Senior Manager, Information Security

2 months ago


Bethesda, Maryland, United States Marriott International Full time
Job Number
Job Category Information Technology
Location Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAP
Schedule Full-Time
Located Remotely? Y
Relocation? N
Position Type Management

JOB SUMMARY

Responsible for managing security compliance, including network compliance, endpoint compliance and exceptions processing. Reviews endpoints for compliance with Marriott's endpoint security technology policies, tracking areas of non-compliance and working with stakeholders to bring those areas back to compliance. Responsible for reviewing, approving and tracking any policy exceptions and for working closely with the Risk Management team to ensure alignment of Enterprise Risk. The position manages and improves the IT Security Compliance inventory/lifecycle within our environment including inventory and monitoring of all asset assessment and data analysis, reporting and findings remediation.

CANDIDATE PROFILE

Education and Experience

Required:
  • Bachelor's degree in computer sciences or related field or equivalent experience/certification
  • 7 years of general information technology experience with at least 3 years' experience implementing, managing and/or governing endpoint security technologies, like encryption, Anti-Virus, Endpoint-Detection & Response (EDR), Application Control technologies, network access control (NAC), network security, and host-based intrusion detection systems.
Preferred:
  • Working knowledge of IT Endpoint management tools like: Active Directory, BigFix, Tanium, CrowdStrike, Deep Security, McAfee, Bitlocker, ServiceNOW, Tenable, Vault, Privilege Manager, Application Control, Intune, Forescout NAC, Cisco, Palo Alto, F5, Juniper, NetMRI, Firemon, Netskope, Delinea
  • Current information security certification, including Certified Information Security Manager (CISM), Certified Information Security Auditor (CISA), Certified Information Systems Security Professional (CISSP), Cisco Certified Networking Associate (CCNA), Certified Network Defender (CND), Security , or Certified Third Party Risk Professional (CTPRP)
  • Extensive experience and expertise in security policy creation and endpoint lifecycle management to EOL and EOSL, auditing methodology, and technology risk assessments for Windows, Linux, AWS and Azure endpoints as well as ESXi, firewalls, switches and routers
  • Experience with reporting dashboards and metrics tracking for Endpoint compliance within large global enterprises
  • Technical leadership experience in an Information Technology Outsourced (ITO) environment and with Local Service Providers (LSPs)
  • Project management skills and abilities to lead and drive IT Security Compliance Projects.
  • Excellent communication/reporting skills and problem-solving ability related to IT Security Compliance.
  • Technical infrastructure operations, network administration, or engineering background and familiarity with ACLs, VLAN and SD-WAN concepts
  • Knowledge of IT Protocols such as ARP, TCP/IP, WMI, SNMP, SMB, SSL, TLS, SMTP, SOAP, Web Services, or Kerberos.
    • Oversees, plans and conducts security policy compliance, risk assessment, exception evaluation, and processing for applications, infrastructure, data, and third-party vendor solutions.
CORE WORK ACTIVITIES

Security Risk & Compliance
  • Consistently monitors compliance to applicable security policies and standards and reports related risk issues
  • Executes technical risk assessments, advises business and IT leaders on risk of initiatives/tools
  • Defines and executes Third Party / Vendor Security Risk Assessment programs
  • Oversees and evaluates documentation and validation processes to ensure the organization meets Security assurance and privacy requirements.
  • Assigns appropriate level of risk and drives compliance to Endpoint Security internal policies and external regulations.
  • Manages and administers processes and tools that identify, document, and retain intellectual capital and information content.
  • Conducts assessments on threats and vulnerabilities, determines deviations and level of risk. Follows up assessments with questions, gap identification, and testing on assessed risk.
  • Performs analysis on results and determines risk threshold.
  • Delivers recommendations advising leadership and vendors on present risk and whether additional remediation or action is required.
  • Develops, recommends, and operationalizes appropriate mitigation countermeasures. Advocates for any resulting needed policy changes.
  • Creates and drives development of process and policy documentation.
Maintaining Goals
  • Submits reports in a timely manner, ensuring delivery deadlines are met.
  • Promotes the documenting of project progress accurately.
  • Provides input and assistance to other teams regarding projects.
Managing Work, Projects, and Policies
  • Manages and implements work and projects as assigned.
  • Generates and provides accurate and timely results in the form of reports, presentations, etc.
  • Analyzes information and evaluates results to choose the best solution and solve problems.
  • Provides timely, accurate, and detailed status reports as requested.
Demonstrating and Applying Discipline Knowledge
  • Provides technical expertise and support to persons inside and outside of the department.
  • Demonstrates knowledge of job-relevant issues, products, systems, and processes.
  • Demonstrates knowledge of function-specific procedures.
  • Keeps up-to-date technically and applies new knowledge to job.
  • Uses computers and computer systems (including hardware and software) to enter data and/ or process information.
Delivering on the Needs of Key Stakeholders
  • Understands and meets the needs of key stakeholders.
  • Develops specific goals and plans to prioritize, organize, and accomplish work.
  • Determines priorities, schedules, plans and necessary resources to ensure completion of any projects on schedule.
  • Collaborates with internal partners and stakeholders to support business/initiative strategies
  • Communicates concepts in a clear and persuasive manner that is easy to understand.
  • Generates and provides accurate and timely results in the form of reports, presentations, etc.
  • Demonstrates an understanding of business priorities
Additional Responsibilities
  • Provides information to supervisors and co-workers by phone, e-mail, or in person in a timely manner.
  • Demonstrates self confidence, energy and enthusiasm.
  • Informs and/or updates leaders on relevant information in a timely manner.
  • Manages time effectively and conducts activities in an organized manner.
  • Presents ideas, expectations and information in a concise, organized manner.
  • Uses problem solving methodology for decision making and follow up.
  • Performs other reasonable duties as assigned by manager.
California Applicants Only: The salary range for this position is $96,038 to $209,169 annually.

