Cyber Security Governance Risk and Compliance Manager

14 hours ago


Dallas TX United States Scottish Rite for Children Full time

Cyber Security Governance Risk and Compliance Manager

Location: Dallas - Shared Services

Additional Posting Details: M-F 8-5A

Job Description: Duties/Responsibilities
  1. Develop and maintain the organization's cyber governance, risk and compliance strategy, framework, and roadmap, and ensure alignment with the organization's vision, mission, values, and objectives.
  2. Establish and enforce cyber policies, standards, and procedures, and provide guidance and support to stakeholders on cyber governance, risk and compliance matters.
  3. Conduct cyber risk assessments and audits, identify and evaluate cyber risks and controls, and recommend and implement appropriate mitigation measures and action plans including contract reviews, IT or business process reviews, and action plans from prior risk assessments as applicable.
  4. Monitor and report on the performance and effectiveness of cyber controls and compliance, and identify and address any gaps or issues.
  5. Responsible for maintaining audit/assessment documentation (controls inventory, risk register, policies and procedure, risk assessments and associated remediation plans, and other commonly requested policy and compliance documentation) for ready representation when Scottish Rite for Children (“SRC”) undergoes audits or assessments.
  6. Liaise and collaborate with internal and external stakeholders, such as senior management, IT, legal, audit, regulators, vendors, etc., on cyber governance, risk and compliance initiatives and activities.
  7. Stay abreast of the latest cyber trends, threats, regulations, and best practices, and provide advice and recommendations on how to improve the organization's cyber posture and resilience.
  8. Perform other duties as assigned by the supervisor or director.
  9. Responsible for reviewing opportunities within IT operations to standardize or improve processes, naming conventions, unautomated (undefined or vaguely defined) processes and facilitate the documentation and operationalization of these processes into an appropriate workflow engine (helpdesk software, ERP system, etc.).
  10. Follows all SRH Policy, Procedures, Standards, and Guidelines.
Required Skills/Abilities
  1. A bachelor's degree in computer science, information systems, cybersecurity, or a related field, and a minimum of five years of experience in cyber governance, risk and compliance, or a similar role.
  2. A certification in one or more of the following: CISSP, CISM, CRISC, CISA, or equivalent.
  3. A strong knowledge of cybersecurity best practices, frameworks, and standards, such as NIST, ISO, COBIT, PCI-DSS, etc.
  4. A solid understanding of cyber risks and threats, and the ability to evaluate and mitigate them.
  5. A proven track record of developing and implementing cyber policies, standards, and procedures, and ensuring adherence to them across the organization.
  6. Excellent communication, presentation, and interpersonal skills, and the ability to communicate technical concepts to non-technical audiences.
  7. A high level of analytical, problem-solving, and decision-making skills, and the ability to prioritize and manage multiple tasks and projects.
  8. A strong sense of ethics, integrity, and professionalism, and the ability to handle confidential and sensitive information.
About Us

At Scottish Rite for Children, we work together with the common goal of helping give children back their childhood. Scottish Rite is a unique place to work because we believe in a collaborative approach, utilizing the care and expertise from all departments. We are always looking for caring, energetic individuals to join our team. We currently have locations in Dallas and Frisco and is an equal opportunity employer.

#J-18808-Ljbffr

  • Dallas, Texas, United States Echelon Risk + Cyber Full time

    We are committed to creating a secure environment at Echelon Risk + Cyber. As a Senior Security Engineer, you will play a vital role in shaping our security policies and procedures.Job DescriptionCompany Overview: Echelon Risk + Cyber is a leading cybersecurity consulting firm dedicated to defending human rights to security and privacy.About the Role: We...


  • Dallas, Texas, United States Cyber Defense Labs Full time

    About the RoleCyber Defense Labs seeks an experienced Information Security Governance Specialist to join our team. In this role, you will serve as a Senior Advisor of our cybersecurity consulting services team, dedicated to a client and required to be on-site at their location.You will ensure the organization's compliance with industry and regulatory...

  • Cyber Risk

    14 hours ago


    Bethpage, NY, United States PSEG Full time

    PSEG operates under a Flexible Work Model where flexible work is offered when job requirements allow. In support of this model, roles have been categorized into one of four work location categories: onsite roles, hybrid roles that are a blend of onsite and remote work, remote local roles that are primarily home-based but require some level of purpose-driven...


  • Dallas, TX, United States Deloitte Full time

    Position Summary Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? Our Cyber & Strategic Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistent...


  • Dallas, Texas, United States Cyber Defense Labs Full time

    About the JobCyber Defense Labs is seeking a highly skilled Cybersecurity Risk Management Expert to join our team.In this role, you will serve as a Senior Advisor of our cybersecurity consulting services team, dedicated to a client and required to be on-site at their location.You will ensure the organization's compliance with industry and regulatory...


  • Dallas, Texas, United States Echelon Risk + Cyber Full time

    Job OverviewWe are seeking a highly skilled Senior Security Engineer to join our team at Echelon Risk + Cyber. As a leading cybersecurity consulting firm, we believe in defending basic human rights to security and privacy. Our next team member will be ready to roll up their sleeves and identify opportunities for our clients and for Echelon internally with...

