Manager Cyber Security

Greene Tweed

Lansdale (Montgomery County)

On-site

USD 140,000 - 190,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Health insurance
401k
Tuition assistance
Life and disability insurance
Flexible spending accounts
Health savings account

Job summary

Greene Tweed seeks a senior information security leader to consolidate and advance our global information security program. You will shape the strategy, manage budgets, and partner with legal and privacy functions to ensure compliance and risk management across the enterprise.

The role directs security operations, governance, incident response, and alignment with business goals while engaging executives and the board on security posture.

Qualifications

  • Demonstrated leadership in risk management, information security and IT/OT security.
  • Knowledge of GDPR and regulatory requirements.
  • Familiarity with major information security frameworks (ISO/IEC 27001, NIST, COBIT).
  • Experience managing a global organization and privacy at regional level.

Responsibilities

  • Lead information security across the company and align with risk management and compliance.
  • Develop and monitor a strategic information security program including policies, standards and guidelines.
  • Oversee budget for the information security function and incident response planning.
  • Collaborate with data privacy and legal to ensure data protection compliance and DPAs with vendors.
  • Monitor external threat landscape and coordinate disaster recovery and BCM activities.

Skills

Leadership
Information security
Regulatory compliance
GDPR knowledge
Communication
Budget management
Risk management
Privacy by design
Global operations
Vendor risk

Education

Degree in business administration or technology
CISSP/CISM/CISA/CRISC or equivalent credentials (desirable)

Tools

ISO/IEC 27001
NIST SP 800-53
ITIL
COBIT

Job description

Essential Duties/Responsibilities
  • Leads the information security function across the company to ensure consistent and high-quality information security management in support of the business goals
  • Determines the information security approach and operating model in consultation with stakeholders and aligned with the risk management approach and compliance monitoring of non-digital risk areas
  • Manages the budget for the information security function
  • Develops, implements and monitors a strategic, comprehensive information security program to ensure appropriate levels of confidentiality, integrity, availability, safety, privacy and recovery of information assets owned, controlled or/and processed by the organization
  • Creates and manages a unified and flexible, risk-based control framework to integrate and normalize the wide variety and ever-changing requirements resulting from global laws, standards and regulations
  • Develops and maintains a document framework of continuously up-to-date information security policies, standards and guidelines
  • Facilitates a metrics and reporting framework to measure the efficiency and effectiveness of the program, facilitates appropriate resource allocation, and increases the maturity of the information security, and reviews it with stakeholders at the executive and board levels
  • Collaborates and liaises with the data privacy officer to ensure that data privacy requirements are included where applicable
  • Defines and facilitates the processes for information security risk and for legal and regulatory assessments, including the reporting and oversight of treatment efforts to address negative findings
  • Ensures that security is embedded in the project delivery process by providing the appropriate information security policies, practices and guidelines
  • Oversees technology dependencies outside of direct organizational control. This includes reviewing contracts and the creation of alternatives for managing risk
  • Manages and contains information security incidents and events to protect corporate IT assets, intellectual property, regulated data and the company’s reputation
  • Monitors the external threat environment for emerging threats, and advises relevant stakeholders on the appropriate courses of action
  • Develops and oversees effective disaster recovery policies and standards to align with the enterprise business continuity management (BCM) program goals, with the realization that components supporting primary business processes may be outside the corporate perimeter
  • Coordinates the development of implementation of incident response plans and procedures to ensure that business-critical services are recovered in the event of a security event; provides direction, support and in-house consulting in these areas
  • By partnering with Legal ensure compliance to Data Protection laws and regulations by contributing to the development and implementation of the data protection strategy that aligns with privacy goals and ensures compliance
  • Act as the primary point of contact for all Data privacy matters including a Data breach or other data incident to ensure these are swiftly addressed
  • In partnership with Legal, ensure Vendor and Third Party Risk Management: Ensure that DPAs (Data processing agreements) are in place with all vendors to ensure that they meet the organizations standards and compliance requirements
  • Compliance Monitoring: In conjunction with other relevant functions, act as a trusted partner in the reviewing and auditing of data protection practices within the organisation to identify, assess and mitigate risks and determine appropriate controls
  • Work with IT to ensure all appropriate controls are in place for the security of data
  • Privacy Impact Assessments: Conduct privacy impact assessments for all new projects, systems or processes that involve the processing of personal data
  • Liaise with the German Data Protection Officer to ensure compliance with requirements specific to Germany, any outcomes from the periodic Data privacy audit and in alignment with Works Council requirements
  • Data Access requests: Manage all DSARs: Manage and facilitate the process of Data Subject Access Requests in alignment with GDPR requirements
  • Maintain a repository of data protection materials for easy accessibility and monitoring
Required Minimum Qualifications
  • Demonstrated experience and success in a leadership roles in risk management, information security, and IT or OT security
  • Knowledge and understanding of relevant legal and regulatory requirements, such as: GDPR
  • Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT as well as those from NIST, including 800-53 and Cybersecurity Framework
  • Sound knowledge of business management and a working knowledge of information security risk management and cybersecurity technologies
  • Experience managing a global organization.
  • Understanding of privacy at a regional level
  • Extensive experience of GDPR and US Data Privacy
  • Up-to-date knowledge of methodologies and trends in both business
Education/Certifications
  • Degree in business administration or a technology-related field, or equivalent work- or education-related experience
  • Desired, but not required:
    • Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC) or other similar credentials
Skills and Experience
  • Track record of competency in the field of information security and/or risk management, with three years of relevant experience including three years of leadership managing others.
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate information security and risk-related concepts to technical and nontechnical audiences at various hierarchical levels
  • Ability to lead and motivate the information security team to achieve tactical and strategic goals, even when only “dotted line” reporting lines exist
  • Project management skills: financial/budget management, scheduling and resource management
Job Environment
Physical Requirements

