IT Security Manager - Cybersecurity M&A and Governance

Railz

Railz

IT
USD 119,560-200,840 / year
Posted on Oct 30, 2025

Position Type :

Full time

Type Of Hire :

Experienced (relevant combo of work and education)

Education Desired :

Bachelor's Degree

Travel Percentage :

15 - 25%

Job Description

Are you curious, motivated, and forward-thinking? At FIS you’ll have the opportunity to work on some of the most challenging and relevant issues in financial services and technology. Our talented people empower us, and we believe in being part of a team that is open, collaborative, entrepreneurial, passionate and above all fun.

About the role:

As an IT Security Manager - Cybersecurity M&A and Governance, you will be part of the team responsible for enhancing FIS’ cybersecurity integration program for acquired entities. You will also more broadly support maturing FIS’s cybersecurity governance and risk management programs. This role is a key driver in implementing a more streamlined and risk-based cybersecurity integration strategy that aligns M&A activities with FIS cybersecurity standards, regulatory obligations and long-term operational resilience.

You will collaborate across Cybersecurity Governance, the Integration Management Office (IMO), Lines of Business (LoBs), Privacy, Enterprise Risk and cybersecurity and operational teams from acquired companies, to embed governance and risk oversight into the M&A lifecycle and broader Cybersecurity function.

This position sits within the Cybersecurity organization and reports into leadership responsible for cybersecurity governance and risk. It is ideal for professionals who bring strategic insight and proven delivery experience in cybersecurity governance and M&A integration, as well as cross-functional leadership within complex enterprise environments.

About the team:

This team is led by an IT Security Executive supporting the Chief Information Security Officer (CISO). The focus within this team is advancing cybersecurity governance, policy and risk management across enterprise initiatives, including strategic mergers and acquisitions (M&A).

What you will be doing:

Support the Cybersecurity Governance team by leading and delivering activities that strengthen FIS’s capabilities across M&A and cybersecurity governance programs. Key responsibilities include but are not limited to:

  • Cybersecurity integration strategy enhancement: Lead the redesign of the integration framework and playbook that direct cybersecurity integration activities across M&A phases, incorporating FIS cybersecurity standards and internal governance expectations.
  • Governance model and ownership definition: Collaborate with stakeholders to define roles, responsibilities and execution protocols that support consistent onboarding and long-term sustainability across integrated environments.
  • Cybersecurity risk management and exception oversight: Contribute to the development of tools and processes that enhance visibility into cybersecurity integration risks, support exception tracking, and guide remediation planning within GRC platforms. Align risk oversight practices with recognized frameworks.
  • Tooling and process optimization: Drive rationalization of cybersecurity tooling across acquired entities to reduce complexity, eliminate shadow IT and align with enterprise standards and requirements.
  • Integration tracking, monitoring and reporting: Lead the development of cybersecurity integration roadmaps, including key activities, dependencies and timelines, and manage the execution of cybersecurity activities, as well as exceptions and issues, through complete integration.
  • Performance measurement and accountability: Develop scorecards and metrics to assess integration progress, reinforce cybersecurity ownership and promote continuous improvement across FIS.
  • Cross-functional collaboration: Partner with the Integration Management Office (IMO), Lines of Business (LoBs), Cybersecurity Operations, and teams from acquired companies to embed governance principles and cybersecurity risk management practices throughout the M&A lifecycle.
  • Compliance and framework alignment: Align cybersecurity integration and governance efforts with external frameworks such as NIST CSF, CRI and applicable regulatory mandates.

What you bring:

  • Proven experience (7+ years) in cybersecurity governance, risk management and post-acquisition integration across complex enterprise environments
  • Strong understanding of cybersecurity frameworks and regulatory standards including NIST CSF, CRI, ISO 27001 and GRC platforms
  • Demonstrated ability to lead cross-functional initiatives and collaborate with internal stakeholders and acquired company teams
  • Experience developing governance models, integration playbooks and performance metrics that support cybersecurity accountability and sustainability
  • Strategic mindset with the ability to translate cybersecurity risks into actionable governance controls and program enhancements
  • Ability to collaborate with non-technical resources and translate technical risks into governance controls and policy language
  • Comfortable juggling multiple asks, strong organizational skills and outstanding attention to detail
  • Excellent communication, documentation and stakeholder engagement skills
  • Self-starter with strong organizational skills, attention to detail and ability to manage multiple priorities
  • Willingness to travel 5% to 15% within the United States
  • CISM or CISSP Certifications are nice to have but not required

What we offer you :

  • Flexible and creative work environment.
  • Diverse and collaborative atmosphere.
  • Professional and personal development resources.
  • Opportunities to volunteer and support charities.
  • Competitive salary and benefits.
FIS is committed to providing its employees with an exciting career opportunity and competitive compensation. The pay range for this full-time position is $119,560.00 - $200,840.00 and reflects the minimum and maximum target for new hire salaries for this position based on the posted role, level, and location. Within the range, actual individual starting pay is determined by additional factors, including job-related skills, experience, and relevant education or training. Any changes in work location will also impact actual individual starting pay. Please consult with your recruiter about the specific salary range for your preferred location during the hiring process.

Privacy Statement

FIS is committed to protecting the privacy and security of all personal information that we process in order to provide services to our clients. For specific information on how FIS protects personal information online, please see the Online Privacy Notice.

EEOC Statement

FIS is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, genetic information, national origin, disability, veteran status, and other protected characteristics. The EEO is the Law poster is available here supplement document available here


For positions located in the US, the following conditions apply. If you are made a conditional offer of employment, you will be required to undergo a drug test. ADA Disclaimer: In developing this job description care was taken to include all competencies needed to successfully perform in this position. However, for Americans with Disabilities Act (ADA) purposes, the essential functions of the job may or may not have been described for purposes of ADA reasonable accommodation. All reasonable accommodation requests will be reviewed and evaluated on a case-by-case basis.

Sourcing Model

Recruitment at FIS works primarily on a direct sourcing model; a relatively small portion of our hiring is through recruitment agencies. FIS does not accept resumes from recruitment agencies which are not on the preferred supplier list and is not responsible for any related fees for resumes submitted to job postings, our employees, or any other part of our company.

#pridepass