GRC Manager
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Insight Global is seeking an experienced GRC Manager to lead and continue maturing an established Governance, Risk, and Compliance (GRC) program within a complex energy and operational technology (OT) environment. This is a permanent leadership opportunity based in Houston, TX, with an onsite requirement of four days per week and remote work on Fridays. Reporting to senior cybersecurity leadership, this role will oversee a team of five direct reports and multiple contractor resources while partnering closely with infrastructure, networking, application development, operational technology, and vendor teams across the organization. The successful candidate will advance cybersecurity governance practices, drive policy and standards development, oversee regulatory compliance initiatives, manage third-party risk programs, and provide cybersecurity reporting to executive leadership and the board. This role is ideal for a collaborative leader who can bridge both technical and business stakeholders while influencing outcomes across the organization.
Requirements
- 5+ years of leadership experience managing cybersecurity, risk, compliance, or governance teams
- Experience within Oil & Gas, Pipeline, Energy, Utilities, Manufacturing, or other industrial/OT environments
- Strong understanding of both IT and OT cybersecurity environments
- Hands-on experience with IEC 62443 and NIST 800-82 frameworks
- Strong knowledge of NIST Cybersecurity Framework (CSF) 2.0
- Experience supporting compliance with TSA and Canadian Energy Regulator (CER) cybersecurity requirements
- Demonstrated experience managing Third-Party Risk Management (TPRM) programs
- Proven experience developing cybersecurity policies, standards, and governance processes
- Ability to influence and gain buy-in from stakeholders across multiple business units without direct authority
- Strong communication skills with experience presenting metrics and risk reporting to executive leadership and board-level audiences
- CISA and CISSP certification required
- Certified Internal Auditor (CIA) designation
- Experience with GRC platforms such as Workiva, Archer, or similar solutions
- Exposure to cybersecurity governance across both cloud and on-premises environments
- Knowledge of CIS security benchmarks and hardening standards
- Previous audit experience within cybersecurity, risk, or compliance functions
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Fully Remote Software Engineer Jobs
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
The Geometry of Incidents: Connecting User Impact to Architecture
Everything a Developer Needs to Know About MCP with Neo4j