> Markdown version of [/jobs/ext/1922481-it-security-manager](https://www.wearedevelopers.com/jobs/ext/1922481-it-security-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Manager - **Company:** All Views LLC - **Location:** Kansas City, MO, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Capability Maturity Model Integration, Cyber Security, Information Security Management, Knowledge Management, Security Information and Event Management, Software Vulnerability Management, Information Security Management System, Cybercrime, Process Control Systems, Tools for Reporting, Security Orchestration, Automation & Response - **Published:** August 4, 2026 - **Apply:** https://www.careerjet.com/job/us780b497d603f4bf7558c42ca84b2dc2b/eaa ## About the Role Requirements - Required and/or Preferred Education: * Bachelor's degree in IT Business, Business Administration, Technology Management, or a related degree, and/or equivalent related work experience, * 5+ years of progressively responsible cybersecurity experience with deep expertise in enterprise security, manufacturing IT security, and industrial control systems (ICS) environments * Strong technical, analytical, and problem-solving skills * Excellent written and oral communication skills * Customer-focused and business-sensitive attitude * Experience working in a multicultural environment * Proficiency in Cybersecurity Platforms (SIEM, EDR, vulnerability management tools), ISO 27001 certification, and demonstrated experience implementing information security frameworks in complex operational environments, * Possess comprehensive security knowledge/expertise with proven experience in security operations, incident response, risk management, and leadership skills to build, mentor, and retain high-performing security teams in dynamic manufacturing technology environments * Minimum of 5 years proven experience and demonstrated success in technology program management with emphasis on security operations, incident response, vulnerability management, and information security. * Minimum of 3 years of demonstrated experience building and managing vulnerability management programs from vulnerability discovery processes to prioritization, remediation, and validation. * Proven ability to make decisions and perform complex problem-solving activities under pressure. * Sharp analytical abilities and the ability to make sound decisions quickly required. * Understanding of SIEM ecosystem, solutions, and architecture. * Understanding of EDR vendors, solutions, and architecture. * Mobilize and energize large, complex cross-functional teams to drive down vulnerability risk. * Understanding of security standard and regulatory compliance such as NIST, SOX, PCI, CMMC and their differentiators across global regions. * Understanding of Security Orchestration, Automation and Response concepts, and experience working with ticketing and knowledge management systems, security analytics platforms, and reporting platforms. Also, ability to translate technical findings and articulate recommendations for non-technical stakeholders. Preferred Certification(s): * CISSP, CCSP, CRISC, CISM, GSLC, GCED, GDSA, GDAT, CMMI, PMP, ITIL, Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status or other characteristics protected by law. All qualified individuals are required to perform the essential functions of the job with or without reasonable accommodation. Due to the high volume of responses, we will only be able to respond to candidates of interest. All candidates must have valid authorization to work in the U.S. without restriction. ## Description As an Information Security Management (ISM) Manager, you will lead the strategy, governance, and operational execution of PECNA's modern information security program in a 24/7 manufacturing environment. This role is responsible for strengthening enterprise resilience by proactively identifying risk, protecting critical systems and data, and improving the organization's ability to detect, respond to, and recover from cyber threats. You will partner across Panasonic IT, plant operations, and third-party providers or customers to embed security into business processes, technology platforms, and digital transformation initiatives. The ISM Manager will also drive compliance, continuous improvement, and security-by-design practices that support reliable operations, regulatory alignment, and long-term business growth. Responsibilities IT Security Manager (by clicking this link you are being referred to an external site that is not part of Panasonic) Amber Smallwood Essential Duties: * Lead and actively execute day-to-day information security operations, ensuring controls, processes, and tools are functioning effectively across the organization. * Own and administer the ISMS program and related activities to support ISO 27001 compliance, audits, corrective actions, and continuous improvement. * Conduct comprehensive risk assessments, proactively identify critical control gaps, and collaboratively develop and implement targeted mitigation strategies with cross-functional IT, OT, business, and plant stakeholders. * Respond to and manage security incidents directly, including investigation, coordination, containment, root cause analysis, and follow-through on remediation actions. * Develop, update, and operationalize security policies, standards, procedures, and playbooks to ensure they are practical, current, and aligned to business needs. * Conduct vulnerability reviews, security assessments, and control validations, and work directly with technical teams to prioritize and track remediation. * Partner closely with infrastructure, applications, manufacturing operations, and project teams to embed security requirements into new systems, changes, and transformation initiatives. * Drive alignment of information security practices, standards, and operating processes across multiple PECNA sites to promote consistency, scalability, and effective risk management across the enterprise. * Mentor and develop a diverse team of security analysts across varying experience levels, providing strategic day-to-day guidance, constructive performance feedback, intelligent workload prioritization, and personalized professional growth opportunities to cultivate a highly resilient and adaptive security team. * Prepare and deliver security awareness, guidance, and coaching to employees and stakeholders, helping translate policy into practical day-to-day behavior. * Evaluate security technologies, review alerts and reporting, and provide recommendations based on operational needs, risk exposure, and business value. * Manage and work directly with vendors, service providers, auditors, and internal partners to ensure security requirements are met and issues are resolved in a timely manner. * Demonstrate flexibility in supporting evolving business priorities, organizational changes, and emerging security risks, adapting responsibilities and ways of working as needed to meet changing business and operational needs. Personal Protective Equipment (PPE) Requirements: * To ensure the health and safety in the workplace and for the protection of our employees, wearing PPE is a requirement for some roles at PECNA and may include equipment such as a full Tyvek suit, safety shoes, gloves, safety glasses, face mask, bump cap, and a full hazmat suit that includes a respirator. The foregoing description is not intended and should not be construed to be an exhaustive list of all responsibilities, skills and efforts or work conditions associated with the job. It is intended to be an accurate reflection of the general nature and level of the job. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Minimising the Carbon Footprint of Workloads](https://www.wearedevelopers.com/videos/1198-minimising-the-carbon-footprint-of-workloads) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)