> Markdown version of [/jobs/ext/2570754-information-security-program-manager-hybrid](https://www.wearedevelopers.com/jobs/ext/2570754-information-security-program-manager-hybrid). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Program Manager (Hybrid) - **Company:** Barr Engineering - **Location:** Minneapolis, MN, United States - **Experience:** Expert - **Salary:** $125,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Microsoft Azure, Cloud Computing, Cyber Security, Information Security Management, Python (Programming Language), Windows Servers, Windows PowerShell, Ansible, Security Information and Event Management, VMware Virtualization, Software Vulnerability Management, System Availability, Infrastructure Automation Frameworks, Information Technology, Patch Management, Security Orchestration, Automation & Response - **Published:** August 14, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/88034526/1 ## About the Role A successful person in this role is an analytical problem-solver with exceptional attention to detail and a passion for continuous learning. They are highly organized and leverage their technical expertise to implement robust security measures that safeguard system integrity and reliability. They also dig deep when needed, maintaining a broad strategic perspective on the business. The ideal candidate has a high degree of self-initiative, proactively leading security improvement and governance efforts, and enjoys collaborating with technical and non-technical colleagues, always with a client-service mindset., * Education: bachelor's degree in computer science, information technology, or a related field or equivalent practical experience. * Experience: 10+ years of related IT infrastructure or information security experience. + Working knowledge of corporate network environments and technologies such as VMware virtualization, Microsoft Windows Server, Active Directory, and Group Policy management. + Experience with cloud platforms such as Microsoft Azure, Microsoft 365, or Amazon Web Services (AWS) administration and support. + Experience working with SIEM/SOC tools, including follow-up investigations and response. + Familiarity with scripting and automation tools (e.g., PowerShell, Python, Ansible) for system administration or security automation. * Willingness and ability to perform off-hours administrative changes and respond to emergencies or urgent issues outside of regular hours if needed. * Must be legally authorized to work in the United States without the need for sponsorship by Barr, now or in the future. ## Description * Security program administration and maintenance: oversee and continuously improve Barr's information security program. Ensure that security measures are integrated across systems and that protective controls support the company's needs for performance, stability, and high availability. * Cybersecurity subject matter expert: provide insight into developing and executing the company's security strategy. Stay current on emerging threat intelligence and cybersecurity trends, and advise the organization on mitigating new threats. * Security governance and compliance: develop and maintain information security policies, standards, and procedures to ensure alignment with industry best practices and frameworks such as the NIST Cybersecurity Framework, ISO 27001, and NIST SP 800-171. * Crisis management: plan, prepare for, and respond to security incidents or breaches, helping to coordinate containment, investigation, and recovery efforts to minimize damage and downtime. Support the company's Crisis Response Team in planning and response activities that relate to or rely on technology. * Security monitoring and optimization: continuously monitor the IT environment for signs of security issues or vulnerabilities using appropriate tools and resources. * Escalation-level technical support: serve as the first escalation point for potential security incidents. * Vulnerability and patch management: lead proactive vulnerability management by conducting regular security scans and ensuring that processes and automated systems for the timely application of patches and/or upgrades are effective. * Documentation and training: develop and maintain internal security documentation and provide technical training and guidance for IT staff and end users on security best practices. * Audit support: maintain required documentation, perform internal security testing, and coordinate responses to audit findings or external audit requests. * Security assessments: respond to external security questionnaires, assessment tools, and client security surveys. * Program metrics and continuous improvement: track key security program metrics and use these insights to drive ongoing program improvements. About the opportunity * Hybrid: a hybrid work arrangement may be considered for this position. A hybrid work arrangement refers to splitting time worked between a Barr office and a home office. This position is based out of Barr's Minneapolis, Minnesota, office. * Travel requirement: ability to travel to other offices and sites across the US and Canada if necessary. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Dev & Test in the Cloud? Deploy your cloud environments with Ansible & Terraform](https://www.wearedevelopers.com/videos/1607-dev-test-in-the-cloud-deploy-your-cloud-environments-with-ansible-terraform) - [Embracing the Hybrid Cloud: Unlocking Success with Ansible](https://www.wearedevelopers.com/videos/932-embracing-the-hybrid-cloud-unlocking-success-with-ansible) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)