Skip to content

Senior Manager – Digital Technology Policies – Controls – And Standards
Company | Otis |
---|
Location | Farmington, CT, USA |
---|
Salary | $136800 – $205200 |
---|
Type | Full-Time |
---|
Degrees | Bachelor’s |
---|
Experience Level | Senior |
---|
Requirements
- Bachelor’s degree in cybersecurity, information technology, or a related field
- Minimum of 5 years of experience in cyber security awareness, training, or a related field
- Strong leadership skills and the ability to collaborate with various departments
- Expertise in cybersecurity policies, technical standards, procedures, and control requirements
- Ability to perform research and analysis of external control environments
- Experience in establishing cross-functional committees and feedback mechanisms
- Proficiency in creating and maintaining documentation and benchmarks
- Excellent communication skills to design and deliver training sessions
- Knowledge of regulatory and legal requirements related to cybersecurity
Responsibilities
- Collaborate with key stakeholders from various departments to gather input and ensure policies meet operational needs and regulatory requirements across global jurisdictions.
- Perform research and analysis of external control environments to ensure current regulatory and legal requirements are reflected in the Digital Technology Policy Framework.
- Establish a cross-functional policy review committee to provide oversight and feedback on policy development and revisions.
- Create new policies, standards, and procedures as required.
- Conduct annual reviews and publish technology platform benchmarks.
- Design and deliver training sessions to educate employees about new and updated policies and procedures.
- Review customer control requests to confirm compliance, including mapping controls to authoritative sources (e.g., NIST Cybersecurity Framework, ISO-27001, Center for Internet Security (CIS) Critical Security Controls).
- Maintain and update basic, SOX, and enhanced controls.
Preferred Qualifications
- Relevant certifications such as Security+, CISSP, CISM, or CISA are a plus