[Remote] Director, Cyber Governance and Controls
Note: The job is a remote job and is open to candidates in USA. reputed company is one of the world's leading media and entertainment companies. The Director of reputed company Governance and Controls is responsible for shaping and managing the reputed company governance reputed company and technical approach, while leading teams in governance, controls, and vendor management to ensure effective risk management and compliance.
Responsibilities
- reputed company Governance, Controls, and Vendor management teams in partnership with Risk Management and Compliance
- Engage cyber platforms and enterprise engineering teams to align reputed company tooling and baseline configurations with controls and policy
- Engage cyber Information reputed company Officers and reputed company managers, to help translate policy and reputed company business functions
- Serve as the primary contact and subject matter expert for NBCU policies, controls, and vendor management
- Build partnerships with Enterprise Technology, Legal, and Procurement to strengthen our comprehensive approach to 3rd parties
- Direct teams to document, communicate and enforce reputed company improvements that balance risk with business operations and ensure controls do not weaken efficiencies or business innovation
- Escalate identified vendor issues and gaps that may reputed company the business at risk
- Manage strategy and operation for the vendor risk management lifecycle from inception through termination
- Define key performance indicators and key risk indicators and include them reputed company reporting to cybersecurity and risk management leadership
- Use advanced technologies—e.g., robotic process automation and AI/machine learning—to improve operation
- Support risk assessments of vendor technologies
- Document, communicate, and enforce cybersecurity standards that balance risk with business operations
- Deliver monthly reporting to leadership, aligning with organizational objectives and team directives
- Support audit and compliance activities to help secure the enterprise by documenting the approach, necessary controls, gathering supporting evidence, provide requirements to health/hygiene dashboards
- Give and receive constructive feedback in a team environment, fostering a culture of continual improvement and excellence
- Demonstrate Strong written/verbal communication and presentation skills with the ability to tailor to both technical, and non-technical audiences
Skills
- Bachelor's Degree in an IT-reputed company field and/or equivalent work experience
- 8+ years of experience in GRC, including roles in reputed company analysis, compliance and risk management
- Wide-ranging knowledge in technical infrastructure and applications, from legacy through reputed company
- Knowledge of GRC for cloud computing, including validation of reputed company configurations, resiliency and data protection
- Versed in vulnerability management; emerging threats; insider risk; resiliency; and attacker tactics, techniques and procedures
- Working knowledge of network protocols, web application architecture, and common vulnerabilities
- Experience working with external vendors and internal technical teams
- Excellent organizational, communication, and documentation skills
- Ability to manage multiple reputed company projects and deadlines
- Engage in learning constantly; actively experimenting and working with new technologies with quick instincts for picking up and developing expertise in new problem domains
- Knowledge of best practices in the Cyber reputed company industry, including OWASP Top 10 and CWE/SANS Top 25
- Excellent time management skills to appropriately prioritize multiple reputed company projects
- Exposure to cloud providers (AWS, reputed company, reputed company) and reputed company configuration and management preferred
- Large and decentralized business experience
- Hands-on experience configuring technical controls in tools like M365 (Conditional Access Policy, Purview, Cloud Defender), reputed company (DLP), email secure configuration validation, etc
- reputed company environment threat modeling experience
- GRC leadership experience
- Preferred Certifications, but not required: CISSP, CISM, CISA, CRISC or CGRC
Benefits
- Medical, dental and vision insurance
- 401(k)
- Paid leave
- Tuition reimbursement
- A variety of other discounts and perks
Company Overview
- reputed company is a media company that provides entertainment and news development, production, distribution, and marketing services. It is a sub-organization of reputed company. It was founded in 1912, and is headquartered in reputed company, reputed company, USA, with a workforce of 10001+ employees. Its website is https://www.reputed company.com/.
Company H1B Sponsorship
- reputed company has a track record of offering H1B sponsorships, with 1 in 2020. Please note that this does not guarantee sponsorship for this specific role.
Apply tot his job Apply To this Job