GRC Manager

Insight Global
Houston, TX, United States
2 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Software Engineering RSA Archer Platform

Job description

Insight Global is seeking an experienced GRC Manager to lead and continue maturing an established Governance, Risk, and Compliance (GRC) program within a complex energy and operational technology (OT) environment. This is a permanent leadership opportunity based in Houston, TX, with an onsite requirement of four days per week and remote work on Fridays. Reporting to senior cybersecurity leadership, this role will oversee a team of five direct reports and multiple contractor resources while partnering closely with infrastructure, networking, application development, operational technology, and vendor teams across the organization. The successful candidate will advance cybersecurity governance practices, drive policy and standards development, oversee regulatory compliance initiatives, manage third-party risk programs, and provide cybersecurity reporting to executive leadership and the board. This role is ideal for a collaborative leader who can bridge both technical and business stakeholders while influencing outcomes across the organization.

Requirements

  • 5+ years of leadership experience managing cybersecurity, risk, compliance, or governance teams
  • Experience within Oil & Gas, Pipeline, Energy, Utilities, Manufacturing, or other industrial/OT environments
  • Strong understanding of both IT and OT cybersecurity environments
  • Hands-on experience with IEC 62443 and NIST 800-82 frameworks
  • Strong knowledge of NIST Cybersecurity Framework (CSF) 2.0
  • Experience supporting compliance with TSA and Canadian Energy Regulator (CER) cybersecurity requirements
  • Demonstrated experience managing Third-Party Risk Management (TPRM) programs
  • Proven experience developing cybersecurity policies, standards, and governance processes
  • Ability to influence and gain buy-in from stakeholders across multiple business units without direct authority
  • Strong communication skills with experience presenting metrics and risk reporting to executive leadership and board-level audiences
  • CISA and CISSP certification required
  • Certified Internal Auditor (CIA) designation
  • Experience with GRC platforms such as Workiva, Archer, or similar solutions
  • Exposure to cybersecurity governance across both cloud and on-premises environments
  • Knowledge of CIS security benchmarks and hardening standards
  • Previous audit experience within cybersecurity, risk, or compliance functions

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:22 min

Understanding software engineering as more than just coding

Lilia Gargouri Lilia Gargouri · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:29 min

Undervaluing product design by treating software engineers as generic programmers

Marlene Roth Marlene Roth +1 · World Congress 2025

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all