Information Systems Security Manager
Role details
Job location
Tech stack
Job description
Job Summary: The ISSM is a key part of our Information Technology Department, responsible for managing the organization's digital assets and information systems, ensuring their security, integrity, and confidentiality. The role includes managing and enforcing our security policies and procedures, risk management, information security awareness, and incident response. Must be able to collaborate effectively with stakeholders across all levels of the organization, from the technical team to executive leadership., * Develop and implement an overall information security strategy and security programs to protect the organization's information systems and data.
- Understand and ensure compliance with NIST 800-171 and CMMC regulations, as well as other applicable security standards.
- Stay updated with the current landscape of threats, vulnerabilities, and advances in information security.
- Develop, implement, and maintain security policies, standards, guidelines, and procedures to ensure ongoing information security.
- Collaborate with stakeholders across the organization to identify, analyze, and mitigate information security risks.
- Coordinate with technology and business groups to assess, implement, and monitor IT-related security risks/hazards.
- Oversee incident response planning as well as the investigation of security breaches, and assist with disciplinary and legal matters associated with such breaches.
- Conduct regular security audits, vulnerability assessments, and penetration tests to ensure compliance with NIST 800-171 and CMMC standards.
- Oversee the training and dissemination of security policies and practices.
- Evaluate and recommend security technologies to strengthen our defenses.
- Ensure compliance with changing laws and applicable regulations related to information security.
Requirements
Do you have experience in Stakeholder management?, Do you have a Bachelor's degree?, * Bachelor's degree in information technology, Computer Science, Information Security, or related field. An advanced degree or security-related certifications (like CISSP, CISM, or CISA) will be an added advantage.
- Relevant IT certifications (such as CompTIA A+, Microsoft Certified Desktop Support Technician) are preferred.
- Minimum of 5 years' experience in an information security role, preferably in a leadership role.
- Demonstrated understanding of and experience with NIST 800-171 and CMMC standards.
- Strong knowledge of security architectures, systems, application development and IT security best practices.
- Proficient understanding of regulatory requirements and compliance issues affecting the security landscape.
- Knowledge of disaster recovery, computer forensic tools, technologies, and methods.
- Excellent understanding of information security concepts, protocols, industry best practices, and strategies.
- Excellent communication skills with the ability to explain complex security topics in an understandable manner.
- Strong decision-making skills, with the ability to make clear judgments based on data and understand the implications.
Benefits & conditions
- Competitive compensation package, including pay advancement opportunities for industry certifications and continuing education
- Comprehensive benefits package, including health, dental & vision insurance, retirement plans, company paid & voluntary life insurance, company paid short-term disability, voluntary long-term disability, critical illness & accident insurance and paid time off
- Company-provided training, tools and equipment, including $150 annual boot allowance for employees required to wear safety boots in their jobs
- Career advancement potential within a growing company.
Join us in our mission to provide comprehensive fire protection solutions and peace of mind to our customers and together let's make the world a safer place.