What are the responsibilities and job description for the Sr. IT Security Manager 0125 position at nexus IT group?
Responsibilities
- Take a leadership role in the architecting, development and management of security systems, policies, practices, and standards.
- Provide strategic, technical and tactical vision, with execution focused on incident prevention, detection, and response.
- Responsible for the evaluation of new security related technologies which may be used to replace, enhance or integration with IT systems.
- Ensure policies and procedures put in place are adhered to and take corrective action where non-conformities are identified.
- Maintain professional skills, certifications, and competencies.
- Research and apply better ways of mitigating security risks using emerging technologies and solutions while driving a secure approach to the development of solutions across the enterprise
- Apply advanced technical skills that will ensure proper security controls are in place and functioning. This may include forensics, incident response processes, data loss protection technologies, vulnerability management, endpoint security, encryption, security logging/monitoring solutions, internet filtering, and oversight of AD management
- Proactively address changes in the threat landscapes that have an impact on the use of computing technologies
- Lead, coach, and mentor teams across the enterprise to incorporate security into applications, software, infrastructure, equipment, and process
- Expand and lead the security governance model, establishing policies, standards, and best practices
- Communicate timely status updates (both verbal and written) to team members and management
- Perform other duties as assigned
Position Requirements
- Bachelor’s degree in Cybersecurity, Math, Computer Science, or related field with a minimum of 10 years of IT experience.
- Knowledge of cybersecurity standards and frameworks, threat hunting and incident response processes.
- Knowledge and understanding of the Cyber Kill Chain threat framework model, for the identification and prevention of cyber intrusions activity, enhanced insight, and reporting of cyber activity.
- Experience integrating security into cloud solutions, developing cloud security strategy and roadmap for Azure and/or Amazon Web Services (AWS) platforms.
- Experience with implementing and supporting Security Information and Event Management (SIEM) platforms.
- Experience with infrastructure to include networking architectures, hardware, Microsoft Windows, and Linux platforms.
- Experience with encryption technologies to ensure security and compliance requirements.
- Extensive experience with security technologies including endpoint security, vulnerability management, forensics, DLP, MFA, AD administration and monitoring.
- Is expected to have leadership skills, demonstrating the importance of good decision making and strategic discipline through example.
- IT Security Certification and/or prior experience managing a global security and compliance team.
- Understands security and compliance regulations and has prior work experience in highly regulated industry.