Lead Information Security GRC Automation

Prudential Financial

Confirmed live 2 days ago High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Newark, NJ
Salary
$114,500–$188,900 / yr
Posted
24 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $179k
This role $152k
$102k most similar roles pay here $230k

This role pays less than 74% of similar roles. Most pay $151,643–$205,462 — the shaded band above. At the midpoint, this role pays about $152k versus about $179k for comparable roles.

Based on 240 similar postings.

Employer

About Prudential Financial

Prudential Financial is a global financial services leader and premier active global investment manager.

Prudential Financial currently has 32 open roles on FindRole.

Listed pay typically runs $123,700–$202,050 across 32 roles with salary data.

Most-posted roles

View all roles at Prudential Financial

At a glance

TL;DR · Lead Information Security GRC Automation

Lead, Information Security GRC Automation joins the Information Security team to strengthen governance capabilities by improving visibility into security risk, policy adoption, and program execution. This role focuses on building and scaling automated control testing, monitoring, telemetry, and evidence collection capabilities to move from periodic assessments toward near real-time monitoring. The successful candidate will design sustainable automation frameworks, establish integrated data structures, and partner with cross-functional teams to modernize how controls are monitored and reported. Key technical requirements include experience in engineering security control automation, deep knowledge of DevOps practices including CI/CD and source control, and hands-on experience with Azure DevOps and ServiceNow. The role requires proficiency in at least one scripting or programming language to manage API-based integrations between GRC, asset, and technology platforms while ensuring all automated data remains accurate and audit-ready.

What you'll do

  • Design and implement automated control testing, continuous monitoring, and evidence collection capabilities to reduce manual effort.
  • Translate complex control library requirements into scalable automation solutions, metrics, and technical specifications.
  • Establish and maintain integrated connections between governance, risk, asset, and technology platforms to create a connected ecosystem.
  • Partner with technology teams to onboard new evidence sources and improve data quality across the enterprise.
  • Develop sustainable automation frameworks for monitoring, reporting, remediation tracking, and executive visibility.
  • Create foundational data structures, taxonomies, and integration patterns to support future scalability of automation initiatives.
  • Lead the continuous improvement of automation operating models, including intake, prioritization, and governance workflows.
  • Develop scalable playbooks and standards to ensure consistency in automated control monitoring across various security domains.

What we're looking for

  • Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Engineering, or a related field, or equivalent practical experience.
  • Experience engineering security control automation, automated testing, continuous monitoring, or evidence collection in complex or regulated environments.
  • Ability to interpret security controls and translate requirements into technical specifications and acceptance criteria for automated solutions.
  • Deep knowledge of DevOps practices and delivery pipelines, including CI/CD, source control, and production implementation.
  • Hands-on experience with Azure DevOps and ServiceNow for workflow design and platform integration.
  • Experience implementing API-based integrations between GRC, security, technology, asset, and reporting platforms.
  • Working knowledge of software development concepts and at least one scripting or programming language to troubleshoot and modify code.
  • Experience with GRC platforms, continuous controls monitoring, control-as-code, or financial regulatory programs (preferred); certifications like CISSP, CISM, or CISA (preferred).

More like this

Similar roles

Lead, Information Security Library & Standards

Prudential Financial

Newark, NJ 29 days ago $114,500$188,900
NIST ISO 27001 FFIEC NYDFS SOC GRC IAM Cloud Security Data Protection Vulnerability Management Attack Surface Management Cyber Defense Risk Management Information Security Governance
Hybrid

Lead, Information Security Regulatory & Compliance

Prudential Financial

Newark, NJ 16 days ago $114,500$188,900
ISO 27001 NIST SOC 1 NYDFS 23 NYCRR 500 FFIEC GRC Platforms Jira ServiceNow IAM ASM CDR Cloud Security Data Protection Information Security Governance
Hybrid

Lead, Application Security

Prudential Financial

Newark, NJ 11 days ago $123,700$204,100
SAST SCA DAST ASPM DevSecOps CI/CD Python PowerShell Bash AWS Azure GCP OWASP Top 10 MITRE ATT&CK NIST PCI DSS SBOM Policy-as-Code

Senior Engineer, BTS Technology I

AbbVie

North Chicago, IL 11 days ago $96,500$183,500
CI/CD GitHub Jira JFrog Artifactory qTest ServiceNow Azure DevOps AWS CodePipeline AI GAMP Validation 4.0 ALCOA+ DevOps Data Integrity
6+ yrs exp Hybrid

Lead Cyber Sec Engineer

Northern Trust

Chicago, IL 46 days ago
Zscaler Data Loss Prevention (DLP) Azure Security AIP MIP MCAS Network Security Firewalls CASB Security Automation Scripting PCI-DSS SOX FFIEC
5+ yrs exp