Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
 Information Security Manager - GRC  image - Rise Careers
Job details

Information Security Manager - GRC

G-P is a leading SaaS-based Global Growth Platform dedicated to breaking down barriers to global business and creating opportunities for everyone. They are looking for an Information Security Manager - GRC to drive their GRC program and ensure compliance with security regulations.

Skills

  • Information Security management
  • Risk management
  • Audit and compliance
  • GRC frameworks
  • Analytical skills
  • Strong communication skills
  • Vendor management

Responsibilities

  • Design and implement a comprehensive GRC framework
  • Develop and update security policies and procedures
  • Conduct risk assessments and provide reports to leadership
  • Oversee third-party risk management
  • Coordinate incident response plans and investigations
  • Ensure ongoing compliance across global operations
  • Develop and deliver security awareness training
  • Serve as primary contact for audits
  • Identify and implement process improvements
  • Manage and mentor GRC team

Education

  • Bachelor’s degree in Information Security or related field
  • Industry certifications like CISSP, CISM, or CISA

Benefits

  • Growth opportunities through mentorship and training
  • Competitive benefits package including salary and bonus
  • Flexible work conditions
  • Innovative culture valuing creativity and impactful contributions
To read the complete job description, please click on the ‘Apply’ button
G-P Glassdoor Company Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
G-P DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of G-P
G-P CEO photo
Nicole Sahin
Approve of CEO

Average salary estimate

$100000 / YEARLY (est.)
min
max
$80000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Information Security Manager - GRC , G-P

As an Information Security Manager - GRC at G-P, you will be stepping into a pivotal role within our remote-first team in Ireland. Here at G-P, we are passionate about empowering businesses to expand globally with ease and efficiency, which is why maintaining a secure and compliant environment is crucial. In this role, you'll be responsible for developing and implementing our Governance, Risk, and Compliance (GRC) program, ensuring we protect our infrastructure and data assets effectively. You will work closely with diverse teams to adhere to global security regulations and frameworks, creating a culture of security awareness throughout the organization. From designing comprehensive GRC frameworks in line with industry standards, conducting risk assessments, and managing third-party vendor risks, your expertise will drive our organization's security posture. You'll also lead incident response efforts, coordinate audits, and develop training programs that enhance our overall security awareness. If you have at least 5 years of experience in information security with a strong background in GRC programs, and you're looking for a place where your contributions will truly make a difference, G-P is the perfect fit for you. Here, you’ll be supported by an innovative culture that encourages personal growth and professional development, all while working with a team that celebrates you for who you are. Join us, and help shape a secure, global future for companies around the world!

Frequently Asked Questions (FAQs) for Information Security Manager - GRC Role at G-P
What is the organizational culture like at G-P for the Information Security Manager - GRC role?

G-P fosters an innovative, remote-first culture that values diversity and inclusivity. As an Information Security Manager - GRC, you will be part of a dynamic team where every individual's contributions are valued. We aim to create an environment that encourages creativity while providing the resources and flexibility necessary for you to thrive in your role.

Join Rise to see the full answer
Common Interview Questions for Information Security Manager - GRC
How do you approach developing a GRC framework?

When developing a GRC framework, I start by assessing the current security posture and identifying compliance gaps. I then reference industry standards and regulatory requirements to outline necessary policies, controls, and processes. Collaboration with cross-functional teams is essential to ensure the framework aligns with business objectives and is practical for all stakeholders.

Join Rise to see the full answer
Can you explain your experience with risk assessments?

In my previous roles, I've conducted comprehensive risk assessments by identifying potential security threats and vulnerabilities, assessing their impact, and prioritizing them based on business risk. I utilize frameworks like NIST and ISO 27001 to formalize the assessment process and produce actionable insights for management.

Join Rise to see the full answer
Describe your experience with incident response plans.

I have developed and executed incident response plans that outline the steps to mitigate and resolve security incidents. This process includes identifying the incident, containing the threat, eradicating it, and recovering systems. Post-incident evaluations help us learn and enhance future incident responses.

Join Rise to see the full answer
How do you ensure compliance with global regulations?

To ensure compliance with global regulations, I stay informed about regulatory changes and conduct regular audits. This includes collaboration with legal teams to ensure understanding and adherence to requirements such as GDPR, SOC2, and ISO 27001. Continuous training and awareness programs for staff also play a vital role in compliance.

Join Rise to see the full answer
What strategies do you utilize for vendor risk management?

My approach to vendor risk management includes conducting thorough risk assessments before onboarding vendors, ensuring they meet our security standards. I maintain ongoing relationships with vendors to assess compliance and review their security practices regularly to adapt to any changes.

Join Rise to see the full answer
How do you foster a culture of security awareness in an organization?

I foster a culture of security awareness by implementing ongoing training programs tailored to different levels of the organization. Using real-world examples and simulations, I make security concepts relatable and encourage employees to take an active role in maintaining security practices.

Join Rise to see the full answer
What are the key elements of a successful security audit?

A successful security audit includes thorough planning, clear communication with stakeholders, and comprehensive documentation of policies and procedures. I ensure that findings are actionable and lead to improvements while cultivating an open environment that encourages feedback about security practices across the organization.

Join Rise to see the full answer
How do you manage multiple security projects concurrently?

Managing multiple security projects concurrently requires exceptional organizational skills. I prioritize tasks based on urgency and impact, often using project management tools to track progress and keep communication open with all team members involved.

Join Rise to see the full answer
What is your experience with compliance monitoring?

I have extensive experience in compliance monitoring, which involves conducting regular audits to assess adherence to security policies and regulatory requirements. Utilizing compliance checklists aligned with standards aids in evaluating our processes and ensuring corrective actions are taken when necessary.

Join Rise to see the full answer
How do you handle disagreements with stakeholders regarding security policies?

When disagreements arise over security policies, I focus on transparent communication and understanding differing viewpoints. I present data to support my recommendations and strive to find a consensus that aligns security needs with business goals, ensuring all stakeholders feel heard.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 2 days ago
Photo of the Rise User
G-P Remote India (Remote-First)
Posted 2 days ago
Photo of the Rise User
Posted 2 days ago
Fortune Brands Hybrid 25300 Al Moen Dr, North Olmsted, OH 44070, USA
Posted 7 days ago
Photo of the Rise User
Procore Technologies Hybrid 221 West 6th Street, Austin, TX
Posted 14 days ago
Photo of the Rise User
NBCUniversal Remote 904 Sylvan Ave, Englewood Cliffs, NEW JERSEY
Posted yesterday
Posted 6 days ago
Photo of the Rise User
Posted yesterday

G-P's company tagline "Global Made Possible" expresses our mission of breaking down barriers to global business and enable opportunities for everyone, everywhere.

103 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
SALARY RANGE
$80,000/yr - $120,000/yr
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
January 13, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!