Own Every Moment at NetApp
At NetApp, your ideas power innovation. We lead in intelligent data infrastructure—delivering unified storage, integrated data services, and solutions that help organizations unlock the full potential of their data, from AI to multicloud.
Ready to innovate and contribute to our path to $10B? Here, you'll collaborate with passionate teams, tackle real-world challenges, and see your impact in how customers transform and grow. If you're ready to bring curiosity, creativity, and drive to every moment, NetApp is where your journey begins. Join teams that innovate to elevate, drive results, and excel together across every function.
Global Cybersecurity Compliance Manager
Morrisville, North Carolina, United StatesJob Summary
The Global Cybersecurity Compliance Manager role is a key leadership position responsible for leading an international team of compliance, controls, and policy professionals within Global Security. This role provides people management, operational direction, and HR oversight for a geographically distributed team, including performance management, coaching, career development, capacity planning, prioritization, team operating rhythms, and talent planning. The Global Cybersecurity Compliance Manager partners with NetApp Business Unit Leaders across the enterprise to communicate, verify, and track internal cybersecurity compliance with NetApp policies and standards, industry requirements, external certification controls, regulatory expectations, and customer-required controls. The role also directs the narrative and execution of NetApp’s audit and compliance program, including the intake, coordination, documentation, implementation, and management of customer, regulatory, and internal audit requirements; development and maintenance of compliance controls; identification and escalation of risks; and documentation of issues in a system of record.
Job Responsibilities
- Lead, coach, and manage a team of six compliance, controls, and policy professionals within Global Security, including role clarity, workload prioritization, delegation, accountability, project planning, and delivery from inception through completion.
- Perform core people-management and HR responsibilities, including performance reviews, goal setting, development planning, coaching, feedback, recognition, succession planning, team engagement, hiring support, onboarding, and budget management.
- Lead control testing and compliance discussions related to frameworks such as ISO 27001, SOC 2, NIST 800-53, CIS benchmarks, and other applicable requirements; provide executive-ready status updates, risk insights, and remediation expectations to senior leaders.
- Oversee the intake, assignment, quality review, and timely completion of customer cybersecurity questionnaires and due diligence requests from Sales, ensuring accurate responses, clear ownership, and consistent communication across stakeholders.
- Partner with business units, internal control owners, and cross-functional peers to appropriately scope, validate, test, and document control statements, ensuring clear accountability and defensible evidence for audit and compliance requirements.
- Collaborate with internal business unit leaders and geographically distributed teams to gather, validate, and provide evidence and information for internal audits, external audits, regulatory inquiries, customer assessments, and certification activities.
- Identify, communicate, and escalate gaps in processes, control effectiveness, policy adherence, compliance obligations, and remediation ownership to senior leadership across the enterprise, as appropriate.
- Manage the review of customer and partner contracts for information security, compliance, audit, and control requirements; coordinate business, legal, security, and technical input to ensure commitments are understood and achievable.
- Ensure Global Security policies, standards, procedures, control documentation, and supporting artifacts are documented, reviewed, maintained, and updated in alignment with customer expectations, regulatory obligations, audit requirements, and internal governance cadence.
Job Requirements
- Bachelor's degree in business, accounting, finance, computer science, information systems, engineering, or a related field strongly preferred; equivalent combination of education and experience may be substituted in lieu of degree.
- At least five (5) years of GRC (governance, risk, compliance) experience with methodologies, activities, tools and enablers in a technology related industry or eight (8) – ten (10) years of experience in business process analysis, project methodology, or systems development life cycle through education or on-the-job experience, required.
- Demonstrated experience leading compliance, controls, policy, audit, or risk-management teams within a global security, cybersecurity, technology, or regulated enterprise environment.
- Strong understanding of compliance and regulatory areas such as GDPR, DFARS/NIST 800-171, NIST 800-53, ISO 27001, DORA, and related risk events, with the ability to translate requirements into clear controls, ownership expectations, and executive-level risk communication.
