Manager, Second Line GRC

Remote Full-time
United States, Georgia, Atlanta

Information Technology

17-Jun-2024

Ref #: 25183

LinkedIn Tag: LI-CM3

How you'll help us Keep Climbing (overview & key responsibilities)

Join Delta IT on our journey to becoming the best IT organization in the airline industry.

Delta IT is on a journey of transformation. We are changing the way we do business from top to bottom. As thought leaders within Delta, we strive to create meaningful and innovative solutions and are looking for team members to help us realize our vision.

Delta IT employees are thinkers, doers, innovators.

We are proactive.

We are collaborative.

We deliver impact to our customers.

Join us on our transformation journey in becoming a world-class IT organization at the world's best airline!

YOUR RESPONSIBILITIES IN THIS ROLE:

As a manager, Second Line GRC, you will be responsible for overseeing the Second Line GRC team within the Information Technology area that is focused on monitoring, tracking and reporting risk within the Delta organization. This role will partner with other teams throughout the Delta organization to identify, assess, track, report and validate risks and the implementation of controls throughout the organization. The Manager will balance their time between technical thought-leadership, hands-on solution collaboration, and talent development. This role provides technical guidance and mentoring to the team to achieve high-quality results. The ideal candidate will have excellent organizational, communication, and management skills, along with an ability to lead training sessions and workshops for staff members.
• Develop, maintain, and support an IT Risk management program to include risk identification, measurement/prioritization, mitigation, and reporting (in partnership with the Governance Manager).
• Oversee development and implementation of high-level control architectures, including preventive, detective, and corrective controls.
• Apply assessment data of identified threats in risk decision making.
• Knowledge of industry indicators useful for identifying technology trends. Assess and communicate the potential risk of these trends to Delta. Recommend controls to mitigate the risk.
• Through a close partnership with the Threat Intelligence team, maintain knowledge of current and emerging threats, translate threats to potential risk, and identify possible risk mitigation strategies.
• Acquire and maintain a working knowledge of relevant laws, regulations, policies, standards, and compliance obligations.
• Advise senior leadership of changes affecting Delta’s risk posture.
• Assure successful implementation of Information Security requirements and controls.
• Lead Information Security assessment process, blending industry best practices with Delta’s culture and risk posture.
• Collaborate and partner with other risk organizations at Delta. Align IT Risk’s approach with Delta’s risk tolerance/risk management approach where possible.
• Leverage industry best practices for evaluating, implementing, and disseminating Information Security internal assessments, monitoring, detecting, and remediation.
• Represent the GRC team on internal committees related to key risk areas (like vulnerability management).
• Create auditable evidence of security measures.
• Develop risk mitigation strategies to resolve vulnerabilities and recommend security changes as needed.
• Develop specific countermeasures and risk mitigation strategies.
• Provide guidelines for performance of, and conduct, a risk analysis whenever an application undergoes a major change.
• Tackle “big” problems, provide options, and drive resolution.
• Provide consulting/thought leadership for Information Security, IT, and the business.
• Work as a member of the broader GRC, IT and Delta teams. Do what’s right for Delta.
• Ensure up to date process and procedure documentation for the team.
• Identify process improvement/automation opportunities and innovate new ways of doing things.
• Communicate, and deliver, the value of Information Security throughout all of Delta.
• Lead with integrity and a positive attitude.
• Provide leadership and oversight to a high performing team of Delta Information Security professionals to ensure the confidentiality, integrity, and availability of information.
• Meet with staff on a timely basis to conduct performance evaluations and provide feedback. Provide ongoing coaching, mentoring, and training to develop and encourage employee performance and development.
• Develop strategic and operational plans for the work group, manage execution, drive improvements, and measure results.
• Define metrics to accurately convey risk, team performance and measure against goals.
• Drive awareness and knowledge of security.
• Perform special projects as assigned, while effectively manage time with competing priorities.
• Build highly motivated and result-oriented team.

Benefits and Perks to Help You Keep Climbing

WHY YOU’LL LOVE DELTA!

Our culture is rooted in a shared dedication to living our values – Care, Integrity, Resilience, Servant Leadership, and Teamwork – every day, in everything we do. At Delta, our people are our success. At the heart of what we offer is our focus on Sharing Success with Delta employees. Exploring a career at Delta gives you a chance to see the world while earning great compensation and benefits to help you keep climbing along the way:
• Competitive salary, industry-leading profit sharing program, and performance incentives
• 401(k) with generous company contributions up to 9%
• Paid time off including vacation, holidays, paid personal time, maternity and parental leave
• Comprehensive health benefits including medical, dental, vision, short/long term disability and life benefits
• Family care assistance through fertility support, surrogacy and adoption assistance, lactation support, subsidized back-up care, and programs that help with loved ones in all stages
• Holistic Wellbeing programs to support physical, emotional, social, and financial health, including access to an employee assistance program offering support for you and anyone in your household, free financial coaching, and extensive resources supporting mental health
• Domestic and International space-available flight privileges for employees and eligible family members
• Career development programs to achieve your long-term career goals
• World-wide partnerships to engage in community service and innovative goals created to focus on sustainability and reducing our carbon footprint
• Business Resource Groups created to connect employees with common interests to promote inclusion, provide perspective and help implement strategies
• Recognition rewards and awards through the platform Unstoppable Together
• Access to over 500 discounts, specialty savings and voluntary benefits through Deltaperks such as car and hotel rentals and auto, home, and pet insurance, legal services, and childcare

