Simplify Logo

Full-Time

Security GRC Manager

Confirmed live in the last 24 hours

Red Ventures

Red Ventures

1,001-5,000 employees

Digital media and services across sectors

Financial Services
Consumer Software
Education
Healthcare

Senior, Expert

Fort Mill, SC, USA

Hybrid position requiring in-office presence.

Category
Cybersecurity
IT & Security
Required Skills
Microsoft Azure
Communications
Management
AWS
Google Cloud Platform
Requirements
  • 5+ years of experience in technology audit, security risk management, and/or security compliance role, with at least 2-4 years implementing or auditing compliance with key cybersecurity standards (e.g., PCI DSS, ISO 27001, SOC2, etc.) in a cloud-first environment
  • Experienced with cloud infrastructure technologies and services (e.g., AWS, GCP, Azure) as well as various enterprise SaaS solutions
  • Functional knowledge of multiple security domains and information security industry standards and best practices
  • Experienced with the implementation and/or use of control automation and compliance tools
  • Effective in building relationships with organizational leaders and influencing senior management
  • Excellent organizational skills, proactive and self-sufficient with a proven ability to work independently to effectively prioritize and execute tasks
  • Drive, determination, and the ability to overcome roadblocks and initial objections
  • Strong project management skills
  • Ability to work collaboratively with multiple stakeholders across different backgrounds and skill sets
  • Strong written, verbal communication, and presentation skills.
  • BS/BA in a related field (e.g., Computer Science, MIS) desirable, or equivalent relevant experience
  • Security-related or cloud-related certifications such as CISA, CISSP, AWS Solutions Architect, etc. is a plus
Responsibilities
  • Lead and manage all aspects of applicable cybersecurity audits, such as scope definition/validation, audit readiness, walkthroughs, evidence collection, and liaising with external auditors
  • Drive adoption of relevant security compliance requirements through thorough analysis and prescriptive guidance
  • Define and lead security risk management process, leveraging automation and partnering with stakeholders to perform hands-on risk assessments
  • Oversee the policies and standards lifecycle process to ensure they address all relevant cybersecurity requirements
  • Define and lead cybersecurity awareness programs including annual training, topical awareness campaigns in partnership with corporate communications, and phishing simulations
  • Proactively identify compliance gaps through continuous monitoring, working closely with control owners to identify ways to effectively monitor compliance posture through automation
  • Document and report identified security or compliance issues and work with control owners on remediation requirements, strategy, and execution, providing recommendations that can be reasonably adopted
  • Regularly monitor remediation activities for noted findings, and escalate on remediation plans that are at-risk of being overdue
  • Develop and maintain security reporting to provide real-time and on-demand compliance status
  • Maintain an up-to-date understanding of emerging trends in information security risks; apply new techniques and trends, in-line with overall information security objectives
  • Establish partnerships with cross-functional teams such as IT, Legal, HR and Privacy to ensure they understand their roles when supporting the security GRC programs
  • Support the broader security team in establishing annual and long-term goals, objectives, metrics, and reporting mechanisms

Red Ventures connects people with information and resources across various sectors, including health, finance, travel, education, technology, and home services. The company provides high-quality content that helps consumers make informed decisions, such as in-depth health articles, travel advice, and simplified home financing through its digital mortgage brokerage. Red Ventures operates a home services marketplace in the UK, linking millions of consumers with essential services and savings. Its business model focuses on attracting a large audience through valuable content, which in turn generates revenue from advertising, affiliate marketing, and lead generation. Unlike its competitors, Red Ventures offers a diverse range of services and content, empowering users with guidance in areas like technology, mental health, and personal finance. The goal of Red Ventures is to be a trusted resource that helps individuals and businesses navigate their needs effectively.

Company Stage

Private

Total Funding

$250M

Headquarters

Fort Mill, South Carolina

Founded

2000

Growth & Insights
Headcount

6 month growth

-1%

1 year growth

-7%

2 year growth

-18%
Simplify Jobs

Simplify's Take

What believers are saying

  • Red Ventures' extensive reach and diverse offerings position it as a leader in the digital media and services industry, providing ample growth opportunities.
  • The company's involvement in impactful initiatives, such as the pediatric mental health center in Ukraine, highlights its commitment to social responsibility and community support.
  • Recent acquisitions and partnerships, like with HigherEducation.com and Optum, expand their market influence and service capabilities.

What critics are saying

  • Operating in highly competitive markets like digital media and financial services requires constant innovation to maintain a competitive edge.
  • The potential sale of key assets like CNET could lead to strategic shifts and uncertainty for employees.

What makes Red Ventures unique

  • Red Ventures operates across multiple sectors, providing a diverse range of high-quality content and services that attract a broad audience, unlike competitors who may focus on niche markets.
  • Their business model leverages advertising, affiliate marketing, and lead generation, creating multiple revenue streams and reducing dependency on a single source of income.
  • Strategic partnerships and acquisitions, such as with TIME for financial guidance and the launch of the Homebody Marketplace, enhance their market presence and service offerings.