Job Closed

This listing is no longer active.

CubiCasa logo
CubiCasa

Easy-to-use smartphone app for creating floor plans, interactive tours, 3D renders and more. More than 4M orders!

Information Security GRC Manager

Security EngineerSecurity EngineerOtherRemoteTeam 51-200Since 2014H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

101 days ago

Salary

0

No structured requirement data.

Job Description

Information Security GRC Manager

CubiCasa

The Information Security Governance, Risk, and Compliance (GRC) Manager provides tactical leadership and operational oversight for key components of the company’s enterprise GRC program. This role is responsible for the day-to-day management of GRC analysts, driving compliance initiatives, managing the integrated risk assessment lifecycle, and ensuring control effectiveness. The Manager will serve as a key point of contact for internal business units and external auditors, directly supporting the strategic directives set by program leadership. The position requires a proven ability to lead teams, implement policy, and translate complex security and compliance requirements into clear business actions. What You Will Work On - Manage and mentor a team of GRC Security Analysts, providing clear direction and facilitating continuous professional development. - Oversee and execute the security risk assessment process, including identifying, analyzing, and documenting emerging and ongoing risks across the organization and its third parties. - Lead efforts to document, enforce, and communicate security policies and control frameworks that are aligned with key regulations and standards (e.g., NIST, ISO, GDPR, GLBA). - Develop, implement, and maintain security policies and controls specifically for the safe and ethical deployment and use of artificial intelligence (AI) systems. - Act as the primary operational liaison for internal and external audits, coordinating the collection of evidence, tracking the resolution of findings, and ensuring sustained audit readiness. - Provide direct support to the third-party risk management program, ensuring rigorous security review of vendors and business partners to mitigate external risk. - Facilitate IT compliance activities, focusing on the operational effectiveness of technical and general IT controls. - Collaborate with business units and technical teams to ensure adequate security controls are available and implemented during the onboarding of new solutions and systems. - Define and track qualitative and quantitative metrics to measure the success and maturity of the security program, reporting regularly to program leadership. - Support incident response and disaster recovery efforts, ensuring GRC documentation and controls are properly applied to corporate resiliency programs. - Ensure the protection of critical data is maintained through established data classification, data loss prevention (DLP), and records retention requirements. - Manage information security training requirements for the organization, to include identifying role-based security training for all organizational roles in accordance with the roles capacity to introduce risk in the performance of their duties.  Who We Are Looking For - 7+ years of experience in cybersecurity, with a focus on governance, compliance, risk management, or audit. - 3+ years of demonstrated experience managing or leading a distributed or hybrid team. - Expert-level understanding of major regulatory frameworks and standards, including but not limited to NIST, ISO, GDPR, and GLBA. - Proven ability to manage GRC-related projects and work with cross-functional stakeholders to deliver outcomes on time and within scope. - Strong technical acumen in cloud computing security (AWS, GCP, or Azure), DevOps, and application security. - Exceptional written and verbal communication skills, with the ability to articulate security risk and compliance requirements to technical staff and business leadership. - Prior experience in defining metrics, preparing management reports, and implementing process improvements using GRC tools. - Demonstrated experience in conducting tabletop exercises for business continuity is preferable. Education Requirements - Bachelor’s degree in computer science, information assurance, MIS, or a related technical field, or equivalent practical experience. Certification Requirements - Holds or is actively working toward one or more of the following: CISSP, CISM, CISA, CRISC, or CGRC. What You Can Expect - Compensation: The base salary for this position ranges from $150,000 to $200,000 annually, depending on your location, experience, and qualifications. Additional compensation offerings include company profit-sharing bonus program, communication stipends, and referral bonuses.  - Inclusive benefits package offering:  - Comprehensive medical, dental, and company paid vision insurance, 401(k) retirement plan with employer match, voluntary life and AD&D insurance options, voluntary supplemental insurances for accident, critical illness, and legal services,  paid time off (PTO) and paid holidays, employee assistance and wellness programs, company paid short term disability coverage, company contributions to health saving funds (with participation in the high deductible health plan. We offer company paid access to Galileo for virtual primary care and Rula for virtual mental health resources. - Through our Anniversary Program, we celebrate the meaningful milestones and long tenure that reflect how much we value your contributions and commitment to our team. - Career and skill development resources to help advance your career and personal growth. - A mission-driven environment where your work makes a measurable impact on the real estate industry. What We Value - Wherever it Leads, Whatever it Takes® -  No matter how remote, complex, or unexpected. Our commitment never wavers. - Hire NICE people - Skills can be taught but character shines through. We seek those who bring integrity, kindness, and grit. - Lift others up - We lead with empathy and strive to improve the lives of those around us. - Sweat the details - Excellence lives in the little things. Getting it just so is how we make a big impact. - Raise the bar -  We don’t settle for industry standards, we redefine them. About Us Our story began in the mountain town of Truckee, California more than 20 years ago,  when we pioneered simple, web-based valuation technology solutions for an industry that relied on paper. Today, we’ve grown one of the highest-coverage networks of real professionals in the county. As we continue our journey to modernize valuation we’ll hold on to our promise from day one: to go wherever it leads and do whatever it takes to serve our customer with remarkable technology and uncompromising service.  Clear Capital is an equal-opportunity employer. To all recruitment agencies: Clear Capital does not accept agency resumes. Please do not forward resumes to our jobs alias, Clear Capital employees, or any other company location. Clear Capital is not responsible for any fees related to unsolicited resumes.