Colorado Applicants Only: The salary range for this position is $96,038 to $190,154 annually.

Hawaii Applicants Only: The salary range for this position is $116,205 to $209,169 annually.

New York Applicants Only: The salary range for this position is $96,038 to $209,169 annually.

Washington, D.C. Applicants Only: The salary range for this position is $105,641 to $190,154 annually.

Washington Applicants Only: The salary range for this position is $96,038 to $209,169 annually. In addition to the annual salary, the position will be eligible to receive an annual bonus. Employees will accrue PTO balance for every hour worked and eligible to receive minimum of 7 holidays annually.

All locations offer coverage for medical, dental, vision, health care flexible spending account, dependent care flexible spending account, life insurance, disability insurance, accident insurance, adoption expense reimbursements, paid parental leave, educational assistance, 401(k) plan, stock purchase plan, discounts at Marriott properties, commuter benefits, employee assistance plan, and childcare discounts. Benefits are subject to terms and conditions, which may include rules regarding eligibility, enrollment, waiting period, contribution, benefit limits, election changes, benefit exclusions, and others.

Marriott HQ is committed to a hybrid work environment that enables associates to Be connected. Headquarters-based positions are considered hybrid, for candidates within a commuting distance to Bethesda, MD; candidates outside of commuting distance to Bethesda, MD will be considered for Remote positions.

The application deadline for this position is 28 days after the date of this posting, July 11, 2024.

Marriott International is an equal opportunity employer. We believe in hiring a diverse workforce and sustaining an inclusive, people-first culture. We are committed to non-discrimination on any protected basis, such as disability and veteran status, or any other basis covered under applicable law.

Marriott International is the world's largest hotel company, with more brands, more hotels and more opportunities for associates to grow and succeed. Be where you can do your best work, begin your purpose, belong to an amazing global team, and become the best version of you.

  • Bethesda, Maryland, United States USAJobs Full time

    DutiesThe Cybersecurity Group (CSG) oversees IC-wide efforts to safeguard the IC Information Environment (IE) in support of the DNI's Title 44 statutory responsibilities. With a focus on security aspects of the IC IE, utilizes proactive oversight and management levels of governance, policy, standards, architecture, engineering, risk management, investment...


  • Bethesda, Maryland, United States LCG, Inc. Full time

    Job OverviewLocation: Rockville, MD (Hybrid)LCG, Inc. is a distinguished minority-owned technology consulting firm, recognized for its partnership with over 40 federal agencies, including numerous Institutes and Centers at the National Institutes of Health (NIH). With a legacy spanning more than 25 years, LCG has been at the forefront of digitization and...


  • Bethesda, Maryland, United States Novel Applications of Vital Information Full time

    Job DescriptionCompany Overview:Novel Applications of Vital Information (NAOVI) is a leading technology services company that provides innovative solutions in the areas of Cyber Security, Information Management, and Systems Integration. Our company is committed to delivering measurable business value to our clients through our expertise, creativity,...


  • Bethesda, Maryland, United States Leidos Full time

    Position Overview Leidos is in search of a part-time Senior Educator specializing in Secure Compartmented Information Courses (SCIF). The ideal candidate will possess expertise in SCIF construction and physical security protocols to support a critical program within the Intelligence Community (IC). All instructional activities will be conducted virtually. A...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    IMPACT OF THE EXECUTIVE ADMINISTRATIVE SUPPORT II ROLE Act as the main point of contact between the assigned Senior Executive (SE) and other senior management personnel, as well as staff members. Manage the workflow of various critical matters while adapting to the dynamic schedule of the SE, with an understanding of the sensitivity and confidentiality...


