> Markdown version of [/jobs/ext/2160765-manager-of-cybersecurity-strategy-and-governance](https://www.wearedevelopers.com/jobs/ext/2160765-manager-of-cybersecurity-strategy-and-governance). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Manager of Cybersecurity Strategy and Governance - **Company:** Huntington National Bank - **Location:** Detroit, MI, United States (Remote available) - **Experience:** Experienced - **Salary:** $102,000.0 - $208,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Systems, Data Visualization, RSA Archer Platform, Cyber Warfare - **Published:** August 21, 2026 - **Apply:** https://www.detroitjobsite.com/job.asp?id=3361172176&tx=IT9386THI&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role The ideal candidate is detail-oriented, execution-focused, and capable of managing cross-functional efforts to ensure successful delivery of cybersecurity initiatives, reporting, and process enhancements., * Bachelor's degree in Cybersecurity, Risk Management, Information Systems, or a related field or 4+ additional years of equivalent experience. * 5+ years of experience in cybersecurity, risk, compliance, or governance functions. * 3+ years' experience utilizing cybersecurity frameworks (e.g., NIST CSF, FFIEC CAT, ISO 27001, CRI). * 3+ years' experience with regulatory and risk management practices, particularly in financial services or regulated industries., * Proven experience managing cross-functional projects and delivering results in matrixed environments. * Strong communication and interpersonal skills, with the ability to translate technical concepts into business terms. * Proficiency in GRC platforms, data visualization tools, and metrics reporting. * Detail-oriented with strong organizational and execution skills. * Ability to thrive in a fast-paced environment with shifting priorities and multiple workstreams. ## Description Job Summary:The Manager of Cybersecurity Strategy and Governance is responsible for supporting the execution of strategic cybersecurity initiatives, maintaining governance processes, and collaborating with Cybersecurity teams to identify improvements to enhance the organization's overall security posture. Reporting to the Director of Cybersecurity Strategy, Innovation, and Governance (DCSIG), this role acts as a key leader responsible for translating strategic direction into actionable workstreams, partnering across cybersecurity and business units to promote governance discipline, control maturity, and innovation enablement., Strategic Program Execution * Support the collaborative design and execution of a comprehensive cybersecurity strategy aligned with business objectives, risk management goals, regulatory and industry guidance, and long-term growth. * Operationalize components of the cybersecurity Strategy, Governance, and Innovation roadmap in close partnership with the DCSIG and Cybersecurity Leadership team. * Track progress against defined maturity goals and report key milestones, risks, and dependencies to leadership. * Continuously assess and refine the strategy to stay ahead of emerging threats, technologic advancements, banking trends, business direction, and evolving regulatory requirements. Cybersecurity Governance & Policy Management * Support the lifecycle of cybersecurity policies and standards, including drafting, reviews, socialization, and periodic updates, in alignment with applicable regulations and industry standards (e.g., FFIEC, NIST, GLBA, SOX, PCI, DSS, CRI, ISO 27001). * Support the implementation of governance processes to ensure alignment with regulatory requirements and internal risk frameworks. * Coordinate inputs to governance forums, including meeting materials, charters, and action item follow-ups. Risk & Compliance Support * Maintain and update the cybersecurity risk and control matrix (RCM) to reflect current-state control environment and ownership. * Partner with internal stakeholders to collect and validate cybersecurity-related inputs into enterprise risk assessments, RCSAs, and self-assessments. * Track and support closure of cybersecurity audit issues, regulatory findings, and control remediation items. Continuous Improvement * Collaborate with cyber operations, engineering, and architecture teams to pilot and integrate innovative capabilities. * Participate in process improvement efforts, including current state mapping, metric tracking, and performance analysis. Cybersecurity Metrics & Reporting * Develop, maintain, and operationalize cybersecurity metrics and dashboards to support executive and risk committee reporting. * Ensure data accuracy and alignment of metrics with business outcomes and program maturity goals. * Help automate and streamline reporting processes, reducing manual data collection efforts. Stakeholder Engagement & Coordination * Coordinate working groups, task forces, and project teams related to cybersecurity governance and strategy implementation. * Facilitate collaboration across Legal, Compliance, Risk, and Technology functions to ensure cohesive program execution. * Serve as a resource for teams seeking clarification or support related to cybersecurity policies, controls, or governance processes., Certain positions outside our branch network may be eligible for a flexible work arrangement. We're combining the best of both worlds: in-office and work from home. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. Remote roles will also have the opportunity to come together in our offices for moments that matter. Specific work arrangements will be provided by the hiring team. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Web-based Information Visualization](https://www.wearedevelopers.com/videos/84-web-based-information-visualization) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Python Data Visualization @ Deepnote (w/ PyViz overview)](https://www.wearedevelopers.com/videos/113-python-data-visualization-deepnote-w-pyviz-overview) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Top 6 Hackathons for Developers in 2023](https://www.wearedevelopers.com/magazine/263-top-6-hackathons-for-developers-in-2023) - [From developer to manager – what does it take to become an engineering manager?](https://www.wearedevelopers.com/magazine/42-from-developer-to-manager-what-does-it-take-to-become-an-engineering-manager)