - Locals only Duration: 3-6 months, Contract-to-Hire (CTH) Rate: Best possible, but keep at the lower end (Oil & Gas client budget) Overview Our client, a top-tier Management Consulting firm, has partnered with an Oil & Natural Gas company to identify a Global...

  • Lead, Security GRC

    3 weeks ago


    New York, United States Gemini Full time

    Lead, Security GRC (Compliance) Join Gemini, a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014. We seek a Security GRC Lead to manage PCI, ISO 27001, NYDFS, and SOC II compliance programs. The role requires strong project management, executive communication, and deep expertise in security compliance frameworks....

  • Lead, Security GRC

    1 week ago


    New York, United States Gemini Full time

    About the Company Applying for this role is straight forward Scroll down and click on Apply to be considered for this position.Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and institutions in over 70 countries. Our...


  • New York, United States Bank of China USA Full time

    Chief Information Security Office-Strategy, Programs & GRC AVP Join to apply for the Chief Information Security Office-Strategy, Programs & GRC AVP role at Bank of China USA Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our...

  • Security GRC Engineer

    4 weeks ago


    New York, NY, United States Anysphere Full time

    Security GRC Engineers design, implement, and scale our governance, risk, and compliance (GRC) program. You will lead automation of compliance workflows, build self-serve tools to enable GTM teams, and ensure our products and infrastructure meet the highest security standards. This role combines technical implementation with strategic program development,...


  • New York, United States Hearst Full time

    Job Description Hearst Technology, Inc, Information Security Office seeks a Manager, Information Security Risk Management. The Manager, Information Security Risk Management is responsible for assessing risk and managing risk information for the organization and key business units. This position assesses information security risk within essential technology...


  • New York, United States SelekIT LLC Full time

    Senior Security Consultant SAP CP GRC and SAP SecurityJob Openings Senior Security Consultant SAP CP GRC and SAP SecurityAbout the job Senior Security Consultant SAP CP GRC and SAP SecurityPosition: Senior Security Consultant, SAP CP GRC and SAP SecurityEmployment Type: 1099 Contract (Fully Remote)Eligibility: Only U.S. citizensTravel: Light travel within...


  • New York, NY, United States SelekIT Full time

    About the job Senior Security Consultant SAP CP GRC and SAP Security Position: Senior Security Consultant, SAP CP GRC and SAP Security Employment Type: 1099 Contract (Fully Remote) Eligibility: Only U.S. citizens Travel: Light travel within the US (as needed) About the Role We are seeking an experienced Senior Security Consultant with 45 years of hands-on...