AVP, Cyber Policy and Controls
Corebridge FinancialAbout the role
Who We Are
At Corebridge Financial, we believe action is everything. That’s why every day we partner with financial professionals and institutions to make it possible for more people to take action in their financial lives, for today and tomorrow.
We align to a set of Values that are the core pillars that define our culture and help bring our brand purpose to life:
• We are stronger as one: We collaborate across the enterprise, scale what works and act decisively for our customers and partners
• We deliver on commitments: We are accountable, empower each other and go above and beyond for our stakeholders
• We learn, improve and innovate: We get better each day by challenging the status quo and equipping ourselves for the future
• We are inclusive: We embrace different perspectives, enabling our colleagues to make an impact and bring their whole selves to work
Who we are
Corebridge Financial helps people make some of the most meaningful decisions they’re ever going to make. We help them plan and take action to protect the future they envision, and respond to some of life’s most difficult moments through the solutions and services we provide. We do this through our broad portfolio of life insurance, retirement and institutional products, offered through an extensive, multichannel distribution network. We provide solutions for a brighter future through our client centered service, breadth of product expertise, deep distribution relationships, and outstanding team of hardworking and passionate employees.
As our world becomes increasingly connected, providing a best-in-class cybersecurity program has never been more important. Our customers expect, and deserve, a safe and secure digital experience. With that in mind, Corebridge has made significant investments in the enhancement and transformation of our Information Security Office (ISO). Our team leads the way in protecting our company from cybersecurity risks.
About the role
The role focuses on developing, implementing, and maintaining cybersecurity policies, standards, and controls to ensure alignment with regulatory requirements, industry best practices, and organizational goals. This role will collaborate with cross-functional teams to identify risks, define control objectives, and ensure the effective application of security measures across the organization. Responsibilities include conducting policy reviews, providing guidance on control design and implementation.
We want to hear from you today if you can:
- Drive the development and maintenance of information security policies, standards, and procedures in alignment with regulatory requirements (e.g., NYDFS, NIST, PCI-DSS, SOC 2).
- Monitor changes in industry regulations and best practices to ensure policies, standards, and procedures remain current and effective.
- Coordinate the policy lifecycle process, including periodic reviews, stakeholder collaboration, and executive approval.
- Support the implementation and monitoring of security controls aligned with organizational policies and standards.
- Assist in the partnership with security, IT, and business teams to ensure controls are effectively designed, implemented, and monitored.
- Assess and enhance the control environment by identifying gaps and recommending improvements.
- Support internal and external audits by coordinating evidence of control effectiveness and policy adherence.
What we are looking for:
- 5+ years of experience in information security, GRC, or related fields.
- Strong understanding of information security policies, standards, and controls frameworks.
- Experience with regulatory compliance requirements (e.g., NYDFS, GDPR, HIPAA, SOX) and industry frameworks (e.g., NIST, ISO 27001).
- Proven experience in working with internal and external auditors and managing audit responses.
- Excellent written and verbal communication skills with the ability to articulate complex concepts to diverse audiences.
- Strong analytical and problem-solving skills with a focus on continuous improvement.
- Ability to collaborate across departments and influence stakeholders at all levels.
What our employees like most about working for Corebridge Financial
- We care about your professional development. Our career progression program will provide you with the opportunity to develop your skills, strengthen your productivity and be eligible to progressively advance to positions with an increased responsibility and increased compensation.
- Our “Giving Back” policy is at the core of our daily opera
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s