W. R. Grace & Co.

Manager, Cybersecurity Risk Management

W. R. Grace & Co. Howard County, Maryland, United States · $125K–$172K/yr

Chemical Manufacturing · 1,001-5,000 employees

19 h ago
security Senior (5-10 yrs) Full-time United States
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The manager will lead the development and execution of the enterprise cybersecurity risk management program across all operating companies. They will also oversee risk registers, conduct security control assessments, and provide expert guidance to leadership on emerging threats.

What they look for

Cybersecurity risk management Risk assessment NIST CSF ISO 27005 Third-party risk management Security control assessments Governance Compliance monitoring IT audit Cloud security Strategic planning Stakeholder management Mentoring Data-driven reporting Risk registers Information security

Requirements

Candidates must have a bachelor's degree in a relevant field and 5–8 years of professional experience in cybersecurity, IT audit, or risk management. Proficiency with enterprise risk frameworks like NIST CSF or ISO 27005 and strong communication skills are required.

Benefits

Medical insurance Dental insurance Vision insurance Life insurance Disability insurance Grace wellness program Retirement plans 401(k) company match Paid vacation Paid holidays Parental leave Tuition reimbursement Company donation match program

Full description

Annual Wage Range: $125,248.00 - $172,216.00 Other Compensation: Eligibility for the Short-Term Incentive program and other applicable bonuses Benefits: U.S. Employee Benefits Summary (grace.com)

Grace, a Standard Industries company, is a leading global supplier of catalysts, engineered materials and fine chemicals. We provide innovative products, technologies and services which our customers use to manufacture everyday products like renewable fuels, pharmaceuticals, toothpaste, cosmetics, food packaging, beer, edible oils and more. Our thousands of employees help shape a better future at our global headquarters in Columbia, MD and locations worldwide.

Job Description

Grace is seeking a Manager, Cybersecurity Risk Management to join our Global Cybersecurity Team! This role reports to Deputy CISO located at Columbia, MD.

We are looking for a strategic, highly skilled Cybersecurity Risk Manager to guide and enhance our cybersecurity risk management capabilities. In this senior role, you will serve as a trusted advisor to technology and business leaders, spearheading initiatives to identify, evaluate, and mitigate cybersecurity risks across Standard Industries.

Responsibilities

  • Lead the development, execution, and ongoing enhancement of the enterprise cybersecurity risk management program across operating companies under Standard Industries.
  • Oversee the creation and maintenance of risk registers, ensuring risks are thoroughly documented, prioritized, and tracked until resolution.
  • Conduct advanced security control assessments to measure effectiveness, ensure compliance, and align with internal and external standards.
  • Collaborate with business units, IT leaders, and cybersecurity teams to provide expert guidance on risk mitigation strategies and improvements to controls.
  • Drive the refinement of organization-wide control frameworks, audit mechanisms, and compliance monitoring processes.
  • Manage and advance third-party risk management activities, including risk assessments, scoring, and continuous monitoring programs.
  • Advise leadership on risk trends, new and emerging threats, and recommended controls by leveraging data-driven insights and professional expertise.
  • Oversee the preparation and delivery of risk reports, dashboards, and metrics for executive stakeholders.
  • Manage and mentor junior risk team members and support the development of cybersecurity governance and awareness initiatives.

Required Qualifications

  • Bachelor’s degree in Information Technology, Cybersecurity, or a related discipline; advanced degree or certifications such as CISSP, CISM, or CRISC are highly desirable.
  • 5–8 years of professional experience in cybersecurity, IT audit, or risk management, demonstrating expertise with enterprise risk frameworks like NIST CSF or ISO 27005.
  • Track record of performing in-depth control assessments, vendor risk evaluations, and security governance functions.
  • Outstanding verbal, written, and interpersonal communication skills, with the ability to effectively influence stakeholders across all organizational levels.
  • Strong analytical abilities and hands-on experience with enterprise IT and cloud-based environments.
  • Proven capability to lead cross-functional projects and manage several priorities concurrently.
  • Ability to travel up to 25% as needed

Preferred Qualifications

  • Strong understanding of IT infrastructure, cloud environments, and associated technical controls
  • Experience with Governance, Risk, and Compliance and IT Service Management platforms
  • Demonstrated executive presence with the ability to effectively communicate with senior leadership, influence decision-making, and build trusted partnerships across business and technology functions.

Benefits

  • Medical, Dental, Vision Insurance
  • Life Insurance and Disability
  • Grace Wellness Program
  • Flexible Workplace with maximum overlap with the core hours
  • Retirement Plans
  • 401(k) Company Match
  • Paid Vacation and Holidays
  • Parental Leave
  • Tuition Reimbursement
  • Company Donation Match Program.

Grace is not accepting unsolicited assistance from search firms for this employment opportunity. Please, no phone calls or emails. All resumes submitted by search firms to any employee at Grace via email, the Internet or in any form and/or method without a valid written search agreement in place for this position will be deemed the sole property of Grace. No fee will be paid in the event the candidate is hired by Grace as a result of the referral or through other means.

Similar roles