Senior Manager, Information Security

6 days ago


Chicago, Illinois, United States Chelsea Search Group Full time
Job Title: Senior Manager, Information Security

The Chelsea Search Group is seeking a highly skilled Senior Manager, Information Security to lead our information security strategy and team. As a key member of our organization, you will be responsible for developing and implementing a comprehensive information security strategy to safeguard our sensitive data, intellectual property, and client information.

Key Responsibilities:
  • Develop and implement a robust information security strategy aligned with our business goals and regulatory requirements.
  • Evaluate and assess our current security posture, identifying vulnerabilities and recommending appropriate measures for improvement.
  • Conduct security best practice analysis of servers, group policy, desktops/laptops, applications, mobile devices, routers/switches, firewalls, and printers.
  • Develop least privilege access policy relative to requirements for Windows environment and audit file share access permissions.
  • Assist with completion of "Project Security & Privacy" template.
  • Conduct risk assessments and regularly update risk profiles to proactively address potential threats and vulnerabilities.
  • Collaborate with legal teams to ensure compliance with industry regulations and client-specific security requirements.
  • Establish and maintain an incident response plan to effectively respond to and mitigate security incidents.
  • Lead investigations into security breaches and incidents, providing timely and accurate reports to executive leadership.
  • Collaborate with vendors to develop and test incident response plans, ensuring a coordinated and efficient response in the event of a security incident.
  • Clearly define the roles and responsibilities of both the vendor and the law firm in the event of a data breach or other security events.
  • Develop and deliver ongoing cybersecurity training programs for employees to enhance awareness and promote a culture of security.
  • Foster a proactive security mindset across the organization.
  • Stay abreast of emerging security technologies and trends, evaluating their relevance and potential impact on the firm.
  • Collaborate with IT teams to integrate security measures into technology infrastructure and applications.
  • Risk Assessment and Due Diligence:
    • Conduct thorough risk assessments of potential vendors before engagement, evaluating their cybersecurity practices and assessing their ability to safeguard sensitive information.
    • Implement a due diligence process that includes evaluating the vendor's security policies, incident response capabilities, and overall cybersecurity posture.
    • Work closely with the legal team to incorporate robust cybersecurity clauses into contracts with vendors.
    • Ensure that vendor contracts include provisions for regular security audits and assessments to monitor compliance.
    • Periodically audit and assess vendor security controls and practices to ensure ongoing adherence to contractual agreements and industry standards.
    • Collaborate with internal audit teams or external experts to conduct comprehensive assessments of critical vendors.
    • Establish mechanisms for continuous monitoring of vendor activities related to information security.
    • Implement tools and processes to track and evaluate changes in the vendor's security posture over time, promptly addressing any identified risks or vulnerabilities.
    • Provide regular updates to executive leadership on the status of vendor security, highlighting any emerging risks or areas of improvement.
    • Establish open lines of communication with vendors to address concerns, share best practices, and foster a collaborative approach to cybersecurity.
    • During contract renewals, revisit and update cybersecurity clauses based on changes in the regulatory environment, industry standards, or our own security policies.
    • Evaluate the vendor's performance against cybersecurity metrics and consider this information when deciding on contract renewals.
    • Provide guidance and training to vendors on our security policies and expectations.
    • Foster a shared responsibility for security, encouraging vendors to adopt a proactive approach to cybersecurity.
Requirements:
  • Proven experience as an Information Security Manager or in a senior leadership role within information security.
  • Strong understanding of cybersecurity frameworks, principles, technologies, and best practices.
  • Strong understanding of ISO security and privacy standards (ISO 27001/27701).
  • Familiarity with relevant legal and regulatory requirements.
  • Excellent communication and interpersonal skills.
  • Strong team-orientation and ability to collaborate across business segments and with personnel at all levels of the organization.
  • High-level presentation skills.
  • Very strong leadership, analytical, project management, negotiation, and problem-solving skills.
  • Proven management skills and demonstrated ability to foster an inclusive team where everyone has opportunities to develop and succeed.
  • Experience with successfully leading, developing, and managing change management initiatives that served to advance organizational information security performance.
  • Maintain expert understanding of key market trends in functional area.
  • Demonstrated critical thinking skills.
Preferred Certifications:
  • Certified Information Systems Security Professional (CISSP)
  • Certified Authorization Professional (CAP)
  • Certified Information Security Manager (CISM)
  • GIAC Security Leadership (GSLC)
To Apply:

Please email your resume to the Chelsea Search Group.



  • Chicago, Illinois, United States Chelsea Search Group Full time

    Job Title: Senior Manager, Information SecurityAt Chelsea Search Group, we are seeking a highly skilled and experienced Senior Manager, Information Security to lead our information security strategy and team. The ideal candidate will have a strong understanding of cybersecurity frameworks, principles, technologies, and best practices, as well as excellent...


  • Chicago, Illinois, United States Chelsea Search Group Full time

    Senior Manager, Information SecurityJoin Chelsea Search Group as we seek a highly skilled Senior Manager, Information Security to lead our cybersecurity efforts. As a key member of our team, you will be responsible for developing and implementing a comprehensive information security strategy to safeguard our sensitive data, intellectual property, and client...


  • Chicago, Illinois, United States Chelsea Search Group Full time

    Job Title: Senior Manager, Information SecurityChelsea Search Group is seeking a highly skilled Senior Manager, Information Security to lead our information security strategy and team. As a key member of our organization, you will be responsible for developing and implementing a comprehensive information security strategy to safeguard our sensitive data,...


