Head of Governance, Risk, and Compliance in Information Security

2 weeks ago


New York, New York, United States Rockstar Full time

About Rockstar Games

At Rockstar Games, we are dedicated to crafting exceptional entertainment experiences.

A career with us means joining a team that works on some of the most creatively fulfilling and ambitious projects in the entertainment industry. You will be embraced by a supportive and inclusive environment where you can grow and collaborate with some of the most skilled professionals in the field.

Position Overview

Rockstar is on the lookout for a seasoned and strategic Director of Governance, Risk, and Compliance (GRC) in Information Security. This role involves building and leading a team of security specialists to implement key strategic initiatives that effectively reduce risk in a scalable manner.

Team Responsibilities

The Rockstar Security team is tasked with safeguarding the confidentiality, integrity, and availability of our sensitive intellectual property and data.

We promote a culture of security across all teams and disciplines, providing policies, standards, guidance, and training to ensure everyone is aware of best practices.

Collaboration with various departments is essential to understand their workflows and to help them adhere to optimal security practices.

Our team is at the forefront of monitoring, detecting, and responding to security incidents.

Key Responsibilities

Governance

  • Develop, implement, and sustain IT governance frameworks aligned with industry standards and regulatory mandates.
  • Establish and enforce IT policies, procedures, and controls to mitigate risks and ensure compliance.
  • Lead the team responsible for delivering IT training and awareness to technology teams.
  • Ensure the effective deployment of security tools.

Risk and Compliance

  • Create and execute departmental strategies for cybersecurity risk management, including risk reporting.
  • Conduct risk assessments and audits to identify vulnerabilities and implement mitigation strategies.
  • Identify key risk indicators (KRIs) to continuously monitor our cybersecurity program's risk posture.
  • Develop and maintain IT disaster recovery and business continuity plans.
  • Oversee compliance efforts across the organization, ensuring adherence to laws, regulations, and standards.

Security Architecture

  • Collaborate closely with the IT department to enhance our infrastructure using best practices and integrate security into software development and infrastructure provisioning processes.
  • Provide expertise on security-related matters, including encryption, authentication, access control, and secure communication protocols.

Qualifications

  • Bachelor's Degree or equivalent experience.
  • 12+ years of experience in cybersecurity.
  • 5+ years of experience in team management.
  • Strong understanding of cybersecurity architectures, best practices, policies, and standards.
  • Proven ability to develop and drive multiple security programs, including a mature risk management program.
  • Extensive experience leading teams to reduce risk and address complex security challenges.

Skills

  • Excellent communication and relationship-building skills, with experience working with global partners.
  • Exceptional problem-solving and analytical skills, with a demonstrated ability to simplify complex issues into structured frameworks and actionable plans.
  • Comfortable with ambiguity and capable of driving results in a fast-paced, dynamic environment.

How to Apply

We invite you to submit your resume and cover letter showcasing how you meet the qualifications outlined above. If selected, a Rockstar recruiter will reach out to guide you through the next steps in the application process.

Rockstar is committed to fostering a work environment that promotes equal opportunity, dignity, and respect. We will provide reasonable accommodations to qualified applicants with disabilities during the recruitment process. If you require further information about our accommodation policies or need to request an accommodation, please contact our Human Resources Department.

We welcome applications from all qualified candidates, regardless of age, disability, gender identity, sexual orientation, religion, belief, race, or any other protected category.

Compensation

The expected pay range for this position is competitive and commensurate with experience and qualifications, including potential bonuses and equity awards, along with a comprehensive benefits package.



  • New York, New York, United States Rockstar Games Full time

    At Rockstar Games, we are dedicated to crafting exceptional entertainment experiences. We are in search of a seasoned and strategic leader in Information Security Governance, Risk, and Compliance (GRC) who will take charge of assembling and guiding a team of security professionals to implement essential, strategic initiatives that effectively minimize risk...


  • New York, New York, United States Saks Full time

    About Us:Saks Cloud Services (SCS) operates as a leading entity within Saks, recognized as the premier digital platform for luxury fashion. SCS specializes in delivering IT infrastructure solutions, technology consulting, and systems integration services, in addition to functioning as a software reseller and service provider. Position Overview:SCS is in...


  • New York, New York, United States Saks Full time

    About Us:Saks Cloud Services (SCS) operates as a pivotal entity within Saks, renowned for its elite digital platform in luxury fashion. SCS specializes in providing comprehensive IT infrastructure solutions, technology advisory services, and systems integration, while also functioning as a software reseller and service provider. Position Overview:SCS is in...


  • New York, New York, United States Sumitomo Mitsui Financial Group, Inc. Full time

    Sumitomo Mitsui Financial Group, Inc. (SMFG) stands as a premier global financial institution, with its roots tracing back over 400 years. Headquartered in Tokyo, SMFG provides a comprehensive suite of financial services, encompassing banking, leasing, securities, credit cards, and consumer finance. With a workforce exceeding 80,000 across more than 130...


  • New York, New York, United States Michael Page Full time

    Risk governance roleJoin growing team and firm About Our Client Banking and Financial Services Job Description Maintains the entity level Risk Governance under CFTC/NFA and FINRA Regulations.Maintain market risk governance framework across CUSO under FRB regulations. Monitor the firms compliance with the Volcker RuleProduce monthly analysis. Assists Group...


