About the Role
Cisco is seeking a transformational Head of Governance, Risk & Compliance (GRC) to lead the modernization of product security governance, compliance, and risk assurance across the Network Platform Security Organization’s global portfolio of cloud, SaaS, networking, OT/IoT, and hardware products. This leader will architect and operationalize a next-generation, AI-enabled GRC organization focused on automation-first governance, continuous compliance, risk telemetry, and scalable assurance capabilities integrated directly into engineering and product delivery workflows.
Responsibilities
- Lead the transformation of Network Platform Security Organization’s product GRC function into a modern, engineering-driven risk and assurance organization.
- Balance regulatory rigor with speed, scalability, and business enablement.
- Influence senior leaders across security, engineering, product, legal, and enterprise governance organizations.
- Drive a culture of automation, measurable risk transparency, engineering partnership, and operational excellence.
- Own divisional product compliance programs and certifications, including FedRAMP, ISO 27001, SOC, NIST-aligned frameworks, global privacy/security obligations, and emerging regulatory requirements.
- Design and implement AI-enabled GRC operating models that leverage automation, telemetry, analytics, and workflow orchestration to improve risk visibility and operational efficiency.
Requirements
- Bachelor's Degree combined with 8 years of experience in cybersecurity, product security, governance/risk/compliance, or security engineering leadership roles within global technology organizations, or Master's Degree, combined with+ 6 years of related experience, or PhD, combined with 3 years of similar experience.
- Previous supervisory experience also required.
- Experience leading large-scale GRC transformation initiatives in complex product or cloud environments.
- Understanding of modern compliance and assurance frameworks including FedRAMP, ISO 27001, SOC 2, NIST, GDPR, NIS2, DORA, PCI, and related global regulatory frameworks.
- Experience building or scaling automation-first governance, continuous compliance, or GRC engineering capabilities.
- Leadership experience managing technical and cross-functional teams.
- Must be a U.S. Person (i.e. U.S. citizen, U.S. national, lawful permanent resident, asylee, or refugee).
- May perform work that the U.S. government has specified can only be performed by a U.S. citizen on U.S. soil.
Skills
- Cybersecurity
- Product security
- Governance/risk/compliance
- Security engineering leadership
- FedRAMP
- ISO 27001
- SOC 2
- NIST
- GDPR
- NIS2
- DORA
- PCI
- DevSecOps
- Controls engineering
- Security automation
- Risk engineering
- AI/LLM-enabled operational tooling or analytics platforms
- Scalable governance platforms
- Internal assurance tooling
Location
- U.S.
- Canada
Work Type
- Full-time
Experience Level
- Leadership
- Senior
Education Level
- Bachelor's Degree
- Master's Degree
- PhD
Salary/Compensations
- $183,800.00 - $263,600.00 (U.S. and/or Canada)
- $183,800.00 - $303,100.00 (New York City Metro Area)
- $163,600.00 - $269,800.00 (Non-Metro New York state & Washington state)
Benefits
- Medical insurance
- Dental insurance
- Vision insurance
- 401(k) plan with Cisco matching contribution
- Paid parental leave
- Short-term disability coverage
- Long-term disability coverage
- Basic life insurance
- 10 paid holidays per full calendar year
- 1 floating holiday for non-exempt employees
- 1 paid day off for employee’s birthday
- Paid year-end holiday shutdown
- 4 paid days off for personal wellness
- 16 days of paid vacation time per full calendar year (non-exempt employees)
- Flexible vacation time off program (exempt employees)
- 80 hours of sick time off provided on hire date and each January 1st thereafter
- Up to 80 hours of unused sick time carried forward
- Additional paid time away may be requested for critical or emergency issues for family members
- Optional 10 paid days per full calendar year to volunteer
- Annual bonuses (non-sales roles)
- Performance-based incentive pay (sales roles)
- Grants of Cisco restricted stock units
About the Company
- At Cisco, we’re revolutionizing how data and infrastructure connect and protect organizations in the AI era – and beyond.
- We’ve been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds.
- These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint.
- Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions.
- Add to that our worldwide network of doers and experts, and you’ll see that the opportunities to grow and build are limitless.
- We work as a team, collaborating with empathy to make really big things happen on a global scale.
- Because our solutions are everywhere, our impact is everywhere.
- We are Cisco, and our power starts with you.
Equal Opportunity
- The successful applicant may be performing work in FedRAMP High or IL-5 environments, and therefore, must be a U.S. Person (i.e. U.S. citizen, U.S. national, lawful permanent resident, asylee, or refugee). This position may also perform work that the U.S. government has specified can only be performed by a U.S. citizen on U.S. soil.
