Full-Time

Cybersecurity Governance – And Compliance Lead

Risk

Confirmed live in the last 24 hours

Saronic

Saronic

51-200 employees

Develops advanced autonomous surface vessels

Defense

Senior

Austin, TX, USA

Position requires onsite presence in Austin, Texas.

Category
Cybersecurity
IT & Security
Requirements
  • Bachelor's degree in IT, Security or equivalent experience
  • 5+ years experience in Cybersecurity GRC, preferably in the technology or defense industry.
  • Strong time management skills, with the ability to multitask and meet tight deadlines.
  • Excellent communication and interpersonal skills, including experience engaging with executive leadership.
  • Attention to detail and a commitment to quality.
  • Proficiency in Cybersecurity GRC software and tools.
Responsibilities
  • Develop, implement, and maintain cybersecurity policies, procedures, and standards that align with industry best practices and regulatory requirements.
  • Establish and maintain cybersecurity governance frameworks to ensure accountability and effective oversight across the organization.
  • Collaborate with key stakeholders, including IT, legal, and business leaders, to ensure policies are communicated and enforced organization wide.
  • Lead the cybersecurity risk management program by identifying, assessing, and prioritizing risks to the organization’s assets and operations.
  • Perform risk assessments to evaluate the organization’s risk exposure, including potential vulnerabilities, threats, and the impact of non-compliance with security regulations.
  • Develop risk mitigation strategies and recommend controls to reduce or eliminate cybersecurity risks.
  • Ensure compliance with regulatory requirements such as NIST 800-171, NIST 800-53, CMMC, ISO 27001, ITAR, EAR, GDPR, and other applicable frameworks.
  • Monitor and manage internal and external cybersecurity audits, ensuring that the organization addresses audit findings and implements corrective actions.
  • Track changes in relevant laws, regulations, and industry standards to ensure the organization’s cybersecurity posture remains compliant.
  • Lead and coordinate internal and external audits, including readiness assessments, vulnerability assessments, and certification processes.
  • Work closely with external auditors and consultants to ensure successful audit outcomes and remediate any findings or gaps identified.
  • Regularly assess the effectiveness of security controls and make recommendations for improvements.
  • Collaborate with the incident response team to ensure that governance and compliance aspects are integrated into the response process.
  • Ensure that all cybersecurity incidents are reported accurately and in compliance with regulatory requirements.
  • Assist in root cause analysis of incidents and ensure proper documentation and follow-up actions are completed.
  • Develop and manage cybersecurity awareness programs to educate employees on the importance of GRC and their role in maintaining compliance.
  • Conduct regular training sessions on cybersecurity policies, data protection regulations, and risk management best practices.
  • Ensure that leadership and relevant teams are educated on regulatory requirements and the organization’s risk posture.
  • Manage the cybersecurity aspects of the third-party risk management program, ensuring that vendors and partners comply with the organization’s security and privacy standards.
  • Conduct security assessments of third-party vendors and partners to identify and mitigate potential risks to the organization.
  • Review contracts and security agreements to ensure third-party compliance with relevant cybersecurity regulations.
  • Develop and track key performance indicators (KPIs) and metrics related to cybersecurity governance, risk, and compliance.
  • Provide regular reports to senior leadership on the organization’s risk posture, compliance status, and any emerging threats.
  • Present audit findings, compliance gaps, and risk management updates to stakeholders in a clear and actionable format.
  • Work closely with IT, legal, HR, and other business units to align cybersecurity initiatives with broader organizational goals.
  • Collaborate with external regulatory bodies and industry partners to stay informed of emerging trends and requirements in cybersecurity GRC.
  • Act as a subject matter expert (SME) for cybersecurity governance, risk management, and compliance across the organization.

Saronic Technologies develops Autonomous Surface Vessels (ASVs) that improve the capabilities of naval and maritime forces. These vessels use adaptive path planning and passive sensors, along with advanced algorithms and edge computing, to effectively identify and track targets. They are designed to operate in challenging environments, utilizing resilient multichannel communications to support both manned and unmanned operations. Saronic Technologies focuses on military and defense clients, aiming to enhance situational awareness, extend operational reach, and improve survivability during maritime missions. Unlike competitors, Saronic's ASVs can integrate with existing operational strategies or support new maritime tactics. The company's goal is to provide effective solutions that meet specific mission needs through the sale of ASVs and related customization services.

Company Stage

Series B

Total Funding

$223.7M

Headquarters

Austin, Texas

Founded

2022

Growth & Insights
Headcount

6 month growth

101%

1 year growth

205%

2 year growth

269%
Simplify Jobs

Simplify's Take

What believers are saying

  • The recent $175M Series B funding round, led by prominent investors like Andreessen Horowitz, positions Saronic for rapid growth and innovation.
  • Saronic's valuation at $1 billion reflects strong market confidence and potential for significant returns.
  • The company's advanced ASVs, such as Spyglass and Cutlass, are designed to enhance naval capabilities while reducing risks to human life.

What critics are saying

  • The highly specialized nature of Saronic's products may limit its market to defense sectors, potentially constraining growth opportunities.
  • Dependence on government contracts and defense budgets can introduce financial volatility and uncertainty.

What makes Saronic unique

  • Saronic specializes in autonomous surface vessels (ASVs) for defense missions, a niche market with high barriers to entry.
  • Their focus on integrating ASVs with existing naval fleets offers a unique value proposition compared to competitors who may not prioritize seamless integration.
  • The company's ability to deliver naval power without the costs and delays of traditional shipyards sets it apart in the defense sector.

Help us improve and share your feedback! Did you find this helpful?