> Markdown version of [/jobs/ext/3017105-senior-manager-of-information-security](https://www.wearedevelopers.com/jobs/ext/3017105-senior-manager-of-information-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Manager of Information Security - **Company:** Extime PS LLC - **Location:** El Segundo, CA, United States - **Experience:** Expert - **Salary:** $170,000.0 - $190,000.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Backup Devices, Cyber Security, Information Systems, Disaster Recovery, Payment Systems, Identity and Access Management, Information Security Management, IT Management, Cloud Services, User Provisioning Software, Data Logging, Information Security Management System, Information Technology, Vulnerability Analysis - **Published:** September 20, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=2e0a5da9fc283b37 ## About the Role The role will partner with senior leaders and cross-functional stakeholders to establish sustainable governance, improve executive visibility into organizational security posture, and build a scalable security program that supports business growth, new locations, and evolving regulatory, contractual, partner, and customer requirements. Success in this role will be measured by the establishment of a mature, evidence-driven ISMS and PS's successful progression toward ISO 27001 certification., * Bachelor's degree in Cybersecurity, Information Systems, Computer Science or a related field. * Minimum 7 years of progressively responsible information security experience, including leadership responsibility for security programs, audit readiness, governance, security operations, or certification initiatives. Previous experience building and maturing security programs is strongly preferred. * Hands-on experience with ISO 27001 certification processes and audits, including working with certification bodies. * Strong understanding of information security governance, audit management, risk treatment methodologies, security operations, ISO 27001 controls, and security compliance frameworks. * Proven experience partnering across IT, Legal, HR, Finance, Operations, and other business functions to implement security and risk management requirements. * Demonstrated leadership experience managing teams, establishing accountability, influencing cross-functional stakeholders, and driving complex information security programs at enterprise scale. * Exceptional client service and communication skills and a demonstrated ability to develop and maintain strong external and internal stakeholder relationships. * Demonstrated experience building repeatable, evidence-driven security programs capable of supporting external certification and audit requirements. * Proven experience leading internal and external audits, supporting enterprise risk programs, managing certification initiatives, and navigating regulatory and contractual requirements. * Strong executive communication and presence, with the ability to translate technical and security risks into clear business decisions for senior leaders, auditors, customers, regulators, and external partners. * Industry recognized certification like CISA, CIPP, CISSP, or CRISC, is advantageous. * Pass a pre-employment drug screening + background check in accordance with company policy. ## Description Far from the crowds and chaos of the public airport, PS offers members the privacy, ease, and security of the private flight experience while flying commercial. With exclusive partnerships with TSA and U.S. Customs and Border Protection, guests move effortlessly through line-free departures and arrivals. Every moment is carefully orchestrated by our expert team - private TSA screening, dedicated customs and immigration services, and luxury chauffeur transfers across the airfield directly to or from your aircraft. Inside our private terminals, guests enjoy serene suites, chef-prepared dining, spa services, and personalized attention, while our Control Room coordinates discreetly with government, airline, and security partners to ensure unmatched efficiency, safety, and peace of mind. At PS, waiting in lines, crowded terminals, and luggage hassles give way to quiet elegance, service with heart and inspired experiences. We are building more than terminals - we are shaping a new way to travel. If you're passionate about luxury hospitality and excited to be part of something extraordinary, join us as we expand to new markets and reimagine the future of travel with PS. Role: Senior Manager of Information Security The Senior Manager of Information Security will serve as PS's dedicated information security leader, providing strategic direction, enterprise accountability, and hands-on oversight for the protection of the critical infrastructure and sensitive data that power PS's premium airport terminal operations. Reporting directly to the Director of IT, this role will own the Information Security Management System (ISMS) and lead execution of the ISO 27001 roadmap, while strengthening security governance, security operations, audit readiness, third-party risk management, and organizational security maturity., * Own PS's Information Security Program, Information Security Management System (ISMS), and ISO 27001 certification roadmap, including readiness assessments, remediation planning, certification activities, surveillance audits, and continuous improvement efforts. * Establish and maintain information security policies, standards, procedures, and governance processes aligned with ISO 27001 requirements, contractual obligations, and business needs, partnering with Legal on regulatory and privacy considerations. * Lead, develop, and mentor the Cybersecurity Analyst team, establishing clear accountability for security operations, continuous monitoring, logging, incident response, and risk remediation. * Lead regular vulnerability assessments of all PS systems including penetration testing, bug bounty and passive scanning programs. * Lead operational development, testing, maintenance, and audit readiness activities for backup, incident response, disaster recovery, and business continuity programs in partnership with IT, Operations, and executive leadership. * Respond to and manage security incidents and investigations, including coordination of incident response. * Conduct regular internal security audits and assessments, including disaster recovery and incident response tabletops. * Lead audit readiness activities, including evidence management, remediation tracking, corrective action management, certification activities, customer assessments, and external audits. * Establish organization-wide evidence retention standards and processes to ensure security controls, audits, reviews, incidents, vendor assessments, training, and access management activities are consistently documented and audit-ready. * Promote a strong security culture across the organization through training, awareness, and policy development. * Establish and operate a formal access governance program, including user provisioning controls, privileged access oversight, periodic access reviews, and evidence retention. * Own the Third-Party Risk Management (TPRM) program, including vendor classification, security due diligence, remediation tracking, ongoing oversight, and executive reporting of material third-party risks. * Partner with IT, Legal, HR, Finance, Operations, Airport Operations, and other business stakeholders to integrate security and vendor risk requirements into onboarding, contracting, implementations, ongoing vendor management, and business initiatives. * Maintain the Information Security Risk Register and provide executive reporting, governance forums, and leadership visibility into security posture, risk treatment, program maturity, and investment priorities. * Serve as PS's security leader in cross-functional and executive discussions, advising on business initiatives, technology investments, new locations, cloud services, payment systems, customer platforms, and regulatory or contractual requirements. * Build a scalable security operating model that reduces key-person dependency, clarifies ownership, and enables the security program to support company growth without increasing risk exposure. * Manage the security program roadmap, operating priorities, resource needs, and security investments in coordination with IT leadership and business stakeholders. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Hate organising your photos? Try it with 5 Terabytes](https://www.wearedevelopers.com/videos/79-hate-organising-your-photos-try-it-with-5-terabytes) - [Your Manager Doesn’t Come with a User Manual (But You Can Totally Write One)](https://www.wearedevelopers.com/videos/1495-your-manager-doesn-t-come-with-a-user-manual-but-you-can-totally-write-one) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Engineering/Manager Pendulum: Generating compound interest on your career](https://www.wearedevelopers.com/videos/100348-engineering-manager-pendulum-generating-compound-interest-on-your-career) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development)