GRC InfoSec Manager Portsmouth, NH
Portsmouth, Rockingham County, New Hampshire, 00215, USA
Listed on 2026-02-09
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Data Security
Overview
Bottomline is a global leader in business payments and cash management. We are looking for a GRC (Governance, Risk & Compliance) Info Sec Manager to join us in a hybrid work environment out of our Portsmouth, NH office. Remote work is also considered. Candidates must be authorized to work in the United States on a full-time basis for any employer without restriction.
Visa sponsorship will not be provided.
This role reports to the Information Security Governance, Risk and Compliance (GRC) Manager and will collaborate across product and technology teams to strengthen and enforce Bottomline’s information security posture. You will build trust with clients around our information security posture and work with stakeholders to ensure adherence to regulatory requirements and security frameworks (e.g., SWIFT, NACHA, PCI, NIST, GLBA).
What You Will Do- Governance – develop, implement and enhance information security policies, standards, and processes in alignment with regulatory requirements and security frameworks (e.g., SWIFT, NACHA, PCI, NIST, GLBA). Execute governance routines and reporting to ensure compliance with required policies and standards.
- Risk Management – build and maintain a library of enterprise-wide and product-specific controls. Maintain the risk register (issues and risk acceptances) to ensure effective tracking, prioritization and reporting of risks. Process risk acceptances with appropriate mitigation.
- Compliance – coordinate assessments to ensure compliance with applicable regulations and industry requirements (e.g., SWIFT, NACHA, PCI, NIST, GLBA).
- Client Support – gather, assess and present the information security posture to customers (e.g., responses to RFI/RFPs, contract language reviews, due diligence questionnaires).
- Education and Awareness – develop and deliver information security awareness training.
- 8+ years of experience in cybersecurity and risk management.
- 6+ years of experience in managing people.
- In-depth knowledge of regulations and industry requirements (e.g., SWIFT, NACHA, PCI, NIST, GLBA).
- Cybersecurity certifications (e.g., CISSP, CISA) or equivalent
- Competitive salary and benefits package.
- Opportunities for professional growth and advancement.
- A collaborative and innovative work environment.
- Flexible working arrangements.
Bottomline is an equal opportunity employer. We welcome talent at all career stages and are committed to an inclusive and open environment for everyone.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).