ABB Ltd

InfoSec GRC - Senior Manager

ABB Ltd$130K — $155K *
Cary, NC 27513In-Person
Information Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's or Master's in IT, Computer Science, or related field.
  • 15+ years in Information Security; 10+ years in leadership roles.
  • Proven security governance and risk management experience.
  • Strong familiarity with ISO 2700x, NIST 800-53, and CMMC frameworks.
  • Experience with compliance-as-a-service operations.
  • Exceptional leadership and relationship-building skills.
  • Required certifications (CISSP, CISM, etc.) and prior project management experience.

Responsibilities

  • Act as service owner and transition to operationalized compliance services.
  • Design and oversee Governance frameworks across various teams.
  • Maintain a Security & Compliance dashboard for risk metrics.
  • Govern project design ensuring 'security by design' principles.
  • Implement security controls across divisions and countries.
  • Align security services with Corporate IS Security Roadmap.
  • Drive continuous improvement and manage audit findings.

Benefits

  • Choice between medical and dental plan options.
  • Company-paid life and disability insurance.
  • Paid parental leave and employee assistance programs.
  • 401k plan with company contributions.
  • Employee stock acquisition plan and discounts.
  • Generous paid time off including 11 holidays.
Full Job Description
This position reports to:
Head of IS Security, Risk and Compliance

Your role and responsibilities

In this role, you will have the opportunity to establish and maintain operational methods, service compliance, and procedures. Each day, you will be responsible for planning, design, implementation and continuous improvement within governance, compliance, assurance, and/or risk. You will also showcase your expertise by guiding, advising, or supporting in all operational aspects, including document management and systems and procedures analysis.

The work model for the role is: #LI-hybrid

This role is contributing to the Electrification Business Area division in Cary, NC.

You will be mainly accountable for:
  • Act as service owner and transition from one-time certification to a sustainable, operationalized compliance service with ongoing control ownership, evidence management, assurance reporting, and remediation processes for US and North America operations.
  • Design and oversee multi-layered Governance frameworks across EL Security, Risk & Compliance teams and with all relevant stakeholders in business, division and country IS teams.
  • Maintain a Security & Compliance dashboard aggregating risk metrics from global and local security services, govern risk assessments, and ensure periodic control attestations and compliance monitoring.
  • Govern the EL security project design, development, and delivery aligned with risk-driven guidance, ensuring "security by design" across all EL Information Systems projects
  • Oversee implementation of security controls across EL and EL assets in countries and divisions.
  • Contribute to EL IS SRC Roadmap development, align security services with Corporate IS Security Roadmap, and provide periodic security posture reports to senior leadership
  • Establish risk-focused metrics for security service delivery and project execution, maintain internal policies/standards aligned with ABB regulations
  • Facilitate multi-country compliance with EL IS compliance team, external audits, and vendor engagement across EL.
  • Drive continuous improvement of security services, implement security awareness campaigns, and address issues from audit findings.


Qualifications for the role
  • Bachelor's or Master's degree in Information Technology, Computer Science, Software Engineering or a related qualification, and/or demonstrated capability through past employment
    experience.
  • 15+ years of Information Security experience with at least 10 years in leading governance, risk, projects, and communications
  • Strong experience in security governance and risk from design, launch and maintenance.
  • Strong experience in common information security management frameworks, such as International Standards Organization (ISO) 2700x, National Institute of Standards and Technology (NIST) 800-53, Cybersecurity Maturity Model Certification (CMMC).
  • Experience defining and running compliance-as-a-service capabilities, including CMMC post-certification operations, assurance reporting, control evidence management, remediation governance, and stakeholder enablement across US business areas.
  • Excellent leadership skills to manage and motivate distributed teams, experience in building strong relationships with internal and external stakeholders.
  • Strong knowledge of the following areas of technical expertise: information security management and governance, IT risk assessment and management, IT Audit, the overall context of business processes and IS technologies.
  • Related Project Management experience.
  • Security Certification (CISSP, CISM, CRISC, etc.) and/or Auditor certifications (ISO 27001 auditor, CISA etc.) is mandatory.
  • Excellent written and verbal communication skills, and ability to present complex and technical issues to diverse audiences including senior management.
  • Candidate must already have work authorization to work in the US.


What's in it for you

We want you to bring your full self to work-your ideas, your energy, your ambition. You'll have the tools and freedom to grow your skills, shape your path, and take on challenges that matter. Here, your work creates impact you can see and feel, every day.

ABB Benefit Summary for eligible US employees

[excludes ABB E-mobility, Athens union, Puerto Rico]

Go to MyBenefitsABB.com and click on "Candidate/Guest" to learn more

Health, Life & Disability
  • Choice between two medical plan options: A PPO plan called the Copay Plan OR a High Deductible Health Plan (with a Health Savings Account) called the High Deductible Plan.
  • Choice between two dental plan options: Core and Core Plus.
  • Vision benefit.
  • Company paid life insurance (2X base pay).
  • Company paid AD&D (1X base pay).
  • Voluntary life and AD&D - 100% employee paid up to maximums.
  • Short Term Disability - up to 26 weeks - Company paid.
  • Long Term Disability - 60% of pay - Company paid. Ability to "buy-up" to 66 2/3% of pay.
  • Supplemental benefits - 100% employee paid (Accident insurance, hospital indemnity, critical illness, pet insurance.
  • Paid Parental Leave.
  • Employee Assistance Program.
  • Health Advocate support resources for mental/behavioral health, general health navigation and virtual health, and infertility/adoption.
  • Employee discount program.


Retirement
  • 401k Savings Plan with Company Contributions.
  • Employee Stock Acquisition Plan (ESAP).


Time off

ABB provides 11 paid holidays. Salaried exempt positions are provided vacation under a permissive time away policy.

Building a cleaner, smarter future takes all kinds of minds: the curious, the courageous, and the creative. That's why we welcome people from all backgrounds and experiences.

Ready to make an impact?

Apply today or visit https://www.abb.com to learn more about the impact of our solutions across the globe.

About ABB Ltd

ABB Ltd is a Swiss multinational corporation that specializes in electrical equipment. The company was founded in 1988 and is headquartered in Zurich, Switzerland. ABB operates in a variety of industries, including power generation, transmission, and distribution, as well as automation and robotics. The company's products and services are used in a range of applications, from electric vehicles to renewable energy systems. ABB has a global presence, with operations in more than 100 countries. The company is committed to sustainability and has set ambitious targets for reducing its environmental impact.
Learn more about ABB Ltd
Size
104,400 employees
Market Cap
$59.8 billion
Industry
Net Income
$5.1 billion
Founded
1988
5 Year Trend
+3%
Revenue
$26.1 billion
NASDAQ

Similar Jobs

More Jobs at ABB Ltd

More Information Technology Jobs

Find similar InfoSec GRC - Senior Manager jobs: