CrawlJobs Logo

Secure by Design Governance Manager

plus.net Logo

Plusnet

Location Icon

Location:
United Kingdom , Birmingham

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

This role is accountable for improving the efficiency, consistency and quality of operational design processes by embedding effective knowledge management practices and enforcing secure-by-design governance across the lifecycle of change. It focuses on leveraging data-driven insights, knowledge and innovation to demonstrate value, increase efficiency, reduce costs, drive governance and improve outcomes aligned to business objectives. It works collaboratively across the security function and business to understand the end-to-end process of security, the necessary governance to drive security outcomes spanning security functions and continuously optimises ways of working. This role also ensures we are driving the maximum value out of our security practice for the business by driving key performance indicators and reporting on these as necessary. This is role is pivotal to driving maturity out of everything our security practice does and therefore its stakeholders span internal teams, the wider department, PBTG and business stakeholders across the Group.

Job Responsibility:

  • Leads on driving governance for design delivery for Security and aligning this to internal security governance in PBTG
  • Leads on driving knowledge lifecycle for the function (CVRR) to maximise the value and relevance of our data and knowledge resources
  • Drives the adoption of design pattern methodology and standards across delivery units helping the design and delivery community to realise good security
  • Defines and enforces the knowledge artefacts for design change and works with business stakeholders to implement workable and consistent approaches
  • Leads the performance analysis and strategy for security processes, tooling and metrics to identify optimisation opportunities
  • Leads or drives the adoption of continuous improvement and lean methodologies
  • Develops strategies to improve efficiency and enhance customer satisfaction
  • Drives collaboration with wider security functions to align optimisation initiatives with business needs
  • Defines data-driven decision making to analyze quantitative and qualitative data to understand performance trends
  • Defines opportunities for AI as appropriate within scope of role
  • Uses tools such as A/B testing, predictive analytics and customer journey mapping to identify actionable improvements
  • Ensures the implementation and monitoring of optimisation initiatives
  • Monitors results, defines and tracks KPIs to measure outcomes
  • Uses customer centric approaches to focus on delivering value and enhancing customer experience
  • Works with and establishes relationships with business customers to understand performance and value gained from consultancy services
  • Leverages intelligence on customer behaviour to apply objective optimisation opportunities and design governance improvements
  • Contributes to the continuous improvement of consultancy tooling to innovate with new capabilities
  • May adapt strategy and approach to achieve knowledge, governance and reporting outcomes

Requirements:

  • Strong People management background with experience in running a large efficient matrix managed team
  • Demonstrates own initiative to resolve problems and issues as and when they occur
  • and uses appropriate thought leadership to guide teams to solve complex and long-standing issues
  • Background in security management, process development and stakeholder management
  • Highly effective inter-personal and stakeholder management skills. Able to communicate up to senior levels within BT and equivalent externally
  • Capable and pragmatic leader, able to work diligently towards goals that will be achieved by changing already systemic and embedded was of working
  • Understands and empathises the agendas & needs of others, alongside the needs of the business. Breaks down silos, works brilliantly with partners both within and outside of the organisation to deliver business results
What we offer:
  • On target 10% on target bonus
  • BT Pension scheme, minimum 5% Employee contribution, BT contribution 10%
  • From January 2025, equal family leave: receive 18 weeks at full pay, 8 weeks at half pay and 26 weeks at the statutory rate. It’s for all parents, no matter how your family is made up
  • Enhanced women’s health support: including help with menopause symptoms, cancer screenings, period care and more
  • 25 days annual leave (not including bank holidays), increasing with service
  • 24/7 private virtual GP appointments for UK colleagues
  • 2 weeks carer’s leave
  • World-class training and development opportunities
  • Option to join BT Shares Saving schemes

Additional Information:

Job Posted:
March 25, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Secure by Design Governance Manager

