Job Title : Sr Cybersecurity Risk & Compliance Manager
Location : Austin or Temple, TX (Monday, Tuesday and every other Friday for right now, could require more days onsite in the future)
Role Type : Direct Hire
Job Description :
Lead and mature the organization's cybersecurity risk and compliance program. Oversee the enterprise-wide cybersecurity risk management framework, ensuring that risks are identified, assessed, and managed in alignment with business objectives, regulatory requirements, and industry standards. Ensure that cybersecurity practices comply with applicable regulations, internal policies, and recognized frameworks. Lead enterprise-wide efforts in audit support, eDiscovery coordination, and ongoing compliance monitoring.
Essential Job Functions / Principal Accountabilities :
- Develop and maintain a formal process for documenting, reviewing, and approving risk exceptions and acceptances.
- Collaborate with business and technical stakeholders to evaluate residual risk and ensure appropriate mitigation strategies.
- Present exception cases to senior leadership and risk committees for review and decision-making.
- Lead the cybersecurity third-party risk program, including vendor assessments, onboarding reviews, and continuous monitoring.
- Partner with procurement, legal, and business units to ensure third-party engagements meet security and compliance requirements.
- Maintain a centralized repository of third-party risk assessments and remediation plans.
- Oversee the execution of cybersecurity risk assessments across business units, technologies, and projects.
- Develop and maintain risk assessment methodologies aligned with industry frameworks (e.g., NIST, ISO, FAIR).
- Provide actionable insights and recommendations to reduce risk exposure and improve security posture.
- Assess and manage risks associated with the adoption and deployment of artificial intelligence technologies, ensuring alignment with cybersecurity policies, ethical standards, and regulatory requirements.
- Own and maintain the enterprise cybersecurity risk catalog, ensuring risks are accurately documented, categorized, and prioritized.
- Facilitate regular reviews and updates to the catalog in collaboration with risk owners and stakeholders.
- Use risk data to inform strategic planning, investment decisions, and reporting to executive leadership.
- Integrate artificial intelligence into risk assessment and remediation workflows to enhance threat prioritization, accelerate decision-making, and improve accuracy in identifying and mitigating cybersecurity risks.
- Serve as the primary liaison for internal and external cybersecurity audits.
- Coordinate evidence collection, documentation, and responses to audit inquiries.
- Track and manage remediation efforts for audit findings and ensure timely closure.
- Maintain audit readiness through continuous improvement of controls and documentation.
- Collaborate with Legal, IT, and Security teams to support eDiscovery requests.
- Ensure timely and accurate identification, preservation, and collection of digital evidence.
- Develop and maintain procedures for eDiscovery processes aligned with legal and regulatory requirements.
- Provide guidance on data retention and defensible deletion practices.
- Monitor and assess compliance with cybersecurity policies, standards, and regulatory frameworks (e.g., SOX, PCI-DSS, NIST, ISO 27001).
- Conduct periodic reviews and assessments to identify gaps and recommend corrective actions.
- Stay current with evolving regulations and industry best practices, advising leadership on potential impacts.
- Perform other duties as assigned.
Minimum Skills And Qualification Requirements :
Bachelor's degree in computer science, information technology, or a related field (master's degree preferred).Ten or more years of progressive experience in information technology.Eight or more years of experience in cybersecurity governance, risk, and compliance (GRC).Advanced understanding of cybersecurity frameworks (e.g., NIST CSF, ISO 27001), regulatory requirements (e.g., PCI, SOX, GDPR), and risk management methodologies.Experience with GRC platforms and risk assessment tools.Proven leadership in managing cross-functional teams and complex projects.Strong stakeholder management skills, with the ability to influence at all levels of the organization.Excellent problem-solving and analytical skills.Effective communication and interpersonal skills.Ability to convey complex technical concepts to both technical and non-technical audiences.Strong stakeholder management skills, with the ability to influence at all levels of the organization.Ability to work independently and as part of a team in a fast-paced environment.THIS IS A GREAT OPPORTUNITY WITH A FIRST-CLASS COMPANY
Sr Cybersecurity Risk & Compliance Manager
<>
<>
<>
<>
<>
<>
<>
<>
<>
<>
RED SKY Career Opportunities at : redskyconsulting.co / career-portal
<>
<>
<>
<>
<>
<>
<>
<>
<>
<>
Sr Cybersecurity Risk & Compliance Manager
RED SKY Consulting Candidate and Client Referral Program!
2500
Do you know other IT professionals?
Turn those relationships into Money & help friends get work
RED SKY Consulting is offering a fantastic opportunity for you to earn extra money.
If you refer to us a Manager of people or skilled professionals, we will link your name to that person for 18 months.
If we employ or place that individual or place people into that company thru that manager
Sr Cybersecurity Risk & Compliance Manager
<>
<>
<>
<>
<>
<>
<>
<>
<>
<>
RED SKY Consulting Company Overview :
We are an IT and Cybersecurity staffing solutions, professional services, management consulting, and executive placement company with thousands of resources across multiple IT and Cybersecurity skill sets. Our primary US locations are Chicago, New York, Los Angeles, Atlanta, Nashville, Tampa and Denver and we have organizational arms in other domestic cities along with offshore alliances in India and Ireland. RED SKY has a 15+ year history of providing great technology talent. RED SKY has many clients including; 7 of the Fortune 10, half of the Fortune 100, and 25% of the Fortune 500 companies within the manufacturing, financial services, health care, government, consumer services, insurance, and several other industry verticals represented.
The RED SKY Foundation is being formed and will be providing fully funded college educations to underprivileged young adults in partnership with our clients starting 2022.
<>
<>
<>
<>
<>
<>
<>
<>
<>
<>
Keys : Risk, Compliance, GRC, NIST, CSF, ISO, GDPR, Risk, Compliance, GRC, NIST, CSF, ISO, GDPR, Risk, Compliance, GRC, NIST, CSF, ISO, GDPR, Risk, Compliance, GRC, NIST, CSF, ISO, GDPR, Risk, Compliance, GRC, NIST, CSF, ISO, GDPR
XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX