Grc Program Manager It Security Risk Apply
Who we are
Artmac Soft is a technology consulting and service-oriented IT company dedicated to providing innovative technology solutions and services to Customers.
Job Description:
Job Title : GRC Program Manager IT Security, Risk & Compliance
Job Type : C2C
Experience : 10-15 Years
Location : Dearborn, Michigan
Responsibilities:
- Develop, implement, and maintain the information security program, risk, and controls function.
- Collaborate and drive business and cyber risk program alignment across the enterprise, innovate, and institute change to manage risk.
- Assist with the implementation and ongoing support for all security measures necessary to ensure Personally Identifiable Information (PII) is secure and all business requirements and applicable State and Federal regulations are met.
- Manage enterprise-wide data governance framework, with a focus on improvement of organizational policies and standards, principles, governance metrics, processes, related tools, and data architecture.
- Plan, execute, and manage multiple projects to budget, completing audits and business process control reviews.
- Review and test company-wide IT Security & Controls processes to assess business risks, controls, and overall effectiveness.
- Develop and execute project and vendor risk assessments, recommend risk mitigation techniques, and identify opportunities for security and control improvements.
- Maintain active communication with project teams and vendors, managing expectations and ensuring adherence to policies.
- Work with and support leadership and team members to achieve goals of the IT Security and Controls team.
- Act as the key contact for Ford Motor Company's Governance, Risk Management, and Compliance (GRC) team.
- Work with Ford Motor Company and FordDirect IT to complete audits, updating Component Assessments as needed.
- Create and update content for compliance and privacy training, facilitating sessions for employees and contractors as needed.
- Stay current on the ever-changing information security and privacy landscape, ensuring all policies and controls are relevant.
- Oversee IT security risk and controls for IT and business processes, developing and maintaining policies, processes, and procedures for IT, in coordination with other departments for enterprise-wide policies.
- Help develop and manage corporate-wide IT security and risk assessment programs and training for proactive risk management and control integration.
- Prepare, support, and remediate audits and compliance reviews initiated internally or externally.
Qualification:
-
Bachelor's degree or equivalent combination of education and experience.