This position is open to permanent residents or US citizens only. The GRC Director serves as the senior leader for Governance, Risk, and Compliance functions within the HHSC Office of the Chief Information Security Officer. This position directs enterprise cybersecurity governance frameworks, risk management programs, and compliance oversight to ensure HHSC information systems and services meet federal and state cybersecurity requirements, including NIST 800-53 Rev. 5, MARS-E 2.0, HIPAA, Texas DIR standards, and HHSC security policies. The role provides executive oversight of Authorization to Operate (ATO) governance, System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), Risk-Based Decisions (RBDs), Vendor Risk Management, Insider Risk Management, security awareness compliance, and audit readiness. The GRC Director ensures cybersecurity risks impacting confidentiality, integrity, and availability are consistently identified, documented, mitigated, or formally accepted in a defensible manner.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level