Related Categories

Related Job Pages

More Security Engineer Jobs

OtherRemoteTeam 1,001-5,000Since 1973H1B No Sponsor

• Conduct comprehensive security risk assessments of enterprise systems and processes, as well as provide recommendations for risk mitigation. • Review, analyze, and provide recommendations for policy, standard, and baseline configuration exceptions. • Perform vendor risk assessments to include inherent & residual risk identification, analysis, and mitigation, and additionally track risk remediation to completion. • Provide recommendations for vendor contractual requirements stemming from vendor risk assessment outcomes. • Serve as a project security advisor including risk analysis gate checks in the secure SDLC process. • Conduct thorough threat modeling exercises to identify potential security vulnerabilities and risks. • Stay current on security trends, threats, and best practices to continuously improve the organization's security posture. • Perform other duties as assigned.

Missouri
$89.3K - $134.9K / year
Job Closed
Bloom logo

Information Security Officer

Bloom

Building better workplaces for everyone.

Security Engineer101 days ago
OtherRemoteTeam 1-10Since 2018H1B Sponsor

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description This role involves serving as Bloom's Information Security Officer, focusing on building security into the foundation of the organization. - Own the security program end-to-end: designing and implementing controls, architecting systems to prevent breaches, and driving a culture of proactive risk management. - Use data and metrics to measure effectiveness, identify gaps, and demonstrate continuous improvement. - Build and lead a proactive security program with a prevention-first mindset. - Evaluate, refine, and enforce security policies, standards, and procedures. - Conduct regular risk assessments and threat modeling. - Lead tabletop exercises, penetration testing, and red team activities. - Build, operate, and monitor the security program, ensuring effective education of stakeholders. - Serve as the primary owner for HIPAA, HITRUST, and SOC 2 Type II compliance oversight. - Maintain knowledge of NIST standards and emerging healthcare security regulations. - Translate regulatory requirements into engineering specifications and operational procedures. - Partner with Engineering, IT, and DevOps to embed security controls into infrastructure. - Define and track key security metrics and KPIs. - Develop and deliver security awareness training. Qualifications - Bachelor’s degree in information systems, Computer Science, Engineering, or a related technical field, or a minimum of four (4) years of experience in lieu of degree. - 7+ years of progressive experience in information security, with at least 3 years in a security program leadership role. - Previous experience guiding an organization through successful assessments in SOC 2 and/or HITRUST R2. Requirements - Deep expertise in healthcare security and privacy regulations, particularly HIPAA Security Rule requirements. - Hands-on experience achieving and maintaining HITRUST CSF certification and SOC 2 Type II attestation. - Strong working knowledge of NIST frameworks and FedRAMP. - Proven track record implementing technical security controls and managing a comprehensive security program. - Experience with cloud security (AWS, Azure, or GCP) and modern DevSecOps practices. - Demonstrated ability to use metrics and data analysis to drive security program improvements. - Excellent communication skills—able to translate technical risk into business terms for executives and board members. - Relevant certifications: CISSP, CISM, HCISPP, HITRUST CCSFP, or equivalent. - Experience in a high-growth healthcare technology or digital health environment. - First-hand experience building security programs or security-first architectures. - Experience with GRC platforms and security automation tools. Benefits - Competitive compensation. - Comprehensive health coverage. - Long-term growth opportunities. - Remote work environment. - BeBloom™, a proprietary employee training and engagement program. Core Values - Put People First: Uphold and promote a people-first culture within the organization. - Be Stronger Together: Embrace a team player mentality. - Do What’s Right: Adhere to high ethical standards. - Embrace a Growth Mindset: Embrace a culture of continuous learning. - Drive Solutions: Demonstrate ingenuity and skill by sharing ideas and solutions.

