Lead Cyber Security Engineer - Governance, Risk, and Compliance (GRC) - Springdale, AR
Tyson Foods
Certain roles at Tyson require background checks. If you are offered a position that requires a background check you will be provided additional documentation to complete once an offer has been extended.
Job Details:
ABOUT TYSON:
At Tyson Foods, we are more than just a leading provider of food products; we are innovators dedicated to delivering high-quality solutions that make a difference. Our commitment to excellence and continuous improvement drives everything we do. If you are passionate about technology and thrive in a dynamic environment, Tyson Foods is the place for you!
SUMMARY:
As a Lead cybersecurity Engineer in Governance, Risk, and Compliance (GRC) - Risk Management, you will lead the design, implementation, and management of advanced risk management and compliance frameworks to safeguard our organization’s digital assets. This role focuses on strategic risk planning, policy development, and compliance management. You will play a crucial role in ensuring that our risk posture is robust, regulatory requirements are met, and risk management strategies are continuously improved.
Key Responsibilities:
Develop and implement comprehensive risk management frameworks to identify, assess, and mitigate potential risks across the organization’s infrastructure and operations.
Identify vulnerabilities and ensuring adherence to both internal policies and external regulations. Work with internal and external auditors to facilitate audits and address required remediations.
Contribute to the development, update, and enforcement of advanced GRC policies and procedures to ensure effective risk management and compliance with relevant regulations and standards.
Work closely with IT, legal, and other departments to integrate risk management and compliance measures into various business processes, aligning them with organizational objectives.
Collaborate with the procurement team to conduct thorough contract reviews from a GRC perspective, ensuring that all third-party agreements meet compliance standards and adequately address potential risks related to vendor management, data protection, and other regulatory requirements.
Maintain comprehensive documentation of risk management activities, compliance audits, and GRC policies. Ensure that documentation is accurate and up to date, supporting transparency and accountability.
Oversee the response to GRC related incidents, ensuring timely and effective remediation. Monitor risk management and compliance activities to identify emerging risks and areas for improvement.
Offer expert guidance on GRC projects and initiatives, staying abreast of the latest trends, technologies, and regulatory changes. Share knowledge and best practices with team members and stakeholders.
Develop and deliver advanced training and awareness programs to educate employees on risk management and compliance best practices, ensuring that they understand their role in maintaining a secure and compliant environment.
Basic Qualifications:
Education: Bachelor’s degree in computer science, Information Technology, Cybersecurity, Risk Management, or a relevant experience.
-
Experience:
At least 5 years of experience in risk management, governance, and compliance within an enterprise environment.
Experience with risk assessment, risk analysis, and implementing risk mitigation strategies.
-
Skills:
Understanding of risk management frameworks and methodologies (e.g., ISO 31000, NIST Risk Management Framework).
Familiarity with GRC tools and platforms.
Knowledge of regulatory and compliance requirements (e.g., GDPR, HIPAA, SOX).
Proficiency in developing and implementing risk management policies and procedures.
Strong analytical and problem-solving skills.
Ability to communicate complex risk-related information clearly to stakeholders at various levels.
Relevant certifications such as Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), or equivalent are preferred .
Preferred Qualifications:
Education: Master’s degree in a related field.
-
Experience:
5-7 years of experience in risk management or a related field with a focus on governance and compliance.
Experience managing or leading risk assessment projects and initiatives.
-
Skills:
Advanced knowledge of security and risk management frameworks and standards (e.g., NIST, ISO 27001, COBIT),
Expertise in GRC platforms and tools (e.g., RSA Archer, ServiceNow GRC).
Deep understanding of the impact of emerging technologies and trends on risk and compliance.
Advanced proficiency in risk assessment and management, including quantitative and qualitative methods.
Strong leadership and project management skills, including experience managing cross-functional teams and large-scale initiatives.
Exceptional interpersonal and communication skills, with a proven ability to build and maintain relationships with senior stakeholders.
Advanced or specialized certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or similar.
Experience with automation and scripting for risk management processes.
Ability to design and implement comprehensive GRC architectures and frameworks.
BENEFITS:
Competitive Salary: Attractive compensation package.
Health, Dental, and Vision Insurance: Comprehensive coverage for your well-being.
401(k) with Company Match: Secure your future with our retirement plan.
Paid Time Off and Holidays: Enjoy work-life balance with ample vacation days.
Professional Development Opportunities: Grow your skills and advance your career.
Relocation Assistance Eligible:
YesWork Shift:
1ST SHIFT (United States of America)Hourly Applicants ONLY -You must complete the task after submitting your application to provide additional information to be considered for employment.
Tyson is an Equal Opportunity Employer. All qualified applicants will be considered without regard to race, national origin, color, religion, age, genetics, sex, sexual orientation, gender identity, disability or veteran status.
We provide our team members and their families with paid time off; 401(k) plans; affordable health, life, dental, vision and prescription drug benefits; and more.
If you would like to learn more about your data privacy rights and how you may use that information, please read our Job Applicant Privacy Notice here.
Unsolicited Assistance: Tyson Foods and its subsidiaries do not accept unsolicited support from external recruitment vendors for open positions within the United States. Any resumes or candidate profiles submitted by recruitment vendors or headhunters to any employee or applicant tracking system at Tyson Foods or its subsidiaries, without a valid written request and search agreement approved by HR, will be considered the property of Tyson Foods. No fees will be paid if the candidate is hired due to an unsolicited referral.