  • Chicago, Illinois, United States Bank of America Full time

    Job Title: Senior Information Security ArchitectAt Bank of America, we are committed to creating a workplace that is inclusive and diverse, where everyone has the opportunity to succeed. As a Senior Information Security Architect, you will play a critical role in helping us achieve this goal.About the RoleThe Senior Information Security Architect will be a...


  • Chicago, Illinois, United States Capital One Full time

    About the RoleCapital One is seeking a highly skilled Senior Manager, Information Security Office to lead our Cybersecurity Assurance team. As a key member of our Information Security Office, you will play a critical role in ensuring the security and integrity of our systems and data.Key ResponsibilitiesLead a team of cybersecurity professionals in the...


  • Chicago, Illinois, United States Bank of America Full time

    Job Title: Senior Information Security OfficerBank of America is seeking a highly skilled Senior Information Security Officer to join our team. As a key member of our Information Security organization, you will be responsible for partnering with leaders to balance the needs of the business while ensuring information security and organizational risks are...


  • Chicago, Illinois, United States Capital One Full time

    About the RoleWe are seeking a highly skilled Senior Manager, Information Security Office to join our team at Capital One. As a key member of our Information Security Office, you will play a critical role in helping us consult on initiatives, programs, and projects to raise their game in Information Security.ResponsibilitiesAct as a central Information...


  • Chicago, Illinois, United States Bank of America Full time

    Job DescriptionAt Bank of America, we are committed to creating a workplace that is guided by a common purpose to help make financial lives better through the power of every connection. As a Senior Information Security Officer, you will play a critical role in driving Responsible Growth by ensuring the security and integrity of our information systems and...


  • Chicago, Illinois, United States Capital One Full time

    About the RoleCapital One is seeking a highly skilled Senior Manager, Information Security Office to lead our Cybersecurity Assurance team. As a key member of our Information Security Office, you will be responsible for managing a team of associates in the execution of risk review types and ensuring the ongoing evolution of our service offering...


  • Chicago, Illinois, United States Cooks County Government Full time

    Job SummaryWe are seeking a highly skilled Senior Information Security Specialist to join our team at Cook County Government. As a key member of our IT security team, you will be responsible for designing and administering Information Technology (IT) security architecture and privacy services across our network.Key ResponsibilitiesMonitor and utilize...


  • Chicago, Illinois, United States American Institutes for Research Full time

    About the RoleWe are seeking a highly skilled Senior Information Security Analyst to join our team at American Institutes for Research. As a key member of our Information Security Office, you will play a critical role in ensuring the security and integrity of our information systems and data.Key ResponsibilitiesExecute internal controls assessments for AIR...


  • Chicago, Illinois, United States Bank of America Full time

    Job Description:At Bank of America, we are committed to helping our customers achieve their financial goals through the power of every connection. As a Senior Identity and Access Management (IAM) Security Specialist, you will play a critical role in ensuring the security and integrity of our customers' sensitive information. We are seeking a highly skilled...


  • Chicago, Illinois, United States Collabera Full time

    Job Title: Security SpecialistCollabera is seeking a highly skilled Security Specialist to join our team. As a Security Specialist, you will be responsible for performing information security reviews of third parties that provide services to the bank.Key Responsibilities:Validating assessment scope and partnering with enterprise vendor managers and third...


  • Chicago, Illinois, United States Hispanic Technology Executive Council Full time

    About the RoleWe are seeking a highly skilled Senior Information Security Controls Specialist to join our Process and Metrics Excellence organization, part of Global Information Security (GIS) at the Hispanic Technology Executive Council. This role will play a critical part in promoting a strong risk management culture with a focus on information security...


  • Chicago, Illinois, United States Bank of America Full time

    About the Role:Bank of America is seeking a highly skilled Senior Information Security Controls Specialist to join our Process and Metrics Excellence organization within Global Information Security (GIS). As a key member of our team, you will play a critical role in promoting a strong risk management culture with a focus on information security risk.Key...


  • Chicago, Illinois, United States GATX Corporation Full time

    Company Overview: GATX Corporation, established in 1898 and based in Chicago, IL, stands as a leader in its industry with over 125 years of achievement. Our success is driven by our dedicated workforce and a vibrant corporate culture that fosters collaboration and innovation.Position Summary: The Global Head of Information Security is tasked with the...


  • Chicago, Illinois, United States GATX Corporation Full time

    Company Overview: GATX Corporation, established in 1898 and based in Chicago, IL, stands as a prominent leader in its industry with over 125 years of proven success. Our achievements are driven by our dedicated workforce and a vibrant corporate culture.Work Environment: At GATX, we prioritize hiring top talent and fostering a dynamic, collaborative...


  • Chicago, Illinois, United States GATX Corporation Full time

    Company Overview: GATX Corporation, established in 1898 and based in Chicago, IL, is a prominent player in its industry with over 125 years of success, driven by a dedicated workforce. Our culture emphasizes high performance, teamwork, and a vibrant office environment.Position Summary: The Global Head of Information Security is tasked with developing and...


  • Chicago, Illinois, United States GATX Corporation Full time

    Company Overview: GATX Corporation, established in 1898 and based in Chicago, IL, stands as a leader in its industry with over 125 years of successful operations, driven by a dedicated workforce. Our vibrant workplace culture, coupled with an enthusiastic management team, fosters an environment where employees can thrive.Position Summary: The Global Head of...


  • Chicago, Illinois, United States GATX Corporation Full time

    Company Overview: GATX Corporation, established in 1898 and based in Chicago, IL, stands as a prominent leader in its industry with over 125 years of achievement, driven by a dedicated workforce. Our culture emphasizes high performance, collaboration, and a vibrant workplace environment.Position Summary: The Global Head of Information Security is tasked with...