United States
Job Closed
OtherRemoteTeam 5,001-10,000Since 2000H1B No Sponsor

Job Description The Career Exploration and Elective Teacher is a state certified teacher responsible for delivering specific course content in an online environment. The Career Exploration teacher must provide instruction, support, and guidance; manage the learning process; and focus on students’ individual needs. Teachers monitor student progress through Stride K12’s learning management system and work actively with students and parents to advance each student’s learning and to develop and monitor a plan for post-secondary success via online tools.This non-negotiable salary for this position is $43,000 along with the opportunity for an annual bonus through the School. Start Date - 2026-2027 K12, a Stride Company, believes in Education for ANY ONE. We provide families an online option for a high-quality, personalized education experience. Students can thrive, find their passion, and learn in an environment that encourages discovery at their own pace. The mission of Ohio Virtual Academy (OHVA) is to provide an exemplary individualized and engaging educational experience for students by incorporating school and community/family partnerships coupled with a rigorous curriculum along with a data-driven and student-centered instructional model. Student success will be measured by valid and reliable assessment data, parent and student satisfaction, and continued institutional growth within the academic community. Join us! Summary: The Career Exploration and Elective Teacher is a state certified teacher responsible for delivering specific course content in an online environment. The Career Exploration teacher must provide instruction, support, and guidance; manage the learning process; and focus on students’ individual needs. Teachers monitor student progress through Stride K12’s learning management system and work actively with students and parents to advance each student’s learning and to develop and monitor a plan for post-secondary success via online tools. This is a full-time position. Ability to work independently, typically 40+ hours per week is required. Ability to maintain a professional home office without distraction during workday, typically 9-5 (or 8-4) or as defined by the school. Essential Functions: Reasonable accommodations may be made to enable individuals with disabilities to perform the essential duties. - Provides rich and engaging synchronous and asynchronous learning experiences for students - Commitment to personalizing learning for all students - Demonstrates a belief in all students’ ability to succeed and meet high expectations - Differentiates instruction based on student level of mastery - Augments course content according to prescribed policies and procedures using appropriate asynchronous and synchronous tools under guidance from principal and coach - Maintains grade book ensuring student academic integrity, makes student placement and promotion decisions, and alerts administrators to concerns about student performance and progress - Prepares students for high stakes standardized tests - Understands that a primary responsibility is to establish and maintain positive rapport with families and regularly communicates with and responds to students and learning coaches/parents in a timely manner - Supports learning coaches/parents with student curricular and instructional issues, as well as basic troubleshooting in a virtual classroom environment that is in line with academy policies and procedures - Travels as required (on average once per month and/or up to 25% of the time) for face-to-face professional development, student testing, and as required by school - Maintains and effectively applies knowledge of the State, National, and Industry Specific learning standards - Develops effective instructional tools and strategies to supplement and enhance provided curriculum - Collaborates regularly with the school and national professional learning community - Supports a project-based learning model Minimum Required Qualifications: - Bachelor’s degree AND - Active CTE state teaching certification OR - Active high school grade level state teaching certification with CTE Validation - Ability to clear required background check(s) Residency Requirement: Ohio OTHER REQUIRED QUALIFICATIONS: - Ability to work collaboratively with other teachers to interpret and produce numeric, tabular, and graphic representations of student data, and use it to drive instructional decisions - Receptive to receiving coaching on a regular basis with administrators and teacher trainers - Ability to embrace change and adapt to ensure excellent student outcomes - Proficient in Microsoft Excel, Outlook, Word; PowerPoint - Ability to rapidly learn and adapt to new technologies and teaching platforms DESIRED Qualifications: - Experience working with proposed age group - Experience supporting adults and children in the use of technology - Experience teaching in an online (virtual) and/or in a brick-and-mortar environment - Experience with project-based learning Work Environment: The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. - This is a virtual, home-based position Job Type Board Employee_CW The above job is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow any other instructions, and perform any other related duties, as assigned by their supervisor. All employment is “at-will” as governed by the law of the state where the employee works. It is further understood that the “at-will” nature of employment is one aspect of employment that cannot be changed except in writing and signed by an authorized officer. If you are a job seeker with a disability and require a reasonable accommodation to apply for one of our jobs, you can request the appropriate accommodation by contacting stridecareers@k12.com. Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities Stride, Inc. is an equal opportunity employer. Applicants receive consideration for employment based on merit without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status, or any other basis prohibited by federal, state, or local law. Stride, Inc. complies with all legally required affirmative action obligations. Applicants will not be discriminated against because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.

