Information Security Manager
Job Description
Job Title: Information Security Manager
Opening Statement
A rapidly growing organization in the technology and enterprise cybersecurity industry is seeking an experienced Information Security Manager to lead its cybersecurity operations, governance, and strategic initiatives, ensuring robust protection of critical enterprise systems and data assets.
Role Overview
The Information Security Manager will own and drive the organization’s cybersecurity strategy, overseeing security architecture, compliance, risk management, and incident response efforts to enhance security posture and support business objectives. This leadership role requires collaboration across teams to implement modern security solutions, uphold regulatory standards, and manage security programs at an enterprise level.
Key Responsibilities
- Lead the planning, deployment, and maintenance of comprehensive security solutions including network security, endpoint protection, and threat detection systems (SIEM, IDS/IPS).
- Oversee cybersecurity incident detection, investigation, remediation, and post-incident analysis to minimize risk impact.
- Continuously assess emerging cyber threats, vulnerabilities, and industry best practices to proactively strengthen security defenses.
- Develop, implement, and maintain cybersecurity policies, standards, procedures, and a governance framework aligned with organizational goals and regulatory requirements such as ISO 27001, PCI DSS, GDPR, and other compliance standards.
- Coordinate and support internal and third-party security audits, risk assessments, vulnerability management, and control validation efforts.
- Lead enterprise-wide risk management initiatives, including vulnerability assessments, threat modeling, and security reviews to prioritize and mitigate operational risks.
- Collaborate with cross-functional teams—including legal, compliance, infrastructure, and operations—to ensure cohesive security and risk strategies.
- Evaluate and adopt advanced security technologies such as cloud security platforms (AWS, Azure, GCP), zero-trust architectures, automation, and threat intelligence tools.
- Stay informed on cybersecurity trends, regulatory changes, and technological developments to advise senior leadership on strategic security measures.
Core Qualifications & Requirements
- Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related technical field.
- Active CISSP or equivalent cybersecurity certification preferred.
- Minimum of 6 years of progressively responsible experience in information security, with at least 3 years in a leadership or team-leading role.
- In-depth knowledge of cybersecurity frameworks such as NIST, ISO 27001, and best practices for security governance.
- Experience managing security in modern cloud environments (AWS, Azure, GCP) and DevSecOps practices.
- Strong technical expertise in network security, endpoint protection, encryption, SIEM (Security Information and Event Management), IDS/IPS, and Data Loss Prevention (DLP) tools.
- Proven ability to identify security risks and implement effective mitigation strategies.
- Excellent leadership, communication, and stakeholder management skills, with the ability to influence at all organizational levels.
- Ability to handle sensitive information with discretion and operate effectively under high-pressure situations.
Nice-to-Have Qualifications
- Experience with Salesforce security environments.
- Prior exposure to healthcare, government, or highly regulated industries.
- Familiarity with Microsoft Office suite, project management, and data visualization tools.
- Experience working with distributed or remote teams.
- Knowledge of modern security frameworks, including zero-trust models, automation, and threat intelligence.
Core Technical Skills
- Security frameworks: NIST, ISO 27001, PCI DSS, GDPR compliance
- Cloud security: AWS, Azure, Google Cloud Platform (GCP)
- Security tools: SIEM platforms, IDS/IPS, endpoint protection, encryption technologies, DLP solutions
- Security architectures: Zero-trust security models, automation, threat detection, vulnerability management
- Security operations: Incident response, vulnerability assessments, risk management, security audits
Career Impact
This role offers the opportunity to shape and lead an organization’s cybersecurity future, directly influencing operational resilience, regulatory compliance, and risk mitigation at an enterprise scale.
Compensation and Benefits
Competitive salary commensurate with experience, plus bonus potential, comprehensive health benefits, 401(k) matching, and generous paid time off (PTO).
Apply Today!
Join a forward-thinking organization where your cybersecurity expertise will have a measurable impact—apply now to become a key leader in enterprise security.
The Phoenix Group Advisors is an equal opportunity employer. We are committed to creating a diverse and inclusive workplace and prohibit discrimination and harassment of any kind based on race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status. We strive to attract talented individuals from all backgrounds and provide equal employment opportunities to all employees and applicants for employment.