Senior Director, Platform Product Management, Data Governance and Security

As part of the Cloud, Data, and AI Platforms organization, the individual in thi...
Location
Location
United States , Bentonville
Salary
Salary:
160000.00 - 320000.00 USD / Year
walmart.com Logo
Walmart
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of experience in engineering, support, and product development, with strong technical and consulting expertise
  • Bachelor’s or Master’s degree in Computer Science or a related field
  • Proven ability to build and lead high-performing product teams focused on multi-cloud platforms
  • Expertise in managing product cost, utilization, and efficiency at global scale
  • Experience engaging senior leaders to define strategy and set priorities for world-class services
  • Demonstrated success in fostering global collaboration to meet diverse customer needs
  • Strong technical acumen with the ability to influence product design and provide strategic direction
  • Customer-focused mindset with a talent for translating needs into impactful product solutions
  • Experience building resilient, scalable platforms using cloud-native architectures
  • Comfort with ambiguity and a track record of delivering results in fast-paced, distributed environments
Job Responsibility
Job Responsibility
  • Lead cross-functional teams to deliver scalable platform solutions that empower developers and application teams globally
  • Translate user needs into a strategic product roadmap, prioritizing features that drive measurable business value
  • Enhance developer experience and streamline adoption through continuous product innovation and operational excellence
  • Evolve platform capabilities to meet changing demands, with a focus on scalability, availability, and performance
  • Define and track key metrics to guide investment decisions and maximize ROI
  • Apply modern product management practices to identify customer needs, close product gaps, and accelerate adoption
  • Collaborate closely with engineering to execute the roadmap and reduce time-to-market
  • Use data-driven insights to evaluate platform performance and inform ongoing improvements
  • Contribute to the development of intellectual property, including tools, models, and best practices
What we offer
What we offer
  • 401(k) match
  • stock purchase plan
  • paid maternity and parental leave
  • PTO
  • multiple health plans
  • medical, vision and dental coverage
  • company-paid life insurance
  • family care leave
  • bereavement
  • jury duty
  • Fulltime
Read More
Arrow Right

Principal Security Governance Engineer

The Principal Security Governance Engineer will lead the development and impleme...
Location
Location
United States , San Francisco
Salary
Salary:
183800.00 - 295200.00 USD / Year
https://www.atlassian.com Logo
Atlassian
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • 10+ years of experience in security governance, risk management, and compliance, preferably in a large-scale SaaS/Product environment
  • Strong knowledge of cybersecurity principles, technology-related regulations, and IT governance frameworks
  • Experience in leading security awareness and training programs
  • Excellent communication, documentation, presentation and leadership skills, with the ability to influence and engage stakeholders at all levels
  • CRISC, CISSP, CISA, or equivalent certifications are preferred.
Job Responsibility
Job Responsibility
  • Design and implement comprehensive security governance frameworks and risk management strategies using Atlassian products, tools and systems
  • Evaluate and report on the effectiveness of security controls and compliance with relevant laws and regulations, including HIPAA
  • Collaborate with cross-functional teams to integrate security practices into all aspects of the organization
  • Assume the HIPAA Security Officer role to ensure compliance with HIPAA security requirements
  • Develop and maintain policies and procedures to protect sensitive health information in Atlassian products and services
  • Conduct security audits and assessments to ensure ongoing compliance and address any gaps
  • Develop and implement security awareness and training programs to mitigate human risk factors
  • Conduct regular training sessions and workshops to educate employees on security best practices
  • Monitor, evaluate and improve HRM programs such as phishing simulations, mandatory training, threat intelligence liaison and audit support
  • Provide leadership and guidance to the Security Governance team, fostering a culture of security awareness and continuous improvement
What we offer
What we offer
  • benefits, bonuses, commissions, and equity
  • Fulltime
Read More
Arrow Right

