AVP, Information Security

Verinext

North Haven (CT)

On-site

USD 180,000 - 230,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Retirement Plan (401k, IRA)
Work From Home
Health Care Plan

Job summary

A cybersecurity firm is seeking an Assistant Vice President of Information Security Operations to lead their cybersecurity initiatives. This role involves managing audits, developing security policies, conducting risk assessments, and ensuring compliance with industry standards. The successful candidate will have certifications like CISSP or CISM, strong leadership abilities, and extensive experience in information security. This is a contract-to-hire position requiring onsite work and on-call responsibilities every 5-6 weeks. The company offers benefits such as retirement plans and a health care plan.

Qualifications

  • Industry-recognized certifications such as CISSP, CISM, or CISA.
  • Experience as an Information Security Engineer or in a similar position.
  • 5 to 8 years of relevant work in information security.
  • 5–8 years in information security leadership
  • Knowledge of ISO 27001, NIST, GDPR
  • Experience with cloud security, networks, servers and OS
  • Banking/regulatory knowledge preferred
  • Security awareness training development
  • DevOps security and security automation experience
  • On-call availability required

Responsibilities

  • Lead cybersecurity initiatives and manage audits and evaluations.
  • Develop and enforce security policies to protect digital assets.
  • Conduct risk and vulnerability assessments regularly.
  • Manage incident response plans and forensics
  • Conduct risk/vulnerability assessments and penetration testing
  • Coordinate with internal teams and executives on security status

Skills

Leadership
Communication
Problem-solving
Team collaboration
Attention to detail
Threat analysis
Cloud security
NIST compliance
DevOps security
AI/ML security
Communication

Education

Bachelor's or Master's degree in Information Security, Computer Science, or related field

Tools

Firewalls
IDS/IPS
Antivirus solutions
Encryption methods

Job description

The Assistant Vice President of Information Security Operations is a proactive leadership position responsible for the design, execution, planning, budgeting, protection, monitoring, and integration of cybersecurity initiatives. You will be instrumental in developing and enhancing processes related to the Risk Management Framework (RMF), threat and vulnerability assessments, penetration testing, and reporting activities. Your main goal is to strengthen cybersecurity capabilities and incident response procedures to ensure they align with company standards and industry best practices.

In this role, you will be tasked with protecting the organization's information systems and data assets. You will play a vital role in implementing and sustaining security measures that defend against cyber threats, safeguarding the confidentiality, integrity, and availability of these systems.

This is a contract-to-hire opportunity with one of Verinext's clients. The position requires five days/week onsite and must be open to on-call responsibility every 5-6 weeks.

