Director of Cyber and IT Risk Oversight
ONSITE POSITION - STAFFORD, TX
Microvast Holdings, Inc. (Nasdaq: MVST) is a technology innovator that designs, develops and manufactures lithium-ion battery solutions. Founded in 2006 and headquartered in Stafford, TX, Microvast is renowned for its cutting-edge cell technology and its vertical integration capabilities which extend from core battery chemistry (cathode, anode, electrolyte, and separator) to battery packs. By integrating the process from raw material to system assembly, Microvast has developed a family of products covering a broad breadth of market applications. More information can be found on the corporate website: www.microvast.com
Job Description
The Director of Cyber and Technology Risk Oversight is a senior leadership position responsible for strategically managing and governing Microvast's cyber and technology risk environment.
Strategic Leadership
As a Director of Cyber and Technology Risk Oversight, this role involves leading a team of professionals and providing executive oversight to the managed services provider tasked with conducting cyber risk assessments of technology, third-party reviews, and emerging technologies. In this role, you will set the strategic vision, establish risk tolerance thresholds, and ensure consistent execution of risk processes across the enterprise. Additionally, you will oversee key risk functions, including operational risk management of the cyber/IT risk registers, handling findings, and managing cyber risk aspects from business activities. Here, you will make an impact by:
- Develop and implement a comprehensive cyber and technology risk management strategy aligned with organizational goals.
- Set strategic vision and establish risk tolerance thresholds.
Risk Assessment And Management
- Oversight of the identification, assessment, and prioritization of cyber and technology risks.
- Oversight the development and execution of risk mitigation plans.
Team Leadership
- Manage and mentor a team of professionals.
- Foster a culture of risk awareness and proactive management.
Governance And Compliance
- Ensure compliance with relevant industry standards, regulations, and best practices through risk assessments.
- Oversee the execution of risk processes consistently across the enterprise.
Vendor And Third-Party Oversight
- Provide executive oversight of managed services providers responsible for assessments, third-party reviews.
Operational Risk Management
- Oversee operational risk functions, including cyber/IT risk registers and finding management.
- Manage cyber risk components of business activities.
Reporting And Communication
- Communicate risk management strategies and outcomes to executive leadership and stakeholders.
- Prepare and present risk reports and dashboards.
Qualifications
- Bachelor’s degree or higher (completed and verified prior to start)
- Ten (10) years of experience in Cybersecurity in a private, public, government, or military environment
- Five (5) years of management and/or supervisor experience
- CISSP certification
- One of the following certifications: SANS OR ISACA CGEIT, CISA, CISM, ISO 31000 CRISC, ISO 27001 Lead Auditor
Preferred Skills
- Master’s degree in computer engineering, computer systems or information technology field from an accredited institution
- Excellent communication, negotiation, and relationship-building skills.
- Strong analytical and problem-solving skills
- Ability to work collaboratively with internal teams and external vendors.
- Deep understanding of cyber risk frameworks and methodologies (NIST CSF/RMF, ISO 27001/27005, COBIT, etc.)
- Experience overseeing third-party cyber risk processes
- Familiarity with GRC tools and risk tracking platforms
- Experience working with managed service providers or co-sourced risk execution models
- Strong leadership presence and communication skills across technical and business stakeholders
- Hands On approach to leadership
Disclaimer
This job description describes the general nature and level of work performed in this role. It is not intended to be an exhaustive list of all duties, skills, responsibilities, knowledge, etc. These may be subject to change and additional functions may be assigned as needed by management.
Pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. The total compensation package for this position may also include other elements dependent on the position offered. Details of participation in these benefit plans will be provided if an employee receives an offer of employment.