Information Security Manager

4 weeks ago


Austin, United States BMTECH GROUP LLC Full time
Company Description

Job Description
  • Design, build and implement enterprise-class security systems for a production environment
  • Align standards, frameworks and security with overall business and technology strategy
  • Identify and communicate current and emerging security threats
  • Design security architecture elements to mitigate threats as they emerge
  • Create solutions that balance business requirements with information and cyber security requirements
  • Identify security design gaps in existing and proposed architectures and recommend changes or enhancements
  • Define and prioritize essential system capabilities or business functions required for partial or full system restoration after a catastrophic failure event.
  • Define appropriate levels of system availability based on critical system functions and ensure that system requirements identify appropriate disaster recovery and continuity of operations requirements to include any appropriate fail-over/alternate site requirements, backup requirements, and material supportability requirements for system recover/restoration.
  • Develop/integrate cybersecurity designs for systems and networks with multilevel security requirements or requirements for the processing of multiple classification levels of data.
  • Document and address organization's information security, cybersecurity architecture, and systems security engineering requirements throughout the acquisition life cycle.
  • Employ secure configuration management processes.
  • Ensure that acquired or developed system(s) and architecture(s) are consistent with organization's cybersecurity architecture guidelines
  • Identify and prioritize critical business functions in collaboration with organizational stakeholders.
  • Perform security reviews, identify gaps in security architecture, and develop a security risk management plan.
  • Provide advice on project costs, design concepts, or design changes.
  • Provide input on security requirements to be included in statements of work and other appropriate procurement documents.
  • Provide input to the Risk Management Framework process activities and related documentation (e.g., system life-cycle support plans, concept of operations, operational procedures, and maintenance training materials).
  • Define and document how the implementation of a new system or new interfaces between systems impacts the security posture of the current environment.
  • Analyze candidate architectures, allocate security services, and select security mechanisms.
  • Develop a system security context, a preliminary system security Concept of Operations (CONOPS) and define baseline system security requirements in accordance with applicable cybersecurity requirements.
  • Evaluate security architectures and designs to determine the adequacy of security design and architecture proposed or provided in response to requirements contained in acquisition documents.
  • Write detailed functional specifications that document the architecture development process.
  • Analyze user needs and requirements to plan architecture.
  • Develop enterprise architecture or system components required to meet user needs.
Document and update as necessary all definition and architecture activities.

Determine the protection needs (i.e., security controls) for the information system(s) and network(s) and document appropriately.

Translate proposed capabilities into technical requirements.

Assess and design security management functions as related to cyberspace.

Qualifications
  • Proven work experience in security architecture, demonstrating solutions delivery, principles and emerging technologies - designing and implementing security solutions. This includes continuous monitoring and making improvements to those solutions.
  • Experience consulting and engineering in the development and design of security best practices and implementation of solid security principles across the organization, to meet business goals along with customer and regulatory requirements
  • Proven expertise in security considerations of cloud computing: This includes data breaches, broken authentication, hacking, account hijacking, malicious insiders, third parties, APTs, data loss and DoS attacks
  • Identity and access management (IAM) - the framework of security policies and technologies that limit and track the access of those in an organization to sensitive technology resources.
  • Knowledge and experience working with relevant National Institute of Standards and Technology (NIST) standards
  • Knowledge and experience working with ISO27001 - specifications for a framework of policies and procedures that include all legal, physical and technical controls involved in an organization's risk management
  • Experience delivering/managing Identity and access management (IAM) solutions - the framework of security policies and technologies that limit and track the access of those in an organization to sensitive technology resources
  • Experience working with security management tools (e.g., vulnerability scanners, file integrity monitoring, configuration monitoring, etc.) and perimeter technologies (e.g., router, firewalls, web proxies and intrusion prevention, etc.)
  • Knowledge of configuration management, change control/problem management integration, risk assessment and acceptance, exception management and security baselines (e.g. CIS Baselines, NIST, vendor security technical implementation guides, etc.)
  • Strong awareness of networking and internet protocols, including TCP/IP, DNS, SMTP, HTTP and distributed networks
  • Knowledge of web services, API, REST and RPC
  • Ability to resolve complex security issues in diverse and decentralized environments; to learn, communicate, and teach new information and security technologies; and to communicate effectively
  • Excellent communication and organizational skills, and the ability to stay focused on completing tasks and meeting goals within a busy workspace
  • Extensive skill in effective verbal and written communications with other computer professionals, clients, and stakeholders
  • Knowledge of software development life cycle methodologies
  • Ability to analyze and problem solve
  • Ability to establish and always maintain effective and professional working relationships with others in the course and scope of conducting business
  • CISSP-ISAAP or equivalent certification
  • Ability to obtain required certification within 6 months and maintain approved baseline certification for position (i.e. CISSP-ISAAP or equivalent)
  • Graduation from an accredited four-year college or university with major coursework in information technology security, computer information systems, computer science, management information systems, or a related field is generally preferred.
  • GSEC, CEH, CISA, CCSP desired
  • Certification as an AWS Solutions Architect, Cloud Security Certification, and/or OpenStack Administrator Certification a plus. (Other cloud-related certification also a plus)


