Job at a glance
At ABB , we help industries run leaner and cleaner—and every person here makes that happen. You’ll be empowered to lead, supported to grow, and proud of the impact we create together. Join us and help run what runs the world. This position reports to: Head of IS Security, Risk and Compliance __ Your role and responsibilities In this role, you will have the opportunity to establish and maintain operational methods, service compliance, and procedures.
Each day, you will be responsible for planning, design, implementation and continuous improvement within governance, compliance, assurance, and/or risk. You will also showcase your expertise by guiding, advising, or supporting in all operational aspects, including document management and systems and procedures analysis. The work model for the role is: #LI-hybrid This role is contributing to the Electrification Business Area division in Cary, NC.
You will be mainly accountable for: Act as service owner and transition from one-time certification to a sustainable, operationalized compliance service with ongoing control ownership, evidence management, assurance reporting, and remediation processes for US and North America operations. Design and oversee multi-layered Governance frameworks across EL Security, Risk & Compliance teams and with all relevant stakeholders in business, division and country IS teams.
Maintain a Security & Compliance dashboard aggregating risk metrics from global and local security services, govern risk assessments, and ensure periodic control attestations and compliance monitoring. Govern the EL security project design, development, and delivery aligned with risk-driven guidance, ensuring "security by design" across all EL Information Systems projects Oversee implementation of security controls across EL and EL assets in countries and divisions.
Contribute to EL IS SRC Roadmap development, align security services with Corporate IS Security Roadmap, and provide periodic security posture reports to senior leadership Establish risk-focused metrics for security service delivery and project execution, maintain internal policies/standards aligned with ABB regulations Facilitate multi-country compliance with EL IS compliance team, external audits, and vendor engagement across EL.
Drive continuous improvement of security services, implement security awareness campaigns, and address issues from audit findings. Qualifications for the role Bachelor’s or Master’s degree in Information Technology, Computer Science, Software Engineering or a related qualification, and/or demonstrated capability through past employment experience. 15+ years of Information Security experience with at least 10 years in leading governance, risk, projects, and communications Strong experience in security governance and risk from design, launch and maintenance.
Strong experience in common information security management frameworks, such as International Standards Organization (ISO) 2700x, National Institute of Standards and Technology (NIST) 800-53, Cybersecurity Maturity Model Certification (CMMC). Experience defining and running compliance-as-a-service capabilities, including CMMC post-certification operations, assurance reporting, control evidence management, remediation governance, and stakeholder enablement across US business areas.
Excellent leadership skills to manage and motivate distributed teams, experience in building strong relationships with internal and external stakeholders. Strong knowledge of the following areas of technical expertise: information security management and governance, IT risk assessment and management, IT Audit, the overall context of business processes and IS technologies. Related Project Management experience.
Security Certification (CISSP, CISM, CRISC, etc.) and/or Auditor certifications (ISO 27001 auditor, CISA etc.) is mandatory. Excellent written and verbal communication skills, and ability to present complex and technical issues to diverse audiences includi