  • New York, New York, United States Pagaya Technologies Ltd. Full time

    Head of Business Information Securityat Pagaya Technologies Ltd.About Pagaya Technologies Ltd.Transforming the Financial LandscapePagaya Technologies Ltd. is a pioneering financial technology firm dedicated to revolutionizing the lending ecosystem for investors through advanced machine learning, extensive data analytics, and sophisticated AI-driven risk...

  • Governance Risk

    1 month ago


    New York, New York, United States FuboTV Full time

    About Fubo: With a mission to build the world's leading global live TV streaming platform with the greatest breadth of premium content and interactivity, FuboTV Inc.(NYSE:FUBO) aims to transcend the industry's current TV model.Fubo operates in the U.S., Canada, France and Spain.The company also has a growing technology center in Bangalore, India that is...


  • New York, New York, United States eJangar Full time

    Position: Information Security Risk Management SpecialistExperience Required: Minimum of 4+ years in ITEssential Skills:• 4+ years of experience as a Cybersecurity/Risk Analyst, focusing on information risk evaluation and data privacy impact assessments.• 2+ years of proficiency with Resource Access Control Facility (RACF).• 2+ years of hands-on...


  • New York, New York, United States JPC Partners Full time

    JPC Partners is seeking a Head of Enterprise Security who will collaborate closely with executive leadership, security professionals, and other essential stakeholders. This role is pivotal in crafting and executing a robust information security strategy and program aimed at enhancing the organization's security posture. The successful candidate will...


  • New York, New York, United States JPC Partners Full time

    JPC Partners is seeking a Head of Enterprise Security to collaborate closely with executive leadership, security experts, and essential stakeholders. This pivotal role is responsible for crafting and executing a comprehensive information security strategy and program aimed at enhancing the organization's security posture. The individual will spearhead the...


  • New York, New York, United States Crédit Agricole S.A. Full time

    Job DescriptionJob Title: Head of Vulnerability Management and Security Operations, AmericasJob Summary:The Head of Vulnerability Management and Security Operations reports to the Chief Information Security Officer and is responsible for managing senior and junior IT Security engineers in security monitoring, remediating all security-related alerts &...


  • New York, New York, United States Mastech Digital Full time

    Position: SAP GRC Access Control & Security ComplianceCompany: Mastech DigitalOverview:We are seeking a knowledgeable professional in SAP GRC Access Control to enhance our security compliance efforts. The ideal candidate will have a strong understanding of GRC AC and the ability to analyze controls and segregation of duties (SOD) effectively.Key...


  • New York, New York, United States TD Bank, N.A. Full time

    Job SummaryThe Head of Governance and Control, AML, Consumer is a leadership role focused on creating an end-to-end Governance & Control function for Anti-Money Laundering (AML) to support the Consumer business with AML standards, requirements, and controls on a centralized basis. Key responsibilities include:Oversight and challenge of established controls...


  • New York, New York, United States Ascot Group Full time

    Job Overview This role presents an exciting opportunity within Ascot Group, a leading organization in specialty risk underwriting. As a modern enterprise operating through a network of interconnected global platforms, we are united by a shared mission: One Ascot. Our greatest asset is our talented workforce, thriving in a collaborative, inclusive, and...


  • New York, New York, United States JPC Partners Full time

    JPC Partners is seeking a Head of Enterprise Security Operations to collaborate closely with executive management, security experts, and essential stakeholders. This role is pivotal in formulating and executing a holistic information security strategy and program aimed at enhancing the organization’s security posture. The successful candidate will...


  • New York, New York, United States Considine Search Full time

    OverviewThe New York office of Considine Search is seeking a seasoned Electronic Information Governance Specialist to enhance the Electronic Information Governance Department. This role is pivotal in ensuring that electronic data is effectively secured and monitored, while also meeting compliance objectives. The Specialist will report directly to the...


  • New York, New York, United States Cyber Spring Full time

    Cyber Spring is seeking an experienced Information Security Compliance Manager to enhance our cybersecurity initiatives.This pivotal role involves conducting comprehensive gap assessments, analyzing security controls, and reviewing documentation to provide critical security recommendations across the organization. The successful candidate will collaborate...


  • New York, New York, United States Chubb Full time

    The Global Head of Compliance Assurance role will be a key part of the global compliance team with a focus on leading the Compliance Assurance Program globally. The individual will lead the identification, assessment and prioritization of key compliance risks, working closely with stakeholders and the regional and local compliance officers to develop risk...


  • New York, New York, United States IQVIA Full time

    Job Summary You will lead the development and implementation of a programmatic approach to information governance activities in Digital Enablement, US Regional Business Unit. "Information governance" refers to the management of compliance requirements associated with the responsible use of information received, stored, used or shared by IQVIA. Those...


  • New York, New York, United States Considine Search Full time

    OverviewThe Senior Risk and Compliance Analyst will be responsible for safeguarding the integrity, confidentiality, and availability of the organization's information through comprehensive risk evaluations, audits, control assessments, policy formulation, and compliance efforts. The ideal candidate will engage in various governance, risk, and compliance...