AVP, Information Security

Verinext

North Haven (CT)

On-site

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Retirement Plan (401k, IRA)
Work From Home
Health Care Plan

Job summary

A cybersecurity firm is seeking an Assistant Vice President of Information Security Operations to lead their cybersecurity initiatives. This role involves managing audits, developing security policies, conducting risk assessments, and ensuring compliance with industry standards. The successful candidate will have certifications like CISSP or CISM, strong leadership abilities, and extensive experience in information security. This is a contract-to-hire position requiring onsite work and on-call responsibilities every 5-6 weeks. The company offers benefits such as retirement plans and a health care plan.

Qualifications

  • Industry-recognized certifications such as CISSP, CISM, or CISA.
  • Experience as an Information Security Engineer or in a similar position.
  • 5 to 8 years of relevant work in information security.

Responsibilities

  • Lead cybersecurity initiatives and manage audits and evaluations.
  • Develop and enforce security policies to protect digital assets.
  • Conduct risk and vulnerability assessments regularly.

Skills

Leadership
Communication
Problem-solving
Team collaboration
Attention to detail

Education

Bachelor's or Master's degree in Information Security, Computer Science, or related field

Tools

Firewalls
IDS/IPS
Antivirus solutions
Encryption methods

Job description

The Assistant Vice President of Information Security Operations is a proactive leadership position responsible for the design, execution, planning, budgeting, protection, monitoring, and integration of cybersecurity initiatives. You will be instrumental in developing and enhancing processes related to the Risk Management Framework (RMF), threat and vulnerability assessments, penetration testing, and reporting activities. Your main goal is to strengthen cybersecurity capabilities and incident response procedures to ensure they align with company standards and industry best practices.

In this role, you will be tasked with protecting the organization's information systems and data assets. You will play a vital role in implementing and sustaining security measures that defend against cyber threats, safeguarding the confidentiality, integrity, and availability of these systems.

This is a contract-to-hire opportunity with one of Verinext's clients. The position requires five days/week onsite and must be open to on-call responsibility every 5-6 weeks.

Essential Functions and Responsibilities
  • Lead cybersecurity initiatives, coordinating with internal teams and vendors to ensure continuous resilience testing
  • Manage audits, evaluations, project planning, budgeting, and vendor coordination for cybersecurity efforts
  • Stay updated on security threats, technologies, and best practices
  • Security Policies: Develop and enforce policies, procedures, and controls to protect digital assets, systems, and applications
  • Risk Management: Maintain the Risk Management Framework, conduct regular risk and vulnerability assessments, penetration testing, and manage business fraud investigations
  • Incident Response: Proactively detect threats, handle security incidents, maintain response plans, and monitor security logs for timely action
  • Incident Investigation and Forensics: Conduct thorough investigations with internal teams and vendors to improve security posture
  • Regulatory Compliance: Ensure all cybersecurity activities meet regulatory and government standards
  • Security Awareness: Develop and manage programs to educate employees and stakeholders on cybersecurity best practices
  • Vendor Security: Assess and monitor third-party vendor security practices and RMF compliance
  • Stakeholder Collaboration: Work with internal and external partners to ensure security standards and trade compliance, integrating security into system design
  • Reporting: Provide regular cybersecurity status updates to executive management and maintain detailed documentation of activities and findings
Qualifications and Requirements
  • Possession of industry-recognized certifications such as CISSP, CISM, or CISA
  • Familiarity with threat and vulnerability analysis, penetration testing, as well as red team and blue team exercises
  • Strong communication skills and the ability to work effectively within a team
  • Quick learning capability with adaptability to new technologies and methodologies
  • Exceptional attention to detail and a commitment to accuracy in work
  • A cooperative attitude and readiness to collaborate with colleagues to achieve common objectives
  • Demonstrated experience as an Information Security Engineer or in a similar position
  • Comprehensive knowledge of information security principles and industry best practices
  • Experience working with security technologies such as firewalls, IDS/IPS, antivirus solutions, and encryption methods
  • Awareness of security frameworks and compliance standards, including ISO 27001, NIST, and GDPR
  • Practical experience with various security tools and technologies
  • Proven leadership experience in information security, encompassing 5 to 8 years of relevant work
  • Deep understanding of banking and credit union operations, regulatory requirements, and financial procedures
  • Extensive knowledge of cybersecurity technologies, tools, and best practices
  • Outstanding communication and leadership abilities
  • Capability to adapt in a fast-paced environment and make critical decisions under pressure
  • Experience with security considerations in artificial intelligence (AI) and machine learning (ML)
  • Familiarity with DevOps practices and security automation
  • Experience developing and conducting security awareness training and education
  • Skill in evaluating and managing cyber risks, working with recognized frameworks like the NIST Cybersecurity Framework, CIS Top 20, and NIST 800-series
  • Knowledge of intrusion analysis methodologies such as the Cyber Kill Chain and Diamond Model
  • Mandatory experience with cloud computing, network infrastructures, servers, operating systems, and PCs
  • Preferred experience with ATM and ITM network systems
  • Strong problem-solving skills for complex analytical and project-related challenges
  • Physical ability to lift boxes weighing up to 50 lbs
  • Availability for on-call duties outside regular business hours
  • A Bachelor's or Master's degree in Information Security, Computer Science, or a related field, complemented by relevant professional experience
Benefits
  • Retirement Plan (401k, IRA)
  • Work From Home
  • Health Care Plan
Equal Employment Opportunity

