
GRC Security Engineer Manager
- Dearborn, MI
- Permanent
- Full-time
- Strategic Leadership & Roadmap:
- Develop and execute a comprehensive technical strategy and roadmap for Ford's GRC engineering capabilities, aligning with overall enterprise security, compliance, and digital transformation initiatives.
- Identify emerging GRC technologies, trends, and best practices, and assess their applicability to Ford's environment.
- Drive the adoption of automation and innovative solutions to enhance GRC efficiency and effectiveness.
- GRC Platform Management:
- Oversee the end-to-end lifecycle management of Ford's core GRC platforms and tools (e.g., risk management systems, compliance automation, audit management, policy management, security orchestration).
- Direct the design, implementation, configuration, integration, and maintenance of GRC solutions to meet business and regulatory requirements.
- Ensure the stability, availability, and performance of GRC platforms through proactive monitoring, incident response, and problem resolution.
- Cross-Functional Collaboration:
- Partner closely with IT, Cybersecurity, Legal, Internal Audit, Privacy, and various business units to gather requirements, provide technical expertise, and deliver integrated GRC solutions.
- Translate complex GRC requirements into actionable engineering tasks and ensure alignment across stakeholders.
- Act as a key technical liaison for internal and external audit activities related to GRC systems and controls.
- Process Improvement & Controls:
- Define and enforce GRC engineering standards, processes, and best practices.
- Contribute to the continuous improvement of Ford's GRC framework, risk assessment methodologies, and control validation processes.
- Ensure the effective implementation and measurement of technical security and compliance controls.
- Always on platform
- Manage and optimize the operational support model for GRC platforms, ensuring 24x7 availability and responsiveness to critical incidents and issues, aligning with defined Service Level Agreements (SLAs) and SLOs.
- Drive post-incident reviews and implement corrective actions to prevent recurrence and improve system resilience.
- Team Management & Development:
- Lead, mentor, and develop a high-performing team of engineers, fostering a culture of technical excellence, collaboration, and continuous learning.
- Oversee talent acquisition, performance management, and career development for team members.
- Ensure the team has the necessary skills and resources to meet strategic objectives and operational demands.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related engineering field.
- Minimum of 7 years of experience in Governance, Risk, and Compliance (GRC), Information Security, IT Audit or IT Engineering background.
- Minimum of 3 years of experience in a leadership or management role, leading technical engineering teams.
- Proven experience managing and optimizing platforms that require 24x7 operational support.
- Strong understanding of industry-standard GRC frameworks and regulations (e.g., NIST, ISO 27001, COBIT, SOX, GDPR, CCPA).
- Hands-on experience with enterprise GRC platforms (e.g. Archer, ServiceNow GRC, etc).
- Demonstrated technical proficiency in cloud environments (Azure, GCP, AWS) and experience with scripting/automation (e.g., Python, PowerShell).
- Relevant industry certifications such as CISSP, CISM, CISA, CRISC.
- Experience in the automotive manufacturing, financial or technology sectors.
- Familiarity with Agile/DevOps methodologies and practices.
- Proven ability to drive large-scale strategic initiatives and deliver complex projects on time and within budget.
- Experience with data analytics and reporting for GRC metrics and KPIs.
- Exceptional leadership and communication skills, with the ability to inspire and motivate a technical team.
- Strong analytical and problem-solving abilities, capable of tackling complex technical and organizational challenges.
- A strategic mindset with the ability to translate high-level vision into actionable engineering plans.
- Excellent interpersonal skills and the ability to collaborate effectively with diverse stakeholders across all levels of the organization.
- A proactive and results-oriented approach, with a commitment to continuous improvement and operational excellence.
- Ability to thrive in a fast-paced, dynamic environment and manage multiple priorities effectively.
- Immediate medical, dental, vision and prescription drug coverage
- Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more
- Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more
- Vehicle discount program for employees and family members and management leases
- Tuition assistance
- Established and active employee resource groups
- Paid time off for individual and team community service
- A generous schedule of paid holidays, including the week between Christmas and New Year's Day
- Paid time off and the option to purchase additional vacation time.