Cyber Security Manager
Listed on 2026-06-18
-
IT/Tech
Cybersecurity, Information Security
We are seeking an Information Security Manager to lead security operations and compliance programs across the organization. This is a hands‑on individual contributor role designed for a senior technical security professional ready to take ownership of a comprehensive security program, with the opportunity to grow into a leadership position as the function scales. The successful candidate will bring a balance of deep technical expertise and program‑level compliance experience.
This role will own day‑to‑day security tooling, lead a NIST‑aligned compliance program, develop policies in emerging technology areas including artificial intelligence, and maintain visibility into systems and assets across the environment. The position reports directly to executive leadership and partners closely with IT, Legal, HR, and business stakeholders.
- Security Operations & Engineering Endpoint Security
:
Administer and optimize Microsoft Defender across the endpoint environment, including policy configuration, alert triage, incident response, and reporting. - Network and Access Security
:
Manage the Zscaler platform (ZIA/ZPA), including policy development, traffic inspection, access controls, and integration with identity systems. - SIEM Operations
:
Own SIEM administration, detection engineering, log source onboarding, alerting, incident workflows, dashboards, and operational metrics. - Vulnerability Management
:
Lead vulnerability scanning efforts across AWS, Azure, and on‑premises environments. Prioritize, track, and validate remediation activities in partnership with IT and engineering teams. - Patch Management
:
Maintain endpoint patching programs, reporting, exception tracking, and service‑level compliance. - Digital Forensics & Incident Response
:
Investigate security events, perform forensic analysis, document findings, and coordinate response activities with internal and external stakeholders.
- NIST-Based Security Program
:
Maintain and continuously improve a security program aligned with the NIST Cybersecurity Framework, including controls mapping, evidence collection, gap analysis, and remediation tracking. - Policy Management
:
Own the security policy library, ensuring policies and standards are current, reviewed regularly, approved appropriately, and effectively communicated. - AI Governance
:
Develop and maintain policies governing AI usage, acceptable use standards, and evaluation processes for new AI technologies in coordination with Legal and IT teams. - System Inventory Management
:
Build and maintain an authoritative inventory of systems, applications, data flows, and ownership records. - Audit & Assessment Support
:
Lead responses to internal and external audits, customer security reviews, and regulatory assessments. Manage remediation efforts through closure. - Risk Management
:
Identify, document, assess, and track information security risks while providing mitigation recommendations and reporting residual risk to leadership.
- Stakeholder Engagement
:
Partner with IT, Legal, HR, and business leaders to provide practical security guidance that balances risk management with business objectives. - Security Awareness
:
Lead security awareness initiatives, including phishing simulations, training programs, and ongoing employee communications. - Vendor & Third‑Party Risk Management
:
Assess and manage security risks associated with vendors, contractors, and third‑party service providers. - Future Team Leadership
:
Establish the foundation for a scalable security organization and, as the function grows, recruit, mentor, and lead security professionals.
- Demonstrated use of AI technologies to enhance and scale security operations, with an AI‑first mindset for Security Operations.
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field, or equivalent professional experience.
- 5+ years of progressive experience in information security with expertise in security operations, engineering, or oth.
- Hands‑on administration and tuning experience with Microsoft Defender (Endpoint, Identity, and Cloud).
- Production experience…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).