PGIM logo
PGIMPosted 2 weeks ago

Lead, Information Security Library & Standards

$114,500–$188,900 year

HybridNewark, New Jersey, United States

Full TimeSenior LevelLarge

Job Summary

Build and govern Prudential's Information Security Control Library, defining taxonomies, ownership models, and framework mappings to ensure alignment with enterprise risk and compliance objectives. Coordinate the lifecycle of security standards, including creation, review, publication, and retirement, while establishing governance processes to maintain audit-ready documentation across domains like IAM, cloud security, and vulnerability management. Partner with Risk Management, Compliance, and business stakeholders to translate complex requirements into actionable guidance, driving adoption through enablement and continuous improvement of control management practices. This role supports senior leadership in strengthening Information Security governance visibility and shaping the enterprise's security execution strategy.

Required Qualifications

  • Bachelor's degree or equivalent experience in Cybersecurity, Computer Science, Information Security, Risk Management, Information Systems, Business, a related field or equivalent experience
  • Experience building or maintaining security governance, control frameworks, compliance programs, or risk management initiatives
  • Strong understanding of frameworks such as NIST, ISO 27001, FFIEC, NYDFS, SOC, or related standards
  • Working knowledge of one or more security domains such as IAM, Cloud Security, Data Protection, Vulnerability Management, Attack Surface Management, or Cyber Defense
  • Experience designing governance processes, operating models, ownership structures, quality gates, lifecycle processes and control documentation
  • Strong communication, documentation, and stakeholder management skills
  • Ability to collaborate effectively across security, risk, compliance, technology, business, and audit teams
  • On-site presence on a reoccurring weekly basis at least 3 days per week
  • This position is hybrid

Desired Qualifications

  • Experience building or enhancing security control libraries, standards programs, workflow improvements or governance frameworks
  • Experience supporting audits, examinations, compliance reviews, or risk assessments
  • Familiarity with GRC platforms and governance tooling
  • CISSP, CISM, CRISC, CISA, or similar certifications

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce