Director, GRC Risk

Englewood Cliffs, New Jersey, United States

Applications have closed

Company Description

NBCUniversal owns and operates a valuable portfolio of news and entertainment television networks, a premier motion picture company, significant television production operations, a leading television stations group, world-renowned theme parks, and a premium ad-supported streaming service. NBCUniversal is a subsidiary of Comcast Corporation.

Job Description

NBCUniversal Cyber Security is seeking a motivated individual for the role of Director, Risk within the Governance, Risk and Compliance “GRC” team. This position manages a major functional area reporting to the Vice President of GRC and has oversight of the following functions: risk management/analysis/prioritization, risk acceptance, track/validate closure of risk remediation actions, metrics/reporting/burndown and Cyber Assessments. The role requires a strong leader who is joining NBCUniversal at an exciting time as they embark on transforming cyber security organization on threat driven principles.

This thought leader will be responsible for shaping the Risk tier of the GRC organization.  The successful candidate will oversee the organization’s people and processes it supports. 

  • Oversee risk related activities, including but not limited to cyber risk, risk acceptance requests, IT audit remediation tracking, cyber risk assessments.
  • Collaborate with the other Cyber service leaders, GRC pillars, Information Security Officers, local GRC teams and Internal Audit on gap identification and remediation.
  • Drive risk burndown maturity across Cyber security.
  • Recommend strategies to ensure a common approach towards cyber risk tracking, analysis and reporting.
  • Ensures a comprehensive understanding of existing requirements and ongoing monitoring of new requirements.
  • Develop, document, and assess measures, metrics, and internal controls related to cyber security assessments and acceptance
  • Manage specified GRC projects from inception to completion

Support the VP of GRC in establishing annual and long-term goals, defining risk and governance strategies, metrics, and reporting mechanisms.

Qualifications

• 7- 10 years’ work experience in IT with direct responsibility for technologies in scope, including at least 5 years previous experience in a management role.
• Experience working in an IT organization with global operations desirable.
• Experience working in a shared services IT model desirable.
• Bachelor’s degree in Computer Science/Engineering/Information Security preferred or equivalent combination of education and/or relevant experience.
• Ability to evaluate risks to the company and articulate issues, develop consensus, raise awareness, and provide and implement solutions.
• Knowledge of common information technology management frameworks such as ISO/IEC 27001, ITIL, COBIT, CIS and NIST.
• Knowledge and understanding of relevant legal, regulatory and privacy requirements.
• Strong project management experience.
• Ability to work collaboratively and effectively with a cross-section of the Information Technology team and business organizations to implement information security standards and initiatives.
• Understanding of threat driven methodologies, SDLC, threat modeling and attack trees.
• Ability to clearly present complex technical concepts and techniques to others

 

Salary Range: $180,000 - $210,000 plus annual bonus

Additional Information

NBCUniversal's policy is to provide equal employment opportunities to all applicants and employees without regard to race, color, religion, creed, gender, gender identity or expression, age, national origin or ancestry, citizenship, disability, sexual orientation, marital status, pregnancy, veteran status, membership in the uniformed services, genetic information, or any other basis protected by applicable law. NBCUniversal will consider for employment qualified applicants with criminal histories in a manner consistent with relevant legal requirements, including the City of Los Angeles Fair Chance Initiative For Hiring Ordinance, where applicable.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access nbcunicareers.com as a result of your disability. You can request reasonable accommodations in the US by calling 1-818-777-4107 and in the UK by calling +44 2036185726.

Tags: Audits COBIT Compliance Computer Science Governance ITIL Monitoring NIST Privacy Risk assessment Risk management SDLC Security assessment

Perks/benefits: Salary bonus

Region: North America
Country: United States
Job stats:  21  7  1

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.