Location: Multiple Locations (Middle East and Africa (MEA), North America, Europe, Asia-Pacific)
Company: IAISP (International Association of Information Security Professionals)
Are you a skilled professional in governance, risk, and compliance (GRC) with a knack for ensuring regulatory adherence and managing organizational risks? IAISP is seeking a detail-oriented GRC Manager to oversee the implementation of GRC frameworks, conduct risk assessments, and ensure compliance with legal and regulatory requirements.
About IAISP:
IAISP (International Association of Information Security Professionals) is a global leader dedicated to advancing the field of information security through innovative solutions, industry collaboration, and professional development. Our global reach and commitment to excellence make IAISP a key player in shaping cybersecurity practices and driving initiatives that enhance information security worldwide.
Role:
As the GRC Manager, you will play a crucial role in ensuring our organization adheres to regulations and effectively manages risks. You will be responsible for implementing and maintaining GRC frameworks, conducting comprehensive risk assessments, and monitoring compliance to safeguard our organization’s operations and reputation.
Responsibilities:
- Implement GRC Frameworks: Develop, implement, and maintain governance, risk, and compliance frameworks that align with industry best practices and regulatory requirements.
- Conduct Risk Assessments: Perform thorough risk assessments to identify potential vulnerabilities and threats, and develop strategies to mitigate identified risks.
- Monitor Compliance: Ensure ongoing compliance with legal, regulatory, and contractual obligations by regularly reviewing and updating compliance policies and procedures.
- Develop and Maintain Policies: Create and update GRC-related policies, procedures, and documentation to support organizational compliance and risk management efforts.
- Internal Audits and Reviews: Oversee and conduct internal audits and reviews to assess compliance with established GRC frameworks and identify areas for improvement.
- Training and Awareness: Develop and deliver training programs to educate employees on GRC policies, procedures, and best practices to foster a culture of compliance and risk awareness.
- Reporting: Prepare detailed reports and presentations on GRC activities, risk assessments, and compliance status for senior management and regulatory bodies.
- Continuous Improvement: Stay current with regulatory changes, industry standards, and emerging risks to continuously enhance the organization’s GRC practices.
Qualifications:
- Proven experience in governance, risk, and compliance management, with a strong understanding of GRC frameworks and methodologies.
- Bachelor’s degree in Business Administration, Risk Management, Information Security, or a related field; advanced certifications or degrees are a plus.
- Strong knowledge of regulatory requirements and industry standards (e.g., GDPR, SOX, ISO 27001).
- Excellent analytical skills with experience in conducting risk assessments and compliance audits.
- Strong communication skills, with the ability to effectively convey complex GRC concepts to various stakeholders.
- Experience in developing and implementing GRC policies, procedures, and training programs.
- Relevant certifications such as CISA, CISM, CRISC, or equivalent are highly desirable.
Reporting Line:
The GRC Manager will report to the Chief Information Security Officer (CISO), ensuring alignment with the organization’s overall risk management and compliance strategies.
Why Join Us?
- Lead and shape the GRC efforts of a globally recognized organization.
- Engage in a dynamic and collaborative work environment with opportunities for professional growth.
- Competitive salary and comprehensive benefits package.
- Access to continuous professional development and specialized training.
If you are a proactive and detail-oriented GRC professional with a passion for managing compliance and risk, we want to hear from you!
How to Apply:
Please submit your resume and a cover letter detailing your experience and qualifications for the GRC Manager position to Careers@IAISP.org.
Join us in our mission to ensure regulatory compliance and effectively manage risks to protect our organization’s integrity and operations!