Jobs and Careers
AC

Manager, Information Security Risk

Acrisure
Grand Rapids, United Statesfull_timeVerifiedPosted 20 Feb 2025

About the role

Job Title: Manager, Information Security Risk

Department: Information Security

Location: Grand Rapids, MI (4 days onsite, 1 day remote)

                             

Why Choose Acrisure?

In record time, Acrisure has become the fastest growing insurance broker globally. A top 20 player a few years ago, we are now in the top 10 of insurance broker globally, with ambitious plans to continue growing at pace. Beyond our growth, our dedication to client service, as fueled by our business model and culture, means that Acrisure’s opportunity is to be the most relevant and successful, privately held insurance broker in the industry.

Our model is unique. Through a network of agency partners that provide local service with global reach, we work in service of two core objectives: create value, and be a good partner.

Our culture is strong. We are a collaborative company of entrepreneurial, innovative, and talented people who believe in our future. We out think and out work the competition. We look outside our walls and are energized by our fast-paced trajectory.

Our vision for the future is clear. We have limitless potential to achieve unprecedented success in the insurance industry. To achieve our opportunity, a best-in-class Information Security Team must support us. 

This is an exciting opportunity to join this growing team and immediately make an impact to the overall success of the company. If you are interested in collaborating with good people who celebrate entrepreneurialism and work with commonality of purpose, Acrisure is the place for you.

Essential Duties and Responsibilities:

  • As the Information Security Risk Manager, you will become an integral part of our dynamic Governance, Risk, and Compliance (GRC) team dedicated to safeguarding the organization. Your primary responsibility is to lead the third-party risk assessment program while also providing support in managing SOC2 assessments, conducting policy reviews, and evaluating the impact of regulatory changes. You will guide a talented team focused on securing Acrisure's information in an ever-changing landscape. Moreover, you will benefit from collaborating with and learning from experienced information security experts who are specialists in their respective areas.

  • Provide leadership and direction for the entire third-party risk assessment program, overseeing risk assessment strategies and ensuring alignment with organizational objectives and priorities.

  • Develop and maintain strong relationships with key stakeholders, including senior leadership, business units, legal, compliance, and IT teams, to facilitate smooth third-party risk management processes.

  • Stay abreast of relevant regulatory requirements, industry standards, and best practices to ensure the program remains compliant with all applicable laws and regulations.

  • Conduct comprehensive third party risk assessments, analyzing security policies, procedures, controls, and compliance with regulatory requirements. Perform in-depth technical assessments of third-party solutions, evaluating compatibility with our network infrastructure and data handling practices.

  • Collaborate and build relationships with different business partners and provide guidance regarding program requirements on the onboarding and management of third-parties.

  • Assist with the compilation and reconciliation of third-party reporting data for internal reports.

  • Drive ongoing enhancements to the third-party risk assessment program, identifying areas for improvement and implementing effective solutions.

This description is not meant to be all-inclusive and may be modified from time to time at the discretion of management.

Competencies:                                                       

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Education and/or Experience:

  • A seasoned professional with 5+ years of progressive experience in IT security

  • Proven expertise in managing timelines and deliverables effectively.

  • Strong leadership skills with the ability to inspire and guide a team of security professionals.

  • Excellent communication and interpersonal skills, with the ability to engage effectively with all levels of the organization and external partners.

Other Qualifications:

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Acrisure

View company profile →