Manager, Cybersecurity Risk and Compliance
Listed on 2026-08-04
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Project Manager
Manager, Governance, Risk & Compliance (GRC)
This is a fulltime salaried position that sits hybrid in the Greater Trenton region of New Jersey.
Competitive health and insurance benefits, PTO, and 401k!
Job SummaryThe Manager, Governance, Risk & Compliance (GRC) leads the execution and continuous improvement of the organization's cybersecurity governance, risk management, compliance, and resilience programs. This role manages GRC operations, partners with business and technology stakeholders, and helps ensure security, compliance, and risk management objectives are aligned with organizational priorities. The ideal candidate combines strong leadership skills with expertise in cybersecurity frameworks, risk assessment, audit management, third-party risk, and business continuity planning.
Responsibilities- Lead enterprise cybersecurity risk assessments and maintain the risk register.
- Develop and communicate risk metrics, dashboards, and recommendations for leadership.
- Manage GRC team operations, including work prioritization, coaching, and performance development.
- Partner with business and technology leaders to support risk-informed decision making.
- Oversee business continuity and disaster recovery planning, testing, and program maturity.
- Manage third-party and vendor risk assessments, remediation activities, and reporting.
- Support security incident governance processes involving vendors and service providers.
- Coordinate internal and external audit activities, evidence collection, and remediation efforts.
- Ensure compliance with applicable regulatory, privacy, and industry frameworks.
- Manage information security policies, standards, and governance processes.
- Lead cybersecurity awareness and training programs and measure program effectiveness.
- Drive process improvements, automation, and operational efficiency across the GRC program.
- Bachelor's degree in Information Security, Cybersecurity, Information Technology, Risk Management, or a related field, or equivalent practical experience.
- 8+ years of experience in governance, risk, compliance, cybersecurity, audit, or related disciplines.
- 3+ years of people leadership or team management experience.
- Experience leading cross-functional security, risk, or compliance initiatives.
- Knowledge of cybersecurity frameworks and standards such as NIST, PCI DSS, SOX, ISO 27001, or similar. Experience with risk assessments, audits, policy management, and third-party risk management.
- Strong written and verbal communication skills with the ability to explain technical concepts to diverse audiences.
- Professional certifications such as CISSP, CISM, CISA, CRISC, or equivalent.
- Experience with GRC platforms and security risk management tools.
- Experience developing KPIs, KRIs, and executive-level reporting.
- Knowledge of business continuity and disaster recovery planning.
- Demonstrated ability to build relationships, influence stakeholders, and drive consensus across teams.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).