Additional Information

All your information will be kept confidential according to EEO guidelines.

  • Austin, United States Marksman Security Full time

    Overview: Marksman Security Corporation is now seeking a Scheduling Manager **$65,000 - $70,000 P/YR DOE** The Scheduling Manager will oversee security personnel, ensuring the site is properly staffed and officers are trained and motivated. The Scheduling Manager will also work closely with the client contact to achieve goals and objectives set forth by...


  • Austin, United States GardaWorld Security Security Services US Full time

    **GardaWorld - Security Services JOB SNAPSHOT Job Title: Account Manager - Security Environment: Construction vertical in Austin Pay Rate: $65,000/ year Bonus - monthly car allowance Who is GardaWorld? GardaWorld is the world’s largest privately-owned security services company. We protect our clients’ staff and assets, wherever they are in the world....


  • Austin, United States ePayPolicy Full time

    Job DescriptionJob DescriptionePayPolicy offers easier payment tools, built for insurance. ePayPolicy's products bring insurance payments up to speed for agencies, carriers, MGAs, and PFCs, with secure online payment pages, automated check processing, and payables reconciliation. 6,500+ insurance companies trust ePayPolicy and our expert, live support...


  • Austin, United States InterSources Full time

    Must Have Skills Skill 1 – Any recognized security certifications, e.g., CISSP, CISA, CISM Skill 2 - Monitor internal and external threat landscape to update strategy and intellectual protection program roadmap Skill 3 – Provide periodic reports to management team and key stakeholders Roles and Responsibility • Demonstrate strong knowledge in IT...


  • Austin, United States Texas Racing Commission Full time

    [General Description Performs information security and cybersecurity analysis work involving planning, implementing, and monitoring security measures for the protection of information systems and infrastructure. Develops security architecture and policies based on business needs, risk assessments, and regulatory requirements. Work also includes protecting...


  • Austin, United States Science 37 Full time

    **Chief Information Security Officer** at Science 37 Austin, Texas - Remote Science 37 is accelerating the research and development of breakthrough biomedical treatments by bringing clinical trials to patients' homes. Backed by venture investors such as Glynn Capital, Google Ventures, Redmile Group, dRx Capital and Lux Capital, we are revolutionizing the...


  • Austin, Texas, United States GardaWorld Security Services Full time

    Job Summary GardaWorld - Security ServicesJOB SNAPSHOT Job Title: Account Manager - SecurityEnvironment: Construction vertical in AustinPay Rate: $65,000/ year Bonus - monthly car allowance Who is GardaWorld? GardaWorld is the world's largest privately-owned security services company. We protect our clients' staff and assets, wherever they are in the...


  • Austin, United States InterSources Full time

    Must Have Skills Skill 1 - Any recognized security certifications, e.g., CISSP, CISA, CISM Skill 2 - Monitor internal and external threat landscape to update strategy and intellectual protection program roadmap Skill 3 - Provide periodic reports to management team and key stakeholders Roles and Responsibility • Demonstrate strong knowledge in IT controls,...