- Excellent written and verbal communication skills, including the ability to communicate expectations, performance feedback, audit status, risk, and compliance requirements clearly to employees, peers, business leaders, and senior executives.
- Strong analytical and problem-solving skills
- Demonstrated ability to work effectively with people from different disciplines, regions, cultures, and technical backgrounds, including the ability to influence without direct authority and build alignment across distributed teams.
- Ability to adapt to a dynamic, rapidly changing business, technical, regulatory, and organizational environment while maintaining team focus, accountability, engagement, and delivery discipline.
- Preferred Qualifications
- Information security related training or certifications such as CISA, CISSP or CRISC
- Prior experience directly managing senior individual contributors, or specialized compliance professionals in a global cybersecurity, security governance, risk, compliance, controls, or policy function.
- Experience building team operating models, improving team execution, developing talent, and translating business priorities into measurable team goals and outcomes.
- Experience performing information security audits or risk assessments
- Familiarity with security audit, risk management, policy governance, controls management, and compliance operating models, including how these functions scale across a global enterprise.
- Knowledge of emerging regulatory requirements, including the Digital Operational Resilience Act (DORA), artificial intelligence (AI) governance, and evolving customer compliance expectations, with the ability to guide teams through new or changing obligations.
At NetApp, we embrace a hybrid working environment designed to strengthen connection, collaboration, and culture for all employees. This means that most roles will have some level of in-office and/or in-person expectations, which will be shared during the recruitment process.
Equal Opportunity Employer:
NetApp is firmly committed to Equal Employment Opportunity (EEO) and to compliance with all federal, state and local laws that prohibit employment discrimination based on age, race, color, gender, sexual orientation, gender identity, national origin, religion, disability or genetic information, pregnancy, protected veteran status, and any other protected classification.
Why You'll Thrive at NetApp
At NetApp, you won't wait for the perfect moment—you'll make it. The early planning, the extra thought, the bold idea that turns good into great: That's how our people operate and how we continue to push the boundaries of data infrastructure.
NetApp is the trusted partner for organizations transforming data into opportunity. As the only enterprise-grade storage service natively embedded in Google Cloud, AWS, and Microsoft Azure, we empower customers to run everything from traditional workloads to enterprise AI with unmatched performance, resilience, and security.
Our culture
We celebrate mold breakers, bold thinkers, and problem solvers. We reward initiative, impact, and ownership. We provide flexibility so you can balance professional ambition with your personal life. Here, differences are not just welcomed—they drive everything we do.
If you're ready to innovate, rise to the challenge, and own every moment - make your next move your best one. Apply now.
Submitting an Application
To ensure a streamlined and fair hiring process for all candidates, our team only reviews applications submitted through our company website. This practice allows us to track, assess, and respond to applicants efficiently. Emailing our employees, recruiters, or Human Resources personnel directly will not influence your application.
AI Disclosure
For select roles, some stages of our hiring process may use artificial intelligence tools to help evaluate applications and candidate selection. These tools support—rather than replace—human decision-making.
ApplyJobs for you
- EBC Specialist Schiphol-Rijk, North Holland, Netherlands
- Software Engineer Bengaluru, Karnataka, India
- Senior Cloud Marketing Manager San Jose, California, United States; Bellevue, Washington, United States; Boulder, Colorado, United States; Morrisville, North Carolina, United States
Your recently viewed jobs will appear here.
You have no saved jobs. Start browsing jobs here
Recruitment scam warning
When conducting a job search, you’re bombarded with outreach. Here are tips to keep you safe from recruitment fraud.
Stay in touch
Equal Opportunity Employer*
NetApp is firmly committed to Equal Employment Opportunity (EEO) and to compliance with all federal, state and local laws that prohibit employment discrimination based on age, race, color, gender, sexual orientation, gender identity, national origin, religion, disability or genetic information, pregnancy, protected veteran status and any other protected classification. We pledge to take every reasonable step to ensure that our applicants and employees are respected, treated fairly and with dignity. See the EEO poster, Know your rights poster, and NetApp EEO policy. NetApp makes reasonable accommodations, consistent with applicable laws, for religious purposes and for the known physical or mental limitations of an otherwise qualified applicant or employee with a disability, who can perform the essential job functions unless undue hardship would result.
