Job Description
JOB DESCRIPTION
Insight Global is seeking an experienced GRC Manager in a net-new position to lead and continue maturing an established Governance, Risk, and Compliance (GRC) program within a complex energy and operational technology (OT) environment. This is a permanent leadership opportunity based in Houston, TX, with an onsite requirement of four days per week and remote work on Fridays. Reporting to senior cybersecurity leadership, this role will oversee a team of five direct reports and multiple contractor resources while partnering closely with infrastructure, networking, application development, operational technology, and vendor teams across the organization. The successful candidate will advance cybersecurity governance practices, drive policy and standards development, oversee regulatory compliance initiatives, manage third-party risk programs, and provide cybersecurity reporting to executive leadership and the board. This role is ideal for a collaborative leader who can bridge both technical and business stakeholders while influencing outcomes across the organization.
REQUIRED SKILLS AND EXPERIENCE
- 5\+ years of leadership experience managing cybersecurity, risk, compliance, or governance teams
- Experience within Oil \& Gas, Pipeline, Energy, Utilities, Manufacturing, or other industrial/OT environments
- Strong understanding of both IT and OT cybersecurity environments
- Hands-on experience with IEC 62443 and NIST 800-82 frameworks
- Strong knowledge of NIST Cybersecurity Framework (CSF) 2\.0
- Experience supporting compliance with TSA and Canadian Energy Regulator (CER) cybersecurity requirements
- Demonstrated experience managing Third-Party Risk Management (TPRM) programs
- Proven experience developing cybersecurity policies, standards, and governance processes
- Ability to influence and gain buy-in from stakeholders across multiple business units without direct authority
- Strong communication skills with experience presenting metrics and risk reporting to executive leadership and board-level audiences
- CISA and CISSP certification required
NICE TO HAVE SKILLS AND EXPERIENCE
- Certified Internal Auditor (CIA) designation
- Experience with GRC platforms such as Workiva, Archer, or similar solutions
- Exposure to cybersecurity governance across both cloud and on-premises environments
- Knowledge of CIS security benchmarks and hardening standards
- Previous audit experience within cybersecurity, risk, or compliance functions
As part of our recruitment process, AI-assisted tools may be used to support candidate screening, resume review, interview note-taking, and application evaluation. These tools are intended to help improve efficiency and consistency throughout the hiring process. All hiring decisions remain subject to human review, and candidates are assessed based on their qualifications, skills, experience, and alignment with the requirements of the position.
Looking for more opportunities?
Browse thousands of graduate jobs and entry-level positions.