GRC Manager
Job
Insight Global
Rancocas, NJ (In Person)
Full-Time
Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
77
out of 100
Average of individual scores
Skill Insights
Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.
Job Description
GRC Manager at Insight Global GRC Manager at Insight Global in Rancocas, New Jersey Posted in 1 day ago.
Type:
full-timeJob Description:
Required Skills & Experience- 8+ years in security governance, risk, or compliance roles.
- Demonstrated success in leading cross-functional projects.
- Deep understanding of controls, audits, and frameworks.
- Maintain relevant certifications such as CISM, CISSP, or CISA.
- Communicate effectively with technical and non-technical stakeholders.
- Resolve conflicts and drive consensus across teams.
- Provided leadership and oversight for a cybersecurity team of 3+ members
- Mentor team members and model professional behavior.
- Bachelor's degree in Information Systems, Cybersecurity or related field required; Master's preferred.
Enterprise Cyber Risk Management:
- Lead enterprise-wide cybersecurity risk assessments across business units and IT domains.
- Own the accuracy and ongoing maintenance of the enterprise risk register, ensuring it is consistently updated and informed by stakeholder input.
- Collaborate with business and IT leaders to define and apply enterprise risk tolerance thresholds.
- Translate technical risk findings into actionable, business-relevant recommendations.
- Identify and escalate systemic risks that could materially impact operations or compliance.
- Monitor industry trends, threat intelligence, and regulatory changes to adjust risk posture.
- Deliver clear, timely risk reports and dashboards to senior leadership and governance bodies.
- Implement structured risk governance processes, including review cycles and escalation protocols.
- Implement automated GRC tools and data analytics to improve cybersecurity risk management efficiency and accuracy.
- Develop KPIs and KRIs for the security organization and maintain tactical and strategic dashboards to monitor risk and compliance efforts.
Management & Collaboration:
- Oversee GRC team operations, assigning work, setting priorities, and ensuring effective collaboration.
- Partner with senior leadership and business stakeholders to align GRC efforts with enterprise goals.
- Foster a high-performing, collaborative team culture through coaching, accountability, and career development.
Vendor Risk Management:
- Partner with the procurement and legal teams to integrate cybersecurity function into the overall process, mitigating supply chain risks for the company.
- Manage third-party risk processes, including assessments and reviews. Continuously identify opportunities for improvement to enhance its effectiveness and efficiency
- Escalate high-risk vendor issues to leadership and work with business stakeholders to develop and execute mitigation plans.
- Oversee monthly reporting on security assessments of AI vendors, provide expert analysis to leadership on AI-related risks and recommend strategic actions to resolve identified issues.
- Establish and manage a comprehensive set of criteria and assessment questions to support third-party risk management activities.
Third-Party Security Incidents:
- Own vendor incident response governance program and playbooks.
- Ensure vendors provide formal evidence of incident containment and remediation and ensure compliance with security requirements before closing a third incident.
- Consolidate third party incident and GRC-owned MSSP results into executive dashboards.
- Embed incident response obligations into contracts and procurement.
Audit and Compliance:
- Oversee internal/external audit readiness and evidence collection.
- Ensure compliance with SOX, PCI, and privacy frameworks.
- Serve as audit liaison for the GRC function.
- Act as the primary contact for internal audit and take ownership of recreating risk and compliance assessment findings.
Policy Implementation:
- Manage the policy lifecycle from creation through enforcement.
- Ensure policies align with frameworks like NIST and PCI DSS.
- Ensure the organization adheres to all relevant policies and standards.
Cybersecurity Education:
- Manage company-wide security training programs.
- Strategically identify education and awareness needs based on enterprise-wide cybersecurity threats and business priorities.
- Establish metrics to evaluate the success of training initiatives, including trends in knowledge retention, behavior changes, and overall effectiveness of the security culture.
- Oversee continuous improvement of the training curriculum, ensuring it evolves to address new threats and compliance requirements.
Similar remote jobs
Mphasis Digital Risk
Carrollton, TX
Posted1 day ago
Updated6 hours ago
UnitedHealth Group
Denver, CO
Posted1 day ago
Updated6 hours ago
DataAnnotation
New York, NY
Posted1 day ago
Updated6 hours ago
Public Storage
Posted1 day ago
Updated6 hours ago
Similar jobs in Rancocas, NJ
Tata Consultancy Services
Rancocas, NJ
Posted3 days ago
Updated1 day ago
Similar jobs in New Jersey
VAM Med spa
Cliffside Park, NJ
Posted1 day ago
Updated6 hours ago
Professional Development School Trainers
Elizabeth, NJ
Posted1 day ago
Updated6 hours ago
Zoomin Groomin - Summit/Westfield, NJ
Summit, NJ
Posted1 day ago
Updated6 hours ago