Objective: To manage an Information Security team performing functions which ensure compliance with client's Global Information Security policy and best practices across all North American business units.
Role:
The primary responsibilities of the Information Security Manager position are:
· Manage a team of IS professionals
· Execute high-level IT Security requests issued by our clients and advise as to best practices.
· Work with IT and Business staff to perform pre-development security evaluation and architecture guidance. Interface regularly with staff from various departments (e.g. IT, Operational Risk, Internal Audit, Legal and Compliance), communicating security issues and responding to requests for assistance and information.
· Maintain an up-to-date task list in the team task register and provide regular task reports on major projects.
· Develop and promote security awareness tools and techniques; Understand and be fully fluent in all aspects of our Global Information Security Policy and industry best practices.
· Resolve or escalate issues that are uncovered by various internal monitoring tools. Respond to security incidents and conduct targeted review of suspect areas.
· Interface with various global and regional groups to provide input and assessment of security tools and assist the local groups with the adoption of the global product suite.
· Perform other duties, as assigned.
Essential Experience: (Must have skills)
· CISSP certification required. CISM certification a plus. Hands-on security experience is essential.
· Bachelor's Degree or equivalent experience in Information Technology; 5+ years experience in Information Security.
· Excellent problem solving, analytical, communication, organization, task and time management skills.
· Ability to work independently and as part of a team; strong coaching and team motivation skills required.
· Driven to achieve goals and meet deadlines set out by management. Project Management skills a plus.
· Extensive security experience with: Active Directory, NTFS/UNIX File Systems, and Database (Sybase, SQL, and Oracle)
· Experience with aspects of Network Security: firewalls, IPS/IDS, penetration testing, networking fundamentals
· Experience with two or more 3rd party or Open-Source security tools or equivalents required: Foundstone, RSA SecurID, Qualys, Guardium, Vontu, SourceFire, NetPro Change Auditor and Checkpoint Protector
· Previous experience in a Financial Services firm a plus
This is a full-time position - may start as contract-to-hire, or full-time, based on client and candidate's preference