Standing Occasionally (16-45%)

Sitting Occasionally (16-45%)

Lifting Up to 10lbs without assistance

Carrying Up to 10lbs without assistance

Walking Occasionally (16-45%)

Hearing Ability to detect noises with or without corrective device(s)

Vision Clarity of vision, with or without corrective lenses

Mental Requirements

Problem Solving Frequently (46-100%)

Making Decisions Ability to make decisions that have a significant impact

Supervise Frequently (46-100%)

Interpret Data Frequently (46-100%)

Organize Frequently (46-100%)

Read/Write Frequently (46-100%)

Communication Frequently (46-100%)

Work Environment

High Temperatures Rarely (0-15%)

Low Temperatures Rarely (0-15%)

Noises Moderate (business office with computers, printers and light office noises)

Fumes Exposure Rarely (0-15%)

Required Minimum Qualifications
  • This position requires U.S. Person status as defined by applicable law for authorized access to data controlled under the International Traffic in Arms Regulations (ITAR). A U.S. Person includes U.S. Citizens, U.S. Nationals, lawful permanent residents, and workers granted refugee or asylum status in the United States.

Note: This Job Description in no way states or implies that these are the only duties to be performed by the employee occupying this position. Employees will be required to follow any other job-related instructions and to perform any other job-related duties requested by the Supervisor. All requirements are subject to change and updates.

We also provide eligible employees with a competitive benefits package that includes health insurance, flexible spending accounts, health savings account, 401k savings plan, life and disability insurance, tuition assistance and more, to meet the diverse needs of all employees and their family members.

Equal Opportunity Employer

Greene, Tweed is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, age, physical or mental disability, veteran status, or any other federally protected class.

Drug Free Workplace

Greene, Tweed is a Drug Free Workplace. Employment is contingent upon successful completion of a pre-employment drug screening and background investigation subject to federal, state, and local laws.

NOTE: Greene, Tweed is not seeking assistance or accepting unsolicited resumes from search firms for employment opportunities, unless they have a written agreement for the position they are contacting us about. Regardless of past practice, all resumes submitted by search firms to any employee at GT without a valid written search agreement in place for that position will be deemed the sole property of Greene, Tweed, and no fee will be paid in the event the candidate is hired by Greene, Tweed as a result of the referral or through other means.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Site HR Manager / Sr. HR Business Partner
Site HR Manager / Sr. HR Business Partner

Greene Tweed • Towamencin Township (PA)

On-site
USD 110,000 - 150,000
Health insurance
401(k) plan
Tuition assistance
+1
Business Delivery Lead
Business Delivery Lead

Greene Tweed • Houston (TX)

On-site
USD 120,000 - 180,000
Health insurance
HSA
FSA
+3
Business Delivery Lead
Business Delivery Lead

Greene Tweed • Towamencin Township (PA)

On-site
USD 120,000 - 190,000
Business Delivery Lead
Business Delivery Lead

Greene Tweed • Lansdale

On-site
USD 140,000 - 190,000
Health insurance
Flexible spending accounts
Health savings account
+3
Senior IT Information Security Architect
Senior IT Information Security Architect

Gentherm • Novi (MI)

On-site
USD 140,000 - 200,000
Senior IT Information Security Architect
Senior IT Information Security Architect

GENTHERM GmbH • Novi (MI)

On-site
USD 140,000 - 210,000
Senior IT Information Security Architect
Senior IT Information Security Architect

GENTHERM GmbH • Northern (KY)

Hybrid
USD 140,000 - 190,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta-Denta • St. Louis (MO)

Hybrid
USD 75,000 - 110,000
Senior Director, IT Security
Senior Director, IT Security

Global Lending Services • Greenville (SC)

On-site
USD 120,000 - 170,000
Competitive base pay
Medical, dental, vision insurance
401K with employer match
+2
Material Compliance Specialist
Material Compliance Specialist

Greene, Tweed & Co Limited • Towamencin Township (PA), Northern (KY)

Hybrid
USD 90,000 - 120,000
Health insurance
401k savings plan
Life and disability insurance
+1