About the Role
The Performance Management Manager will lead the establishment and continuous improvement of cybersecurity performance management framework. In this role, you will cover the full cycle from ensuring strategy alignment and realization, designing KPIs and KRIs to facilitate budget planning, ensuring value delivery and assist in driving the information security to operate with efficiency, foresight, and measurable results.
Responsibilities
- Collaborate with the information in building strategy into a tangible, executable roadmap, breaking down high-level goals into specific initiatives with clear timelines and owners.
- Track and report on the progress of strategic initiatives against the roadmap.
- Design, implement, and own the cybersecurity performance management framework.
- Define and track outcome-driven KPIs and early-warning KRIs that measure the effectiveness and efficiency of security controls and operations.
- Develop and manage executive-level dashboards and reports to communicate performance, risk posture, and progress against goals.
- Facilitate the annual security budgeting process, aligning budget requests with roadmap initiatives.
- Monitor expenditures, provide variance analysis, and identify cost optimization opportunities.
- Benchmark performance metrics against industry peers to provide context for results.
- Act as the primary liaison for communicating performance and planning information between Information Security and other department leads.
- Work with stakeholders to ensure their activities and metrics align with the central performance framework.
Qualifications
Education
- Bachelor’s degree in Computer Science, Information Security, or MIS — with solid business/admin exposure.
Experience
- +6 years of experience in Information Security performance or risk management preferred in technology company.
Skills & Competencies
- Proficiency in KPI/KRI development, budgeting, and performance analytics.
- Analytical mindset, BI and dashboarding skills.
- Deep knowledge of performance measurement frameworks and cybersecurity controls.