Blitzy: Autonomous AI platform for enterprise software development.
Hands-on ownership of SOC 2 Type II or ISO 27001:2022 audits, Vanta or equivalent GRC platform experience, auditor/vendor management, FedRAMP exposure preferred, strong written and judgment skills.
Sr. Technical Program Manager, Cybersecurity Remediation
Cambridge, Massachusetts, United States
$146k-$234k/yrHybridFull Time
ModernaNasdaq: MRNA: Develops and manufactures messenger RNA medicines and vaccines.
8+ YOE8+ years technical program or cybersecurity program management experience; experience leading cross-functional remediation programs, vulnerability management, incident/audit remediation, metrics and executive reporting.
vulnerability management platforms, GRC tools, NIST, ISO 27001, CIS
Hartford or Irving or Scottsdale or Woonsocket or Northbrook
$66k-$146k/yrHybridFull Time
CVS HealthNYSE: CVS: Provides retail pharmacy, health insurance, and pharmacy benefit management services.
5+ YOE5+ years in SOX, internal audit, finance, risk or program management; advanced Excel and PowerPoint; strong analytics and reporting; ability to build dashboards, KPIs, and executive-level presentations; bachelor’s degree or equivalent.
Microsoft PowerPoint, Microsoft Excel, Optro, GRC, Microsoft Power BI, Tableau, Alteryx
United States or Canada or Fort Collins or New York City or Framingham
$120k-$175k/yrRemoteFull Time
Landline: Providing seamless ground transportation connections for airline networks.
5+ YOERequires 5+ years in IT compliance, information security, audit, or governance, including 2+ years owning a control or audit program; framework, GRC platform, MSP oversight, and core IT control experience required.
Alnylam PharmaceuticalsNASDAQ: ALNY: Develops RNAi therapeutics to treat rare and common diseases.
15+ YOE10+ Mgmt15+ years in cybersecurity/risk/compliance, 10+ years leading GRC teams; Bachelor’s in a relevant field required; strong knowledge of NIST, ISO, ERM; CISSP/CISM/CRISC/CISA preferred.
NIST CSF v2.0, NIST 800-53, ISO 27001, ERM, GxP, HIPAA, SOX, FDA, Computer System Validation (CSV), NIS2, IT SDLC
National GridLondon Stock Exchange: NG: Operates electricity and natural gas transmission and distribution networks.
5+ YOE5+ years in risk management; experience across 3 Lines Model; ERM initiatives; leadership reporting; bachelor’s in risk/finance/business; professional certifications listed
BJ's Wholesale ClubNYSE: BJ: Membership warehouse club selling groceries and general merchandise.
10+ YOE3+ MgmtBachelor's in a related field, 10+ years in IT risk/compliance with 3+ years of people leadership, deep SOX ITGC and PCI DSS experience, executive communication, GRC platform and AI/automation familiarity; relevant certifications preferred.
AlnylamNasdaq: ALNY: Developing and commercializing RNA interference (RNAi) therapeutics for diseases.
15+ YOE10+ MgmtBachelor's degree in a relevant field, 15+ years in cybersecurity/risk/compliance or audit, 10+ years leading GRC or risk teams, deep knowledge of NIST CSF, NIST 800-53, ISO 27001 and ERM; industry certifications (CISSP, CISM, CRISC, CISA) preferred.
NIST CSF v2.0, NIST 800-53, ISO 27001, Enterprise Risk Management (ERM), Computer System Validation (CSV), NIS2, GxP