Position SummaryThe Senior Manager of Governance & Assurance Programs is responsible for leading the internal governance and assurance programs across Lenovo’s enterprise security landscape. This role owns the enterprise security policy framework, internal risk register, and overarching governance mechanisms that ensure clear accountability, alignment with regulatory requirements, and transparency of Lenovo’s security posture.Working alongside the Sr. Manager of Global Certifications, this position is critical to delivering a unified assurance model that spans cybersecurity, physical security, product and services security, supply chain security, and data protection. The role also collaborates closely with the Director of AI Governance to ensure internal security policies and assurance programs are aligned with responsible innovation and emerging technology governance.Key ResponsibilitiesEnterprise Security GovernanceLead the enterprise security policy and standards lifecycle, including development, publication, exception handling, and periodic review.Chair or coordinate cross-functional governance forums to support security policy decisions, policy exception escalations, and investment prioritization.Maintain alignment with Legal, Privacy, Compliance, and ERM teams to ensure governance frameworks meet internal and external obligations.Security Risk ManagementOwn and maintain the unified security risk register, integrating input from cybersecurity, physical security, product, supply chain, and data protection stakeholders.Drive cross-functional risk assessment cycles and support mitigation tracking across business units and geographies.Ensure risk data is integrated with enterprise risk management (ERM) processes and executive dashboards.Internal Assurance ProgramsDevelop and lead assurance programs to validate the effectiveness of security controls outside of formal certification scopes.Partner with internal stakeholders (e.g., audit, compliance, engineering, infrastructure, physical security) to conduct deep-dive reviews and assurance engagements.Provide input into control automation and continuous monitoring initiatives.Program Operations & MetricsOversee governance and assurance reporting, ensuring executives receive clear, actionable insights on control maturity, residual risk, and policy effectiveness.Collaborate with the Program Manager, Policy Operations to ensure timely policy publishing, metrics maintenance, and governance documentation.Basic QualificationsBachelor’s degree in Information Security, Risk Management, Public Policy, or related field; certifications such as CISA, CRISC, CGEIT, or ISO Lead Implementer are strongly preferred.12+ years of experience in security governance, GRC, assurance, or enterprise risk roles.Strong knowledge of policy frameworks (e.g., NIST CSF, ISO 27001, COBIT), regulatory trends (e.g., GDPR, DORA, NIS2), and risk methodologies.Experience leading enterprise-wide programs in a global, matrixed organization.Ability to drive policy consensus and risk-based decision-making across technical and business stakeholders.Preferred QualificationsExperience aligning internal security policies with emerging domains such as AI governance, responsible innovation, or digital ethics.Familiarity with cross-domain security practices (cyber, physical, supply chain, and product security).Strong communication skills, including the ability to produce executive-level reporting and facilitate governance forums.Comfortable managing across time zones and regions.The base salary budgeted range for this position is $170K-202K. Individuals may also be considered for bonus and/or commission.Lenovo’s various benefits can be found on .In compliance with Colorado's EPEWA, the expected application deadline for this position is December 2, 2025. This applies to both external and internal candidates.#LI-JL1#LI-REMOTE
Ces cookies sont nécessaires au fonctionnement du site web et ne peuvent pas être désactivés dans nos systèmes. Vous pouvez configurer votre navigateur pour qu'il bloque ces cookies, mais certaines parties du site risquent alors de ne pas fonctionner.
Sécurité
Expérience utilisateur
Cookies ciblés
Ces cookies sont placés par nos partenaires publicitaires via notre site web. Ils peuvent être utilisés par ces entreprises pour créer un profil de vos intérêts et vous montrer des publicités pertinentes ailleurs.
Google Analytics
Google Ads
Nous utilisons des cookies
🍪
Notre site web utilise des cookies et des technologies similaires pour personnaliser le contenu, optimiser l'expérience de l'utilisateur, individualiser et évaluer la publicité. En cliquant sur OK ou en activant une option dans les paramètres des cookies, vous acceptez cela.
Les meilleurs emplois à distance par courriel
Rejoins 5'000+ personnes qui reçoivent des alertes hebdomadaires avec des emplois à distance!