Manager Information Security (TVM) (E6162)

Institute of Electrical and Electronics Engineers, Inc.
Piscataway, NJ, United States
6 days ago
Apply on www.jofdav.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$41,600.0 - $47,840.0
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Software System Penetration Testing Automation of Tests Cloud Computing Security Cyber Security Computer Networks Identity and Access Management Network Security Machine Learning Public Key Infrastructure Runbook Security Information and Event Management
+11 more
Software Engineering Technical Data Management Systems Software Vulnerability Management Mttr HybridCloud Information Technology Cybercrime Core HR Devsecops Security Orchestration, Automation & Response Vulnerability Analysis

Job description

As the Manager, Information Security (Threat & Vulnerability Management), you will serve in a highly technical “player-coach” leadership role, requiring a blend of hands-on engineering and project/people management. Reporting directly to the Director of Cyber & Information Security, you will lead the specialized Threat & Vulnerability Management functional pillar within the department. While managing and mentoring a team of cross-trained Cybersecurity Engineers and overseeing domain-specific projects, you act as the ultimate technical escalation point for your domain. The ideal candidate actively implements technologies, drives complex incident response, oversees vulnerability mitigation, and translates high-level business risk into day-to-day technical operations., * Threat Management:

  • Provides operational oversight of all Threat and Vulnerability Management systems, technologies, processes, and reporting.
  • Actively manages and tunes Security Information and Event Management (SIEM) and Endpoint Detection and Response (EDR) platforms.
  • Leads the coordination of technical data and evidence collection during moderate-to-severe security incidents, supporting the Director who serves as the overarching Incident Commander.
  • Integrates global threat intelligence feeds and analyzes Indicators of Compromise (IoCs) to proactively fortify network and endpoint defenses.
  • Develops, maintains, and automates technical Incident Response playbooks utilizing Security Orchestration, Automation, and Response (SOAR) concepts to accelerate threat containment.
  • Leads the threat modeling and security posture management of enterprise Artificial Intelligence (AI) and Machine Learning (ML) systems, defending against adversarial threats (e.g., prompt injection, model poisoning), while leveraging AI-driven analytics to accelerate threat detection and streamline vulnerability prioritization. * Vulnerability Management:

  • Drives enterprise vulnerability scanning and coordinates internal or external penetration testing exercises, prioritizing risks and leading cross-functional remediation efforts.
  • Collaborates with system owners to evaluate the technical risk of identified vulnerabilities and architects compensating controls when immediate patching is not possible. * Documentation & Stakeholder Communication:

  • Leads efforts to create, document, and continuously maintain Standard Operating Procedures (SOPs) for technical TVM workflows and departmental processes.
  • Translates complex technical security risks into clear operational impacts for peer IT leaders. * Customer & Project Support:

  • Partners closely with other IT departments (Infrastructure, Networking, Software Development) to integrate security controls into their respective business projects without disrupting velocity.
  • Executes the technical rollout of new threat and vulnerability vendor products from proof-of-concept to full enterprise deployment.
  • Leads, tracks, and executes security-focused projects from inception to completion, ensuring milestones, Service Level Agreements (SLAs), and Mean Time to Resolve (MTTR) metrics are met for the TVM pillar.
  • Manages relationships with critical security vendors, ensuring platforms are properly deployed, maintained, and delivering maximum ROI. * Continuous Improvement & Operations:

  • Manages, mentors, and develops a high-performing team of technical Cybersecurity Engineers.
  • Handles all core HR responsibilities, including performance evaluations, hiring, goal setting, and guiding career ladder progression.
  • Researches new security processes and emerging TVM technologies, evaluating their efficacy and presenting formal recommendations for changes to department leadership.
  • Drives the department’s cross-domain training goals, ensuring team members build proficiency outside their primary operational focus to maintain a well-rounded, agile workforce.
  • Identity & Access Management (IAM):
  • Partners closely with the IAM pillar to correlate identity-based threats, investigate authentication anomalies, and enforce automated access revocations during active security incidents.

Requirements

  • Bachelor’s degree or equivalent experience Bachelor’s degree or equivalent experience in a computer-related field such as Computer Science, Mathematics, or Engineering. Master’s or other advanced degree is preferred. Req, * 10-15 years 10 - 15+ years of progressive, hands-on experience within the Information Security or Cybersecurity field. Req
  • 2-4 years Readiness for first-tier management of direct people and project management experience. Req, * Relevant professional management and engineering certifications such as ISACA CISM, (ISC)² CISSP, or equivalent senior-level architecture certifications are highly preferred. Upon Hire Pref, + Deep, proven engineering experience operating at a Senior or Lead level strictly within Threat Management and Vulnerability Management.
  • Strong willingness and ability to remain hands-on-keyboard (60% allocation), executing complex technical tasks alongside the engineering team.
  • Advanced expertise in modern threat detection/response toolsets, network security, and enterprise vulnerability lifecycles.
  • Expert knowledge of security technologies including advanced encryption algorithms, enterprise network security, complex firewall architecture, PKI, and cloud-native security paradigms.
  • Mastery of Artificial Intelligence (AI) tools to automate and assist with complex cybersecurity tasks, threat hunting, and operational workflows.
  • Advanced understanding of application development life cycle (SDLC) models and modern DevSecOps testing tools.
  • Intimate knowledge of highly complex operating system environments, hybrid cloud directory synchronization, and advanced networking protocols.
  • Soft Skills:
  • Demonstrated ability to manage TVM operations and pivot seamlessly between deep technical troubleshooting, project tracking, and high-level team management.
  • Exceptional communication and presentation skills, with the ability to clearly articulate complex risks to senior executives and technical staff. * Strong technical leadership, mentorship, and work direction skills with a proven ability to elevate the capabilities of the engineering team. * Strong decision-making capabilities, able to operate authoritatively in high-stress, real-time crisis scenarios. * Ability to effectively prioritize competing projects and operational incidents in a fast-paced environment.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.jofdav.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:08 min

Aligning engineering processes with core business impact metrics

Chris Riley · World Congress 2021

3:02 min

Structuring regular interactive dives for continuous cultural alignment

Laura Dückers Laura Dückers · World Congress 2025

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:32 min

Structuring automated incident workflows between runbooks and raw models

Aram Hakobyan Aram Hakobyan +1 · World Congress 2026 Europe

53 sec

Identifying core organizational metrics for HR transparency

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

Videos

See all

Related articles

See all