Howmet Aerospace Logo

Howmet Aerospace

Manager, Cybersecurity Policy, Risk & Governance

Reposted 9 Days Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in United States
110K-130K Annually
Senior level
Remote or Hybrid
Hiring Remotely in United States
110K-130K Annually
Senior level
The Manager will lead the Cybersecurity Policy, Risk & Governance strategy, ensuring compliance with regulations and effective execution of cybersecurity initiatives.
The summary above was generated by AI
Responsibilities

Howmet Aerospace Inc. has an exciting opportunity to join our dynamic Cybersecurity team as a Manager, Cybersecurity Policy, Risk & Governance. This position will report directly to the Chief Information Security Officer (CISO).  This strategic role is responsible for leading the development, implementation, and oversight of our Cyber Policy, Risk & Governance strategy related to evolving cyber regulations and laws.

This role requires deep technical expertise, strong leadership, and the ability to translate complex regulatory and security requirements into scalable, business-friendly solutions.  As a subject matter expert in Cyber Policy, Risk & Governance, you will play a pivotal role in ensuring that cybersecurity controls are effectively designed, implemented, and communicated across the organization to protect Howmet Aerospace’s global information assets.

Major activities/key challenges:

This position does the following in accordance with all applicable International, Federal, State and local laws/regulations and the Company’s policies, procedures and guidelines:  
 

  • Align cybersecurity governance strategy with Howmet’s strategic priorities, business strategies, and standard processes.

  • Partner with Global Information Services (GIS) directors/teams and functional groups (HR, Legal, Privacy, Trade Compliance, EHS, etc.) to standardize and evolve cybersecurity posture.

  • Consult with Business Unit (BU) and Functional Area Leaders to assess governance and risk needs, delivering impactful programs in policy development, training, mentorship, and risk management.

  • Lead the global governance and risk management process to support cybersecurity maturity and performance alignment.

  • Build, lead, and mentor a high-performing cyber governance & risk team, fostering innovation and accountability.

  • Design and deliver training, communications, and tools to support cybersecurity initiatives across GIS and BU teams.

  • Develop and implement change management strategies to support adoption of new cybersecurity policies and practices.

  • Provide organizational maturity assessments and interventions to enhance cybersecurity capabilities.

  • Monitor industry trends, conduct benchmarking, and recommend solutions aligned with Howmet’s cybersecurity strategy.

  • Collaborate with CIS teams to align business processes and technology platforms for optimal governance and risk outcomes.

  • Support the CISO in strategic planning, compliance certifications (e.g., CMMC, ISO 27001), and regulatory interpretation (e.g., NIST 800-171, NIS2, UK Cyber Essentials).

  • Create and manage procedures, work instructions, and contribute to corporate cybersecurity policies and standards.

  • Track and report performance metrics to guide program investments and continuous improvement.

  • Oversee internal teams and external vendors to meet governance and risk objectives within budget and timelines.

  • Represent CIS in cross-business planning initiatives and support CISO in governance-related audits, customer inquiries, and leadership engagements.

  • Serve as a leadership proxy for the CISO when required.

Essential knowledge, skills, and abilities:

  • Proficiency in Microsoft Office Suite (Word, Excel, PowerPoint, Visio, Project, Outlook, SharePoint).

  • Expertise in designing and delivering GRC programs and cybersecurity governance frameworks.

  • Strong understanding of global cybersecurity laws, regulations, and standards (e.g., NIST CSF & RMF, ISO 27001, TISAX, AirCyber).

  • Ability to interpret and apply regulatory requirements to policy development and risk mitigation strategies.

  • Skilled in risk tracking and analysis using tools such as risk registers.

  • Strong analytical and decision-making capabilities based on data and cybersecurity trends.

  • Experience in incident response planning and governance issue resolution.

  • Exceptional communication and presentation skills for both technical and non-technical audiences.

  • Proven ability to influence and collaborate across all organizational levels without direct authority.

  • Experience presenting to executive leadership and boards.

