Sr. Product Cybersecurity Engineer - Governance, Risk & Compliance
Polaris Inc.About the role
At Polaris Inc., we have fun doing what we love by driving change and innovation. We empower employees to take on challenging assignments and roles with an elevated level of responsibility in our agile working environment. Our people make us who we are, and we create incredible products and experiences that empower us to THINK OUTSIDE.
ob Summary:
Polaris, a global powersports leader, building world-class connected vehicle solutions for motorcycles and off-road vehicles, is looking for a Sr. Product Cybersecurity GRC (Governance, Risk, and Compliance) Engineer. This role is responsible for assessing and ensuring Polaris’s product cybersecurity compliance to international regulations and standards, understanding Polaris's product cybersecurity risk posture, ensuring that we follow industry best practices to perform risk assessment. This role will stay abreast of cybersecurity standards, policies, regulatory developments, perform independent cybersecurity assessment for internal projects and programs, perform internal process audits and support external audits. This role will provide guidance and support to cross-functional teams on cybersecurity governance, risk and compliance.
Essential Duties & Responsibilities:
Support the Chief Cybersecurity Engineer in developing, implementing, and executing Polaris’ enterprise-wide product cybersecurity risk management framework to ensure that product cybersecurity risks are identified, monitored, and remediated
Lead the adoption, implementation, execution, and institutionalization of ISO/SAE 21434 standards across business units in Polaris
Lead the product cybersecurity compliance to cybersecurity regulations such as United Nation Regulation 155 cybersecurity type approval, Cybersecurity Resilience Act, Machinery Regulation, Radio Equipment Directive, General Data Protection Regulation, etc.
Review and approve Threat Analysis and Risk Assessment reports, perform independent project cybersecurity assessments, produce cybersecurity assessment report
Guide and support product development teams in creating and reviewing product compliance work product and evidence
Evaluate risk and vulnerability management methodologies and tools, review current strategies and identify gaps, propose improvements to leadership
Develop, implement, and update product cybersecurity policies, processes, and procedures to protect sensitive information and product cybersecurity
Perform internal process and project audit, prepare for external audit, and address non-conformities from audit results
Manage supply chain cybersecurity risks, work with internal and external suppliers to compile and collect Hardware/Software Bill of Materials
Establish vulnerability management system to manage vulnerabilities and Open Source Software compliance
Work collaboratively with various organizations and business units and their leadership to drive cybersecurity compliance<
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s