What You Need To Succeed (minimum Qualifications)
• Develop, maintain, and support an IT Risk management program to include risk identification, measurement/prioritization, mitigation, and reporting (in partnership with the Governance Manager).
• Oversee development and implementation of high-level control architectures, including preventive, detective, and corrective controls.
• Apply assessment data of identified threats in risk decision making.
• Knowledge of industry indicators useful for identifying technology trends.
• Assess and communicate the potential risk of these trends to Delta.
• Recommend controls to mitigate the risk.
• Through a close partnership with the Threat Intelligence team, maintain knowledge of current and emerging threats, translate threats to potential risk, and identify possible risk mitigation strategies.
• Acquire and maintain a working knowledge of relevant laws, regulations, policies, standards, and compliance obligations.
• Advise senior leadership of changes affecting Delta’s risk posture.
• Assure successful implementation of Information Security requirements and controls
• Lead Information Security assessment process, blending industry best practices with Delta’s culture and risk posture.
• Collaborate and partner with other risk organizations at Delta.
• Align IT Risk’s approach with Delta’s risk tolerance/risk management approach where possible.
• Leverage industry best practices for evaluating, implementing, and disseminating Information Security internal assessments, monitoring, detecting, and remediation.
• Represent the GRC team on internal committees related to key risk areas (like vulnerability management).
• Create auditable evidence of security measures.
• Develop risk mitigation strategies to resolve vulnerabilities and recommend security changes as needed.
• Develop specific countermeasures and risk mitigation strategies.
• Provide guidelines for performance of, and conduct, a risk analysis whenever an application undergoes a major change.
• Tackle “big” problems, provide options, and drive resolution.
• Provide consulting/thought leadership for Information Security, IT, and the business.
• Work as a member of the broader GRC, IT and Delta teams.
• Do what’s right for Delta.
• Ensure up to date process and procedure documentation for the team.
• Identify process improvement/automation opportunities and innovate new ways of doing things.
• Communicate, and deliver, the value of Information Security throughout all of Delta.
• Lead with integrity and a positive attitude.
• Provide leadership and oversight to a high performing team of Delta Information Security professionals to ensure the confidentiality, integrity, and availability of information.
• Meet with staff on a timely basis to conduct performance evaluations and provide feedback.
• Provide ongoing coaching, mentoring, and training to develop and encourage employee performance and development.
• Develop strategic and operational plans for the work group, manage execution, drive improvements, and measure results.
• Define metrics to accurately convey risk, team performance and measure against goals.
• Drive awareness and knowledge of security.
• Perform special projects as assigned, while effectively manage time with competing priorities.
• Consistently prioritizes safety and security of self, others, and personal data.
• Embraces diverse people, thinking, and styles.
• Possesses a high school diploma, GED, or high school equivalency.
• Is at least 18 years of age and has authorization to work in the United States.

What Will Give You a Competitive Edge (preferred Qualifications)
• B.S. degree in Computer Science, Computer Engineering, Information Assurance, a related field, or equivalent experience.
• Professional certifications such as CISSP, CISM, OSCP and CEH
• Experience with RSA Archer or equivalent GRC tool.
• Experience delivering high quality results using Agile methodology

Apply Now

Apply Now

Similar Opportunities

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote Full-time

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote Full-time

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote Full-time

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote Full-time

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote Full-time

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote Full-time

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote Full-time

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote Full-time

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote Full-time

USPS Office Helper

Remote Full-time

Customer Service Associate Part Time 3rd Shift

Remote Full-time

Urgently Hiring: Urgently Require Assistant Professor of Computer

Remote Full-time

Senior Marketing Business Analyst, Home Care - Remote

Remote Full-time

Experienced Remote Data Entry Specialist with Competitive Compensation and Flexible Scheduling Opportunities

Remote Full-time

[Remote] Graphic Designer (Part-Time Contractor)

Remote Full-time

Remote Physician Reviewer -249027

Remote Full-time

Delta Air Lines Needs Flight Attendant in Chipley | Hiring

Remote Full-time

[Remote] Job Information Legal Researcher & Writer

Remote Full-time

Virtual Teacher, Science/Biology Full Time (CO)

Remote Full-time

Online English Tutor - Flexible Hours - Remote Work - Opportunity to Inspire and Educate Students Globally

Remote Full-time
← Back to Home