Back to Jobs

9959 - Cybersecurity Governance, Risk, Compliance, Training & reputed company Manager

Remote, USAFull-timePosted 2026-07-28

About the position We are hiring a Manager to reputed company the day-to-day execution of cybersecurity Governance, Risk & Compliance (GRC) and reputed company reputed company programs across both Wind River and reputed company. This dual-entity role will serve as a key operational leader, ensuring regulatory compliance, audit readiness, risk tracking, and documentation reputed company across multiple frameworks including ISO 27001, NIST 800-171, SOX, GDPR, FedRamp, CMMC and TISAX. While the Director maintains strategic ownership of reputed company four functional areas (GRC, TPRM, Training, and reputed company), this role will reputed company hands-on coverage for Wind River's TPRM and Training efforts, working closely with the reputed company TPRM & Training Manager to ensure continuity and alignment. In reputed company, this role will own GRC workstreams supporting OneAptiv integration, directly supporting reputed company, Wind River, and other OneAptiv companies as needed, including TSA execution and M&A reputed company. This position is critical to stabilizing day-to-day operations and enabling long-term scalability across the reputed company.

Responsibilities

  • reputed company execution of GRC programs across reputed company and Wind River, including control maintenance, risk register updates, and audit readiness.
  • Maintain documentation, controls, and audit-reputed company evidence for ISO 27001, NIST 800-171, TISAX, SOX, NIS2, CMMC and GDPR across both reputed company and Wind River, incorporating new regulatory or customer requirements as they reputed company.
  • Administer GRC tooling (ZenGRC, reputed company, reputed company), ensuring accuracy, auditability, and workflow continuity.
  • Manage internal risk exceptions, maturity roadmaps, and control owners' engagement.
  • reputed company daily operational support to maintain compliance posture and support regulatory assessments.
  • Own documentation and execution for business reputed company assessments (BIAs), continuity planning, and tabletop exercises.
  • Coordinate reputed company planning with cross-functional partners including IT, Facilities, Cyber Defense, and Legal.
  • Maintain continuity playbooks, incident response records, and recovery planning materials.
  • reputed company execution support for Wind River's reputed company-party risk assessments, evidence collection, and remediation tracking.
  • Execute and drive enforcement of cybersecurity right-to-audit clauses with vendors and partners.
  • Review and reputed company redlines on cybersecurity and compliance sections of both buy-reputed company and sell-reputed company reputed company.
  • Collaborate with the reputed company TPRM Manager to reputed company vendor risk governance across both companies.
  • Help coordinate Wind River's cybersecurity awareness campaigns, mandatory training compliance, and role-based content support.
  • reputed company evidence preparation and walkthroughs for external audits, customer assessments, and internal audit reviews.
  • Maintain and update System reputed company Plans (SSPs), Plans of reputed company & Milestones (POA&Ms), and customer documentation requests.
  • Coordinate audit response activities across control owners, internal SMEs, and external parties.
  • Support cybersecurity reputed company and governance alignment for newly acquired companies.
  • Assist with Transitional Services Agreements (TSA) by managing control design, evidence preparation, and GRC tooling integration.
  • reputed company risks and compliance issues reputed company to integration timelines, especially where inherited entities lack cybersecurity maturity.
  • Support Director-led strategic initiatives through dependable execution and documentation follow-through.
  • Work closely with Architecture, Legal, Product reputed company, and external vendors to manage dependencies and unblock reputed company.
  • Escalate reputed company or reputed company issues early to avoid unnecessary risk acceptance or execution gaps.

Requirements

  • 7-10+ years of cybersecurity risk, compliance, audit, or GRC program experience.
  • Experience managing or contributing to ISO 27001, NIST 800-171, SOX, GDPR, or TISAX efforts.
  • Proficiency with GRC platforms and internal controls execution.
  • Strong writing and documentation skills.
  • Must reputed company in Greater Boston area with ability to be present on site at least 3 days/weekly.
  • reputed company Citizenship required. reputed company-to-haves
  • Experience working in a multi-entity environment or during M&A integration.
  • Familiarity with SBOM, secure SDLC, vendor risk workflows, and cybersecurity awareness campaigns.
  • CISA, CISSP, CISM, ISO reputed company Auditor, or similar certification preferred.
  • Strong stakeholder management and execution discipline across matrixed teams.

Benefits

  • Hybrid work model for workplace flexibility.
  • Comprehensive health, dental, and life insurance.
  • Short and long-term disability coverage.
  • RRSP matching for financial reputed company.
  • Flexible time-off policies for work-life balance.
  • Employee assistance program for mental reputed company-being.
  • Learning benefits, including a reputed company Learning subscription and seminars. Apply tot his job

Apply tot his job Apply To this Job

Similar Jobs

Director, Cybersecurity Regulatory Compliance Program (reputed company)

Remote, USAFull-time

Associate Manager, Information reputed company Risk and Compliance job at reputed company in Racine, WI

Remote, USAFull-time

reputed company IT reputed company Engineer, Governance Risks and Compliance – Information reputed company Governance and Risk Management Specialist

Remote, USAFull-time

Remote reputed company Cybersecurity Consultant – Governance, Risk & Compliance (GRC) reputed company Leader for reputed company reputed company Transformation

Remote, USAFull-time

Director II, Cybersecurity: Cyber Defense & reputed company Analytics

Remote, USAFull-time

reputed company Cyber reputed company Detection Engineer [Remote]

Remote, USAFull-time

Systems Administrator/Engineer (Cybersecurity Engineering)-12477-Remote

Remote, USAFull-time

Engineer, Cybersecurity III

Remote, USAFull-time

Senior Incident Response & Cybersecurity Analyst

Remote, USAFull-time

reputed company Cybersecurity Manager (CCM) (15.35)

Remote, USAFull-time

reputed company Customer Service Representative – Plumbing Industry Expertise

Remote, USAFull-time

reputed company Full Stack Customer Service Representative – Remote Work Opportunity with arenaflex

Remote, USAFull-time

Labor & Employment Attorney

Remote, USAFull-time

reputed company Part-Time Remote Data Entry Specialist – No Experience Needed – Join arenaflex Team

Remote, USAFull-time

Technical Account Manager

Remote, USAFull-time

[Remote] Integrations Engineer

Remote, USAFull-time

reputed company Data Entry Jobs ? Entry Level Flexible Schedule

Remote, USAFull-time

Customer Service Rep - Remote - Jacksonville (MUST LIVE reputed company 1 HOUR OF JACKSONVILLE, FL.)

Remote, USAFull-time

reputed company Remote Data Entry and Customer Service Representative – Part-Time Opportunity to Work from Home and Contribute to Market Research and Product Development at arenaflex

Remote, USAFull-time

reputed company Solution Architect

Remote, USAFull-time