Manager, Information Security Governance and Compliance

EchoStar Corporation

• $110K — $157K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in Cybersecurity GRC, with 2 years in a management position.
  • Proven leadership ability in guiding compliance teams toward operational excellence.
  • Strong communication skills for translating risk management issues to non-technical stakeholders.
  • Expertise in regulatory frameworks, particularly PCI-DSS and NYDFS compliance.
  • Experience with policy governance models and audit defense in regulated environments.
  • Familiarity with NIST CSF or CIS Controls frameworks, and relevant certifications like CISM, CISA, or CRISC.

Responsibilities

  • Facilitate operational alignment between engineering and business teams to enhance GRC practices.
  • Lead a GRC team in achieving departmental goals and maintaining high operational standards.
  • Oversee audit processes and ensure compliance across various regulatory frameworks.
  • Manage the lifecycle of enterprise policies and adapt to evolving regulatory changes.
  • Implement security awareness programs aimed at educating high-risk personnel on compliance issues.
  • Collaborate with security leaders to integrate AI-driven workflows into compliance tasks.

Benefits

  • Flexible health perks including HSA and flexible spending accounts.
  • 401(k) Plan with company match to support retirement savings.
  • Employee Stock Purchase Plan (ESPP) participation.
  • Career advancement opportunities.
Full Job Description
Job Duties and Responsibilities

Candidates must be willing to participate in at least one in-person interview.

This role resolves operational friction between technical engineering units and business leadership by establishing an accountable, people-focused GRC team. The position eliminates organizational silos and misaligned priorities by facilitating collaborative diplomacy and translating complex compliance mandates into practical operational workflows. Additionally, the role prevents regulatory exposure and compliance drift across frameworks like PCI-DSS and NYDFS through proactive audit leadership, structured policy governance, and targeted workforce education.

What Success Looks Like (Objectives)
  • Mentor, develop, and lead a dedicated team of GRC professionals to achieve departmental OKRs and sustain operational excellence.
  • Direct the team in executing continuous monitoring and annual certification lifecycles for PCI-DSS, NYDFS, CCPA, and emerging statutory standards.
  • Serve as the primary escalation leader for audit oversight, driving remediation accountability across cross-functional engineering and operational units.
  • Oversee the enterprise policy lifecycle and formal exceptions architecture, ensuring controls reflect changing regulatory requirements and threat vectors.
  • Guide the deployment of an enterprise-wide security awareness initiative and specialized training tracks tailored to high-risk roles.
  • Partner with peer security leaders to introduce AI-first governance workflows that automate routine compliance tasks and increase team productivity.

Skills, Experience and Requirements

Core Skills and Competencies (What You'll Bring)
  • Proven people leadership skills to coach compliance professionals, foster accountability, and guide career development.
  • Collaborative diplomacy, exceptional written communication, and executive presence to translate complex risk topics into clear business decisions for non-technical stakeholders.
  • Strong functional expertise in regulatory framework governance, statutory compliance management, and formal audit defense.
  • Demonstrated ability to build policy governance models, evaluate horizon regulatory changes, and implement scalable exception workflows.
  • AI Application skills to direct team adoption of AI-enabled compliance tools and automated governance workflows.
  • Critical experience leading GRC teams through complex audits and regulatory oversight within large-scale or highly regulated environments.

Additional Qualifications
  • Familiarity with NIST CSF or CIS Controls frameworks
  • Active professional certifications such as CISM, CISA, or CRISC
  • Background in telecommunications or high-growth technology environments

Minimum Requirements
  • Minimum Education: Bachelor's degree in a related field
  • Minimum Experience: 6 years of experience in Cybersecurity GRC, including at least 2 years in a management or lead capacity within a large-scale or regulated environment
  • Required Technical Skills: Must have at least 3 years of direct experience with:
    • PCI-DSS audit and certification execution
    • NYDFS compliance implementation
    • Cybersecurity risk management and governance framework administration

Visa sponsorship is not available for this role.

Salary Ranges

Compensation: $110,100.00/Year - $157,300.00/Year
Benefits

We offer versatile health perks, including flexible spending accounts, HSA, a 401(k) Plan with company match, ESPP, career opportunities, and a flexible time away plan; all benefits can be viewed here: EchoStar Benefits.

The base pay range shown is a guideline. Individual total compensation will vary based on factors such as qualifications, skill level, and competencies; compensation is based on the role's location and is subject to change based on work location.

Candidates need to successfully complete a pre-employment screen, which may include a drug test and DMV check. Our company is committed to fostering an inclusive and equitable workplace where every individual has the opportunity to succeed. We are dedicated to providing individuals with criminal or arrest records a fair chance of employment in accordance with local, state, and federal laws.

The posting will be active for a minimum of 3 days. The active posting will continue to extend by 3 days until the position is filled.

Similar Jobs

More Jobs at EchoStar Corporation

More Information Technology Jobs

Find similar Manager, Information Security Governance and Compliance jobs: