Global Cybersecurity Compliance Manager
NetApp - Morrisville, NC
Hiring: Global Cybersecurity Compliance Manager Company: NetApp Location: Morrisville, NC Job Posted Time: 2026-09-10 12:31:41 Employment Type: Hybrid Target Skills & Keywords : AI, GDPR, Microsoft Excel, Risk Management, SOC 2 About the job Required Skills: •Lead, coach, and manage a team of six compliance, controls, and policy professionals within Global Security, including role clarity, workload prioritization, delegation, accountability, project planning, and delivery from inception through completion. •Perform core people-management and HR responsibilities, including performance reviews, goal setting, development planning, coaching, feedback, recognition, succession planning, team engagement, hiring support, onboarding, and budget management. •Lead control testing and compliance discussions related to frameworks such as ISO 27001, SOC 2, NIST 800-53, CIS benchmarks, and other applicable requirements; provide executive-ready status updates, risk insights, and remediation expectations to senior leaders. •Oversee the intake, assignment, quality review, and timely completion of customer cybersecurity questionnaires and due diligence requests from Sales, ensuring accurate responses, clear ownership, and consistent communication across stakeholders. •Partner with business units, internal control owners, and cross-functional peers to appropriately scope, validate, test, and document control statements, ensuring clear accountability and defensible evidence for audit and compliance requirements. •Partner cross-functionally with internal business unit leaders and geographically distributed teams to gather, validate, and provide evidence and information for internal audits, external audits, regulatory inquiries, customer assessments, and certification activities. •Identify, communicate, and escalate gaps in processes, control effectiveness, policy adherence, compliance obligations, and remediation ownership to senior leadership across the enterprise, as appropriate. •Manage the review of customer and partner contracts for information security, compliance, audit, and control requirements; coordinate business, legal, security, and technical input to ensure commitments are understood and achievable. Qualifications: •Bachelor's degree in business, accounting, finance, computer science, information systems, engineering, or a related field strongly preferred; equivalent combination of education and experience may be substituted in lieu of degree. •At least five (5) years of GRC (governance, risk, compliance) experience with methodologies, activities, tools and enablers in a technology related industry or eight (8) – ten (10) years of experience in business process analysis, project methodology, or systems development life cycle through education or on-the-job experience, required. •Demonstrated experience leading compliance, controls, policy, audit, or risk-management teams within a global security, cybersecurity, technology, or regulated enterprise environment. •In-depth knowledge of compliance and regulatory areas such as GDPR, DFARS/NIST 800-171, NIST 800-53, ISO 27001, DORA, and related risk events, with the ability to translate requirements into clear controls, ownership expectations, and executive-level risk communication. •Excellent written and verbal communication skills, including the ability to communicate expectations, performance feedback, audit status, risk, and compliance requirements clearly to employees, peers, business leaders, and senior executives. •Strong analytical and problem-solving skills •Demonstrated ability to work effectively with people from different disciplines, regions, cultures, and technical backgrounds, including the ability to influence without direct authority and build alignment across distributed teams. •Demonstrated capacity to adapt to a dynamic, rapidly changing business, technical, regulatory, and organizational environment while maintaining team focus, accountability, engagement, and delivery discipline. •Information security related training or certifications such as CISA, CISSP or CRISC •Prior experience directly managing senior individual contributors, or specialized compliance professionals in a global cybersecurity, security governance, risk, compliance, controls, or policy function. Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!