Information Security Risk Manager

6 hours ago


Reston, Virginia, United States firstPRO, Inc Full time
Job Title: Information Security Risk Manager

FirstPro, Inc is seeking an experienced Information Security Risk Manager to join our team. As a key member of our security team, you will be responsible for overseeing the company's Information Security Program, maintaining compliance, and ensuring the security of our systems and data.

Responsibilities:
  • Maintain the credit union's Information Security Program, including awareness, adherence, and updates to incorporate evolving technology and threat landscapes, in a 24/7/365 Cloud and On-Premises environment
  • Advance, develop, and maintain the IT/Security Risk Management program and activities, and its alignment with the Enterprise Risk Management program
  • Develop, maintain, and communicate policies, standards, procedures, and controls, to manage security functions relative to information technology systems (including systems under development), networks, applications, and voice and data communications that are consistent with applicable legal, regulatory, and compliance requirements
  • Develop and report business-relevant metrics to measure the efficiency and effectiveness of the Information Security Program, facilitate appropriate resource allocation and increase the maturity of the security program
  • Provide subject matter expertise on a broad range of information security standards and best practices, such as related to FFIEC, NCUA, NIST, PCI, and others as applicable
  • Supervise the design and execution of vulnerability assessments, penetration tests and security audits; work with Information Systems and other business areas in the remediation of audit findings
  • Oversee regular security awareness training for all employees to ensure consistently high levels of compliance with the credit union's security program
  • Facilitate the leading of the credit union's Disaster Recovery and Business Continuity Plan updating, testing, maintenance, and related activities
  • Provide guidance, where applicable, in the deployment, integration and initial configuration of all new security solutions and of any enhancements to existing security solutions in accordance with the credit union's security program or standard best practices
  • Oversee, evolve, and audit, the credit union's Identity and Access Management program, processes, and procedures
  • Participate in root cause analysis of critical events for improving preventative and reactive processes
  • Work with other business areas to explain security concepts, make recommendations, and help drive security initiatives
  • Maintain up-to-date knowledge of the IT security and financial industries, including awareness of new or revised security solutions, improved security processes and the development of new attacks and threat vectors
  • Perform other job-related duties as assigned by Management
Requirements:
  • Bachelor's Degree in Information Security, Cybersecurity, Information Technology, or related field or experience
  • 1-3 years of supervisory experience
  • Security related certifications, such as CISM, CISSP, CISA, Cloud Security Certifications
  • 5+ years relevant experience in Information Technology or Cybersecurity for Cloud or On-Premises environments at a financial institution or experience in a simiarly heavily regulated industry preferred
  • Experience with CIS Critical Security Controls, NIST 800 and CSF, and FFIEC frameworks, and Financial Institution Regulatory Requirements
  • Experience with managing Microsoft Active Directory, Group Policy, DNS
  • Familiarity with Cloud Security, SIEM, Logs, IDS/IPS, DLP, Web filters, AV, and WAF solutions
  • Troubleshooting, problem solving, documentation and communication skills
  • Knowledge of common protocols such as SNMP, HTTP, HTTPS, SMTP, NTP, LDAP, KERBEROS, RADIUS and FTP
  • Active in the Information Security community, such as groups, conferences, and so on


  • Reston, Virginia, United States Venteon Full time

    Job Summary:Venteon is seeking a highly skilled Information Security Manager to lead our cybersecurity efforts and ensure the protection of our organization's assets.Key Responsibilities:Develop and Implement Security Strategy: Create and execute a comprehensive security strategy aligned with business objectives and regulatory requirements.Risk Management:...


  • Reston, Virginia, United States VieCure Full time

    Transform Cancer Care with VieCureVieCure is revolutionizing the way cancer care is delivered, and we're seeking a visionary leader to join our team. As the Director of Information Security, you will play a critical role in establishing and maintaining a comprehensive information risk management program that ensures the protection of our sensitive...


  • Reston, Virginia, United States CAE USA Full time

    Job SummaryWe are seeking a highly skilled Information Systems Security Manager to join our team at CAE USA. The successful candidate will be responsible for developing, deploying, and executing controls and defenses to ensure the security of our company's technology, information systems, and system deliverables.Key ResponsibilitiesDevelop and implement...


  • Reston, Virginia, United States Considine Search Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Specialist to join our team at Considine Search. As a key member of our Information Security team, you will play a critical role in protecting our organization's sensitive data and systems.Key ResponsibilitiesDesign, implement, and maintain advanced cybersecurity technologies to ensure the robust...


  • Reston, Virginia, United States Peraton Full time

    Job Description**Job Summary**We are seeking a highly experienced Senior Manager, Cybersecurity Lead to join our team at Peraton. The ideal candidate will direct the execution of system security activities ensuring compliance with federal regulations, DHS, and DOD policies.Key ResponsibilitiesDirect the execution of system security activities to ensure...


