Lead, Information Security Library & Standards

Prudential Financial

Confirmed live 2 days ago High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Newark, NJ
Salary
$114,500–$188,900 / yr
Posted
29 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $180k
This role $152k
$102k most similar roles pay here $233k

This role pays less than 72% of similar roles. Most pay $151,475–$208,712 — the shaded band above. At the midpoint, this role pays about $152k versus about $180k for comparable roles.

Based on 239 similar postings.

Employer

About Prudential Financial

Prudential Financial is a global financial services leader and premier active global investment manager.

Prudential Financial currently has 32 open roles on FindRole.

Listed pay typically runs $123,700–$202,050 across 32 roles with salary data.

Most-posted roles

View all roles at Prudential Financial

At a glance

TL;DR · Lead, Information Security Library & Standards

Lead, Information Security Library & Standards joins the Global Technology & Operations team to strengthen information security governance and improve visibility into risk and policy adoption. This role focuses on building a scalable control library, maturing security standards, and establishing governance processes to ensure an audit-ready program. You will manage the lifecycle of security standards, define control taxonomies, and align internal requirements with frameworks like NIST, ISO 27001, FFIEC, NYDFS, and SOC. Day-to-day responsibilities include partnering with domain leaders in areas such as IAM, cloud security, data protection, and vulnerability management to translate complex requirements into actionable guidance. The ideal candidate possesses expertise in risk management, governance frameworks, and GRC tooling. You will utilize strong communication skills to collaborate across legal, audit, and technology teams to ensure consistent security execution across the enterprise.

What you'll do

  • Develop and maintain the enterprise Information Security control library including taxonomy, ownership models, and framework mappings.
  • Establish traceability between security standards, regulatory requirements, risk assessments, and evidence repositories.
  • Manage the full lifecycle of Information Security standards from creation and review to publication and retirement.
  • Align internal security controls with major frameworks such as NIST, ISO 27001, FFIEC, and NYDFS.
  • Support audits and regulatory examinations by providing clear control mappings and documentation.
  • Translate complex security requirements into practical guidance for business stakeholders and technical teams.
  • Create playbooks, templates, and training content to drive the adoption of security standards across the organization.
  • Improve governance processes and workflows based on stakeholder feedback and performance metrics.

What we're looking for

  • Bachelor's degree or equivalent experience in Cybersecurity, Computer Science, Information Security, Risk Management, Information Systems, Business, or a related field.
  • Experience building or maintaining security governance, control frameworks, compliance programs, or risk management initiatives.
  • Strong understanding of frameworks such as NIST, ISO 27001, FFIEC, NYDFS, SOC, or related standards.
  • Working knowledge of one or more security domains including IAM, Cloud Security, Data Protection, Vulnerability Management, Attack Surface Management, or Cyber Defense.
  • Experience designing governance processes, operating models, ownership structures, quality gates, lifecycle processes, and control documentation.
  • Strong communication, documentation, and stakeholder management skills.
  • Ability to collaborate effectively across security, risk, compliance, technology, business, and audit teams.
  • Experience with security control libraries, GRC tooling, audits, or certifications like CISSP, CISM, CRISC, or CISA (preferred).

More like this

Similar roles

Lead, Information Security Regulatory & Compliance

Prudential Financial

Newark, NJ 16 days ago $114,500$188,900
ISO 27001 NIST SOC 1 NYDFS 23 NYCRR 500 FFIEC GRC Platforms Jira ServiceNow IAM ASM CDR Cloud Security Data Protection Information Security Governance
Hybrid

Lead Information Security GRC Automation

Prudential Financial

Newark, NJ 24 days ago $114,500$188,900
GRC CI/CD Azure DevOps ServiceNow API GitHub Jenkins Jira Power Automate Control-as-Code Policy-as-Code Cybersecurity Information Security Software Development Scripting
Hybrid

Lead, Application Security

Prudential Financial

Newark, NJ 11 days ago $123,700$204,100
SAST SCA DAST ASPM DevSecOps CI/CD Python PowerShell Bash AWS Azure GCP OWASP Top 10 MITRE ATT&CK NIST PCI DSS SBOM Policy-as-Code

Security GRC Analyst

Pinterest

Remote (San Francisco, CA) 7 days ago $123,696$254,667
SOC 2 CIS Controls ISO 27001 NIST CSF Risk Management Security Governance GRC Identity and Access Management Vulnerability Management Endpoint Security Third-party Risk Audit Support Control Testing Security Awareness Training
4+ yrs exp Remote

Information Security Manager

Amd

Austin, TX 78 days ago $152,000$228,000
CISSP CISM GIAC SANS MCSE RHCSS CISA SIEM UEBA VPN SD-WAN ZTNA NIST ISO EAR Cybersecurity Risk Assessment Incident Response Network Segmentation Vulnerability Management
Hybrid