Lead, Information Security Policy & Enablement
$114,500–$188,900 year
HybridNewark, New Jersey, United States
Job Summary
Partner with security, technology, product, business, risk, compliance, legal, and audit teams to align policy updates and adoption strategies. Gather stakeholder feedback and translate complex security requirements into practical, actionable guidance for diverse audiences. Develop communication and change management strategies to increase awareness and adoption of security policies, creating reusable toolkits, templates, and engagement playbooks. Track adoption trends and stakeholder feedback to continuously improve program effectiveness while helping stakeholders understand how security supports broader business objectives. This role serves as the primary bridge between the Secure Governance Office and enterprise functions to drive policy execution. Reporting to the Director of Information Security Governance, the position is hybrid, requiring at least three days of on-site presence weekly at our Newark, NJ office.
Required Qualifications
- Bachelor's degree or equivalent experience in Cybersecurity, Information Security, Risk Management, Business, Communications, a related field or equivalent experience
- Experience supporting information security governance, policy management, compliance programs, or technology risk initiatives
- Working knowledge of security and risk frameworks such as NIST, ISO 27001, FFIEC, NYDFS, SOC, or similar standards
- Ability to translate complex security concepts, risk priorities, governance expectations, and control obligations into clear, practical guidance for diverse audiences
- Strong communication, change management, and stakeholder engagement skills
- Experience influencing across technology, business, risk, compliance, and audit organizations
- Working knowledge in one or more security domains such as IAM, ASM, CDR, cloud security, third-party risk, or data protection
- This position is hybrid and requires your on-site presence on a reoccurring weekly basis at least 3 days per week
- This role is based in our office in Newark, NJ
Desired Qualifications
- Experience within an Information Security, Technology Risk, BISO, Security Advisory, or Governance function
- Experience developing enablement materials, policy adoption metrics, communications strategies, adoption programs, or learning content
- Experience supporting audits, regulatory examinations, or governance forums
- Familiarity with GRC platforms, policy management tools, Jira, or ServiceNow
- CISSP, CISM, CRISC, CISA, Prosci, or similar certifications
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.