  • Bethesda, Maryland, United States USAJobs Full time

    DutiesThe Office of the Director of National Intelligence (ODNI), Center for Security Evaluation (CSE) represents the Intelligence Community (IC) in advising the Department of State (DoS) in the design, planning, and construction of overseas diplomatic facilities. Within CSE, the group provides overall management of the corporate activities that support...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret SCI + PolygraphClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:NoneJob Family:Cyber SecurityJob Qualifications:Skills:Amazon Web Services (AWS), Risk Management Framework, System Security PlansCertifications:Experience:8 +...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    IMPACT OF THE EXECUTIVE ADMINISTRATIVE SUPPORT II ROLE Act as the main point of contact between the assigned Senior Executive (SE) and other senior management personnel, as well as staff members. Manage the workflow of various urgent matters within a dynamic schedule for the designated SE, being mindful of the critical, sensitive, and confidential...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    IMPACT OF THE EXECUTIVE ADMINISTRATIVE SUPPORT ROLE Act as the primary point of contact between the assigned Senior Executive (SE) and other senior management personnel, as well as staff members. Manage the workflow of various urgent matters within a dynamic schedule for the designated SE, while being mindful of the critical, sensitive, and...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret SCI + PolygraphClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:Job Family:Business AdministrationJob Qualifications:Skills:Calendar Management, Microsoft Office, Office Administration, Organizing Meetings, Written...


  • Bethesda, Maryland, United States Admiral Security Full time

    Job SummaryWe are seeking an experienced Security Operations Manager to join our team at Admiral Security Services. As a key member of our management team, you will be responsible for overseeing the day-to-day operations of our security services, ensuring the highest level of customer satisfaction and security standards.Key ResponsibilitiesAccount...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret SCI + PolygraphClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:Job Family:Business AdministrationJob Qualifications:Skills:Agendas, Microsoft Office, Office Administration, Organizing Meetings, Written...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Specialist to join our team at General Dynamics Information Technology. As a Security Control Specialist, you will play a critical role in ensuring the security and integrity of our clients' systems and data.Key ResponsibilitiesConduct security assessments and risk analyses to identify...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    Position Type: RegularRequired Clearance Level: Top Secret SCI + PolygraphClearance Level to Obtain: Top Secret SCI + PolygraphSuitability: Public Trust/Other Required: NoneJob Family: SecurityQualifications:Skills: Compliance with Company Policies, Government Regulations, Personnel Security Management, Security ProtocolsExperience: Over 8 years in related...


  • Bethesda, Maryland, United States Bespoke Technologies LLC Full time

    Job DescriptionBespoke Technologies LLC is seeking a highly skilled Senior Security Control Assessor to join our team. As a key member of our cybersecurity team, you will be responsible for conducting security assessments and risk-based evaluations to ensure the confidentiality, integrity, and availability of our systems and data.Key Responsibilities:Conduct...


  • Bethesda, Maryland, United States Admiral Security Full time

    Position Overview:Admiral Security Services is in search of a seasoned Operations Supervisor with a proven track record in overseeing multiple facilities and leading teams of supervisors and account managers. The ideal candidate will possess strong organizational skills, attention to detail, and outstanding management and customer service...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    Type of Requisition: RegularClearance Level Must Currently Possess: Top Secret SCI + PolygraphClearance Level Must Be Able to Obtain: Top Secret SCI + PolygraphSuitability:Public Trust/Other Required: NoneJob Family: SecurityJob Qualifications:Skills: Company Policies, Ensure Compliance, Government Regulation, Personnel Security Management, Security...


  • Bethesda, Maryland, United States ION Security Full time

    Position OverviewION Security is looking for a dedicated Safety and Security Specialist to join our esteemed team. The chosen candidate will be responsible for overseeing and safeguarding designated areas while assessing potential threats to employees and visitors.Key Responsibilities:Observe and monitor locations to deter theft, aggression, or violations of...

  • Data Integrity Analyst

    23 hours ago


    Bethesda, Maryland, United States General Dynamics Information Technology Full time

    About the RoleWe are seeking a highly skilled Data Quality Specialist - Personal Security to join our team at General Dynamics Information Technology. As a key member of our cyber security team, you will play a critical role in ensuring the accuracy and integrity of our data.Key ResponsibilitiesEvaluate system performance and design to identify areas for...


  • Bethesda, Maryland, United States General Dynamics Information Technology Full time

    About the RoleThis is a critical position that requires a highly skilled and experienced administrative professional to provide support to a Senior Executive. The ideal candidate will have a strong background in office administration, excellent communication skills, and the ability to work in a fast-paced environment.Key ResponsibilitiesProvide...