Full-Time

Manager - Information Security Risk Management

Posted on 9/18/2025

Hearst

Hearst

5,001-10,000 employees

Global media and information services conglomerate

Compensation Overview

$135k - $150k/yr

Charlotte, NC, USA + 1 more

More locations: New York, NY, USA

In Person

Category
IT & Security (1)
Required Skills
Agile
Risk Management
Requirements
  • Bachelor's Degree in Information Technology, Computer Science, or equivalent.
Responsibilities
  • Perform security risk reviews, risk assessments and gap assessments on key business processes and new and existing technologies. Subsequently, work with various business units, as needed, to ensure controls are adequate, appropriate, and effective and that mitigation and remediation plans are in place.
  • Maintain the IT risk register and risk dashboard keeping risks, and their response plans up to date; will be required to work with cross-functional teams and businesses.
  • Prepare detailed recurring risk management reports with associated metrics.
  • Support the implementation of a risk program including enhancing processes supporting accountability, exception requests, and overall risk reduction in accordance with NIST and COBIT Cybersecurity frameworks.
  • Support vendor due-diligence process and help define overall third-party risk management efforts.
  • Support risk-focused governance entities such as forums and steering committees.
  • Support internal and external audit processes for relevant compliance areas including NIST CSF, NIST 800-53, PCI-DSS, HIPAA, SOX, and other external and internal requirements.
  • Support key capabilities and processes across the GRC function in support of the Hearst Information Security Office using an Agile methodology approach to delivering work products and key services.
  • Work collaboratively with regional and global partners in other functional units; ability to navigate a complex organization; to influence and lead people across cultures at a senior level. Collaboratively interface with global IT and business partners to provide guidance and support.
  • Design and implement improvements in risk-related documentation.
  • Other related duties as assigned.
Desired Qualifications
  • Experience with IT governance, risk, and compliance management in a large global environment, while working with geographically dispersed, multidisciplinary teams.
  • Experience conducting risk assessments and managing risk across departments and functions.
  • Strong foundation in PCI and HIPAA compliance requirements and testing.
  • Familiarity with an integrated risk management platform.
  • Familiarity with security frameworks, particularly NIST and COBIT Cybersecurity Frameworks and Health Information Trust Alliance HITRUST.
  • Basic understanding and knowledge of technical fundamentals such as networking concepts, cloud computing, application development, and security best practices.
  • Proficiency with Word, Excel, PowerPoint, JIRA, SharePoint.
  • Experience with GRC and risk management platforms such as Prevalent and TruOps is desired.
  • Industry standard certification such as CISA, CRISC, CISM, ARM, CISSP, ISO 27001, ISO 27005 is desired.

Hearst is a global, diversified media, information, and services group with magazines, newspapers, TV and radio stations, and business information companies. It earns revenue from advertising, subscriptions, and selling information services, delivering content across print, broadcast, and digital platforms, including Fitch Ratings for credit ratings and research. Its mix of traditional media brands with specialized data and analytics services sets it apart from firms that focus on a single area. Its goal is to be a leading worldwide provider of trusted media content and data-driven information services for individual consumers and business customers.

Company Size

5,001-10,000

Company Stage

N/A

Total Funding

N/A

Headquarters

New York City, New York

Founded

1887

Simplify Jobs

Simplify's Take

What believers are saying

  • Acquired MotorTrend Group expanding automotive content.
  • $200M AI investment automates content and analytics.
  • HearstLab funds women-led tech like PartySlate.

What critics are saying

  • SEC fines Fitch Ratings eroding market share March 2026.
  • Print ad collapse forces Cosmopolitan asset sales Feb 2026.
  • DOJ antitrust lawsuit mandates First Databank divestitures Oct 2025.

What makes Hearst unique

  • Owns Fitch Ratings as global credit ratings leader.
  • B2B services generate over 50% profits in 2024.
  • Controls 33 TV stations reaching 19% U.S. viewers.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

401(k) Company Match

Paid Time Off

Paid Parental Leave

Emotional Wellness Support

Company News

Quiver Quantitative
Aug 27th, 2025
DallasNews Board Supports $15 Hearst Merger

DallasNews Corporation's Board rejected MNG Enterprises' proposal to acquire the company at $18.50 per share, reaffirming support for a merger with Hearst at $15 per share. Despite the higher offer from MNG, the Board, with backing from key stakeholder Robert W. Decherd, determined it was not superior. The Hearst deal represents a 242% premium over previous stock prices. Decherd controls over 96% of voting power, ensuring alignment for the Hearst merger.

Investors Hangout
Aug 4th, 2025
DallasNews Proposes $15/Share Hearst Merger

DallasNews Corporation (Nasdaq: DALN) has filed a preliminary proxy statement for a proposed merger with Hearst, offering shareholders $15.00 per share in cash, a 242% premium over the current stock price of $4.39. Robert W. Decherd, the majority shareholder, supports the merger, complicating a competing proposal from Alden Global Capital. The merger requires two-thirds approval from Series A and B stockholders and aims to maximize shareholder value.

The Business Journals
Feb 19th, 2025
Hearst to acquire Austin American-Statesman from Gannett

The community paper will be purchased by the owner of other news outlets such as the Houston Chronicle and San Antonio Express-News.

GM Authority
Dec 13th, 2024
Hearst Acquires MotorTrend Group

MotorTrend Group is now under the Hearst Autos umbrella alongside Car and Driver, Road & Track, Autoweek, and Bring a Trailer.

Hearst
Dec 8th, 2023
Hearst Newspapers Acquires Puzzle Games Platform Puzzmo - Hearst Newspapers Acquires Puzzle Games Platform Puzzmo | Hearst

NEWS Hearst Newspapers Acquires Puzzle Games Platform Puzzmo PUBLISHED ON 12.04.2023 NEW YORK, December 4,...

INACTIVE