Senior Manager of Cyber Security
Listed on 2026-07-25
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Project Manager
Why Turtle?
At Turtle, we're redefining what it means to be an industry leader in electrical distribution, and we want you to be part of our exciting journey! For over 100 years, we've built a reputation for innovation, excellence, and exceptional customer service—and we're just getting started. We are a diverse, passionate team spread across the US, Canada, Mexico, and Puerto Rico, committed to growth, learning, and creating opportunities for each other.
At Turtle, every day is a chance to make a real difference, solve complex challenges, and push the boundaries of what's possible. We believe in fostering an environment that inspires collaboration and sparks creativity, where employees are empowered to contribute to our mission and shape the future of the industry. If you're looking for a fast-paced, dynamic career where your ideas are valued and your growth is prioritized, Turtle is the place for you.
Join us and be a part of a company that's making waves and empowering its people to do extraordinary things every single day!
The Sr. Manager of Cyber Security is a hands-on technical manager responsible for executing and managing Turtle's day-to-day cybersecurity operations, program compliance, and team performance. Reporting to the Chief Technology and Information Security Officer (CTISO), this role bridges tactical security operations with programmatic oversight—actively working within security toolsets, leading incident response, managing the organization's Managed Security Service Provider (MSSP) relationship, and owning the compliance posture across ISO 27001, NIST CMMC Level 2, and the organization's aspirational ISO 9001 program.
The Director leads a team with dedicated coverage across Governance, Risk, and Compliance (GRC) and technical security operations, and drives continuous improvement across people, process, and technology.
This is a USA based position. The Director of Cyber Security is expected to travel to the Corporate headquarters in Clark, NJ as needed, approximately 1–2 times per quarter. Additional travel to USA branch locations will be required on occasion. The role requires availability for after-hours response in the event of a security incident.
What You'll Do:Security Operations & Tactical Management:
- Manage the organization's security operations function, serving as a hands-on practitioner across the security toolset; accountable for threat monitoring, vulnerability management, and incident response from detection through post-incident review.
- Maintain and continuously improve security controls and tooling configurations across endpoint, network, email, and identity environments, in coordination with the MSSP and technical staff.
- Own the phishing simulation program and enforce associated security policies, coordinating outcomes with HR and department management as required.
MSSP & Vendor Management:
- Support and manage the MSSP relationship end-to-end; direct day-to-day service activities, hold the provider accountable to SLAs, and ensure threat detection and incident escalation protocols meet organizational requirements.
- Manage security vendor relationships across the technology portfolio and oversee the vendor risk register.
Compliance & Governance:
- Enforce the organization's compliance posture for ISO 27001 and NIST CMMC Level 2; direct the GRC function across evidence maintenance, risk register management, policy governance, and audit readiness.
- Provide framework ownership for the organization's ISO 9001 program; owns the GDP framework alignment and cross-functional coordination, while operational teams retain ownership of document content and process definitions.
- Ensure all internal and external audit activity is effective through the GRC Program Manager, for nonconformance tracking, root-cause analysis, and findings closure.
AI Governance & Risk:
- Represent Cyber Security's independent role in Turtle's three-party AI governance model, serving as the security and risk voice alongside the CTO (AI strategy, budget, and vendor governance) and Data Services & Enterprise Architecture (AI roadmap execution) to evaluate, approve, and monitor AI tool adoption across…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).