United States
Job Closed
Navitus Health Solutions, LLC logo

Enterprise Security Architect

Navitus Health Solutions, LLC

Navitus - Putting People First in Pharmacy - Navitus was founded as an alternative to traditional pharmacy benefit manager (PBM) models. We are committed to removing cost from the drug supply chain to make medications more affordable for the people who need them. At Navitus, our team members work in an environment that celebrates diversity, fosters creativity and encourages growth.

Security Engineer101 days ago
OtherRemoteTeam 1,001-5,000

Company Navitus About Us Navitus - Putting People First in Pharmacy - Navitus was founded as an alternative to traditional pharmacy benefit manager (PBM) models. We are committed to removing cost from the drug supply chain to make medications more affordable for the people who need them. At Navitus, our team members work in an environment that celebrates diversity, fosters creativity and encourages growth. We welcome new ideas and share a passion for excellent service to our customers and each other._____________________________________________________________________________________________________________________________________________________________________________________________________________. Current associates must use SSO login option at https://employees-navitus.icims.com/ to be considered for internal opportunities. Pay Range USD $120,524.00 - USD $150,656.00 /Yr. STAR Bonus % (At Risk Maximum) 5.00 - Salaried Non-Management except pharmacists Work Schedule Description (e.g. M-F 8am to 5pm) M-F: 8 am to 5 pm Remote Work Notification ATTENTION: Navitus is unable to offer remote work to residents of Alaska, Hawaii, Maine, Mississippi, New Hampshire, New Mexico, North Dakota, Rhode Island, South Carolina, South Dakota, West Virginia, and Wyoming. Overview Due to growth, we are adding a Enterprise Security Architect to our team! The Enterprise Security Architect is responsible for participating in the design, construction, maintenance, and enhancement of the Navitus IT Security and infrastructure landscape. With minimal leadership and tactical supervision, the Enterprise Security Architect collaborates with clients, staff, IT colleagues, and other stakeholders to identify user requirements, assess available technologies, and recommend solution options to meet the operational needs of Navitus. In addition to administering multiple security tools, this role will architect and implement long-term and short-term solutions to improve the security posture of Navitus. Is this you? Find out more below! Responsibilities How do I make an impact on my team? - Act as subject matter expert on infrastructure, security and network architecture. Serve as a security team advisor on corporate projects, providing technical security consultations on highly complex business projects. - Research utilization and capacity planning of existing technologies to plan for future growth. - Analyze and design effective and clear technical solutions for infrastructure and enterprise security related projects. - Collaborate with other IT teams to perform a Proof of Concept for solutions that show promise. - Assist in the development and implementation of corporate information security policies and procedures, strategies, including deployment, administration, configuration and support of security related systems. - Maintain knowledge in Infrastructure Operations, Data Center Operations, Virtualization (Server, Network, Storage, Desktop, and Application); attend conferences, meet with vendors, and keep current on technology trends. - Analyze, provide guidance and diagnose security incidents and may cause a threat to Navitus’s security and safety. - Recognized as a system expert in multiple core enterprise systems and be able to effectively provide knowledge training to peers. - On-call availability. - Some travel may be required. - Provide after-hours support. - Other duties as assigned Qualifications What our team expects from you? - Bachelor’s degree or a minimum of 7+ years of professional experience in IT Security or Network Architecture required. - (ISC)² CISSP, ISACA CISM or equivalent preferred. - Experience in designing, planning, building, and maintaining an organization's overall security architecture by identifying potential threats, evaluating security risks, and implementing preventative measures to protect sensitive data and IT systems across the enterprise, ensuring compliance with security standards and best practices. - Proven ability to communicate with clients, IT teams and internal business users and provide secure solutions for the services we offer. - Solid understanding of NIST, HIPAA and PCI. - Knowledge of healthcare industry practices and applicable data privacy practices and laws required. - Participate in, adhere to, and support compliance program objectives - The ability to consistently interact cooperatively and respectfully with other employees What can you expect from Navitus? - Top of the industry benefits for Health, Dental, and Vision insurance - 20 days paid time off - 4 weeks paid parental leave - 9 paid holidays - 401K company match of up to 5% - No vesting requirement - Adoption Assistance Program - Flexible Spending Account - Educational Assistance Plan and Professional Membership assistance - Referral Bonus Program – up to $750! #LI-Remote Location : Address Remote Location : Country US

United States
$120K - $150K / year
Job Closed