SENIOR MANAGER- GRC PROCESS AND CONTROLS
Descrizione dell'offerta di lavoro
The Sr.
Manager, GRC Process & Controls, will be responsible for developing, maintaining and continuously enhancing GRC and assessment processes, ensuring GRC cyber policies and processes are in alignment with industry standard control frameworks, and identifying automation opportunities across the cyber risk management function.
They will collaborate with other GRC and risk management leaders, security assessment team leaders, the security architecture and innovation team and ISRM BIS teams in performance of their responsibilities.
Key Responsibilities.
Lead the maintenance and enhancement of a controls framework, in alignment with industry standards, and support response to audits and inquiries.
Oversee and/or maintain controls mapping between internal security policies and controls frameworks.
Monitor changes in laws, regulations, and standards to understand impact to controls and compliance.
Collaborate with internal security teams to ensure the broader processes and operating procedures are in alignment with the controls framework.
Develop, maintain, and continuously enhance GRC processes.
Identify and drive opportunities for automated verification of controls, both during initial assessment and on an ongoing basis.
Define requirements for the GRC tool to support the controls framework and assessments and partner with the GRC Solutions team on implementation.
Collaborate with the SDLC and Asset Management teams to ensure alignment with the defined controls framework and assessments.
Support special projects in the GRC and Risk Management space.
Qualifications Education.
A bachelors degree is required, preferably in Computer Science, Engineering or Information Security/Cybersecurity.
Experience and Skills.
Required.
8+ years of Information Security/IT Risk Management experience with growing responsibilities.
4+ years of direct experience with cybersecurity control frameworks and standards and development of assessments based on control standards.
Experience with security GRC tools and control mappings with industry standards and compliance controls (e.
.
ServiceNow, Archer, Fusion, HIPAA, PCI-DSS, etc.).
Demonstrable record of effectively collaborating with virtual, global teams, including diverse groups of people with varied backgrounds and cultural experiences.
Strong analytical and results-oriented problem-solving skills.
Strong interpersonal skills to build and maintain relationships with internal stakeholders.
Experience at a large multinational organization.
Preferred.
Certifications in cybersecurity (CISM, CISSP), audit (CISA), or risk management (CRISC).
Experience with Unified Compliance Framework (UCF).
Other.
10% Travel #JNJTech #LI-Onsite #LI-RW1 Johnson & Johnson is an Affirmative Action and Equal Opportunity Employer.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
For more information on how we support the whole health of our employees throughout their wellness, career and life journey, please visit www.
areers.
nj.
om.
The anticipated base pay range for this position is $ USD.
The Company maintains highly competitive, performance-based compensation programs.
Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan.
The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation’s performance over a calendar/performance year.
Bonuses are awarded at the Company’s discretion on an individual basis.
Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs.
medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance.
Employees may be eligible to participate in the Company’s consolidated retirement plan (pension) and savings plan (401(k)).
Employees are eligible for the following time off benefits.
Vacation – up to 120 hours per calendar year Sick time - up to 40 hours per calendar year; for employees who reside in the State of Washington – up to 56 hours per calendar year Holiday pay, including Floating Holidays – up to 13 days per calendar year of Work, Personal and Family Time - up to 40 hours per calendar year Additional information can be found through the link below.
https://www.
areers.
nj.
om/employee-benefits The compensation and benefits information set forth in this posting applies to candidates hired in the United States.
Candidates hired outside the United States will be eligible for compensation and benefits in accordance with their local market.
Dettagli dell'offerta
- Imprecisato
- Tutta l'Italia
- Imprecisato - Imprecisato
- 21/10/2024
- 19/01/2025
Teamwork and leadership skills... pl, manomano, and bol... communication and organization: fluent communication in english and ability to organize processes for oneself and others... curiosity and openness to continuous learning... requirements: proactiveness and ability to learn quickly......
• prepare customer repair estimates and/or quotes in a timely and accurate manner and provides follow-up... • document, submit, and resolve claims with dealers... we are an equal opportunity employer and value diversity at our company... • resolve customer disputes to ensure fair value for the customer......
Professional growth and development opportunities... opportunity to gain practical experience and work on cutting-edge projects and technologies... electronics design - problem-solving and communication skills... ability to work independently and as part of a team... required knowledge of the c language......
Attività al riporto del director o del manager di riferimento, il senior consultant avrà la responsabilità di contribuire autonomamente alle attività operative di progetti, con particolare riferimento a quelli in ambito operationa excellence e process analysis & improvement, che richiedano competenze......
Il project manager sarà inoltre responsabile della gestione del team di progetto, della facilitazione della comunicazione e della risoluzione dei conflitti... il project manager garantirà che i progetti vengano consegnati in tempo, nel rispetto del budget e con soddisfazione delle parti interessate......
Posizione: project manager settore: costruzioni e installazioni località: [lombardia] descrizione del lavoro: la figura del project manager avrà la responsabilità di gestire in autonomia cantieri con un budget di circa 2 milioni di euro... responsabilità principali: gestione dei cantieri: supervisionare......
Descrizione del lavoro: stiamo cercando un/a hr manager qualificato/a ed energico/a... fornire consulenza e supporto ai dipendenti e ai manager su questioni hr, risoluzione di conflitti e sviluppo delle competenze... promuovere una cultura aziendale inclusiva e orientata ai risultati......
Ruolo ricoperto: architect senior competenze richieste: - google cloud -aws -scala -spark -python -google cloud bigquery -google cloud dataproc -google cloud dataflow -hive competenze linguistiche: -inglese: livello b1 seniority: +3 anni sede di lavoro: residenza in una delle città menzionate: milano......
Inglese fluente e backgroud tecnico definizione delle timeline dei rilasci attività di coordinamento know how jira per la gestione dei tickets know how base comandi linux (apertura log, ricerca di errori/eccezioni) nice to have: java come background tecnico inglese parlato e scritto >= c1 middle......
Per ampliamento dell'organico nel team di processo impianti chimici, siamo alla ricercare un process engineer la persona si occuperà di: elaborazione bilancio di materia e di energia; preparazione e stesura di diagrammi di flusso; preparazione e stesura di diagrammi p&i; dimensionamento e calcolo delle......