Cybersecurity Policy Writer & Governance Lead at HP, enhancing cybersecurity policies and governance frameworks while ensuring regulatory compliance and risk management across the company.
Responsibilities
Lead the development, review, and lifecycle management of cybersecurity policies, standards, and specifications.
Establish and mature governance frameworks aligned with industry-best practices and regulatory expectations.
Ensure policies evolve in response to emerging threats, business changes, and regulatory updates.
Maintain strong knowledge of regulatory and industry frameworks such as NIST Cybersecurity Framework, ISO/IEC 27001, CIS V8.1, General Data Protection Regulation, and PCI DSS.
Ensure alignment between cybersecurity controls, enterprise risk management practices, and compliance obligations.
Provide authoritative guidance on policy interpretation, control implementation, and exception management.
Partner with IT, Legal, Compliance, Risk, Audit, and business units to ensure policies are practical, enforceable, and business-aligned.
Influence senior leadership through reporting on governance metrics, compliance posture, and risk exposure.
Support the development and delivery of cybersecurity awareness and policy training programs.
Promote a culture of security accountability and governance maturity across the organization.
Define and track governance KPIs and KRIs. Monitor policy adherence and control effectiveness. Provide executive-level reporting on compliance trends, risk insights, and remediation progress.
Requirements
Bachelor’s or Graduate degree in Computer Science, Information Technology, Cybersecurity, or related discipline (or equivalent experience).
7–10 years of progressive experience in cybersecurity governance, policy development, risk management, or compliance.
Demonstrated experience drafting enterprise-level cybersecurity policies and standards.
Strong knowledge of global regulatory and cybersecurity control frameworks.
Exceptional written and verbal communication skills, with the ability to translate technical requirements into business-focused guidance.
Experience with policy lifecycle management tools or governance platforms preferred.
Professional certifications such as CISSP, CISM, CRISC, or ISO 27001/NIST-related certifications are highly desirable.
Working understanding of Artificial Intelligence is a plus.
Benefits
Health insurance
Dental insurance
Vision insurance
Long term/short term disability insurance
Employee assistance program
Flexible spending account
Life insurance
Generous time off policies, including; 4-12 weeks fully paid parental leave based on tenure
Program Manager overseeing global safety, intelligence, and security at Anthropic. Developing policies and coordinating cross - functional initiatives.
CyberSecurity Sales Specialist engaging Fortune 250 clients to drive cybersecurity solutions at HPE. Focusing on enterprise sales, strategic expansion, and leading competitive pursuits in the Northeast - Mid Atlantic region.
Cybersecurity Sales Specialist driving revenue growth for HPE Cybersecurity solutions across mid - to - large enterprise Cloud accounts. Effectively collaborating with cross - functional teams to meet client needs.
Workday Security Administrator ensuring secure access across HCM modules. Act as subject - matter expert, strengthen controls, and enable business operations through security design.
Administrative Intern at MAHLE supporting operations in thermal and fluid systems. Involves assisting with administrative routines and HSE tools coordination.
Security Officer at Arthrex maintaining safety and security for employees and visitors. Responsibilities include emergency response, access control, and adherence to security policies.
Cyber Security Engineer responsible for enhancing security posture in a leading Cloud services company. Engaging in incident management and implementing advanced security technologies.
Security Officer I responsible for managing access and responding to emergencies at Arthrex facilities. Requires vigilance, communication skills, and compliance with security protocols in Ave Maria, FL.
Técnico de Segurança do Trabalho desenvolvendo ações de segurança ocupacional na VOLL. Garantindo a saúde e segurança no ambiente de trabalho e elaborando programas legais de SST.
Cyber Security Engineer at Airbus Defence and Space improving information security and consulting on BSI compliance. Collaborating in the Center of Competence with diverse international teams.