More jobs:
Senior Manager, Infrastructure Security
Job in
New York, New York County, New York, 10261, USA
Listed on 2026-08-20
Listing for:
Simpson-Thacher-
Full Time
position Listed on 2026-08-20
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer, Network Security, Cloud Computing: Infrastructure & Operations
Job Description & How to Apply Below
The Senior Manager, Infrastructure Security, is responsible for defining, maturing, and advancing the Firm's infrastructure security strategy across servers, operating systems, cloud platforms, data protection technologies, core infrastructure networks, and foundational technology services. This leader will establish security standards, drive engineering excellence, and ensure security controls are consistently designed, implemented, measured, and continuously improved across on-premises, cloud, and hybrid environments.
The role partners closely with Infrastructure Engineering, Cloud Engineering, Architecture, Identity & Access Management, Network Engineering, Risk Management, and Technology Operations teams to reduce cyber risk while enabling business growth and innovation.
The successful candidate combines deep technical expertise with strong leadership skills and is equally comfortable developing long-term security roadmaps and rolling up their sleeves to solve technical challenges. This individual must be highly analytical, detail-oriented, adaptable, and capable of navigating ambiguity while driving measurable security outcomes in a fast-paced enterprise environment.
ESSENTIAL JOB DUTIES & RESPONSIBILITIES Define and execute the Firm's infrastructure security strategy, roadmap, and operating model.
Develop and maintain plans to mature infrastructure security capabilities aligned with business objectives and enterprise risk priorities.
Establish security standards, architectural patterns, engineering principles, and technical guardrails across infrastructure platforms.
Lead the design, implementation, and management of security controls across:
Windows and Linux server environments, Endpoint platforms (Windows, macOS, mobile), Cloud environments (Azure, SaaS/PaaS etc.), Storage and data protection platforms, Network security technologies (Firewalls, IDS/IPS etc.), Virtualization and container platforms, Remote access technologies
Partner with cloud and infrastructure engineering teams to ensure secure deployment patterns for compute, storage, identity integration, and networking.
Establish and execute governance and monitoring processes for cloud security posture management and workload protection
Provide strategic oversight for network security controls, segmentation, secure connectivity, and perimeter defense technologies.
Govern and oversee optimization of security technologies such as firewalls, intrusion detection/prevention systems, network access control, and remote access (VPN).Drive automation and engineering excellence through infrastructure-as-code, policy-as-code, and security automation initiatives.
Evaluate, select, and manage lifecycle of security-owned infrastructure protection technologies in partnership with enterprise infrastructure and application teams.
Identify and drive remediation of infrastructure security risks including misconfigurations, missing controls, unpatched systems, and excessive system-level privileges.
Support secure adoption of new infrastructure technologies including container platforms, platform services, and automation frameworks.
Establish metrics, key performance indicators (KPIs), and key risk indicators (KRIs) to measure program effectiveness and security maturity.
Influence engineering and technology decisions to ensure security requirements are integrated early in the design and delivery lifecycle.
Communicate infrastructure security risks, tradeoffs, and recommendations to senior leadership and technical stakeholders.
Stay current on emerging infrastructure threats, vulnerabilities, and defensive technologies.
Drive continuous improvement of infrastructure security controls and detection capabilities.
Build, mentor, and lead a high-performing team of infrastructure security engineers.
Promote a security engineering culture focused on automation, resilience, and measurable risk reduction.
Participate in on-call rotation to support after-hours incident response and critical security operations as needed.
EDUCATION Bachelor’s degree in information security, IT, risk management, related discipline, or equivalent experience
Professional certifications such as CISSP, CISM, or similar preferred SKILLS AND EXPERIENCE
10+ years of progressive experience in infrastructure security, network security, cloud security, or related cybersecurity disciplines, including experience within complex, large-scale enterprise environments
Proven experience developing, implementing, and maturing security programs that protect critical infrastructure across on-premises, cloud, and hybrid technology environments.
Demonstrated success leading security engineering initiatives that reduce risk, improve security posture, and strengthen resilience across enterprise technology platforms.
Experience partnering closely with infrastructure, cloud, network, and application engineering teams to design and implement security controls at scale while enabling business and technology objectives.
Deep technical knowledge…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×