Cybersecurity Governance, Risk, Compliance Manager (Cybersecurity Analyst IV) jobs in United States
cer-icon
Apply on Employer Site
company-logo

Texas Education Agency · 22 hours ago

Cybersecurity Governance, Risk, Compliance Manager (Cybersecurity Analyst IV)

The Texas Education Agency (TEA) is focused on improving outcomes for all public-school students in Texas. They are seeking a Cybersecurity Governance, Risk, Compliance Manager who will lead GRC initiatives, oversee enterprise risks, and ensure compliance with regulations while collaborating with various stakeholders.

Education

Responsibilities

Create, approve, and enforce security policies, standards, and procedures that align with strategic business goals and the overall risk appetite of the organization, ensuring alignment with TAC 202 requirements and best practices in accordance with NIST. Implement process improvements using GRC tools and methodologies to drive productive gains
Establish a comprehensive risk management program that regularly conducts formal risk assessments. Additionally, this role is responsible for evaluating the effectiveness of current controls and recommending mitigation strategies based on risk severity
Ensure adherence to internal polices, as well as external regulations and legal mandates such as TAC 202 and NIST. Establish and maintain a continuous monitoring program for tracking and resolving non-compliance issues
Coordinate with stakeholders to communicate emerging risks across the organization and implement effective risk mitigation strategies
Guide the team to align with security, audit, and risk management efforts in ongoing security program assessments. This role will also provide guidance to team members to ensure compliance with relevant laws and regulations

Qualification

CybersecurityRisk ManagementGRC ToolsNIST ComplianceTeam LeadershipProject ManagementCommunication SkillsISO KnowledgeFERPA KnowledgeInformation Technology Knowledge

Required

Graduation from an accredited four-year college or university
At least six (6) years of experience in Cybersecurity, Risk Management, or Audit
An advanced degree may substitute for two years of required experience
Share the belief that all Texas students can achieve at high levels and are able to succeed in college, career, or the military
Understanding of frameworks, regulations and laws such as ISO, NIST, FERPA
Proficient in GRC tools for tracking and managing compliance, conducting risk assessments and reporting
Experience leading teams in handling both legacy and emerging technologies to manage business risk and enforce security controls
Project management skills for working with stakeholders and completing projects on time and in scope
Excellent written and verbal communication skills for both business and cybersecurity contexts
Commitment to sharing up to date industry knowledge with team to elevate overall GRC program expertise
Knowledge of Information Technology infrastructure, including routers, switches, firewalls, databases, operating systems, encryption, load balancing, intrusion prevention systems, and network protocols and concepts
Research, evaluate, and recommend information-security-related hardware and software, including developing business cases for security investments

Company

Texas Education Agency

twittertwittertwitter
company-logo
The Texas Education Agency provides information and guidance to public schools, educators, parents, and administrators.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Carla Steffen, CPA
Chief Financial Officer
linkedin
leader-logo
Adrienne Hunter, Ph.D.
CONTRACTOR
linkedin
Company data provided by crunchbase