  • Cyber Risk Analyst

    4 weeks ago


    Charlotte, NC, United States Flexton Inc. Full time

    Job Title: Cyber Risk AnalystLocation: Cincinnati/Blue Ash, OH; Boca Raton, FL; Chicago, IL, or Charlotte, NC (Remote Role)Duration12 Month(s), Contract to HireKeywords Risk management experience, cyber security frameworks, such as, NIST-CSF, risk toolsRequired SkillsThe IT risk analyst supports the IT risk management practice, which ensures risk is...


  • Houston, TX, United States Plains Full time

    Job Type:RegularPlains All American is an industry-leading transportation and midstream provider specializing in transportation, storage, processing and marketing solutions for crude oil and natural gas liquids (NGLs). We own an extensive network of pipeline transportation, terminalling, storage and gathering assets in key crude oil and NGL producing basins...


  • New York, NY, United States SEI Full time

    WHAT WE DO Our Security, Risk and Compliance consultants work with clients at all levels of the organization, from the C-suite to the shop floor, helping them to deliver on their most strategic initiatives. We’re known for making realistic, data-driven decisions that deliver value in tangible ways to our clients. Our clients ask for us on projects that...

  • Director Technology

    1 month ago


    Dallas, United States comerica Full time

    Technology and Cybersecurity Risk DirectorThe Technology & Cyber Risk Director is responsible for providing oversight, guidance, and independent challenge to the first line of defense regarding the management of technology and cyber risks. This position involves developing and implementing risk management frameworks, policies, and procedures, conducting risk...


  • New Brighton, MN, United States TEKsystems Full time

    Description:Senior IT Project Manager (Cybersecurity)The Opportunity: Under our Cybersecurity program, there are several projects needed to enhance the capabilities and defense from cyber threats. A multi-year program has been launched to align and strengthen Cybersecurity processes and to build and strengthen several areas of security – IAM, GRC, Cyber...


  • New Brighton, MN, United States TEKsystems Full time

    Description:Senior IT Project Manager (Cybersecurity)The Opportunity: Under our Cybersecurity program, there are several projects needed to enhance the capabilities and defense from cyber threats. A multi-year program has been launched to align and strengthen Cybersecurity processes and to build and strengthen several areas of security – IAM, GRC, Cyber...

  • Director Technology

    2 weeks ago


    Dallas, United States comerica Full time

    Technology and Cybersecurity Risk DirectorThe Technology & Cyber Risk Director is responsible for providing oversight, guidance, and independent challenge to the first line of defense regarding the management of technology and cyber risks. This position involves developing and implementing risk management frameworks, policies, and procedures, conducting risk...

  • Director Technology

    12 hours ago


    Dallas, United States Comerica Full time

    Technology and Cybersecurity Risk DirectorSkills, Experience, Qualifications, If you have the right match for this opportunity, then make sure to apply today.The Technology & Cyber Risk Director is responsible for providing oversight, guidance, and independent challenge to the first line of defense regarding the management of technology and cyber risks. This...

  • Cybersecurity SME

    4 weeks ago


    Alexandria, VA, United States Tyto Athene, LLC Full time

    Tyto Athene is searching for a dynamic Senior Cybersecurity Subject Matter Expert that specializes in Governance, Risk, and Compliance.Responsibilities:Serve as a trusted advisor to senior leadership up to the CISO and Deputy CISO as an expert in the field of information assurance and cybersecurity.Provide advisory support to the customer agency’s needs...


  • Cincinnati, OH, United States Golden Technology Full time

    Ready to grow your career? We should talk.We seek a Cyber Risk Analyst for a contract-to-hire opportunity with one of our top-tier Cincinnati clients. This role is a Remote. To be successful in this role, you should have experience with Risk management.Job DescriptionThe IT risk analyst supports the IT risk management practice, which ensures risk is...


  • San Diego, CA, United States Motorola Solutions Full time

    Company Overview At Motorola Solutions, we're guided by a shared purpose - helping people be their best in the moments that matter - and we live up to our purpose every day by solving for safer. Because people can only be their best when they not only feel safe, but are safe. We're solving for safer by building the best possible technologies across every...


  • Dallas, Texas, United States Wheeler Staffing Partners Full time

    Job SummaryWe are seeking an experienced Information Security GRC Analyst to develop, implement, and operationalize Information Security governance and risk management functions for Wheeler Staffing Partners.Key ResponsibilitiesRisk Management: Implement established risk frameworks for the Information Security program, ensuring compliance with security...


  • Dallas, Texas, United States Echelon Risk + Cyber Full time

    About Echelon Risk + CyberWe are a leading cybersecurity consulting firm dedicated to defending basic human rights to security and privacy. Our dynamic team at Echelon Risk + Cyber is seeking a highly skilled and experienced Senior Security Engineer to join us.Key ResponsibilitiesImplement and enforce security policies and procedures based on industry...


  • Dallas, TX, United States Boys and Girls Country of Houston, Inc Full time

    At Bluebeam, we empower people to advance the way the world is built. We create smart software solutions that make construction sites more efficient, connected, and safe and improve the lives of design and construction professionals everywhere.This position will provide leadership and accountability for Bluebeam’s information security program. It is...