What are the responsibilities and job description for the Manager, GRC Security position at LogicMonitor?
What You'll Do :
LM Envision, LogicMonitor's leading hybrid observability platform powered by AI, helps modern enterprises gain operational visibility into and predictability across their IT stacks, so they can continue to deliver extraordinary employee and customer experiences. LogicMonitor has a layered approach to intelligence, where AI and Machine Learning is baked into every facet of the LM Envision platform to help IT teams improve efficiency, minimize alert fatigue, proactively predict trends, and maximize enterprise growth and transformation.
Our customers love LogicMonitor's ability to bring cloud and traditional IT together into one view, as seen in minimal churn rates, expansion business, and exciting new customer references. In fact, LogicMonitor has received the highest Net Promoter Score of any IT Infrastructure Management provider. LogicMonitor also boasts high employee satisfaction. We have been certified as a Great Place To Work®, and named one of BuiltIn's Best Places to Work for the sixth year in a row!
You are the backbone of trust our customers rely on every day. As LogicMonitor’s Cybersecurity GRC Manager, you’ll drive our Governance, Risk, and Compliance program to new heights.
You’ll lead the governance function, ensuring security policies and procedures are upheld. You’ll oversee compliance efforts for certifications like ISO, SOC2, FedRAMP, and more, managing our global standards. In cyber risk management, you’ll maintain and update the cybersecurity risk register, guiding key decisions through risk assessments and control validations.
This role offers diverse, impactful projects where you can apply your cybersecurity expertise, technical skills, project management, and leadership to make a real difference.
Here's a closer look at this key role :
- General Mature the overall GRC strategy for the company, collaborating closely with other security team leaders, including LogicMonitor’s CISOManage a team of security GRC professionals to advance the overall program Collaborate with LogicMonitor’s Legal and Privacy team on common areas such as security controls for fulfilling privacy requirementsProgram manage all GRC initiatives to achieve successful, timely completion, while working closely with stakeholders outside of the Information Security TeamEvolve LogicMonitor’s multi-year GRC strategy to embrace the company business strategy, market requirements, regulatory trends, industry trends, and the changing the threat landscapeSeek out and lead the operationalization of automation technologies to improve efficiencies and the program velocity, collaborating with other teams company-wide as appropriate.Develop and operationalize metrics that quantify the effectiveness of the GRC program
- Compliance Oversee the team’s progress on fulfilling technical and non-technical FedRAMP security controlsOversee the completion of annual external audits and certification efforts, including SOC2 Type 2, ISO 27001 / 17 / 18, FedRAMP, Australian IRAP controls, and company investor compliance requirementsOversee the operationalization of an effective and comprehensive internal audit function to ensure satisfactory annual external audit resultsCollaborate with other teams to collect security artifacts, manage deviations and exceptions, and improve processes to ensure an effective compliance programManage the team to ensure timely addressing of any non-conformity findings and corrections, including documentation and technical tasks
- Risk management : Oversee the execution and continuous improvement of cybersecurity risk management framework, processes, procedures, and activities.Oversee the benchmarking of risk management processes and dashboards with peer companiesHelp socialize the risk management program and processes to key company stakeholdersWork with senior leaders to establish and improve integration of risk management processes into strategic planning processesCultivate strong working relationships with risk owners to ensure proper risk management program buy-in and accountabilityMonitor the completeness of company initiatives and their impact to related cybersecurity risksCollaborate with other security team leaders on advancing the company’s third party risk management program
- Governance : Oversee IT system security consultation within cloud-based and on-premises environments in accordance with NIST SP 800-53, 800-37, ISO, and PCI.Support the team’s development of System Security Plans, Continuous Monitoring, Plan of Action and Milestones, Security Controls Assessment, Risk Exposure and FIPS 199 categorization in accordance with NIST requirements.Support the CISO and the Infosec Program through proposed improvements around policy creation and content, maintenance, exception handling, enforcement, and metrics analysis
What You'll Need :
Residents of California, click to view our California Applicant Privacy Notice.
Anticipated Application Close Date : 02 / 03 / 2025
LogicMonitor is an Equal Opportunity Employer
At LogicMonitor, we believe that innovation thrives when every voice is heard and each individual is empowered to bring their unique perspective. We’re committed to creating a workplace where diversity is celebrated, and all employees feel inspired and supported to contribute their best.
For us, equal opportunity means fostering a truly inclusive culture where everyone has the chance to grow and succeed. We don’t just open doors; we invite you to step through and be part of something bigger. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
LI-JP1 #BI-Hybrid #LI-Hybrid
LogicMonitor is dedicated to fostering a culture of transparency and fairness, including our commitment to pay transparency. We provide the base salary ranges for all positions posted within the United States.
Compensation packages at LogicMonitor for eligible roles include base salary, a variable plan depending on role, along with comprehensive benefits. The range displayed on each job posting reflects the minimum and maximum base salary target for new hires in the position, determined by work location and additional factors, including job-related skills, experience, interview performance, and relevant education or training. LogicMonitor employees in eligible roles are also granted equity based compensation, subject to Board of Director approval. As part of our holistic compensation philosophy, your package will also include, but is not limited to : Comprehensive health, dental and vision coverage, generous parental leave policies, access to our Employee Assistance Program and various Wellness programs, a 401K with company matching, a learning and development stipend, and an unlimited vacation policy.
Salary : $136,500 - $160,650