Senior Manager IAM Enterprise Security

The IT Sr. Manager, Identity & Access Management is responsible for providing le...
Location
Location
Poland , Krakow
Salary
Salary:
Not provided
genpt.com Logo
Genuine Parts Company
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • BS/BA degree and specialized information security technical training required
  • A reputable security certification (CISSP, CISSP w/specialization HCISPP, GIAC, CISA, etc.) is required
  • A minimum of 6 years of progressive Information Security experience
  • A minimum of 3+ years of management experience leading information security
  • Identity & Access Management to include governance experience is required
  • In-depth knowledge of the information security industry and regulatory obligations (Sarbanes-Oxley (SOX), HIPAA, GLBA, PCI DSS, HITRUST, NIST Framework, etc.)
  • Working knowledge of Microsoft Active Directory
  • Ability to analyze all layers of the OSI model from the security stance
  • In-depth knowledge of networking technologies and architecture
  • ITIL familiarization - managing incidents, requests, and changes
Job Responsibility
Job Responsibility
  • Serves as an internal information security consultant to the enterprise
  • Include focus and expertise in Privileged Access Management (PAM), Customer Identity Access Management (CIAM), Identity Governance and Administration (IGA) and Employee Identity Access Management (EIAM) to include Single Sign on and Multi-factor authentication
  • Research and recommend solutions that meet security standards while ensuring functionality for business continuity
  • Develop security test scenarios for unit, process, function, integration, and acceptance testing
  • Design integration schema and linkage for multi-platform business and technological solutions
  • Evaluates the security of new technologies and assists with the plan to integrate them into the company environment
  • Help develop the policies and procedures in conjunction with the established IT governance channels to manage the use and operation of these systems
  • Recommend best practices for security controls without hindering functionality
  • Define the minimum access and identity configuration standards for all IT systems
  • Evaluates new and proposed security systems and technologies
What we offer
What we offer
  • We offer comprehensive benefit plans and programs designed to support your health and wellness, provide income protection and build financial security for your retirement
Read More
Arrow Right

Data Governance Program Manager

Digital Transformation PMO - Data Governance Program Manager. This role is accou...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in IT, Computer Science, Software Engineering, Data, Business Analytics or equivalent
  • Minimum 10 years of experience in data or corporate governance setup and operationalization
  • Experience in SAP MDG, S4 HANA roll out, Data Harmonization and Data Cleansing
  • Experience in Material, Vendor, BOM master Data
  • Certification in industry standard data architecture discipline or similar (e.g. DCAM, DAMA)
  • Experience in operating under Data Office organization
  • Expert in consulting and helping business to develop data quality business rules, data catalogue, business glossary
  • Ability to develop, implement & optimize complex data governance solution and issues
  • Experience in Data, Privacy, Protection implementations & operationalization
  • Experience in Big Data and associated platform / technology knowledge
Job Responsibility
Job Responsibility
  • Establish, develop and optimize Data Governance Framework, Policy, Process & associated business program / solutions implementations for Global Operation team
  • Define data governance, data management frameworks and solutions together with Chief Data Officer team, IT and Global Operation functional groups
  • Support business units in digital transformation journey with data governance
  • Enable Data Governance framework including managing the objectives, approach, processes, policies and procedures around data governance
  • Build robust and scalable data governance ecosystem to support business needs
  • Define data governance operational processes (e.g., data quality measurement, metadata management) in accordance with policies and standards
  • Provide expert consultation to business units to establish and maintain data policies and standards that enable use-cases
  • Provide expert consultation to assist business units in identify and setup of critical data elements including the setup of data lineage, data catalogue and data quality
  • Work collaboratively & consultatively with chief data officer, business units, IT to deliver enterprise objectives around data governance
  • Identify, design, and implement internal process & framework improvements: automating manual operational processes and control for data governance implementation
What we offer
What we offer
  • Health & Wellbeing comprehensive suite of benefits
  • Personal & Professional Development programs
  • Unconditional Inclusion in an inclusive environment
  • Fulltime
Read More
Arrow Right