State-specific postings/notices to applicants regarding contract compliance can be found here in English and here in Spanish, and fair employment practice information can be found here.
Reasonable Accommodations
At NetApp, we are committed to fostering an inclusive and accessible workplace where individuals with disabilities can thrive. In alignment with our values, NetApp provides reasonable accommodations and adjustments where possible to qualified applicants and employees with disabilities, in accordance with employment rights and regulations relevant to their country of employment, to ensure equal access to employment opportunities and job performance.
Applicants who would like to request an accommodation or adjustment are encouraged to Contact Us. Each request will be assessed on a case-by-case basis, in accordance with applicable laws and our commitment to equity and belonging within our culture, values and business practices. Requests will be handled confidentially and respectfully, and we will work collaboratively to identify effective solutions.
- For reasonable accommodations in Germany, click here.
- For reasonable accommodations in France, click here.
- For reasonable accommodations in The Netherlands, click here.
Please note that we do not accept unsolicited resumes to the above email address.
Data privacy
We care about your privacy and, therefore, ask that you read our Candidate Privacy Notice before you submit any personal information to us.
NetApp does not carry out any solely automated decision making (i.e. the process of making a decision by automated means without any human involvement) in determining your suitability or eligibility for specific roles.
However, the processing of your personal information is carried out with the aid of manual and automated tools. In particular, NetApp may use an automated employment evaluation tool or similar tool as one of several tools, actions, and/or steps to assist with NetApp’s review of candidate applications for various hiring needs.
Currently, when addressing certain hiring needs, NetApp uses the following tools:
- Eightfold (eightfold.ai): This tool can provide an initial ranking of a candidate’s skills and experience, based on information provided by the applicant in the application and/or supporting documentation, in comparison to the NetApp designated key requirements of a specific role. Additionally, the tool may be used to help review and/or rank internal employees seeking promotion or other internal mobility. An independent audit of the Eightfold Matching Model tool can be found at https://eightfold.ai/nyc-eightfoldmatching-model.
- Findem (findem.ai): This tool is used to help identify candidates whose skills and experience may be relevant to open roles at NetApp, using publicly available professional information. Findem may also be used to assist with candidate matching, AI-assisted screening, and recruitment communications.
Our talent acquisition team or our recruiters will ultimately select the candidates for further consideration, following human review of any automated evaluation results and associated underlying documentation (or lack thereof) submitted with the candidates’ application.
Candidates may request an alternative selection process which will not be subject to the Eightfold matching tool or to any electronic automated employment evaluation by contacting NetApp at careers@netapp.com. To bypass the Eightfold matching tool or any electronic automated employment evaluation, you must include a resume and job ID with your email to careers@netapp.com and you must include in the subject line of your email: Data Privacy Request. Candidates who have questions or want to request additional information on the source of data, type of data, and/or collection of data related to the candidate review process should contact NetApp at careers@netapp.com
Note: Eightfold is not applicable to temporary hiring opportunities. If you are interested in temporary roles, you can apply via a third-party site managed by our preferred supplier, Magnit Global. Magnit Global will provide its own privacy disclosures for your review as part of the application process.
Submitting an application
To ensure a streamlined and fair hiring process for all candidates, our team reviews apcplications submitted through our company website only. This practice allows us to track, assess, and respond to applicants efficiently. Emailing our employees, recruiters, or Human Resources personnel directly will not influence your application.
AI Disclosure
For select roles, some stages of our hiring process may use AI-powered tools to assist with tasks such as identifying relevant candidates, matching skills and experience to role requirements, and conducting initial screenings. These tools support - rather than replace - human decision-making. To learn more, please see our AI Transparency Statement. If you would prefer not to engage with an AI-assisted process, you can request an alternative by contacting careers@netapp.com. Choosing an alternative process will not impact your candidacy in any way.