What are the responsibilities and job description for the Global IT Security Manager - GRC position at EDI Staffing?
In this role, you will lead the Governance, Risk, and Controls (GRC) function within the Information Security Team. You will develop and maintain our global organization's information security policies, assess compliance (internal and external), and deliver security awareness programs across the entire company. You will also assess, communicate, and manage information security risks in a structured framework.
Your responsibilities :
- Manage the information protection policy process, including ongoing process improvements
- Identify the need for new or updated policies, and draft content for same
- Advise and consult with internal and external entities regarding information security policy issues.
- Actively manage and participate in audit readiness and audit conduct activities, including internal self-assessment, and continually improve these processes
- Escalate and expedite potential compliance and audit issues
- Liaison with internal and external auditors
- Liaison with related functions such as Physical Security, Legal, HR, and IT
- Manage information security reviews for third-party providers
- Regularly measure compliance with internal and external requirements and frameworks
- Build and maintain an information security risk management framework
- Proactively identify risks and propose remediation activities and risk treatments
- Measure and report on all information security risk, policy, compliance, and audit items
- Build and maintain the overall Information Security Scorecard
You're a great fit, if you :
This is a hybrid role (2 days work from home), in PA.