Manager, Governance, Risk & Compliance

Plains All American Pipeline, L.P.

$100K — $130K *
Finance & Insurance
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Minimum 6 years of experience in a GRC leadership role.
  • Bachelor's degree in a related field or equivalent experience.
  • Relevant certifications like CISA, CRISC, and CISSP preferred.
  • Strong analytical, problem-solving, and interpersonal skills.
  • Proficient in GRC Platforms and project management methodologies.
  • Expertise in cybersecurity regulations and risk management frameworks.
  • Background check clearance for work in secure environments.

Responsibilities

  • Lead development and implementation of GRC strategies and policies.
  • Conduct risk assessments and regular compliance audits.
  • Manage third-party risks to ensure organizational integrity.
  • Create frameworks aligning with regulatory standards.
  • Ensure compliance with internal audit policies and regulations.

Benefits

  • Top-tier benefits program promoting employee safety and wellness.
  • Flexibility for personal and family time.
  • Recognition for hard work through competitive compensation.
  • Supportive work culture valuing employee contributions.
Full Job Description
Job Type:
Regular

The Manager, GRC is responsible for overseeing the Governance, Risk, and Compliance (GRC) functions within the organization. This role involves developing and implementing strategies, policies, and standards to ensure that the organization adheres to regulatory requirements and internal audit policies.

Job Responsibilities
  • Function/Capability: The primary function of the GRC Manager is to lead, develop, and implement GRC strategies, policies, and standards managing risks to an acceptable level of organization for IT/OT environments. This includes creating frameworks and guidelines that align with the organization's objectives, regulatory standards, and internal audit requirements. In addition to managing Third Party Risks.
  • Accountability/Tasks: The GRC Manager is accountable for leading a team ensuring compliance with regulatory requirements and internal audit policies. This involves conducting risk assessments, regular audits, and applying appropriate risk treatment to ensure that the organization remains compliant.


Knowledge, Skills, and Experience Required
  • Years of direct experience: The GRC Manager should have a minimum of +6 years of experience in a similar GRC functional leader role. This experience should include managing GRC functions, working across teams, and implementing compliance programs.
  • Education, combination of experience, thereof: A Bachelor's degree in a related field or equivalent experience is required. This educational background should reflect a strong foundation in governance, risk management, and compliance principles.
  • Credentials and designations: Relevant certifications such as CISA, CRISC, CGEIT, AAIA, and CISSP are highly desirable. These credentials demonstrate a deep understanding of the aggregate GRC practices and a commitment to ongoing professional development.
  • Core competencies and skills required: The GRC Manager should possess strong people, analytical and problem-solving skills. Excellent communicator and interpersonal skills, and the ability to work effectively with cross-functional teams. These competencies are essential for identifying risks, developing risk treatment strategies, and ensuring compliance. In addition, the GRC manager should be open to evolving their skillset as industry regulations change.
  • Working knowledge of GRC Platforms (Workiva, Archer, etc.); working knowledge of program/project management/audit Methodologies/Platforms, working knowledge of MTSA/TSA/CER regulatory tracking and pipeline common carrier cyber and risk management regulations: Proficiency in GRC and tracking in Microsoft Excel, project management, and GRC software is required. Familiarity with the organization's core energy software applications is also important for effectively managing GRC functions.
  • Expert Understanding of the following IT/OT cybersecurity regulations and/or risk management frameworks: IEC 62443, NIST CSF 2.0, NIST 800-53, NIST 800-82, NIST 800-37, NIST AI 100-1, MTSA, CER, TSA, VADR, and Coast Guard (preferred).
  • Cleared criminal history (background) and satisfactory reference checks: Government intelligence clearance or previous experience working in a secure, classified environment(s).


#Plains

At Plains, our employees are our most valuable asset. Hard work is rewarded with competitive compensation and a top-tier benefits program designed to keep our employees safe, healthy and happy. We work hard to deliver the best results to our stakeholders, and we also respect our employees' need for personal and family time, which is reflected in our benefits program.

Salary details estimated by job boards such as Indeed, Glassdoor, and LinkedIn do not represent Plains' compensation structure. We thank all candidates for their interest; however, only those selected for an interview will be contacted.

By submitting your resume, you consent to the collection, use and necessary disclosure of the personal information provided during the application and selection process. Learn more.

Similar Jobs

More Jobs at Plains All American Pipeline, L.P.

More Finance & Insurance Jobs

Find similar Manager, Governance, Risk & Compliance jobs: