Cybersecurity Program Manager
JOB SUMMARY:
The Cybersecurity Program Manager is responsible for leading and managing enterprise cybersecurity programs that protect the organization's information assets, technology infrastructure, client environments, and regulatory obligations. This role serves as the primary liaison between Information Technology, Information Security, business stakeholders, and external clients to ensure cybersecurity initiatives are successfully planned, implemented, governed, and maintained.
The Cybersecurity Program Manager oversees security projects, compliance initiatives, risk management activities, customersecurity requirements, third-party security assessments, and continuousimprovement programmes while ensuring alignment with business objectives and industry best practices.
CORE RESPONSIBILITIES:
- Own and continuously improve the company's cybersecurity program, including policies, controls, risk assessments, and incident response plans.
- Develop, implement, and manage enterprise cybersecurity programs and strategic initiatives.
- Lead cross-functional security projects from planning through execution.
- Develop project plans, timelines, budgets, risk registers, and executive status reports.
- Coordinate internal and external stakeholders to ensure successful delivery of security initiatives.
- Monitor for vulnerabilities and threats across systems and vendor integrations, drive remediation to closure.
- Maintain compliance with relevant frameworks and regulations (e.g., SOC 2, ISO 27001, PCI-DSS, GDPR, as applicable).
- Partner with IT, engineering, and business stakeholders to embed security requirements into projects and vendor onboarding.
- Report program status, risks, and metrics to leadership on a regular cadence.
- Manage security incident response, including investigation, containment, and post-incident review.
- Maintain cybersecurity policies, standards, and operational procedures.
- Serve as the primary cybersecurity contact for assigned enterprise customers.
- Support customer security questionnaires and due diligence assessments.
- Coordinate customer security audits and compliance reviews.
- Participate in security governance meetings with clients.
- Develop customer-specific security improvement plans.
REQUIREMENTS/QUALIFICATIONS
- 3+ years of experience in cybersecurity, with at least 2 years in a team-lead capacity.
- Experience managing third-party/vendor security risk, ideally including large-scale contact center operations, as well as delivery, logistics, or platform integration partners.
- Working knowledge of security frameworks (NIST, ISO 27001, CIS Controls) and compliance requirements relevant to the business.
- Strong understanding of network security, identity and access management, and cloud security fundamentals.
- Excellent communication skills, with the ability to translate technical risk into business terms for non-technical stakeholders.
- Relevant certifications (CISSP, CISM, or similar) preferred but not required.
KEY COMPETENCIES
- Exceptional customer service orientation.
- Cybersecurity leadership
- Program and project management
- Risk management
- Security governance
- Compliance management
- Vendor management
- Executive communication
- Continuous improvement
- Strong emphasis on family and team collaboration.
- Keen attention to detail.
- Flexibility in accommodating varied working schedules.
- Exceptional team player.
- Steadfast commitment to moral integrity and honesty.
- Ability to perform effectively in high-pressure situations.
Reporting:
- This role reports to the Global Director of IT and Compliance