  • Reston, Virginia, United States Accion Labs Full time

    Security Analyst - Hybrid RoleAccion Labs is seeking a highly skilled Security Analyst to join our team in Edison, NJ. This is a 12-month contract position that requires a strong understanding of security frameworks and best practices.Key Responsibilities:SOC 2 Compliance Management: Lead efforts to achieve and maintain SOC 2 compliance and...


  • Reston, Virginia, United States Summit Technologies, Inc. Full time

    Job Title: Senior Governance and Information Security ManagerSummit Technologies, Inc. is seeking a highly skilled Senior Governance and Information Security Manager to lead our Vulnerability Management Governance Program. As a key member of our team, you will be responsible for ensuring the security and integrity of our data and systems.Key...


  • Reston, Virginia, United States T-Mobile Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Engineer to join our team at T-Mobile. As a key member of our security operations team, you will play a critical role in protecting our customers and employees from cyber threats.Key ResponsibilitiesDesign and implement advanced security solutions to protect our network and systems from cyber...


  • Reston, Virginia, United States Tria Federal Full time

    About This RoleServe as the Information Systems Security Officer (ISSO) or Information Systems Security Engineer (ISSE) for the Robotics Process Automation (RPA) Program on behalf of the Modernization and Migration Management (M3) Program Management Office (PMO) by overseeing all aspects of security and ensuring compliance with Agency standards.This role...


  • Reston, Virginia, United States Jacobs Engineering Group Inc Full time

    Job DescriptionJob Title: Information Systems Security OfficerJob Summary:We are seeking an experienced Information Systems Security Officer to join our team at Jacobs Engineering Group Inc. The successful candidate will be responsible for ensuring the security of our information systems and supporting the development of risk management frameworks for DoD...


  • Reston, Virginia, United States J.S. Held Full time

    Job Title: Information Security ConsultantJ.S. Held is seeking a highly skilled Information Security Consultant to join our team. As a key member of our consulting delivery team, you will be responsible for providing expert advice and guidance to our clients on information security and compliance matters.Key Responsibilities:Conduct compliance readiness...


  • Reston, Virginia, United States Jacobs Engineering Group Inc Full time

    Job Description**Job Title:** Information Systems Security Officer**Job Summary:** We are seeking an experienced Information Systems Security Officer to join our team at Jacobs Engineering Group Inc. The successful candidate will be responsible for ensuring the security of our information systems and supporting the development of risk management...


  • Reston, Virginia, United States J.S. Held Full time

    Job Title: Information Security ConsultantWe are seeking a highly skilled Information Security Consultant to join our team at J.S. Held. As a key member of our consulting delivery team, you will be responsible for leading Compliance Readiness Assessments, providing technical and thought leadership for managed service customers, and developing and managing...


  • Reston, Virginia, United States ZTI Solutions, LLC Full time

    Senior Information Systems Security Manager (ISSM)ZTI Solutions, LLC is seeking a highly skilled and experienced Information Systems Security Manager to join our team. In this role, you will provide senior-level security certification and accreditation consulting for a DoD-approved classified network with multiple sites.Responsibilities:Maintain, update, and...


  • Reston, Virginia, United States Booz Allen Hamilton Full time

    Job DescriptionAt Booz Allen Hamilton, we are seeking a highly skilled Information Systems Security Officer to join our team. As a key member of our security team, you will be responsible for analyzing and managing policies and procedures to ensure the security of our databases and software.Key Responsibilities:Analyze and develop policies and procedures to...


  • Reston, Virginia, United States Tria Federal Full time

    About This RoleServe as the Information Systems Security Officer (ISSO) or Information Systems Security Engineer (ISSE) for the Robotics Process Automation (RPA) Program on behalf of the Modernization and Migration Management (M3) Program Management Office (PMO) by overseeing all aspects of security and ensuring compliance with Agency...

  • Security Team Manager

    3 weeks ago


    Reston, Virginia, United States Securitas Security Services USA, Inc. Full time

    Job SummaryWe are seeking a highly skilled and experienced Security Team Manager to join our team at Securitas Security Services USA, Inc. As a key member of our security operations team, you will be responsible for managing a site security team, ensuring the safety and security of our clients' datacenters, and providing exceptional customer service.Key...


  • Reston, Virginia, United States ASRC Federal Full time

    Position Overview: ASRC Federal is in search of a Senior Vice President of Information Security to lead our internal IT operations. The Chief Security Officer for Information Technology is tasked with overseeing the Information Security division and is accountable for the strategic planning, execution, and sustainability of the information security framework...


  • Reston, Virginia, United States Thrive Global Full time

    About the RoleThrive Global is seeking a seasoned security professional to lead our security and privacy program. As the Vice President of Information Security, you will be responsible for driving our security practices to the next level, building and leading a best-in-class security team, and owning initiatives including governance, risk, compliance, audit,...


  • Reston, Virginia, United States Applied Solutions Full time

    Location: Reston, VAPosition Overview:The selected candidate will serve as a key advisor on all matters related to information systems security, particularly for classified information systems. Responsibilities include:Advisory Role: Act as the primary consultant on technical and non-technical aspects of information systems security.System Assessments:...