Senior Manager, GRC People and Policy
Shape Security
Guadalajara, MexicoPosted Jul 2, 2026
Skip to main contentCareers at F5Sign InSenior Manager, GRC People and Policy page is loadedSenior Manager, GRC People and PolicyApplyremote typeHybridlocationsGuadalajaratime typeFull timeposted onPosted 21 Days Agojob requisition idRP1037844At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation. Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive.The Senior Manager, Cybersecurity GRC People and Policy is a critical leadership position within F5. Reporting directly to the VP of Cybersecurity Governance, Risk, and Compliance (GRC), you will oversee and expand global programs focused on risk mitigation, compliance training, vulnerability assurance, and corporate information security policies.This role operates under F5’s Freedom to Flex hybrid work model, blending remote flexibility with intentional, purposeful in-office collaboration. As a team leader, you will directly manage a cross-functional squad of specialized analysts and developers to secure F5's people element and strengthen its security posture.Key ResponsibilitiesTeam Leadership & People ManagementDirectly manage and coach a dedicated team of four specialized domains:Policy & Standards Development Analyst: Overseeing the corporate policy lifecycle.Vulnerability Assurance Analysts: Identifying and assessing people-centric and system vulnerabilities.Training Developer: Designing high-impact, modern security learning content.Training Compliance Analysts: Tracking mandatory completion rates and ensuring audit readiness.Foster an inclusive environment that aligns with F5's human-first culture and core company values.Set performance metrics and OKRs for individual contributors, tracking delivery against the broader GRC roadmap.Risk & Vulnerability AssuranceOversee risk profiling and threat modeling alongside Vulnerability Assurance Analysts to target high-risk internal groups.Mature the phishing simulation program by introducing adaptive learning paths based on real-time vulnerability data.Transform security culture from simple compliance checklists into persistent, measurable behavioral improvements across F5.Global Training Strategy & ComplianceLead the strategic direction of F5’s corporate security awareness training programs, ensuring fulfillment of onboarding and annual compliance requirements.Direct the Training Developer in creating interactive content that addresses specialized topics, including Secure Software Development Lifecycle (SSDLC), global data privacy, and data classification.Ensure strict adherence to training compliance standards to support external SOC2, ISO 27001, and regulatory audits.Policy & Standards GovernanceGovern the end-to-end lifecycle of F5’s global cybersecurity policies, standards, and procedures.Guide the Policy Analyst in translating complex legal, technical, and regulatory shifts into plain-language rules for business units.Collaborate with legal, HR, engineering, and other executives to secure alignment and formal sign-off on updated policies.Role RequirementsExperience & Leadership8+ years of experience in cybersecurity GRC, information security policy, or security awareness management.3+ years of direct people management experience leading technical and non-technical teams in a corporate environment.Proven track record of building and scaling people risk or vulnerability assurance programs in tech or security industries.Education & CertificationsBachelor’s degree in Cybersecurity, Computer Science, Technical Communications, or a related field (or equivalent professional experience).Preferred...