160over90

Information Manager

160over90$131K — $175K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years in information governance and GRC/risk compliance, including 3+ years at lead/manager level.
  • Hands-on experience with Microsoft Purview and M365 information governance.
  • Experience with data classification and stewardship within Microsoft 365.
  • Knowledge of GRC and risk management frameworks, including control testing.
  • Familiarity with compliance regulations such as GDPR, CCPA/CPRA, PIPL, and SOX ITGC.
  • Expertise in third-party risk management, policy authoring, and audit engagements.
  • Bachelor's degree or equivalent experience; relevant certification (CISA, CIPP, etc.) required.

Responsibilities

  • Oversee information governance within the M365 ecosystem, focusing on SharePoint/OneDrive lifecycles and data stewardship.
  • Manage data classification aligned with data-tier security standards.
  • Administer the risk register and conduct independent control testing for compliance.
  • Perform third-party risk assessments, including ongoing monitoring.
  • Lead AI governance and policy development in conjunction with technology governance.
  • Draft and maintain cybersecurity and information policies while coordinating with external auditors and legal teams.
  • Operate the enterprise GRC platform and leverage the Purview toolset.

Benefits

  • Comprehensive health care coverage.
  • Retirement savings plans with company contributions.
  • Generous vacation and paid time off policies.
  • Access to growth and development opportunities.
  • Various employee benefits and incentives offered.
Full Job Description

POSITION SUMMARY

The Information Manager owns the organization’s information and data governance together with the security assurance program. On the information side, the role governs SharePoint and OneDrive content, retention and records, data classification and stewardship, and the Microsoft Purview control set. On the assurance side, it owns the risk register, control testing, compliance evidence, third-party risk, AI governance, and policy. A dotted line to Legal covers records, privacy, and disclosure obligations.

KEY RESPONSIBILITIES

  • Own information governance across the M365 estate — SharePoint/OneDrive content lifecycle, retention and records management, sensitivity classification, and stewardship — operated through Microsoft Purview.
  • Own data classification and stewardship across the estate, aligned to the data-tier security standard.
  • Own the risk register, control testing, and compliance evidence; independently test and attest control effectiveness.
  • Run third-party and supply-chain risk (TPRM) — assessments, tiering, and ongoing monitoring.
  • Own AI governance and emerging-tech policy in coordination with the technology-governance function.
  • Author and maintain cybersecurity and information policy; liaise with external auditors and Legal.
  • Own and operate the enterprise GRC platform and the Purview toolset.

FUNCTIONS OWNED

GRC, Risk & Compliance Third-Party & Supply-Chain Risk AI Governance & Emerging Tech Information & Data Governance (M365 / Purview) (supports Governance, Policy & Awareness and Data Protection & Data-Tier Security)

REQUIRED QUALIFICATIONS

  • 8+ years spanning information governance and GRC / risk & compliance, including 3+ years at a lead or manager level.
  • Hands-on Microsoft Purview (DLP, retention, sensitivity labels, records management) and M365 information governance.
  • Data classification and stewardship across a Microsoft 365 estate.
  • GRC and risk-management frameworks; risk treatment and independent control testing.
  • Compliance literacy across GDPR, CCPA/CPRA, PIPL, and SOX ITGC.
  • Third-party risk management, policy authoring, and audit liaison experience.
  • Bachelor’s degree or equivalent experience; a relevant certification (CISA, CIPP, CRISC, IGP, or IAPP) required.

PREFERRED QUALIFICATIONS

  • Prior ownership of a Purview or M365 information-governance rollout.
  • Experience standing up or running a GRC platform.
  • Collaboration with a legal, records-management, or privacy office.

Per local requirements and in the interest of transparency, the rate shown below reflects the prevalent current hiring range for this position. Hiring pay rates are based on a number of factors, including location and may vary depending on job-related qualifications, knowledge, skills and experience. The company strives to provide locally competitive rewards packages, which include base rate along with, as applicable, short- and long-term incentives, growth and developmental opportunities, and robust benefits, such as health care, retirement, vacation and other paid time off, and additional offerings.

Hiring Rate Minimum:

$131,250 annually (minimum will not fall below the applicable state/local minimum salary thresholds)

Hiring Rate Maximum:

$175,000 annually

About 160over90

160over90 is a branding and marketing agency that provides consulting services to clients in various industries including higher education, sports, and entertainment. The company was founded in 2001 and is headquartered in Philadelphia, Pennsylvania. 160over90 offers a wide range of services including brand strategy, advertising, digital marketing, and creative design. The company has worked with many high-profile clients such as Nike, Ferrari, and the University of Notre Dame. 160over90 is committed to delivering innovative and effective solutions to its clients.
Learn more about 160over90
Size
500 employees
Industry

Similar Jobs

More Jobs at 160over90

More Information Technology Jobs

Find similar Information Manager jobs: