Sr. Manager, Information Security
Responsibilities:
- Develop, implement, and monitor a strategic, comprehensive enterprise information security and IT risk management program and strategy.
- Develop and maintain security policies, standards, guidelines, and procedures to ensure ongoing security compliance.
- Investigate and report on security breaches and other cybersecurity incidents
- Regularly update documentation for incident response and disaster recovery plans in coordination with Information Technology Department.
- Experience managing, and overseeing technical implementations of EDR/XDR, PIM/PAM, MFA, SSO, DLP, IDS/IPS and other similar technologies.
- Establish and manage Cybersecurity / Information Risk Management practices within the organization.
- Lead a team of highly skilled and motivated experts.
- Work directly and closely with the business units to facilitate risk assessment and risk management processes.
- Develop and enhance an information security management framework.
- Understand and interact with related disciplines through committees to ensure the consistent application of policies and standards across all technology projects, systems, products and services.
- Provide leadership to the enterprise’s information security organization across all global business units.
- Partner with business stakeholders across the company to raise awareness of risk management concerns.
- Assist with the overall business technology planning, providing a current knowledge and future vision of technology and systems.
Requirements:
- Bachelor’s degree in Computer Science, Information Technology, or a related field.
- Professional security management certification (e.g., CISSP, CISM, CISA).
- Minimum of 10 years of experience in a combination of risk management, information security, and IT jobs.
- Knowledge of common information security management frameworks, such as ISO/IEC 27001, and NIST.
- Excellent written and verbal communication skills and high level of personal integrity.
- Innovative thinking and leadership with an ability to evolve security strategy based on research, data, business direction, and industry trends
- Ability to influence people and organizations in a global matrix organization.
- Demonstrable record of delivering critical solutions within tight time frames, with multiple stakeholder groups, and competing priorities
- Experience with contract and vendor negotiations and management, including managed services.
- Ability to provide clear, transparent leadership and engagement
- Chinese/Mandarin speaking is preferred.
Annual base salary for this role in California, US is expected to be between $190,600 - $240,000.
Actual pay will be determined on a number of factors such as relevant skills and experience, and
the pay of employees in the similar role.
EOE/Minorities/Females/Vet/Disability