Security Governance Risk & Compliance (GRC) Analyst

Here at Virtru you’ll help build a cutting edge security compliance program alig...
Location
Location
United States , Washington, DC
Salary
Salary:
130000.00 - 180000.00 USD / Year
virtru.com Logo
Virtru
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 5+ years of information security, IT audit and/or IT Risk Management, or GRC Analyst/Engineer experience
  • Deep understanding of at least few of the following: CMMC, NIST 800-53 & 800-171, FedRAMP, SOC 2, PCI, and/or other global privacy compliance frameworks
  • Technical acumen. Strong understanding of modern cloud technologies (AWS, GCP, Azure, etc.) and familiarity with GRC tools (Hyperproof, Vanta, Drata, etc) and SIEM tools (Datadog, Splunk)
  • You’re a relationship builder and have worked with both business and technical risk and understand how to translate risk to various levels of the organization
  • Have experience training and coaching teams to become better security and privacy practitioners
  • Like working on an autonomous agile team
  • Ability to resolve conflicts and drive issues to completion
  • Work independently with little or no supervision while maintaining a high level of efficiency
  • Hands on experience deploying and managing vulnerability scanning/cloud security posture management tools (Wiz, Prismacloud, etc.) to meet security compliance requirements
  • Real-world IR experience participating on security On-Call teams
Job Responsibility
Job Responsibility
  • Manage and implement complex controls frameworks for large systems, consisting of Cloud infrastructure and Software as a Service (SaaS) services (GCP, AWS, GitHub, Okta, etc)
  • Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services
  • Conduct risk assessments across business units and processes. Identify risk findings and recommend remediation and risk mitigation strategies
  • Assist or implement automated controls to support risk mitigation efforts across various business units with stakeholders
  • Incorporate CMMC certification into Virtru’s slate of compliance assessments and ongoing monitoring activities (FedRAMP, SOC 2, PCI)
  • Facilitate the third-party vendor on-boarding and annual review process by evaluating the security of current and prospective partners
  • Participate in incident response (IR) activities, providing risk analysis and remediation support as needed
  • Enhance the team with your individualism, spirit, and love of learning
What we offer
What we offer
  • A Flexible PTO policy
  • A $1,500 annual Learning & Development Stipend
  • Frequent company-sponsored team celebrations
  • Access to an Employee Assistance Program
  • Access to Headspace, a mental health app
  • A flat 3% contribution to your retirement account
  • A high degree of flexibility
  • Competitive compensation
  • Generous parental, medical, and bereavement policies
  • 401K contribution and stock options
  • Fulltime
Read More
Arrow Right

Security Principal

As a Security Principal, you'll play a critical role in protecting the integrity...
Location
Location
United States
Salary
Salary:
117500.00 - 270000.00 USD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in information security, Information Technology, Risk Management, or a related field (master's preferred)
  • Certifications such as CISM, CRISC, or similar preferred
  • 7+ years of experience in Information Security, IT Governance, or Risk Management
  • Hands-on experience in multiple technical security domains, such as: Endpoint protection, Identity and access management (IAM), Vulnerability management, Security logging and monitoring, Network segmentation and zoning, Cloud security controls, Incident detection and response
  • Demonstrated experience managing or governing secure environments, particularly in large or complex organizations
  • Deep understanding of information security principles, frameworks (e.g., NIST, ISO 27001), and regulatory requirements (e.g., GDPR, SOX)
Job Responsibility
Job Responsibility
  • Protecting the integrity of HPE’s labs and non-production environments
  • Ensuring environments are designed, operated, and decommissioned in alignment with security policies, risk frameworks, and regulatory obligations
  • Leading the security program's vision, execution, and ongoing evolution
  • Collaborating between business units, IT, and security
  • Embedding 'secure-by-design' principles in projects
  • Continuously improving governance processes
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right

