Information Security Manager

03 Dec 2024

Vacancy expired!

GENERAL DESCRIPTION OF WORK: The Manager of Information Security leads the Information Security team within the Technology & Innovation Division. The primary objectives of the Information Security team are to protect the digital assets and reputation of the organization, establish and maintain standards and goals for system and network design, development, testing and implementation, and to maintain and oversee the overall security of the network infrastructure, using industry-standard security best practices.

ESSENTIAL FUNCTIONS: Develops, implements, maintains, and oversees enforcement of policies, procedures, guidelines, and associated plans for system security administration and user system access based on industry-standard best practices to ensure the safety of information systems assets and to protect systems from intentional or inadvertent access or destruction. Responsible for budget design, purchasing, and managing vendor relations. Ensures the secure design and operation of all systems, applications, networks, and cloud services. Assigns, directs and coordinates the work of the Information Security staff. Reviews and evaluates the work of the Information Security staff and prepares periodic performance reports. Ensures the secure design and operation of all systems, applications, networks, and cloud services. In-depth technical knowledge of network, PC, and platform operating systems, including Windows operating systems, Unix, SQL server, Active Directory and network configuration. Assists with the design and implementation of disaster recovery plan for operating systems, databases, networks, servers, and software applications. Assists with the design and implementation of incident response plans.

MANAGER OF INFORMATION SECURITY JOB DESCRIPTION (continued) Date Revised 10-12-21 Assesses the need for any security reconfigurations (minor or significant) and executes them if required. Keeps current with emerging security trends and issues. Conducts research on emerging products, services, protocols, and standards in support of security enhancement and development efforts. Interacts with vendors and contractors on a regular basis to constantly improve the overall information security posture of the digital environment. Recommends, schedules, and performs security improvements, upgrades, and/or purchases. Deploys, manages, upgrades, documents, and maintains all security systems and their corresponding or associated software, including firewalls, intrusion detection systems, SIEM system, and anti-viranti-malware software. Audits end user accounts, permissions, and access rights on various systems, servers, and file shares and documents results. Manages connection security for local area networks, external company web sites, mobile devices, Wi-Fi, remote access methods, e-mail communications, and more. Audits and ensures the security of databases and data transferred both internally and externally. Designs, performs, and/or oversees penetration testing of all systems in order to identify system vulnerabilities. Designs, implements, and reports on security system and end user activity audits. Monitors a variety of systems for unusual or suspicious activity, and makes recommendations for resolution. Recommends, schedules (where appropriate), and applies fixes, security patches, disaster recovery procedures, and any other measures required in the event of a security breach. Regularly interacts with Directors, Vice Presidents, and Senior Management on various issues involving information security, training, and staff issues. Downloads and tests new security software and/or technologies. Performs security systems backups. Trains, oversees and/or provides guidance to junior members of the Information Security team. This job description excludes marginal functions that are incidental to performing the job. Other duties may exist. MANAGER OF INFORMATION SECURITY JOB DESCRIPTION (continued) Date Revised 10-12-21 EDUCATION AND EXPERIENCE: Bachelor's degree in Computer Science, Management Information Systems, Mathematics or a closely related field, and 5 years' experience in an IT field with involvement in security, or an equivalent combination of education or experience. Industry-standard certifications preferred. ADDITIONAL REQUIREMENTS: Broad hands-on knowledge of firewalls, intrusion detection systems, anti-viranti-malware software, data encryption, SIEM, and other industry-standard techniques and practices. Strong knowledge of TCP/IP and network administration/protocols. Hands-on experience with devices such as switches, and routers. Knowledge of applicable practices and laws relating to data privacy and protection. Knowledge of law enforcement practices and procedures. Intuition and keen instincts to pre-empt attacks. High level of analytical and problem-solving abilities. Must be able to conduct research into security issues and products as required. Strong understanding of the organization's goals and objectives. Strong interpersonal and oral communication skills. Highly self-motivated and directed. Strong organizational skills. Excellent attention to detail. Must be able to effectively prioritize and execute tasks in a high-pressure environment. Able to work in a team-oriented, collaborative environment. Must be able to provide supervision, guidance and support for the Information Security staff. Must be able to successfully interact with users at all levels of the organization. Must be able to maintain good work attendance.

  • ID: #23798755
  • State: Texas San antonio 78205 San antonio USA
  • City: San antonio
  • Salary: - $111000 per annum
  • Job type: Contract
  • Showed: 2021-12-03
  • Deadline: 2022-01-28
  • Category: Et cetera