Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Momentive Software

Director, Cybersecurity GRC

Momentive Software

. Manage the people, processes, and technology of Momentive Software's Cybersecurity GRC group .

Posted 10/5/2026full-timeRemote • United StatesLeadWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive experience in managing cybersecurity governance, risk, and compliance (GRC) initiatives, with a strong focus on strategic planning and operational oversight. Proficient in leading teams, integrating cybersecurity practices across functions, and ensuring compliance with regulatory standards.

Highest-signal resume keywords
Cybersecurity GovernanceRisk AssessmentEGRC/ITGRC Platform ProficiencyNIST CSF UnderstandingLeadership in Cybersecurity

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Governance Risk ComplianceRisk Treatment PlansTechnical ControlsCybersecurity FrameworksAudit SupportRegulatory ComplianceIncident ResponseVulnerability AssessmentNetwork Services KnowledgeContract Review
Soft Skills
Verbal CommunicationWritten CommunicationStrategic ThinkingProblem SolvingFlexibility
Tools & Technologies
ServiceNow GRCArcherOneTrustLogicGateSIEMIDSLog ManagementActive DirectoryPhishing SimulationsCybersecurity Management System
Certifications & Qualifications
CISSPCISMCRISCISO 27001 Lead ImplementerISO 27001 Lead Auditor
Industry Keywords
NIST CSFCIS ControlsSOC2T2COBITGDPRPCI-DSSGLBAFISMAHIPAAITAR

Tech Stack

Tools & technologies
Cyber SecurityDNSServiceNowTCP/IP

About the role

Key responsibilities & impact
  • Manage the people, processes, and technology of Momentive Software's Cybersecurity GRC group
  • Oversee governance, risk, compliance, client audit support, RFP responses, internal IT audit, and contract review
  • Serve as process owner for IS GRC-related projects and activities
  • Assist the CISO in planning, developing, and overseeing the cybersecurity program
  • Integrate cybersecurity activities across Cybersecurity, Information Technology, new business development, Legal, and professional responsibility functions
  • Maintain responsibility for IS GRC governance, risk assessment, compliance, and audit support
  • Lead continual improvement of the cybersecurity program and manage IS GRC standards, guidelines, procedures, toolsets, platforms, and budget
  • Lead the System Governance Virtual Team and maintain the Firm's Cybersecurity Management System (ISMS)
  • Provide direction on risk assessments, risk treatment plans, IS controls, control metrics, and ISMS documentation
  • Co-develop and align AI policies and governance practices with the Director, AI Governance
  • Coordinate with Cybersecurity Operations and Engineering on service delivery, vendor risk assessments, and platform compliance
  • Serve on the Computer Cybersecurity Incident Response Team (CSIRT)
  • Provide evidence and expert support for client audits, RFP responses, and regulatory reviews
  • Track regulatory and accreditation changes and monitor compliance
  • Manage cybersecurity awareness initiatives, including phishing simulations and outreach
  • Mentor and lead the Cybersecurity GRC group, including TPRM Advisors, with full people-management accountability
  • Transform executive priorities into operational GRC initiatives and report status and metrics to the CISO
  • Contribute to strategic planning, roadmap development, DR/BCP practices, and cybersecurity innovation

Requirements

What you’ll need
  • 10-12+ years of experience in cybersecurity, with 3-5 years in a leadership or program management role
  • Thorough knowledge of professional management practices including supervisory techniques, leadership principles, and employment practices
  • Excellent verbal and written communication skills, including public speaking and the ability to convey complex cybersecurity concepts to non-technical stakeholders
  • Ability to think and communicate strategically about the role of cybersecurity in a global organization
  • Ability to quickly assess an organization's capability-maturity level and apply that knowledge to RFPs, audits, contract reviews, and internal operations
  • Proficiency in at least one major EGRC/ITGRC platform (e.g., ServiceNow GRC, Archer, OneTrust, LogicGate)
  • Comprehensive understanding of NIST CSF, CIS Controls, SOC2T2, and COBIT
  • Familiarity with GDPR, PCI-DSS, GLBA, FISMA, HIPAA, and ITAR
  • Advanced understanding of technical controls, risk, and mapping controls to framework and regulatory requirements
  • Broad understanding of TCP/IP, DNS, common network services, and foundational infrastructure concepts
  • Knowledge of server, workstation, and Active Directory technologies as they relate to cybersecurity controls
  • Familiarity with SIEM, IDS, log management, and vulnerability assessment technologies
  • Ability to gather and analyze facts, define problems, draw conclusions, and recommend solutions
  • Ability to maintain objectivity and composure under pressure
  • Ability to set priorities independently given broad executive requirements
  • Demonstrated flexibility in response to changing priorities
  • Rigorous and disciplined approach to operational oversight
  • One or more relevant certifications: CISSP, CISM, or CRISC; ISO 27001 Lead Implementer or Lead Auditor is a plus
  • Eligibility to work in the United States without sponsorship
  • Minimum age of 18

Benefits

Comp & perks
  • Medical, Dental & Vision Benefits
  • 401(k) Savings Plan with Company Match
  • Flexible Planned Paid Time Off
  • Generous Sick Leave
  • Inclusive & Welcoming Environment
  • Purpose-Driven Culture
  • Work-Life Balance
  • Commitment to Community Involvement
  • Employer-Paid Parental Leave
  • Employer-Paid Short-Term Disability
  • Remote Work Flexibility