Information Technology Security Manager

1 month ago


Austin, United States Kasasa Full time

Job Title: Corporate Security - Vulnerability Management Analyst

Department: Internal Security

Location: Hybrid

Status - Full-time Exempt


Are you looking to join a team where “corporate values” aren’t just words on the website but instead are the genuine beliefs of the team? Where the people are smart, hardworking, fun, and loving? A place where the talk is walked?


That’s Kasasa 4 values define our company culture – Interdependence, Empowered Ownership, Badassitude, and Love – Together these values form THE PATCH. Elevate is the wrapper around the whole Patch reminding us to seek the “highest form” of our values.


If you feel our company values align with your own, please apply If you don’t, we encourage you to find a company whose values do


Our values are a living commitment to one another. It defines everything we do, including how we build products, serve our clients, plan for the future, and work together. It is our uncompromising promise to one another, our communities, and our clients.

  • Interdependence - Only team wins count. I take responsibility for my team’s success. My Team is Kasasa. I hold my shield for all of us.
  • Empowered Ownership - I know my goals. If they’re to be, it’s up to me.
  • Badassitude - I am passionate about what I do because I understand why it matters. I will courageously face challenges, seeing each one as a stepping stone toward growth.
  • Love - We boldly bring love to the workplace and the world.
  • ELEVATE - I CREATE THE HIGHER POSSIBILITY.


ONLY THE BADASS NEED APPLY

We’re looking for much more than qualified applicants We’re looking for people who “relentlessly give a sht” (Or “RGAS” for short; this is a component of ourBadassitude value) We want individuals who will courageously face challenges. We don’t settle for good enough. At Kasasa, we have the determination, grit, and hustle to create excellence.


Kasasa’s mission is to inspire and elevate community financial institutions to be the source for love and financial well-being in their communities. Kasasa employees (Spartans) are passionately dedicated to this mission and lead the way – sharing our “love” with the world – through our words and actions – via community service and outreach. Expect to get involved and make an impact if you expect to be a Spartan.


As Spartans once did, we stand together and inspire others to join us in our mission. Stronger together and united by core values, we are more than a team. We are a Phalanx


The purpose of this position description is to serve as a general summary and overview of the major duties and responsibilities of the job. It is not intended to represent the entirety of the job, nor is it intended to be all-inclusive. Therefore, the position may be required or requested to perform for Kasasa other work duties not specifically listed herein. Management reserves the right to modify, defer, or rescind this position description at any time, with or without prior notice.


Role Overview

In today’s digital environment, the role of an Information Technology Security Manager is an essential position within our organization. By developing security strategies; implementing policies and procedures; executing risk assessments and penetration testing; collaborating with colleagues to mitigate known and emerging vulnerabilities and threat and by briefing senior management on the company’s overall risk management posture, our Information Technology Security Manager plays a vital role in protecting our organization against cyber-attacks that threaten the integrity of our data, networks and information technology assets. This job description outlines the responsibilities and qualifications required for the position.


Responsibilities

  • Infuse the Patch Values into your work ethic, every day and every interaction.
  • Develop and implement the organization's security strategies, policies, procedures, and remediation efforts.
  • Provide guidance, training, and support to ensure the effective execution of security initiatives.
  • Conduct regular risk assessments and vulnerability tests to identify potential security threats and develop action plans to mitigate them. Monitor and analyze security incidents, investigating any breaches or security incidents and implementing corrective actions as necessary.
  • Establish client facing communication protocols. Stay up to date with the latest industry trends, threats, and technologies to ensure that the organization's cybersecurity measures are current and effective.
  • Collaborate with other departments to ensure that security requirements are integrated into the design, implementation and deployment of new systems, technologies, network and devices.
  • Develop and implement security awareness programs to educate employees about security best practices and promote a culture of security within the organization.
  • Manage relationships with external vendors and partners to ensure that security controls are effectively implemented and maintained.
  • Ensure compliance with relevant regulatory requirements and industry standards, such as state data privacy laws, regulations, and requirements.
  • Prepare and present regular reports to senior management on the organization's IT security posture, including insights, recommendations, and metrics.
  • Annual Board reporting


Position Requirements

  • In-depth knowledge of IT security /cybersecurity principles, best practices, and industry standards.
  • Strong management and collaboration skills, with the ability to motivate and inspire colleagues.
  • Excellent problem-solving and analytical skills, with the ability to identify and mitigate security risks.
  • Strong communication and interpersonal skills, with the ability to effectively communicate complex security concepts to both technical and non-technical stakeholders.
  • Proficiency in conducting risk assessments and vulnerability testing.
  • Experience with security incident response and management.
  • Familiarity with security tools and technologies, such as firewalls, intrusion detection and prevention systems, encryption, antivirus software, etc.
  • Knowledge of network and system administration.
  • Understanding of cloud computing security principles and best practices.
  • Familiarity with regulatory requirements and industry standards related to IT security.


