PTR Global · 2 hours ago
Sr Manager of Risk & Compliance
PTR Global is a leading provider of information technology and workforce solutions. They are seeking a Senior Manager of Risk and Compliance who will be responsible for overseeing security compliance, risk management, and audit functions while leading a team of compliance analysts.
Responsibilities
Design and lead the information security risk assessment strategy, methodology, and process
Coordinate enterprise-wide information security risk assessments and oversee risk treatment plans
Perform internal control reviews, gap assessments, and compliance documentation for regulations such as HIPAA, SOC 2, NIST, and ISO 27001
Manage risk and compliance resources for team execution
Develop and maintain security policies, standards, and procedures aligned with leading frameworks
Assess third-party risk and advise on risk acceptance/treatment in conjunction with vendor management processes
Deliver regular reporting on metrics, KPIs, risk posture, exceptions, remediation, and audit status
Provide approved responses to client inquiries and maintain a library of records, documentation, and responses
Ensure key security controls are identified, implemented, tested, and remediated as required
Evaluate and advise on security control recommendations to mitigate information security risks
Respond to security assessments, questionnaires, and audits from regulators, clients, and third-party business partners
Work directly with clients to provide advisory services and guidance to reduce organizational risk and improve security posture
Prepare reports and deliverables containing strategy, technical analysis, findings, and recommendations
Other duties as assigned
Qualification
Required
Bachelor's degree in Information Security, Information Systems, or a related field
Minimum 5+ years of management experience in Information Security, including operational security, risk management, IT, compliance, and audit
5+ years of experience specific to security risk management and compliance programs, processes, and execution
Certifications such as CISA (required), CISSP, CRISC, CISM, or other equivalents (preferred)
Strong analytical skills and excellent written and verbal communication skills, including presentation abilities
Understanding of industry and regulatory standards such as NIST 800-53, HIPAA Security Rule, ISO 2700x, AICPA SOC 2, PCI DSS, GDPR, and CCPA
Hands-on experience with GRC platforms and work management tools (e.g., Jira, Confluence)
Proven ability to operate independently, manage multiple priorities, and drive results in a deadline-driven environment
Expertise in areas such as cyber risk program management, security architecture, security technologies, data protection, third-party risk management, and cloud security
Preferred
Certifications such as CISSP, CRISC, CISM, or other equivalents
Benefits
Medical
Dental
Vision
401K contributions
PTO
Sick leave
Other benefits mandated by applicable state or localities where you reside or work
Company
PTR Global
Engage with the largest Latina-owned IT & Professional staffing provider in the U.S.
Funding
Current Stage
Growth StageCompany data provided by crunchbase