  • Austin, United States GardaWorld Security Services Full time

    Job Summary GardaWorld - Security ServicesJOB SNAPSHOT Job Title: Account Manager - SecurityEnvironment: Construction vertical in AustinPay Rate: $65,000/ year Bonus - monthly car allowance Who is GardaWorld? GardaWorld is the world's largest privately-owned security services company. We protect our clients' staff and assets, wherever they are in the...


  • Austin, United States Genius Road Llc Full time

    Information System Security Officer - AssessorContract - 12-24 monthsLocation - Austin, TX (Hybrid - 2 days onsite)The ideal candidate will be responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by the information systems to determine the overall effectiveness of...


  • Austin, United States Genius Road, LLC Full time

    Information System Security Officer - Assessor Contract - 12-24 months Location - Austin, TX (Hybrid - 2 days onsite) The ideal candidate will be responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by the information systems to determine the overall...


  • Austin, Texas, United States Austin Community College Full time

    Chief Information Security OfficerAustin Community CollegeJob Posting Closing Times: Job postings are removed from advertising at 12:00 A.M. on the closing date e.g., at midnight on the day before the closing date.If you are a current Austin Community College employee, please click this link to apply through your Workday account.Austin Community College is a...


  • Austin, United States Genius Road, LLC Full time

    Chief Information Security Officer (CISO) Permanent Hire Location: Austin, TX Overview Reporting to the CIO, the CISO is a key member of the leadership team and responsible for the security of data, information assets, applications, and infrastructure. The CISO will be accountable for the successful implementation of well-defined security projects, and...


  • Austin, United States Addison Group Full time

    Job DescriptionJob DescriptionChief Information Security Officer (CISO)Reporting to the CIO, the Chief Information Security Officer (CISO) is a key role on theleadership team of the IT department. This position is responsible for the securityof data and information assets. This role has purview over the operational day-to-day measures used to secure data,...

  • Security Officer

    2 days ago


    Austin, United States Security Firm Full time

    Provide Superior Customer Service; A "People Person", enthusiastic and friendly Remains alert for the presence of unauthorized persons and/or security code violators; approaches suspicious person and/or notifies police as appropriate; may confront and detain violators, as required, until police arrive. Prepares routine, standardized reports. May provide...


  • Austin, United States University of Texas at Austin Full time

    Job Posting Title: ARL Information Systems Security Officer - Hiring Department: Applied Research Laboratories - Position Open To: All Applicants - Weekly Scheduled Hours: 40 - FLSA Status: Exempt - Earliest Start Date: Immediately - Position Duration: Expected to Continue - **Location**: PICKLE RESEARCH CAMPUS - Job Details: Purpose Meeting ARL:UT's Risk...

  • Security Officer

    5 days ago


    Austin, United States GardaWorld Security Security Services US Full time

    **GardaWorld -** **Security Services** **Job Title**:Security Guard - Shipping Center **Location**:Austin, TX **Environment**:Shipping Center **Shift**:Mon-Wed & Sat 2 pm - 11 pm / Sun 7 pm -11 pm (40 Hours) **Security Officer - Now Hiring!** You’ve got the right skills. What you need is the right opportunity to unleash your potential. We agree, and...


  • Austin, United States Genius Road, LLC Full time

    Senior Information System Security Officer (ISSO) Contract - 12-24 months Location - Austin, TX (Hybrid - 2 days onsite) Are you ready to take on the mantle of safeguarding our client's digital fortress? We're on the lookout for a seasoned Senior Information System Security Officer to stand guard over our client's systems and infrastructure. As the...


  • Austin, United States US Tech Solutions Full time

    Duration: 12 months contractJob Description:An Information Security Specialist interprets information security policies, standards, and other requirements as they relate to internal information system and coordinates the implementation of these and other information security requirements. The Information Security Specialist redesigns and reengineers internal...


  • Austin, United States ACT Security Group Full time

    Join our team as a Field Security Supervisor who supports all field operations. Field Supervisor **Required Skills**: - Robust leadership and supervision skills, adept at inspiring and efficiently managing teams. - Profound problem-solving and decision-making capabilities to analyze intricate security issues and devise practical solutions. - Exceptional...