Qualifications

  • 6+ years of IT security / cybersecurity experience.
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity or a related field.
  • Professional certifications such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), Offensive Security Certified Professional (OSCP), or CISA (Certified Information Systems Auditor) are highly desirable.
  • Proven experience in an IT security role, with a track record of successfully implementing and managing IT security programs.
  • Familiarity and experience with security controls for cloud based infrastructure such as Amazon Web Services (AWS).
  • Hands on experience with anti-phishing; anti-malware; remote device monitoring; threat intelligence; patch management software, tools, and controls.
  • Strong knowledge of relevant regulations and standards, such as data privacy and protection laws.
  • Experience with risk management methodologies and frameworks. Preferred: NIST framework.
  • Prior experience working with external auditors.
  • Familiarity with project management principles and practices.
  • Excellent written and verbal communication skills. Strong collaboration skills.
  • Strong attention to detail and the ability to prioritize and manage multiple tasks simultaneously.


PHYSICAL REQUIREMENTS

  • Sitting for extended periods of time; approximately 5-6 hours per day
  • Simultaneous use of hand, wrist and fingers
  • Daily operation of standard office equipment
  • Frequent use of oral communication to perform work
  • Lifts and moves up to 20 pounds occasionally


Our benefits include:

  • Open Paid Time Off AND 14 paid holidays
  • Gym Membership Reimbursement
  • Tuition Reimbursement
  • Paid Parental Leave
  • Love Fund – established as a way for Spartans to give back to their co-workers in need
  • Medical Benefits
  • Dental, and Vision with a substantial contribution from Kasasa.
  • Life Insurance, Long-Term Disability, Short-Term Disability, and Employee Assistance Program – all provided in full by Kasasa
  • 401k plan with matching contributions
  • Pay to Tat (Patch tattoos only)
  • Peer-to-Peer Appreciation Program – Worktango
  • Noon:30's – 1st and 3rd Fridays of the month- done at 12:30 pm



  • Austin, United States BMTECH GROUP LLC Full time

    Company DescriptionJob Description Design, build and implement enterprise-class security systems for a production environment Align standards, frameworks and security with overall business and technology strategy Identify and communicate current and emerging security threats Design security architecture elements to mitigate threats as they emerge Create...


  • Austin, United States HireBlazer Full time

    Job Description Job Description Role: Information Security Manager Location: Austin, TX 78744 (Hybrid) Duration: 12 Months Summary: The client seeks an enthusiastic and experienced Senior Manager for Vulnerability Management to join our team. This individual will play a pivotal role in advancing our vulnerability management program and ensuring the security...


  • Austin, United States Hireblazer Full time

    Job DescriptionJob DescriptionRole: Information Security ManagerLocation: Austin, TX 78744 (Hybrid)Duration: 12 MonthsSummary:The client seeks an enthusiastic and experienced Senior Manager for Vulnerability Management to join our team. This individual will play a pivotal role in advancing our vulnerability management program, and ensuring the security of...


  • Austin, United States Hireblazer Full time

    Job DescriptionJob DescriptionRole:  Information Security ManagerLocation: Austin, TX 78744 (Hybrid)Duration: 12 MonthsSummary:The client seeks an enthusiastic and experienced Senior Manager for Vulnerability Management to join our team. This individual will play a pivotal role in advancing our vulnerability management program, and ensuring the security of...


  • Austin, United States Saxon Global Full time

    Work involves planning, implementing, and monitoring security measures using the NIST Risk Management Framework and Texas security frameworks for information systems and infrastructures. Works under minimal supervision, with extensive latitude for the use of initiative and independent judgment. DUTIES The essential duties for this contract include •Manages...


  • Austin, United States Saxon Global Full time

    Work involves planning, implementing, and monitoring security measures using the NIST Risk Management Framework and Texas security frameworks for information systems and infrastructures. Works under minimal supervision, with extensive latitude for the use of initiative and independent judgment. DUTIES The essential duties for this contract include •...


  • Austin, United States InterSources Full time

    Must Have Skills Skill 1 - Any recognized security certifications, e.g., CISSP, CISA, CISM Skill 2 - Monitor internal and external threat landscape to update strategy and intellectual protection program roadmap Skill 3 - Provide periodic reports to management team and key stakeholders Roles and Responsibility Demonstrate strong knowledge in IT controls,...