  • Deep understanding of IT systems, infrastructure, and cybersecurity technologies.

  • Demonstrated leadership, problem-solving, and change management skills in a global, decentralized environment.

Qualifications

Basic Qualifications:

  • Bachelor’s degree in business administration, Cybersecurity, Management of Information Systems (MIS), or a related field from an accredited institution.

  • At least 5 years of experience leading cybersecurity programs, including 2+ years in cyber 

    governance and risk management in a global organization.

  • At least one Industry certifications such as CISSP, ISO 27001, CMMC CCP or equivalent.

  • Hands on experience implementing successful ISO27001 certifications 

  • Must be legally authorized to work in the United States without sponsorship.

Preferred Qualifications:

  • Juris Doctor (JD) in Cyber Law, Intellectual Property Law, or related governance field.

  • Advanced certifications: CMMC CCA, CISM, ISO 27001 Lead Implementer, ITIL, CRISC, GRC, or CISO-level credentials.

  • Experience leading global cyber governance programs in a complex enterprise environment; preferably in a manufacturing environment

 

Work Location & Travel Requirements
This position follows a hybrid or remote work model based on the candidate’s proximity to a Howmet Aerospace facility:

  • Candidates located within 65 miles of a Howmet facility will be expected to work a hybrid schedule aligned with local site expectations.
  • Candidates located outside of a commuting distance may be eligible for remote work, with predetermined travel to the Pittsburgh Howmet Corporate Center (typically one week per month or as business needs require).
  • Outside of remote and hybrid location travel schedules, additional travel up to 25% may be required. 

Howmet Aerospace reserves the right to modify work location expectations based on evolving business needs

Salary Range: $110k - $130k/year approximation (actual compensation is subject to variation due to factors such as education, experience, skillset, and/org. location).

About Us

Howmet Aerospace Inc. (NYSE: HWM), headquartered in Pittsburgh, Pennsylvania, is a leading global provider of advanced engineered solutions for the aerospace and transportation industries. Our primary businesses focus on jet engine components, aerospace fastening systems, titanium structural parts and forged wheels. With $8.3 Billion in revenue in 2025, our products play a crucial role in enabling fuel efficiency and lightweighting, contributing to our customers’ success and making a positive impact on the world. To learn more about the way Howmet Aerospace Inc. is advancing the sustainability of our customers, markets, and communities where we operate, review the 2025 Environmental Social and Governance report at www.howmet.com/esg-report. Follow: LinkedIn, Twitter, Instagram, Facebook, and YouTube.

Equal Opportunity Employer:

Howmet is proud to be an Equal Employment Opportunity employer. We are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or other applicable legally protected characteristics.

If you need assistance to complete your application due to a disability, please email [email protected]

Similar Jobs

An Hour Ago
Remote or Hybrid
CA, USA
130K-200K Annually
Senior level
130K-200K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
As a Sr. Regional Marketing Manager, you'll drive business growth by generating and accelerating pipeline, executing aligned programs, and managing budgets while collaborating closely with sales leaders.
Top Skills: Ai ToolsMarketoSalesforce
An Hour Ago
Remote or Hybrid
72K-160K Annually
Mid level
72K-160K Annually
Mid level
Fintech • Healthtech • HR Tech • Information Technology • Other • Financial Services • Telehealth
The Distribution Operations Manager drives operational excellence and training for Empathy's North American Distribution team, coordinating efforts to enhance engagement and adoption of solutions among partners and advisors.
Top Skills: ExcelGoogle SheetsKeynotePowerPointSalesforceSlackZoom
An Hour Ago
Easy Apply
Remote or Hybrid
USA
Easy Apply
182K-260K Annually
Senior level
182K-260K Annually
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
As a Security Architect, you will build secure agent runtimes and systems, ensuring robust security capabilities in agentic AI solutions while conducting security evaluations.
Top Skills: AWSAzureGCPKubernetesNode.jsPythonTypescript

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account