Role OverviewThe Global Cybersecurity Compliance Manager leads an international team of compliance, controls, and policy professionals within Global Security, providing people management, operational direction, and HR oversight. The role partners with NetApp Business Unit Leaders to communicate, verify, and track internal cybersecurity compliance with NetApp policies and standards, industry requirements, external certification controls, regulatory expectations, and customer-required controls.
What You Will Do
Lead control testing and compliance discussions, oversee the intake and completion of customer cybersecurity questionnaires, partner with business units to scope and validate control statements, and identify and escalate gaps in processes and control effectiveness.
Why It Might Be a Fit
The ideal candidate has demonstrated experience leading compliance, controls, policy, audit, or risk-management teams within a global security, cybersecurity, technology, or regulated enterprise environment, with a strong understanding of compliance and regulatory areas such as GDPR, DFARS/NIST 800-171, and ISO 27001.
Requirements
- Bachelor's degree in business, accounting, finance, computer science, information systems, engineering, or a related field
- At least five (5) years of GRC experience with methodologies, activities, tools, and enablers in a technology-related industry
- Demonstrated experience leading compliance, controls, policy, audit, or risk-management teams within a global security, cybersecurity, technology, or regulated enterprise environment
- Strong understanding of compliance and regulatory areas such as GDPR, DFARS/NIST 800-171, NIST 800-53, ISO 27001, DORA, and related risk events
Benefits
- Information security related training or certifications such as CISA, CISSP, or CRISC
- Prior experience directly managing senior individual contributors or specialized compliance professionals in a global cybersecurity, security governance, risk, compliance, controls, or policy function
- Experience building team operating models, improving team execution, developing talent, and translating business priorities into measurable team goals and outcomes
- Experience performing information security audits or risk assessments
- Familiarity with security audit, risk management, policy governance, controls management, and compliance operating models
]]>