  • Austin, United States InterSources Full time

    Must Have Skills Skill 1 - Any recognized security certifications, e.g., CISSP, CISA, CISM Skill 2 - Monitor internal and external threat landscape to update strategy and intellectual protection program roadmap Skill 3 - Provide periodic reports to management team and key stakeholders Roles and Responsibility • Demonstrate strong knowledge in IT controls,...


  • Austin, United States KAIHONUA LLC Full time

    Information Assurance Engineer III Location: Austin, TX Job Summary KaiHonua, LLC has an immediate opening for an Information Assurance (IA) Engineer to join our rapidly growing team. IA Engineer applies IT security principles, methods, and security products to protect and maintain the availability, integrity, confidentiality, and accountability of...


  • Austin, Texas, United States WISE Full time

    Company DescriptionWise is a global technology company, building the best way to move and manage the world's money. Min fees. Max ease. Full speed.Whether people and businesses are sending money to another country, spending abroad, or making and receiving international payments, Wise is on a mission to make their life easier and save them money.As part of...


  • Austin, Texas, United States Wise Full time

    Job DescriptionAbout the role:As Wise becomes ever more integrated into financial systems around the globe, we are subject to ever increasing scrutiny from regulators, partners and regional stakeholders. If we are successful, we'll eventually become one of the most heavily regulated companies in the world.As Regional Information Security Officer for North...


  • Austin, United States University of Texas at Austin Full time

    Contribute to maintaining and improving the Dell Medical School Cyber Security Governance, Risk, and Compliance program and further mature the Dell Medical Schools Risk and Governance capabilities. Work closely with various cybersecurity teams to track the effectiveness of security controls, map threats to controls, and properly prioritize the implementation...


  • Austin, United States University of Texas at Austin Full time

    Develop and maintain security policies, procedures, and standards to establish best practices and ensure compliance with industry standards and regulations, such as HIPAA, FERPA, PCI DSS, and GDPR. Create and maintain a complex variety of security and risk documentation (e.g., Policies, process diagrams, risk registers, etc.) that may be shared with various...


  • Austin, United States Zenex Partners Full time

    Join Our Team as an Information Security Analyst!Location: Austin, TX (Onsite 3x per week)Pay Range: $45.00 - $55.00 per hourWe are seeking a dedicated Information Security Analyst to join our team in Austin. In this role, you will play a crucial part in safeguarding our organization's information systems and data integrity.Position Responsibilities:Monitor...


  • Austin, United States Duo Security Full time

    Duo Security, now part of Cisco, is the leading multi-factor authentication (MFA) and secure access provider. Duo + Cisco = Disco With the Most Loved Company in Security and the global leader in network technology joining forces, there are more exciting opportunities than ever to be at the forefront of securing the cloud. Our mission is simple: democratize...


  • Austin, United States Request Technology, LLC Full time

    ***We are unable to sponsor for this permanent full-time role******Position is bonus eligible***Prestigious Global Firm is currently seeking a GRC Security Risk Specialist. Candidate will work on the Governance, Risk Compliance team, leads and executes the programs within the GRC team, is a subject matter expert for Information Security (consulting to...


  • Austin, United States Request Technology, LLC Full time

    ***We are unable to sponsor for this permanent full-time role******Position is bonus eligible***Prestigious Global Firm is currently seeking a GRC Security Risk Specialist. Candidate will work on the Governance, Risk Compliance team, leads and executes the programs within the GRC team, is a subject matter expert for Information Security (consulting to...


  • Austin, United States Genius Road, LLC Full time

    Information System Security Officer - Assessor Contract - 12-24 months Location - Austin, TX (Hybrid - 2 days onsite) The ideal candidate will be responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by the information systems to determine the overall...


  • Austin, United States Duo Security Full time

    Duo Security, now part of Cisco, is the top-tier multi-factor authentication (MFA) and secure access provider. Duo + Cisco = Disco With the Most Loved Company in Security and the global leader in network technology joining forces, there are more exciting opportunities than ever to be at the forefront of securing the cloud. Our mission is simple: democratize...


  • Austin, United States UPLIFT Desk Full time

    Job DescriptionJob DescriptionJob DescriptionUPLIFT Desk is pursuing an ambitious global growth agenda. We believe that reliable, accessible data and scalable, digital technologies are critical to supporting that growth. The Vice President of Information and Technology is responsible for the organization's technology strategy, implementation, and...