Hansen Technologies Logo

Hansen Technologies

Senior GRC Specialist

Posted 2 Days Ago
In-Office or Remote
Hiring Remotely in United States
Senior level
In-Office or Remote
Hiring Remotely in United States
Senior level
Leads cybersecurity governance, risk, and compliance activities, including risk assessments, security policies, ISO 27001 and NIST alignment, ISMS management, audits, data protection, access reviews, security awareness, incident response testing, and business continuity/disaster recovery planning. Manages third-party security risks, supports GRC tools, and provides reporting to leadership and regulators.
The summary above was generated by AI

Who Are We

Hansen Technologies (ASX: HSN) is a global software and services provider, serving energy, water/utilities, and telecommunications industries. With customers in 80+ countries, we foster collaboration across 26 global offices. From 5G advancements to renewable energy transitions, we empower customers to overcome challenges, innovate, and drive new business models.

At Hansen, we are also embedding AI enablement across our operations. From automating workflows and enhancing service delivery, to driving innovation in customer solutions, AI is shaping the next chapter of how we support our clients. With a focus on operational excellence and innovation, Hansen is using AI not just as a tool, but as a strategic enabler to deliver smarter, faster, and more resilient solutions for the future.

This is full-time onsite role based in our Bethlehem office.

 

Why This Role Matters

At Hansen, we're looking for a hands-on, high-impact security GRC professional to help us scale and mature our governance, risk, and compliance practices globally. You’ll design, implement, and evolve security governance initiatives, drive data protection efforts, own business continuity readiness, and be a visible force for change across the organisation. This is a rare opportunity to blend autonomy, innovation, and execution in a role that touches every corner of the business.

We’re looking for a builder, a strategic problem-solver, and a passionate security evangelist who thrives on making security integral to how we work.

 

What You’ll Do 

  • Risk Management: Lead and conduct cybersecurity risk assessments aligned with Hansen’s risk framework, identifying key findings and treatment actions. Ensure all risks related to security controls are documented, tracked, and remediated with accountability. Communicate risk status and third-party assessment outcomes to relevant stakeholders.

  • Governance & Compliance: Develop, maintain, and enforce security policies and standards aligned with ISO 27001, SOC, NIST, and regulatory requirements. Support internal and external audits, certifications, and compliance monitoring, ensuring controls operate effectively and remediation is followed up. 

  • Information Security Management System (ISMS): Operate and continuously improve the ISMS, maintaining governance documentation, risk registers, and management reporting to meet audit and regulatory expectations.

  • Data Protection & Identity Management: Implement and monitor data protection controls, conduct regular user access reviews to ensure least privilege, and validate that security mechanisms are correctly configured and effective.

  • Security Awareness: Lead security awareness programs and campaigns to build a strong security culture across the organisation, engaging stakeholders and measuring impact.

  • Incident Response & Resilience Readiness: Maintain and test the incident response plan through simulations and exercises. Own the Business Continuity and Disaster Recovery (BCP/DR) planning, coordinating regular testing and improvements to ensure organisational resilience.

  • Stakeholder & Third-Party Risk Management: Engage with internal teams, external auditors, regulators, and third-party vendors to manage cybersecurity risks, provide assurance, and oversee third-party security performance.

  • Governance & Reporting: Support and optimise GRC toolsets for risk tracking, control monitoring, and reporting. Produce clear and actionable management information for leadership and regulatory submissions.

 

What You Bring 

  • Strong background in hands-on security governance, risk management, and compliance delivery.

  • Proven experience implementing and managing technical and administrative data protection controls.

  • Working knowledge of key frameworks (ISO 27001, NIST, GDPR, SOC2, ITGC, etc.).

  • Experience leading BCP/DR programs and running real or simulated incident response scenarios.

  • Exceptional communication skills - you can translate control language into business impact and vice versa.

  • Past experience driving security awareness programs and influencing behaviour across departments.

  • Demonstrated ability to self-start, self-direct, and innovate in ambiguous environments.

 

You’re someone who (may) have:

  • Experience in a similar role working in the technology industry.

  • Conducted Incident Response Tests and developed scenarios

  • Configured data protection or data loss prevention controls in corporate IT environments.

 

 

Why Join Us?

At Hansen, you’ll be part of a diverse, inclusive, and collaborative global team. Our culture is built around values such as People and Family, Treat It Like It’s Your Own, Focused and Committed, and One United Team. We look for people who are curious, respectful, engaged, and keen to work across geographies with talented teams.

If you are passionate about talent sourcing, candidate engagement, and supporting a high-quality recruitment process, we’d love to hear from you.

 

Contact Us 

If you possess the desired skills and enthusiasm, please “Apply Now” via the link or visit our career page.

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, colour, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

Visit our website at hansencx.com for more information. 

 

Data Privacy Notice 

By applying to this role, you consent to Hansen collecting, processing, and storing the information you provide for recruitment purposes. You also agree that your details may be securely retained in our talent database for future opportunities and reference in accordance with applicable data protection regulations.

Similar Jobs

3 Days Ago
In-Office or Remote
United States
200K-220K Annually
Senior level
200K-220K Annually
Senior level
Software • Generative AI
Own day-to-day GRC operations, including access reviews, security awareness, policy exceptions, risk assessments, third-party risk, internal audits, control monitoring, and audit evidence automation. Maintain policies, metrics, and audit readiness across SOC 2, HIPAA, ISO, NIST, GDPR, and CCPA frameworks. Partner with engineering, IT, legal, operations, and sales to operationalize controls and remediate findings, with opportunities to lead audits and mature the compliance program.
Top Skills: Adaptive SecurityAnecdotesAWSAzureDrataGCPHoxhuntKnowbe4OnetrustProofpointRbacSecureframeServicenow GrcVanta
15 Minutes Ago
Remote or Hybrid
IL, USA
138K-193K Annually
Senior level
138K-193K Annually
Senior level
Information Technology
Leads the Customer Success and Renewals organization, defining strategy for adoption, retention, forecasting, expansion, and customer outcomes. Manages financial and operational KPIs, renewal performance, AI and digital adoption, customer segmentation, cross-functional partnerships, and talent development. Serves as a subject matter expert and executive-level leader while coaching managers and teams, improving processes, and aligning sales, finance, partners, and customer success activities.
Top Skills: Artificial IntelligenceCoworkMicrosoft CopilotSection Coach
17 Minutes Ago
Remote or Hybrid
US
64K-89K Annually
Mid level
64K-89K Annually
Mid level
Information Technology
Develops and implements knowledge management strategies, processes, systems, and tools. Captures and organizes organizational knowledge, analyzes metrics, identifies process efficiencies, and supports automation. Collaborates with business leaders, subject matter experts, and IT teams to improve knowledge sharing and retention. Creates technical documentation, delivers training and workshops, manages initiatives, researches emerging technologies, and promotes adoption of knowledge management practices across managed services teams.
Top Skills: Power BIServicenow

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account