Garmin

Manager Cyber Security (ESCR/GRC for Cyber)

Garmin$100K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in Management Information Systems, Computer Science, or relevant technical field
  • Minimum of 7 years relevant experience in cybersecurity
  • At least 2 years of leadership experience
  • Strong understanding of cybersecurity principles and industry practices
  • Experience managing budgets and vendor relationships
  • Excellent communication skills for executive stakeholder engagement
  • Deep knowledge of compliance and regulatory frameworks

Responsibilities

  • Lead the Cyber and IT Compliance team in executing compliance programs
  • Maintain the enterprise cybersecurity policy framework and control library
  • Oversee compliance management across regulatory frameworks like NIST CSF and SOC 2
  • Manage internal and external audit relationships and track remediation
  • Collaborate with business units on regulatory compliance and data protection
  • Develop metrics and reporting for leadership and board-level audiences
  • Support the annual Cyber insurance renewal process

Benefits

  • Eligibility for Garmin's benefit program
  • Comprehensive health insurance
  • Retirement savings plans
  • Flexible work environment
  • Professional development opportunities
  • Work-life balance initiatives
Full Job Description
Overview

We are seeking a full-time Manager Cyber Security at Garmin's U.S. headquarters in the Greater Kansas City area. In this role, you will be responsible for eading the team responsible for developing and maintaining the organization's cybersecurity policy framework, supporting GRC program execution and ensuring compliance with applicable regulatory and contractual requirements. This role serves as a key interface between the cybersecurity organization, Internal Audit, Legal, and business stakeholders on matters of security governance and compliance.

Essential Functions
  • Lead the Cyber and IT Compliance team in executing the cybersecurity compliance and assurance program
  • Own and maintain the enterprise cybersecurity policy framework, standards, and control library
  • Oversee compliance program management across applicable regulatory frameworks (e.g., NIST CSF, PCI DSS, TISAX, SOC 2, ISO 27001)
  • Manage internal and external audit relationships, including evidence preparation and audit remediation tracking
  • Partner with business segments, Legal, HR, and Privacy teams on matters involving regulatory compliance, data protection, and associate security obligations
  • Develop and maintain IT and Security Compliance program metrics and reporting for leadership and board-level audiences
  • Leading the ECSR program
  • Supporting the annual Board of Directors risk presentation content
  • Support the annual KMPG NIST CSF Assessment with the ITSEC Compliance team
  • Support the annual Cyber insurance renewal process with the ITSEC Compliance team
  • Take a leading role and key contributor in the emerging Cyber AI Strategy initiative
  • Take a leadership role in overseeing Cyber Architecture Review Board and process integration with TPRM, AI Governance and IT Architecture Review Board
  • Key contributor and Cyber governance delegate in monthly Legal/Regulatory meeting
  • Shadow and support Compliance as it relates to ECSR priorities and preparation for meetings

Basic Qualifications
  • Bachelor's Degree in Management Information Systems, Computer Science, or another technical related field AND a minimum of 7 years of relevant experience in cyber security AND a minimum of 2 years of leadership experience
  • Demonstrated ability to manage, develop, and retain technical PM's
  • Strong understanding of cybersecurity principles, frameworks, and industry practices
  • Experience managing budgets, vendor relationships, and resource planning
  • Excellent written and verbal communication skills, including the ability to convey technical requirements and trade-offs to executive and board-level stakeholders, with strong influencing and stakeholder management skills
  • Deep knowledge of multiple compliance and regulatory frameworks
  • Experience managing relationships with external auditors, regulators, and business stakeholders
  • Familiarity with GRC platforms

Desired Qualifications
  • Relevant certifications (e.g., CISM, CRISC, CISA, CISSP)


This position is eligible for Garmin's benefit program. Details can be found here: Garmin Benefits

About Garmin

Garmin Ltd. is an American multinational technology company founded in 1989 by Gary Burrell and Min Kao in Lenexa, Kansas. The company specializes in GPS technology for automotive, aviation, marine, outdoor, and sport activities. Garmin's products serve aviation, marine, automotive, wireless, outdoor recreation, and fitness markets. The company's goal is to create navigation and communication devices that can enrich customers' lives. Garmin has offices in the United States, Europe, and Asia. The company's products are sold in over 100 countries.
Learn more about Garmin
Size
18,700 employees
Market Cap
$17.5 billion
Industry
Net Income
$992.3 million
Founded
1989
5 Year Trend
+10.3%
Revenue
$4.1 billion
NASDAQ

Similar Jobs

More Jobs at Garmin

More Information Technology Jobs

Find similar Manager Cyber Security (ESCR/GRC for Cyber) jobs: