FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates deep expertise in cybersecurity governance, control frameworks, and regulatory compliance, with a strong ability to connect cybersecurity requirements to technical implementation. Proven experience in leading teams, driving enterprise-scale governance transformation, and establishing compliance capabilities in complex multi-cloud environments.
Highest-signal resume keywords
Cybersecurity GovernanceControl FrameworksRisk ManagementRegulatory ComplianceMulti-Cloud Security Controls
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Cybersecurity Policy DevelopmentControl Lifecycle ManagementCompliance Metrics DefinitionCyber Risk ManagementApplication Security Frameworks
Soft Skills
Exceptional CommunicationSound JudgmentInfluencing StakeholdersPerformance ManagementCoaching
Tools & Technologies
MS AzureAWSISO 27001NIST 800-SeriesPCI DSS
Certifications & Qualifications
CISSPCISMCISACRISC
Industry Keywords
Cybersecurity Governance ProgramControl GovernanceRegulatory ObligationsGovernance ForumsCyber Assurance
Tech Stack
Tools & technologiesAWSAzureCloudCyber Security
About the role
Key responsibilities & impact- Lead and mature the enterprise cybersecurity governance program
- Establish the operating model for policies, standards, control governance, cyber risk management and cyber assurance
- Partner with Cybersecurity, Technology, Legal, Privacy, Enterprise Risk and Internal Audit
- Translate regulatory and security requirements into actionable controls
- Establish governance forums, decision rights, roles, responsibilities, accountability and escalation paths
- Advise senior leaders on cybersecurity governance, regulatory obligations and material cyber risk
- Lead the cybersecurity policy, standard and control lifecycle from development through approval, publication and periodic refresh
- Identify systemic control failures, determine root causes and drive enterprise-level remediation
- Establish control ownership, design expectations, evidence requirements, effectiveness monitoring, deficiencies and remediation oversight
- Drive control rationalization and harmonization across regulatory frameworks
- Embed compliance requirements and automated controls into engineering workflows and the software development cycle
- Define cybersecurity governance KPIs, KRIs and compliance metrics
- Lead monthly and quarterly business reviews and provide executive-level insights and recommendations
- Maintain cyber risk records, escalate material exposure and oversee treatment commitments
- Set governance requirements and priorities for continuous compliance monitoring and automation across multi-cloud and data center environments
- Manage all cyber issues to closure
- Build, mentor and lead a high-performing governance function
- Lead priorities, resource planning, change adoption and performance management
- Influence cross-functional stakeholders and lead complex discussions to resolution
Requirements
What you’ll need- Deep expertise in cybersecurity governance, control frameworks, risk management and regulatory compliance
- Ability to connect cybersecurity requirements to technical implementation
- Experience presenting to senior leadership and driving executive alignment
- Exceptional written and verbal communication
- Sound judgment and accountability in ambiguous environments
- Experience leading and developing technical governance, compliance or security engineering professionals, including performance management and coaching
- Proven delivery of enterprise-scale governance transformation, cross-functional change and measurable process improvement
- Working technical knowledge of multi-cloud and hybrid/data center security controls
- MS Azure and AWS experience preferred
- 7+ years of progressive experience in cybersecurity governance, risk and compliance
- At least 5 years leading teams and enterprise programs
- Experience establishing or maturing governance and compliance capabilities in large, complex, multi-cloud and hybrid environments
- Strong working knowledge of application security frameworks and standards such as ISO 27001, NIST 800-series, NY DFS, CPPA/CPRA, PCI DSS, NIST CSF and SOX, as applicable
- Experience overseeing cybersecurity audits or regulatory examinations and coordinating control remediation
- Experience with strategic planning, program roadmaps, priorities and resource allocation
- Bachelor’s degree in a related field or equivalent professional experience
- CISSP, CISM, CISA or CRISC preferred
- GEICO will consider sponsoring a new qualified applicant for employment authorization for this position
Benefits
Comp & perks- Personalized development programs
- Mentorship
- Certification assistance
- Inclusive and collaborative culture rooted in shared success
- Competitive pay
- Benefits
- Flexibility to support your well-being and future
- GEICO Pledge rewards, careers, culture and company programs
