Cybersecurity Manager

BMA Group Global

Guaynabo (PR)

On-site

USD 120,000 - 190,000

Full time

9 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

BMA Group Global is seeking a Cybersecurity & IT Risk Manager to define and oversee the organization’s information security strategy, policies, and controls. You will safeguard digital assets, ensure regulatory compliance, and strengthen resilience against threats.

You will lead governance, incident response, audits, and cross‑functional collaboration with IT, Legal, Compliance, and Audit to align security with business goals.

Qualifications

  • Minimum of 5 years of experience in information security or cybersecurity leadership roles.
  • Experience in risk management, regulatory compliance, incident response, and cybersecurity project management.
  • Proven experience leading teams and coordinating cross-functional initiatives.

Responsibilities

  • Develop and maintain the organization’s information security strategy aligned with business objectives and regulatory requirements.
  • Design, implement, and oversee cybersecurity policies, procedures, and controls based on recognized standards such as NIST CSF, ISO 27001, PCI DSS, HIPAA, SOX, GLBA, and CIS Controls.
  • Lead cybersecurity incident response activities and crisis management efforts.
  • Coordinate communications and response actions with key stakeholders during security incidents.
  • Coordinate and oversee internal and external security audits, remediation tracking, and corrective action plans.
  • Collaborate with IT, Legal, Compliance, Audit, and Operations to strengthen governance and risk management practices.

Skills

Regulatory compliance
Risk management
Incident response
Cybersecurity leadership
Cross-functional coordination
Analytical skills
Strategic planning

Education

Bachelor’s degree in Information Systems, Engineering, Computer Science, or related field

Job description

The Cybersecurity & IT Risk Manager is responsible for defining, implementing, and overseeing the organization’s information security strategy, policies, processes, and controls. This role ensures the protection of digital assets, regulatory compliance, technology risk management, and incident response readiness in alignment with corporate guidelines and industry best practices. The position’s primary objective is to safeguard the confidentiality, integrity, and availability of information systems while strengthening organizational resilience against internal and external threats.

Key Responsibilities
Cybersecurity Strategy & Governance
  • Develop and maintain the organization’s information security strategy aligned with business objectives and regulatory requirements.
  • Design, implement, and oversee cybersecurity policies, procedures, and controls based on recognized standards and frameworks such as ISO/IEC 27001, NIST CSF, NIST SP 800-53, CIS Controls, PCI DSS, HIPAA, SOX, GLBA, and CCPA.
  • Define and monitor cybersecurity KPIs, metrics, and executive dashboards.
  • Promote a culture of security awareness, ethics, and responsible technology usage across the organization.
  • Identify, assess, and manage cybersecurity and technology risks while implementing mitigation and response plans.
  • Coordinate and oversee internal and external security audits, including remediation tracking and corrective action plans.
  • Ensure compliance with applicable privacy, cybersecurity, and data protection regulations.
  • Collaborate with internal departments including IT, Legal, Compliance, Audit, and Operations to strengthen governance and risk management practices.
  • Lead cybersecurity incident response activities and crisis management efforts.
  • Coordinate communications and response actions with key stakeholders during security incidents.
  • Develop and maintain resilience and recovery strategies to minimize operational disruption.
  • Manage relationships with external cybersecurity service providers and technology partners.
Leadership & Communication
  • Prepare executive reports and presentations for leadership and governance committees.
  • Promote security awareness and training initiatives for employees.
  • Lead and mentor cybersecurity personnel while fostering collaboration and continuous improvement.
  • Support organizational change management and crisis response initiatives.
Qualifications
Experience
  • Minimum of 5 years of experience in information security or cybersecurity leadership roles.
  • Experience in risk management, regulatory compliance, incident response, and cybersecurity project management.
  • Proven experience leading teams and coordinating cross-functional initiatives.
Education
  • Bachelor’s degree in Information Systems, Engineering, Computer Science, or a related field.
Technical Knowledge
  • Strong knowledge of cybersecurity standards and frameworks including:
  • NIST Cybersecurity Framework (CSF)
  • NIST SP 800-53
  • ISO/IEC 27001
  • PCI DSS
  • HIPAA
  • SOX
  • GLBA
  • CCPA
  • CIS Controls
  • Knowledge of cybersecurity risk management methodologies and incident response frameworks.
  • Understanding of privacy regulations and data protection practices.
Leadership & Soft Skills
  • Strong analytical, planning, and organizational skills.
  • Excellent written and verbal communication abilities.
  • Strong leadership, teamwork, and collaboration skills.
  • Proactive, results-oriented, and adaptable mindset.
  • Experience managing change and crisis situations effectively.

This role primarily operates in a professional office environment with occasional coordination across operational and technical teams. The position may require interaction with external service providers, auditors, and regulatory stakeholders.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Manager of Risk and Compliance
Senior Manager of Risk and Compliance

PTR Global • United States

On-site
USD 100,000 - 130,000
Director of Cybersecurity
Director of Cybersecurity

Carey International Group, LLC • Orlando (FL)

On-site
USD 130,000 - 210,000
Senior Director, Information Security (Relocation eligible)
Senior Director, Information Security (Relocation eligible)

Solving IT • Nashville (TN)

On-site
USD 180,000 - 260,000
Director, Cyber Security
Director, Cyber Security

Ziply Fiber • Kirkland (WA)

On-site
USD 180,000 - 230,000
Medical
dental
vision
+9
Cybersecurity Director
Cybersecurity Director

10xTalents • Newark (NJ)

On-site
USD 140,000 - 180,000
Director of Cyber Security
Director of Cyber Security

Vista Search Partners • Los Angeles (CA)

On-site
USD 200,000 - 300,000
Medical
Dental
Vision
+3
Group Chief Information Security Officer
Group Chief Information Security Officer

Barnes & Noble, Inc. • New York (NY)

On-site
USD 350,000 - 400,000
Employee Discount
Health Benefits
Retirement Plan
Senior Cybersecurity Governance Analyst
Senior Cybersecurity Governance Analyst

Civic Federal Credit Union • Raleigh (NC)

On-site
USD 120,000 - 160,000
Senior Cyber Security & Infrastructure Lead
Senior Cyber Security & Infrastructure Lead

eTeam • Cuyahoga Falls (OH)

Hybrid
USD 140,000 - 190,000
Director, Cyber Risk
Director, Cyber Risk

Jobtailor • Sterling (VA)

On-site
USD 180,000 - 280,000