Job Description
Position Title:
Governance, Risk, and Compliance Manager
Salary
: 150-170K \+ benefits depending on experience
Location
: Houston, TX
JOB DESCRIPTION
Insight Global is seeking an experienced GRC Manager to lead and continue maturing an established Governance, Risk, and Compliance (GRC) program within a complex energy and operational technology (OT) environment. This is a permanent leadership opportunity based in Houston, TX, with an onsite requirement of four days per week and remote work on Fridays. Reporting to senior cybersecurity leadership, this role will oversee a team of five direct reports and multiple contractor resources while partnering closely with infrastructure, networking, application development, operational technology, and vendor teams across the organization. The successful candidate will advance cybersecurity governance practices, drive policy and standards development, oversee regulatory compliance initiatives, manage third-party risk programs, and provide cybersecurity reporting to executive leadership and the board. This role is ideal for a collaborative leader who can bridge both technical and business stakeholders while influencing outcomes across the organization.
REQUIRED SKILLS AND EXPERIENCE
- 5\+ years of leadership experience managing cybersecurity, risk, compliance, or governance teams
- Experience within Oil \& Gas, Pipeline, Energy, Utilities, Manufacturing, or other industrial/OT environments
- Strong understanding of both IT and OT cybersecurity environments
- Hands-on experience with IEC 62443 and NIST 800-82 frameworks
- Strong knowledge of NIST Cybersecurity Framework (CSF) 2\.0
- Experience supporting compliance with TSA and Canadian Energy Regulator (CER) cybersecurity requirements
- Demonstrated experience managing Third-Party Risk Management (TPRM) programs
- Proven experience developing cybersecurity policies, standards, and governance processes
- Ability to influence and gain buy-in from stakeholders across multiple business units without direct authority
- Strong communication skills with experience presenting metrics and risk reporting to executive leadership and board-level audiences
- CISA and CISSP certification required
NICE TO HAVE SKILLS AND EXPERIENCE
- Certified Internal Auditor (CIA) designation
- Experience with GRC platforms such as Workiva, Archer, or similar solutions
- Exposure to cybersecurity governance across both cloud and on-premises environments
- Knowledge of CIS security benchmarks and hardening standards
- Previous audit experience within cybersecurity, risk, or compliance functions
We may use artificial intelligence tools to assist with the screening, assessment, or selection of potential applicants for this position.
Vacancy: This posting is for a currently vacant role, and the successful candidate will be hired into an existing open position.
Looking for more opportunities?
Browse thousands of graduate jobs and entry-level positions.