CFGI Logo

CFGI

GRC and Data Privacy Senior Manager

Posted 13 Days Ago
Remote or Hybrid
Hiring Remotely in United States
Senior level
Remote or Hybrid
Hiring Remotely in United States
Senior level
Lead GRC and data privacy engagements, design security governance models, support regulatory compliance, and manage client communications. Mentor teams and contribute to practice development.
The summary above was generated by AI
CFGI is seeking a Cybersecurity GRC & Data Privacy Subject Matter Expert to lead and deliver strategic advisory engagements that strengthen clients’ security governance, risk management, compliance posture, and privacy programs. This role blends hands-on delivery, executive communication, and practice leadership. You will work directly with CISOs, CIOs, CFOs, General Counsel/Privacy Counsel, Risk Leaders, and PE deal teams to design pragmatic programs, build operating models, and drive measurable outcomes.

The ideal candidate brings deep expertise in GRC frameworks, regulatory compliance, and privacy, strong consulting instincts, and a proven ability to lead teams and manage multiple client workstreams.
 
Key Responsibilities:

Client Advisory & Delivery:

·       Lead end-to-end GRC and privacy engagements, including scoping, planning, execution, and executive reporting.
·       Design and operationalize cybersecurity governance models (policies, standards, risk appetite, committees, reporting KPIs/KRIs).
·       Build and mature enterprise risk programs: risk assessments, risk registers, control libraries, and control testing approaches.
·       Develop and implement security policies, standards, and procedures aligned to common frameworks (e.g., NIST CSF, ISO 27001/27002, CIS, SOC 2).
·       Support regulatory readiness and compliance initiatives (e.g., SEC cyber disclosure support, NYDFS 500, GDPR/UK GDPR, CCPA/CPRA, HIPAA, PCI DSS, SOX ITGC alignment where applicable).
·       Stand up or enhance privacy programs: data mapping/inventories, DPIAs/PIAs, DSAR processes, retention, consent management, third-party privacy risk, and privacy by design.
·       Perform vendor/third-party risk assessments and implement scalable TPRM operating models.
·       Coordinate cross-functional stakeholders (Legal, IT, Security, Compliance, Product, HR) to drive outcomes and adoption.

Executive Communication & Stakeholder Management:

·       Translate complex technical, regulatory, and privacy requirements into business-oriented recommendations.
·       Deliver executive-ready artifacts: board/audit committee materials, roadmaps, operating models, heatmaps, and risk dashboards.
·       Serve as a trusted advisor to senior leadership; confidently present findings and influence decisions.

Practice Development & Leadership:

·       Contribute to go-to-market development: offerings, templates, accelerators, methodologies, and points of view.
·        Support business development through proposal writing, SOW development, client presentations, and solution shaping.
·       Mentor and develop consultants and managers; lead teams across multiple engagements while maintaining quality and delivery rigor.
·       Partner with other CFGI service lines (Accounting Advisory, CFO Advisory, Technology Enablement) to deliver integrated solutions.

Required Qualifications:

·       Eight plus years of relevant experience in cybersecurity GRC, privacy, risk management, compliance, or consulting (level will map to experience).
·       A Bachelor’s degree in a relevant field.
·       Demonstrated expertise implementing and operationalizing cybersecurity frameworks and control programs: NIST CSF / NIST 800-53 (nice-to-have), ISO 27001/27002, SOC 2, CIS Controls.
·       Strong privacy fundamentals and experience with privacy program build-out and operations: GDPR/UK GDPR, CCPA/CPRA; experience with HIPAA/GLBA or other sectoral privacy standards is a plus.
·       Experience performing or leading: enterprise/security risk assessments. control design/testing, policy and standards development, TPRM programs, compliance/regulatory readiness programs,
·       Exceptional written and verbal communication skills with a track record of producing executive-level deliverables.
·       Proven ability to lead teams, manage timelines/budgets, and deliver in a client-facing environment.

Preferred Qualifications (Nice-to-Have):

·       Certifications: CISM, CISSP, CRISC, CISA, ISO 27001 Lead Implementer/Lead Auditor, CIPM/CIPP (E/US), CDPSE.
·       PE/portfolio company experience: rapid maturity uplift, integration, carve-out/stand-up, and pragmatic road mapping.
·       Exposure to incident readiness, tabletop exercises, and crisis communications coordination with Legal/Comms.
·       Experience supporting audits and assurance activities (SOC 2 readiness, ISO certification readiness, internal audit coordination).

Why CFGI:
·       High-impact work with sophisticated clients and private equity portfolio companies.
·       Opportunity to shape and scale a fast-growing Cybersecurity practice.
·       Collaborative culture with autonomy, flexibility, and strong leadership support.
·       Competitive compensation, benefits, and career growth trajectory.

Top Skills

Ccpa
Cis Controls
Gdpr
Hipaa
Iso 27001/27002
Nist Csf
Pci Dss
Soc 2

Similar Jobs

5 Minutes Ago
Easy Apply
Remote
USA
Easy Apply
55-65 Hourly
Senior level
55-65 Hourly
Senior level
Big Data • Healthtech • HR Tech • Machine Learning • Software • Telehealth • Big Data Analytics
Lead full-cycle technical recruiting for engineering, data, and product roles on a 6-month contract. Build sourcing pipelines, manage complex searches, partner with stakeholders, maintain ATS data (Greenhouse), and deliver high-touch candidate experiences.
Top Skills: Greenhouse,Brighthire
5 Minutes Ago
Remote or Hybrid
USA
100K-130K Annually
Senior level
100K-130K Annually
Senior level
Automotive • Big Data • Insurance • Software • Transportation
Lead and scale Continuous Improvement initiatives using Lean Six Sigma to reduce defects and cost-to-serve. Identify high-impact opportunities via data-driven analysis, lead cross-functional teams, implement process/technology/people solutions, coach CI tools organization-wide, and travel 20-30% to client sites.
Top Skills: Lean,Six Sigma,Dmaic,Sipoc,Voc,Process Mapping,Value Stream Mapping,5 Whys,Human Factors Engineering
25 Minutes Ago
Remote
United States of America
173K-223K Annually
Expert/Leader
173K-223K Annually
Expert/Leader
Blockchain • Fintech • Payments • Financial Services • Cryptocurrency • Web3
Lead end-to-end concept development and art direction for global brand and campaign work, translate complex blockchain and financial concepts into clear visual storytelling, ensure on-brand multi-channel execution, and partner with cross-functional teams and agencies to deliver compliant creative.

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account