Essential Functions and Responsibilities
  • Lead cybersecurity initiatives, coordinating with internal teams and vendors to ensure continuous resilience testing
  • Manage audits, evaluations, project planning, budgeting, and vendor coordination for cybersecurity efforts
  • Stay updated on security threats, technologies, and best practices
  • Security Policies: Develop and enforce policies, procedures, and controls to protect digital assets, systems, and applications
  • Risk Management: Maintain the Risk Management Framework, conduct regular risk and vulnerability assessments, penetration testing, and manage business fraud investigations
  • Incident Response: Proactively detect threats, handle security incidents, maintain response plans, and monitor security logs for timely action
  • Incident Investigation and Forensics: Conduct thorough investigations with internal teams and vendors to improve security posture
  • Regulatory Compliance: Ensure all cybersecurity activities meet regulatory and government standards
  • Security Awareness: Develop and manage programs to educate employees and stakeholders on cybersecurity best practices
  • Vendor Security: Assess and monitor third-party vendor security practices and RMF compliance
  • Stakeholder Collaboration: Work with internal and external partners to ensure security standards and trade compliance, integrating security into system design
  • Reporting: Provide regular cybersecurity status updates to executive management and maintain detailed documentation of activities and findings
Qualifications and Requirements
  • Possession of industry-recognized certifications such as CISSP, CISM, or CISA
  • Familiarity with threat and vulnerability analysis, penetration testing, as well as red team and blue team exercises
  • Strong communication skills and the ability to work effectively within a team
  • Quick learning capability with adaptability to new technologies and methodologies
  • Exceptional attention to detail and a commitment to accuracy in work
  • A cooperative attitude and readiness to collaborate with colleagues to achieve common objectives
  • Demonstrated experience as an Information Security Engineer or in a similar position
  • Comprehensive knowledge of information security principles and industry best practices
  • Experience working with security technologies such as firewalls, IDS/IPS, antivirus solutions, and encryption methods
  • Awareness of security frameworks and compliance standards, including ISO 27001, NIST, and GDPR
  • Practical experience with various security tools and technologies
  • Proven leadership experience in information security, encompassing 5 to 8 years of relevant work
  • Deep understanding of banking and credit union operations, regulatory requirements, and financial procedures
  • Extensive knowledge of cybersecurity technologies, tools, and best practices
  • Outstanding communication and leadership abilities
  • Capability to adapt in a fast-paced environment and make critical decisions under pressure
  • Experience with security considerations in artificial intelligence (AI) and machine learning (ML)
  • Familiarity with DevOps practices and security automation
  • Experience developing and conducting security awareness training and education
  • Skill in evaluating and managing cyber risks, working with recognized frameworks like the NIST Cybersecurity Framework, CIS Top 20, and NIST 800-series
  • Knowledge of intrusion analysis methodologies such as the Cyber Kill Chain and Diamond Model
  • Mandatory experience with cloud computing, network infrastructures, servers, operating systems, and PCs
  • Preferred experience with ATM and ITM network systems
  • Strong problem-solving skills for complex analytical and project-related challenges
  • Physical ability to lift boxes weighing up to 50 lbs
  • Availability for on-call duties outside regular business hours
  • A Bachelor's or Master's degree in Information Security, Computer Science, or a related field, complemented by relevant professional experience
Benefits
  • Retirement Plan (401k, IRA)
  • Work From Home
  • Health Care Plan
Equal Employment Opportunity

The Company is an equal opportunity employer and does not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other protected characteristic under applicable law.

Employment Disclaimer

This job description is not intended to create an employment contract. Employment with the Company is at-will, meaning employment may be terminated by either the employee or the Company at any time, with or without cause or notice, subject to applicable law.

Duties Subject to Change

The Company reserves the right to modify, add, or reassign duties and responsibilities at any time based on business needs.

Confidentiality

This position may require access to confidential or sensitive information. Employees are expected to maintain confidentiality and comply with all Company policies and applicable security requirements.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

16267 Senior Cyber Security Specialist
16267 Senior Cyber Security Specialist

Vensure Employer Solutions • Duluth (GA)

On-site
USD 110,000 - 160,000
Health Insurance
401(k) Plan
Paid Time Off
+1
Cyber Security Specialist
Cyber Security Specialist

Vensure Employer Solutions • Duluth (GA)

On-site
USD 80,000 - 100,000
Health Insurance
401(k) Retirement Plan
Paid Time Off
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Verra Mobility • Mesa (AZ)

On-site
USD 100,000 - 130,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Verra Mobility • Phoenix (AZ)

On-site
USD 100,000 - 130,000
Senior Cybersecurity Associate - GA - On Site
Senior Cybersecurity Associate - GA - On Site

Prismhr Hire • Duluth (GA)

On-site
USD 105,000 - 165,000
16269 - Senior Cybersecurity Specialist - AZ - On Site
16269 - Senior Cybersecurity Specialist - AZ - On Site

Vensure Employer Solutions • Chandler (AZ)

On-site
USD 110,000 - 165,000
Health Insurance
401(k) with company match
Paid Time Off
+2
IT Security Analyst I (Evening Shift)
IT Security Analyst I (Evening Shift)

VC3, Inc. • United States

Remote
USD 60,000 - 90,000
Remote-friendly environment
Flexible time-off
Well-being support
+3
IT Security Analyst I (Evening Shift)
IT Security Analyst I (Evening Shift)

VC3, Inc. • Northern (KY)

Hybrid
USD 55,000 - 75,000
AVP Solutions Architecture
AVP Solutions Architecture

ScionHealth Corporate Support Center • Louisville (KY)

On-site
USD 180,000 - 240,000
Information Systems Security Manager - Intermediate
Information Systems Security Manager - Intermediate

Rividium Inc • Springfield (VA)

On-site
USD 140,000 - 220,000