Sr. Manager, Cyber Security GRC
5 days ago
Description and Requirements Come be a part of the next generation of Managed Services and Solutions at Lenovo This position is for a Sr. Manager, Cyber Security Governance, Risk and Compliance in the Solutions & Services Group (SSG). This is an exciting role that will give you the opportunity to work with Lenovo Product teams around the world to help Lenovo Business Units align with various regional, national and international security standards and regulations. You will be working alongside some of the best security teams in the industry. You will join a growing team of security professionals to lead security risk management initiatives and to design risk remediation and mitigation strategies and tactics. This role will work hand in hand with business executives, product managers, architects, engineers, dev-ops and developers to deliver against the Corporate Security Strategy. This position will define methodologies, metrics and KPIs; scoping and delivering security assessments ensuring continued alignment to standards over time. Ensuring that growth, improvements, gaps and risks are accurately communicated to business leaders, the role includes implementation and maintenance of policies, as well as a comprehensive controls framework with global third-party risk management.What you'll be doingDefining and delivering a Risk Management approach to ensure information security solutions and controls are commensurate to the business risk appetiteDirecting and conducting ongoing risk analysis organization-wide to uphold the GRC programDeveloping metrics and KPIs to monitor progress and enable prioritization of management actionProviding constructive advice and challenge on the management of cyber risks throughout the organizationWorking cross-functionally to develop strategies to identify, mitigate and manage current and emerging cyber threatsCreating, developing and maintaining security policies and practicesDirecting and advising design, service, operations teams on security requirements and implementationEstablishing and maintaining a strategy for managing security-related audits, compliance checks and external assessment processes for auditors, including but not limited to, ISO27001, EU’s General Data Protection Regulation (GDPR), Service Organization Controls (SOC) 2 and other applicable industry standards.Guiding team members to align with security, audit and risk management leadership for ongoing security program assessments, as well as strategic technology and budgetary directivesLiaising with auditors, both internal and external, to maintain and implement controls for compliance and privacy laws.Providing SME support to other business functionsDemonstrating leadership, providing support and mentoring to other members of the security management team.What you'll needCISSP/CISM/CRISC/CISA or similar level qualificationStrong operational experience of managing cyber security and risk within fast-paced technology environmentsKnowledge of security compliance across differing technology solutions, contracts and industriesOrganizational management skills with a track record of delivering GRC projects under tight deadlinesExperience of leading security audits and conducting consulting engagementsKnowledge and experience of implementing ISO27001, NIST, CIS and other similar standards/frameworksThe ability to create, develop and maintain security policies and practicesA good working level of technical knowledge of architectural techniques to prevent, mitigate and manage security threatExperience of security tools and technologyExcellent communications skills and stakeholder management experienceAbility to think of long-term strategic solutions as well as immediate resolutions to problemsExcellent problem solving, critical thinking, analytical and decision making skills
-
Senior Cyber Security Engineer
4 weeks ago
Morrisville, United States ABBTECH Professional Resources Full timeSenior Cyber Security EngineerQty: 1 Desired Start Date: 11/6/2023. End Date: 9/30/2024 Hrs/Wk:40.00 Clearance Level: Public TrustJob requirements : Responsible for the security architecture across a variety of applications or domains, to include cloud computing, and assigned to project/initiatives of large size, complexity and risk. The Senior Cyber...
-
PAM - Cyber Security Engineer III
3 weeks ago
Morrisville, United States PLANIT Group Full timePlanIT Group is seeking a PAM - Cyber Security Engineer III to support our Federal customer in the Washington, DC area. The ideal candidate will be responsible for the security architecture across a variety of applications or domains, to include cloud computing, and assigned to project/initiatives of large size, complexity, and risk. The Senior Cyber...
-
IT - Cyber Security Specialist III
6 days ago
Morrisville, NC, United States Inficare Full timeJob Title: Incident Response Coordinator IV Location: Morrisville NC 27560 (Onsite) Duration: 6+ Months Public Trust or Eligibility Required. Duties: Support the development of staff schedules and staffing forecasts for approval. • Ensure shift members follow the appropriate incident escalation and reporting procedures. • Provides support promptly and...
-
IT - Cyber Security Specialist III
1 day ago
Morrisville, NC, United States Inficare Full timeJob Title: Incident Response Coordinator IV Location: Morrisville NC 27560 (Onsite) Duration: 6+ Months Public Trust or Eligibility Required. Duties: Support the development of staff schedules and staffing forecasts for approval. • Ensure shift members follow the appropriate incident escalation and reporting procedures. • Provides support promptly and...
-
IT - Cyber Security Specialist III
1 week ago
Morrisville, NC, United States Inficare Full timeJob Title: Incident Response Coordinator IV Location: Morrisville NC 27560 (Onsite) Duration: 6+ Months Public Trust or Eligibility Required. Duties: Support the development of staff schedules and staffing forecasts for approval. • Ensure shift members follow the appropriate incident escalation and reporting procedures. • Provides support promptly and...
-
IT - Cyber Security Specialist III
2 weeks ago
Morrisville, NC, United States Inficare Full timeJob Title: Incident Response Coordinator IV Location: Morrisville NC 27560 (Onsite) Duration: 6+ Months Public Trust or Eligibility Required. Duties: Support the development of staff schedules and staffing forecasts for approval. • Ensure shift members follow the appropriate incident escalation and reporting procedures. • Provides support promptly and...
-
Cyber Security Engineer II
4 weeks ago
Morrisville, United States ABBTECH Professional Resources Full timeCyber Security Engineer II Qty: 1 Desired Start Date: 8/21/2023. End Date: 9/30/2024. Hrs/Wk: 40.00 Clearance Level: Public Trust Responsible for the security architecture across a variety of applications or domains, to include cloud computing, and assigned to project/initiatives of large size, complexity, and risk. The Senior Cyber Security Engineer...
-
Director, Cyber Security Risk Assessments
3 weeks ago
Morrisville, United States UBS Business Solutions US LLC Full timeUBS Business Solutions US LLC has the following positions in Morrisville, NC. Director, Cyber Security Risk Assessments to Perform high-quality and high-integrity Cyber and Information Security technical risk assessments, root cause analysis and risk investigations on IT and Cloud architectures, infrastructures, platforms, applications, technology stacks and...
-
Director, Cyber Security Risk Assessments
4 weeks ago
Morrisville, NC, United States UBS Business Solutions US LLC Full timeUBS Business Solutions US LLC has the following positions in Morrisville, NC. Director, Cyber Security Risk Assessments to Perform high-quality and high-integrity Cyber and Information Security technical risk assessments, root cause analysis and risk investigations on IT and Cloud architectures, infrastructures, platforms, applications, technology stacks and...
-
Sr. Security Engineer
4 weeks ago
Morrisville, United States ABBTECH Professional Resources Full timeSr. Security Engineer (End-point Protection) Qty: 1 Desired Start Date: 7/14/2023. End Date: 9/30/2023. Hrs/Wk: 40.00 Clearance Level: Public Trust (Symantec/Broadcom - SESC: Antivirus, EDR/XDR) The ideal candidate will have engineering expertise as it relates to endpoint security technologies to include Antivirus: EDR/XDR, Symantec End-point Security...