ARCHIVED
This job listing has been archived and is no longer accepting applications.
MisuJob - AI Job Search Platform MisuJob

GRC and Data Privacy Manager

Cfgi

United States Hybrid permanent

Posted: February 6, 2026

Interested in this position?

Create a free account to apply with AI-powered matching

Job Description

CFGI is seeking a Cybersecurity GRC & Data Privacy Subject Matter Expert to lead and deliver strategic advisory engagements that strengthen clients’ security governance, risk management, compliance posture, and privacy programs. This role blends hands-on delivery, executive communication, and practice leadership. You will work directly with CISOs, CIOs, CFOs, General Counsel/Privacy Counsel, Risk Leaders, and PE deal teams to design pragmatic programs, build operating models, and drive measurable outcomes.

The ideal candidate brings deep expertise in GRC frameworks, regulatory compliance, and privacy, strong consulting instincts, and a proven ability to lead teams and manage multiple client workstreams.

Key Responsibilities:

Client Advisory & Delivery:

· Lead end-to-end GRC and privacy engagements, including scoping, planning, execution, and executive reporting.
· Design and operationalize cybersecurity governance models (policies, standards, risk appetite, committees, reporting KPIs/KRIs).
· Build and mature enterprise risk programs: risk assessments, risk registers, control libraries, and control testing approaches.
· Develop and implement security policies, standards, and procedures aligned to common frameworks (e.g., NIST CSF, ISO 27001/27002, CIS, SOC 2).
· Support regulatory readiness and compliance initiatives (e.g., SEC cyber disclosure support, NYDFS 500, GDPR/UK GDPR, CCPA/CPRA, HIPAA, PCI DSS, SOX ITGC alignment where applicable).
· Stand up or enhance privacy programs: data mapping/inventories, DPIAs/PIAs, DSAR processes, retention, consent management, third-party privacy risk, and privacy by design.
· Perform vendor/third-party risk assessments and implement scalable TPRM operating models.
· Coordinate cross-functional stakeholders (Legal, IT, Security, Compliance, Product, HR) to drive outcomes and adoption.

Executive Communication & Stakeholder Management:

· Translate complex technical, regulatory, and privacy requirements into business-oriented recommendations.
· Deliver executive-ready artifacts: board/audit committee materials, roadmaps, operating models, heatmaps, and risk dashboards.
· Serve as a trusted advisor to senior leadership; confidently present findings and influence decisions.

Practice Development & Leadership:

· Contribute to go-to-market development: offerings, templates, accelerators, methodologies, and points of view.
· Support business development through proposal writing, SOW development, client presentations, and solution shaping.
· Mentor and develop consultants and managers; lead teams across multiple engagements while maintaining quality and delivery rigor.
· Partner with other CFGI service lines (Accounting Advisory, CFO Advisory, Technology Enablement) to deliver integrated solutions.

Required Qualifications:

· Five plus years of relevant experience in cybersecurity GRC, privacy, risk management, compliance, or consulting (level will map to experience).
· A Bachelor’s degree in a relevant field.
· Demonstrated expertise implementing and operationalizing cybersecurity frameworks and control programs: NIST CSF / NIST 800-53 (nice-to-have), ISO 27001/27002, SOC 2, CIS Controls.
· Strong privacy fundamentals and experience with privacy program build-out and operations: GDPR/UK GDPR, CCPA/CPRA; experience with HIPAA/GLBA or other sectoral privacy standards is a plus.
· Experience performing or leading: enterprise/security risk assessments. control design/testing, policy and standards development, TPRM programs, compliance/regulatory readiness programs,
· Exceptional written and verbal communication skills with a track record of producing executive-level deliverables.
· Proven ability to lead teams, manage timelines/budgets, and deliver in a client-facing environment.

Preferred Qualifications (Nice-to-Have):

· Certifications: CISM, CISSP, CRISC, CISA, ISO 27001 Lead Implementer/Lead Auditor, CIPM/CIPP (E/US), CDPSE.
· PE/portfolio company experience: rapid maturity uplift, integration, carve-out/stand-up, and pragmatic road mapping.
· Exposure to incident readiness, tabletop exercises, and crisis communications coordination with Legal/Comms.
· Experience supporting audits and assurance activities (SOC 2 readiness, ISO certification readiness, internal audit coordination).

Why CFGI:
· High-impact work with sophisticated clients and private equity portfolio companies.
· Opportunity to shape and scale a fast-growing Cybersecurity practice.
· Collaborative culture with autonomy, flexibility, and strong leadership support.
· Competitive compensation, benefits, and career growth trajectory.

Why Apply Through MisuJob?

AI-Powered Job Matching: MisuJob uses advanced artificial intelligence to analyze your skills, experience, and career goals. Our matching algorithm compares your profile against thousands of job requirements to find positions where you have the highest chance of success. This saves you hours of manual job searching and ensures you only see relevant opportunities.

One-Click Applications: Once you create your profile, applying to jobs is effortless. Your resume and cover letter are automatically tailored to highlight the most relevant experience for each position. You can apply to multiple jobs in minutes, not hours.

Career Intelligence: Beyond job matching, MisuJob provides valuable career insights. See how your skills compare to market demands, identify skill gaps to address, and understand salary benchmarks for your experience level. Make data-driven decisions about your career path.

Frequently Asked Questions

How do I apply for this position?

Click the "Register to Apply" button above to create a free MisuJob account. Once registered, you can apply with one click and track your application status in your dashboard.

Is MisuJob free for job seekers?

Yes, MisuJob is completely free for job seekers. Create your profile, get matched with jobs, and apply without any cost. We help you find your dream job without any hidden fees.

How does AI matching work?

Our AI analyzes your resume, skills, and experience to understand your professional profile. It then compares this against job requirements using natural language processing to calculate a match percentage. Higher matches mean better fit for the role.

Can I apply to jobs in other countries?

Absolutely. MisuJob features jobs from companies worldwide, including remote positions. Filter by location or look for remote opportunities to find jobs that match your preferences.

Ready to Apply?

Join thousands of job seekers using MisuJob's AI to find and apply to their dream jobs automatically.

Register to Apply