The Company is an equal opportunity employer and does not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other protected characteristic under applicable law.

Employment Disclaimer

This job description is not intended to create an employment contract. Employment with the Company is at-will, meaning employment may be terminated by either the employee or the Company at any time, with or without cause or notice, subject to applicable law.

Duties Subject to Change

The Company reserves the right to modify, add, or reassign duties and responsibilities at any time based on business needs.

Confidentiality

This position may require access to confidential or sensitive information. Employees are expected to maintain confidentiality and comply with all Company policies and applicable security requirements.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AVP Information Security
AVP Information Security

HW Staffing Solutions • North Haven (CT)

On-site
USD 130,000 - 155,000
Cyber Security Specialist
Cyber Security Specialist

Vensure Employer Solutions • Duluth (GA)

On-site
USD 80,000 - 100,000
Health Insurance
401(k) Retirement Plan
Paid Time Off
Senior Cybersecurity Specialist - GA - On Site
Senior Cybersecurity Specialist - GA - On Site

Socket.dev • Duluth (GA)

On-site
USD 120,000 - 180,000
Health Insurance
401(k) Plan
Paid Time Off
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Verra Mobility • Mesa (AZ)

On-site
USD 100,000 - 130,000
16269 - Senior Cybersecurity Specialist - AZ - On Site
16269 - Senior Cybersecurity Specialist - AZ - On Site

Vensure Employer Solutions • Chandler (AZ)

On-site
USD 110,000 - 165,000
Health Insurance
401(k) with company match
Paid Time Off
+2
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Verra Mobility • Phoenix (AZ)

On-site
USD 100,000 - 130,000
Cybersecurity Specialist
Cybersecurity Specialist

Vensure Employer Solutions • Chandler (AZ)

On-site
USD 85,000 - 120,000
Health Insurance
401(k) matching
Paid Time Off
+4
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Verramobility • Mesa (AZ)

On-site
USD 100,000 - 130,000
Information Security Systems Manager
Information Security Systems Manager

Dormont Manufacturing Co • Fort Bragg (CA)

On-site
USD 80,000 - 120,000
401(k)-retirement plan
Comprehensive Medical, Dental, Vision, Disability, and Life insurance
Professional development funds
+1
Senior Cybersecurity Specialist - AZ - On Site
Senior Cybersecurity Specialist - AZ - On Site

Socket.dev • Chandler (AZ)

On-site
USD 110,000 - 165,000
Health Insurance
Retirement Plan
Paid Time Off
+1