Technology Risk Governance Manager

Help us deliver a better tomorrow. Australia Post is delivering for all Australi...
Location
Location
Australia , Richmond
Salary
Salary:
Not provided
auspost.com.au Logo
Australia Post
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong background in Technology Risk and IT Governance within large, complex organisations
  • Proven experience in risk management supporting technology or digital functions
  • Expertise in technology, digital and information governance, security risk, and operational frameworks such as ISO27001/2, ITIL, E8, NIST, and COBIT
  • Familiarity with APRA CPS 230/234, ISO 31000, or similar standards
  • Ability to translate and present complex technical and operational information into simple business language to engage business stakeholders
  • Demonstrated ability to influence, challenge, and engage senior business and technology leaders
  • Maintaining strong objective relationships beyond span of control
  • Excellent analytical, problem-solving, and communication skills
Job Responsibility
Job Responsibility
  • Support the proactive identification, assessment, and facilitate mitigation of technology risks across operational environments and transformation programs
  • Plan and execute regular and ad-hoc reviews into areas of significant technology risks to the organisation, including deep dives, and facilitating commercial solutions for any issues that may arise
  • Partner with delivery teams, architects, and operational leaders to integrate risk management into business-as-usual processes and project lifecycles
  • Maintain a current risk register reflecting emerging threats, system dependencies, and control effectiveness
  • Facilitate regular risk and control assessments and timely remediation of identified gaps
  • Support the Technology & Cyber Controls Assurance function in undertaking reviews against the minimum policy, standard and control requirements
  • Undertake targeted reviews of the effectiveness of key Technology controls and provide reporting & insights
  • Develop and implement risk management processes, libraries and documentation that will help improve transparency and management of enterprise and business unit technology risks and associated compliance and operational requirements
  • Provide risk advisory support for technology operations and systems within transformation projects
  • Review and challenge technology designs, change management processes, and vendor engagements from a risk perspective
What we offer
What we offer
  • Career Development: opportunities for professional growth and development
  • Work-Life Balance: flexible working arrangements
  • Employee Wellbeing: resources and support to ensure a healthy and safe work environment
  • Fulltime
Read More
Arrow Right

Manager, Security Architecture and Cloud

A leading global organization in a highly regulated sector is seeking a skilled ...
Location
Location
United States , Princeton
Salary
Salary:
140000.00 - 165000.00 USD / Year
rennerbrown.com Logo
Renner Brown
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 7 years of progressive experience in cybersecurity, information security, or enterprise architecture
  • At least 3 years focused on cloud security
  • Proven background designing or reviewing secure architectures in multi-cloud environments (AWS, Azure, GCP)
  • Experience leading or advising on DevSecOps and CI/CD pipeline integration for secure application development
  • Strong understanding of regulatory and governance frameworks applicable to highly regulated organizations
  • Exceptional communication skills with the ability to influence across business and technical teams
  • Advanced knowledge of Security Architecture and Cloud Security Design, including hybrid and multi-cloud environments
  • Proficiency in IAM, encryption, logging, monitoring, and configuration of native cloud security controls across major cloud providers
  • Experience conducting threat modeling, risk assessments, and architecture reviews for enterprise systems
  • Familiarity with DevSecOps methodologies, containerization (Docker, Kubernetes), and microservices security practices
Job Responsibility
Job Responsibility
  • Develop and maintain secure architecture frameworks and reference models for multi-cloud and enterprise environments
  • Partner with infrastructure, application, and business teams to conduct threat modeling, risk assessments, and architecture reviews for critical systems and platforms
  • Ensure consistent application of cloud security controls, including identity and access management (IAM), encryption, logging, and monitoring, across AWS, Azure, and GCP
  • Lead security design input into enterprise IT and application development, embedding DevSecOps practices into continuous integration and deployment pipelines
  • Collaborate with regional and global cybersecurity teams to maintain architectural alignment and governance
  • Provide architectural insight to incident response and remediation teams to strengthen system resilience and future prevention
  • Serve as a trusted advisor to senior IT and business leadership, communicating complex technical concepts clearly and translating security risks into actionable business recommendations
What we offer
What we offer
  • Annual performance bonus
  • Comprehensive benefits package
  • Fulltime
Read More
Arrow Right