Hybrid Information Security Manager — ISMS & Risk Leader

Triplenet Technologies

Seattle (WA)

Hybrid

USD 90,000 - 124,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Triplenet Technologies in Downtown Seattle (Hybrid) seeks an Information Security Leader to guide governance, develop the ISMS with regional SMEs, and oversee risk management. You will drive security strategy, coordinate with partners, and lead incident response efforts to protect critical payment systems.

The role demands expertise in ISO 27001/2, PCI DSS, and cloud security with strong leadership and communication skills. Hybrid work setup in Seattle area.

Qualifications

  • Enterprise-level information security plans, policies, standards, guidelines, methods, and practices based on current industry standards.
  • Information Security Management Systems, and applicable industry standards (ISO 27001/2).
  • Pertinent federal, state, and local laws, codes, and regulations; particularly those that affect information security for payment systems.
  • Environments subject to the Payment Card Industry Data Security Standard (PCI DSS), including compliance-related duties.
  • Knowledge and understanding of developing and administering information-security standards, practices, audits, risk management, and policy compliance.
  • Information Security Audit principles and practices.
  • Knowledge of governance frameworks such as COBIT 5, ISO, NIST, or COSO.
  • Strong understanding of IT Service Delivery (ITIL) core processes and methodologies.
  • Principles, methods, and techniques used in managing projects and leading teams.
  • Security engineering, system and network security, authentication and security protocols, cryptography.
  • Knowledge of cloud platforms such as Azure/AWS and relevant security controls.
  • Collaborative relationships with staff, management, vendors, and other stakeholders.
  • Documenting risks, recommendations, and incident data to stakeholders.
  • Interpreting and administering information security policies and procedures.

Responsibilities

  • Guide security policy and participate in broader Information Security governance efforts.
  • Develop and maintain the Information Security Management System (ISMS) in collaboration with regional information security SMEs and technical consultants.
  • Oversee and manage the ISMS and recommend appropriate mitigating controls.
  • Oversees Information Security Risk Management activities, including risk identification, assessment, and communication to relevant interest holders.
  • Provide metrics and leadership to the Joint Board executive leadership, including risk score reports and guidance on information security topics.
  • Facilitate a committee of Information Security SMEs across the Agencies to ensure regional compliance.
  • Collaborate with Systems Integrator and vendors to ensure security requirements are incorporated into core payment system design and sustainment.
  • Conduct regular security reviews and threat modeling; advise on security enhancements.
  • Support external IT security audits and assessments.
  • Develop and conduct information security training programs to support ISMS objectives.
  • Manage approvals for IAM and Access Control Administration.
  • Act as Incident Commander for Security Incident Response activities and oversee plans when invoked.
  • Participate in incident investigation and root-cause analysis; prepare incident reports.
  • Evaluate changes for potential impacts to Information Security and input to Change Management.
  • Coach ROOT information security personnel as ISMS matures.
  • Keep up to date on latest information security trends and countermeasures.

Skills

Information security governance
ISMS management
Risk management
Incident response leadership
Security metrics reporting
Threat modeling
Cloud security (Azure/AWS)
Security auditing

Tools

GRC tools

Job description

Triplenet Technologies in Downtown Seattle (Hybrid) seeks an Information Security Leader to guide governance, develop the ISMS with regional SMEs, and oversee risk management. You will drive security strategy, coordinate with partners, and lead incident response efforts to protect critical payment systems.

The role demands expertise in ISO 27001/2, PCI DSS, and cloud security with strong leadership and communication skills. Hybrid work setup in Seattle area.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Head of Information Security & Risk (Hybrid)
Head of Information Security & Risk (Hybrid)

Insitu • Bingen (WA)

Hybrid
USD 133,000 - 183,000
Health insurance
Retirement plan
Paid time off
Hybrid Information Security Manager: Lead Cloud Security & Compliance
Hybrid Information Security Manager: Lead Cloud Security & Compliance

Red Ventures • Charlotte (NC)

Hybrid
CAD 207,000 - 318,000
Health Insurance
Life Insurance
Disability Insurance
+6
Senior InfoSec Leader - Hybrid, Impact
Senior InfoSec Leader - Hybrid, Impact

Itron • Washington

Hybrid
USD 125,000 - 220,000
Hybrid work schedule
401k matching
Employee stock purchase program
+2
Hybrid InfoSec Leader - Risk & Compliance
Hybrid InfoSec Leader - Risk & Compliance

Confidential • Pittsburgh

Hybrid
USD 140,000 - 190,000
Information Security Director (Hybrid) — Risk, Compliance & Cloud
Information Security Director (Hybrid) — Risk, Compliance & Cloud

Confidential • Pittsburgh

Hybrid
USD 150,000 - 190,000
Information Security Manager
Information Security Manager

Triplenet Technologies • Seattle (WA)

Hybrid
USD 90,000 - 124,000
Hybrid Security Analyst — Risk, Compliance & Incident Lead
Hybrid Security Analyst — Risk, Compliance & Incident Lead

Janus Henderson Investors • Denver (CO)

Hybrid
USD 100,000 - 130,000
Hybrid work model
Health and wellbeing benefits
Volunteer time
+4
Hybrid Information Security Manager: Lead Security & GRC
Hybrid Information Security Manager: Lead Security & GRC

Speechmatics • United States

Hybrid
USD 120,000 - 170,000
Private Medical and Dental for you and
Global working opportunities
Pension/401K matching
+1
Hybrid Information Security Manager: Architecture & Risk
Hybrid Information Security Manager: Architecture & Risk

Itron, Inc. • North Carolina

Hybrid
USD 125,000 - 220,000
Hybrid work schedule
401k matching
Employee stock purchase program
+2
InfoSec Program Lead - Hybrid/Remote
InfoSec Program Lead - Hybrid/Remote

Team Select Services, LLC • Phoenix (AZ)

Hybrid
USD 108,000 - 132,000
Family Medical Insurance
Paid Time Off
401(k) Referral Program