GRC Careers: AI Governance, Risk and Compliance JobsConnecting Talent and Trust. Post a Job Log in

JobsRemoteDirector of Cybersecurity Programs & Sector Engagement

Director of Cybersecurity Programs & Sector Engagement

NGO Information Sharing and Analysis Center (NGO-ISAC)
CybersecurityRemoteFull-timeEast Coast preferred · Remote$115,000 - $150,000

NGO Information Sharing and Analysis Center (NGO-ISAC) is hiring for the job of Director of Cybersecurity Programs & Sector Engagement, East Coast preferred · Remote. This is a Cybersecurity job in the governance, risk, and compliance field, with a posted range of $115,000 - $150,000. Review the full details below and apply directly with NGO Information Sharing and Analysis Center (NGO-ISAC).

Organization: NGO Information Sharing and Analysis Center (NGO-ISAC)Location: East Coast preferred · RemoteWorkplace: RemoteFocus: CybersecuritySalary: $115,000 - $150,000Posted: Sep 22, 2026
NGO Information Sharing and Analysis Center (NGO-ISAC) is hiring for this Cybersecurity job in East Coast preferred, one of the metros GRC Careers tracks for governance, risk, and compliance hiring.

Who We Are NGO-ISAC is a 501(c)(3) nonprofit that strengthens the security of U.S.-based nonprofits. We are the leading cybersecurity community for non-governmental organizations, serving 400+ members including think tanks, human rights organizations, foundations, environmental groups, and healthcare nonprofits and partnering with private sector organizations both large and small. We're the cybersecurity backbone keeping civil society functioning in an increasingly digital world. Our mission: Boost cybersecurity maturity in NGOs through strategic intelligence, best practices, and immersive education, fostering a resilient and collaborative security culture. Who You Are NGO-ISAC is hiring a leader to build and run its cybersecurity programs and sector engagement work. Much of this function is still being built, and the person in this role will design it. They will set the direction for threat intelligence sharing and collective defense, create the programs and resources that raise members' security maturity, and represent NGO-ISAC across government, industry, and the wider cybersecurity community. The stakes are direct: when a nonprofit or a newsroom is compromised, people can be surveilled or detained. This role builds the programs that help members prevent and recover from those attacks. This is a senior role with real ownership and the authority to act on it, accountable to NGO-ISAC's budget, strategy, and shared leadership. It suits a confident expert who collaborates well, respects what others know, and stays open to feedback. This role is fully remote within the United States. We prefer candidates on the East Coast for time-zone overlap and the occasional in-person event; travel required. This role owns what NGO-ISAC produces: curriculum, intelligence products, technical content, and its accuracy. Membership owns the member transaction: who joins, who renews, what they pay, and what the record says. Community & Partnerships owns the member relationship: engagement, convening, and peer community. It also owns partnerships, from peer organizations through commercial and technology partners; this role assesses the technical fit of technology partners. All three functions serve the same organizations through different work. What You'll Do Cybersecurity programs and member support Develop security initiatives suited to how nonprofits actually work and what they can resource. Design programs that scale, such as security assessments, resilience guidance, and training. Develop and deliver member training, such as phishing simulations, incident-response drills for non-technical staff, and executive security briefings. Spot emerging threats to civil society and get ahead of them. Produce practical tools and resources that raise security maturity across the sector. Make sure programs deliver measurable value to members. Work with Community & Partnerships, the member-facing liaison for programming, on member needs, program feedback, and the framing and accessibility of content, with this role deciding what is published. Threat intelligence and collective defense Run the collection, analysis, and sharing of threat intelligence relevant to nonprofits. Coordinate intelligence sharing among members. Grow and manage the intelligence-sharing platform and its governance, coordinating with Community & Partnerships, which owns broader community engagement channels. Govern intelligence sharing under Traffic Light Protocol, protecting member identity. Issue alerts and guidance on emerging threats. Support members during incidents that affect the sector. Maintain relationships with other ISACs and information-sharing networks. Sector leadership and strategic engagement Build relationships with CISA, the National Council of ISACs, and peer ISACs. Assess the technical fit of technology and commercial partners, supporting the partnership program owned by Community & Partnerships. Take part in working groups and joint initiatives. Represent NGO-ISAC at conferences, forums, and sector convenings. Contribute thought leadership on the threats facing civil society. Development and funding support (In partnership with the COO) Translate program impact into propositions that funders can support. Contribute to grant proposals and funder conversations. Build relationships with partners whose interests align with the sector's security. Team leadership Manage and mentor program staff. Set clear priorities and objectives. Deliver programs and services reliably. Coordinate across the organization to support the work. What You Bring Required 8 or more years in cybersecurity, threat intelligence, or information security. Experience in collaborative security settings such as ISACs, government partnerships, nonprofits, or multi-organization efforts. A record of turning security expertise into working programs or services. Strong grasp of the current threat environment. Experience coordinating security work across multiple organizations. Clear communication with both technical and non-technical audiences. Experience leading teams or programs. Preferred Experience with nonprofits, humanitarian organizations, or civil society groups. Familiarity with frameworks such as NIST CSF, CIS Controls, or ISO 27001. Familiarity with Traffic Light Protocol, MITRE ATT&CK, or open-source intelligence. Certifications such as CISSP, GCTI, or CEH. A degree in information technology, cybersecurity, management, or a related field. Experience with threat intelligence or information-sharing programs. NGO-ISAC encourages candidates to apply even if they do not meet every qualification listed. What We Offer We want our people well and steady while they do work that matters, so the benefits are built to back that up. You get medical, dental, and vision insurance, with FSA options to stretch what you spend on care. Paid time off is unlimited, and we want you to use it. We contribute to a 403(b) for your retirement and fund professional development so y

Location and market context

This is a remote cybersecurity governance job, so it draws from a national talent pool rather than a single metro. Remote governance and compliance jobs reward candidates who can show they work effectively across time zones and distributed legal, security, and product teams. Confirm any residency, travel, or occasional-onsite expectations directly with NGO Information Sharing and Analysis Center (NGO-ISAC).

About cybersecurity governance jobs

Cybersecurity governance connects security control frameworks to business and regulatory risk, covering policy, risk assessment, and control assurance rather than hands-on operations. Jobs like this one are typically evaluated against frameworks such as NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices.

How to position yourself for this cybersecurity governance job

Strong candidates emphasize security control frameworks, risk assessment, policy and standards, and translating technical security posture into governance and board-level reporting. In your resume and outreach, tie your experience to how NGO Information Sharing and Analysis Center (NGO-ISAC) would apply NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices, and lead with concrete outcomes rather than duties.

Similar GRC jobs

More GRC jobs in East Coast preferred

Hiring for Cybersecurity?

Reach candidates who are already searching for this role, not a general audience. Your posting appears on this page, in the job alerts, and across the GRC Careers network.

Post a job  Pricing from $99 · About GRC Careers · Hiring toolkit

Want to be next in a job like this?

Jobs like Director of Cybersecurity Programs & Sector Engagement (remote) open regularly. Be first to know, privately. No current employer ever sees you looking.

New Cybersecurity jobs, the moment they post.

One click unsubscribe.
Know your GRC? Take the 2-minute AI Governance Challenge. No signup needed.
Play now →

Employer, or see something wrong with this posting? Report this posting and we will review it promptly.