Cybersecurity Governance, Policies, and Standards Lead - Senior Manager
Cyber Security Information Technology Posted: 15-May-2022
Atlanta, Georgia, United States
Austin, Texas, United States
Boca Raton, Florida, United States
Buffalo, New York, United States
Calgary, Alberta, Canada
Charlotte, North Carolina, United States
Cincinnati, Ohio, United States
Cleveland, Ohio, United States
Columbus, Ohio, United States
Dallas, Texas, United States
Des Moines, Iowa, United States
Detroit, Michigan, United States
Edmonton, Alberta, Canada
Greater Toronto, Ontario, Canada
Halifax, Nova Scotia, Canada
Hermitage, Tennessee, United States
Houston, Texas, United States
Indianapolis, Indiana, United States
Jacksonville, Florida, United States
Kansas City, Missouri, United States
Milwaukee, Wisconsin, United States
Montreal, Quebec, Canada
Nashville, Tennessee, United States
Orlando, Florida, United States
Raleigh, North Carolina, United States
Richmond, Virginia, United States
Salt Lake City, Utah, United States
San Antonio, Texas, United States
Tampa, Florida, United States
Tulsa, Oklahoma, United States
Work you'll do
Strategic
· Lead development of security policies and standards exception management process.
· Set future direction and lead continuous improvement of security policies and standards exception management process.
· Support the development of security policies and standards exception management automation and tooling and continued enhancement.
Operational
· Lead the formation and management of Security Policies and Standards Exception Management team.
· Prioritize and assign exception requests to team members.
· Oversee timely and quality performance of exception evaluations, recommendations, and reports.
· Present exception recommendations to senior cybersecurity, risk, and technology leadership.
· Establish and report on exception management performance metrics.
Relationship Management
· Develop and maintain relationships with senior cybersecurity, technology, legal, and risk leaders within DTTL and its member firms.
· Develop and maintain relationships with primary exceptions management leaders in member firms.
· Lead security policies and standards exception management working group and participate in cybersecurity and risk working groups as required.
What you'll be part of - our Deloitte Global Culture:
Who you'll work with:
Qualifications:
· Bachelor’s degree: degree in business administration, a technology-related field, or equivalent education-related experience
· Minimum of 10 years of combined experience in the Information Security / Cybersecurity domain with a focus on cybersecurity governance and risk management
· At least five years’ experience holding a management and leadership role
· At least three years’ experience in leading a team responsible for security policies and standards exception management
· Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate strategic information security topics, policies and standards as well as risk-related concepts to technical and nontechnical audiences at various hierarchical levels
· Good leadership and management skills with the ability to manage a global team
· Sound knowledge of business management and expert knowledge of information / cybersecurity risk management and governance
· Knowledge of common information security management frameworks such as ISO/IEC 27001, COBIT, and NIST, including 800-53 and the Cybersecurity Framework