Manager-Information Security

Buchanan Ingersoll & Rooney Pc

Pittsburgh (Allegheny County)

On-site

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Buchanan Ingersoll & Rooney Pc is seeking a Manager, Information Security to lead the security program across network, systems, identity, and cloud domains. You will drive governance, risk, and compliance while coordinating with IT teams and firm leadership to strengthen security posture.

This role requires heavy collaboration, strong technical expertise, and the ability to communicate risk to non-technical stakeholders. Travel to other offices may be required as part of this senior position.

Qualifications

  • Bachelor’s degree or equivalent with at least 5 years of security-related experience.
  • 10+ years in an IT-related field with strong operational background.
  • 3+ years of experience managing a team of security engineers.
  • Direct experience implementing ISO 27001 and 27701.
  • Strong knowledge of security threats involving systems, identities, and cloud services.
  • Willingness to travel to other offices as required.
  • Certifications CISSP, CISM, CEH, CIPP highly desired.

Responsibilities

  • Oversee security governance, including policy, process, and standards.
  • Lead risk management activities: threat intel, risk assessments, mitigation planning.
  • Manage compliance with ISO 27001/27701 and client assurance audits.
  • Direct security operations: IAM, network, cloud, EDR, SIEM, and incident response.
  • Budget, vendor management, and coordinating security projects.
  • Liaise with IT leadership and practice groups on threats and controls.
  • Provide security training and promote best practices across the firm.

Skills

Security governance
Risk management
Compliance management
Cloud security
Team leadership
Incident response
Network security
Security monitoring

Education

Bachelor’s degree or equivalent

Tools

CISSP
CISM
CEH
CIPP

Job description

Buchanan Ingersoll & Rooney is a national law firm with a proven reputation for providing progressive, industry-leading legal, business, regulatory and government relations advice to our regional, national and international clients.

The Manager, Information Security, will join a dynamic security team that is responsible for continually improving the Firm’s security posture and will be focused on managing and improving its network, system, identity, and cloud security capabilities. Reporting to the Firm’s Director – IT Operations and Security, and collaborating with other IT teams and Firm leadership, the role will manage all aspects of security governance, risk, compliance, and operations.

  • Security governance, including policy, process, procedure, and standards.
  • Risk management, including threat intelligence, risk assessment, analysis, and mitigation planning.
  • Compliance management, including ISO 27001, PCI-DSS, and client assurance audit and questionnaires.
  • Resource management, including budget, vendor, and managed security service providers.
  • Security awareness and training, including liaising with and advising IT, Firm leadership, various departments and practice groups regarding emerging threats, policy, controls, and best practices.
  • Design and architecture review, including network, system, application, identity, collaboration, and cloud infrastructure.
  • Continual monitoring, testing, and audit lifecycle management, analysis, and remediation tracking.
  • Detection and response, including log aggregation, correlation, analysis, incident response, and recovery.
  • Oversight of security operational functions and technology, including firewall, network segmentation, vulnerability management, privileged / remote access management, EDR/NGAV, SIEM, email security and continuous monitoring.
  • Coordination, prioritization, and delivery of projects, administrative, and continual improvement initiatives.
  • Performs other work-related duties as assigned.
Skills and Requirements:
  • Bachelor’s degree or equivalent with at least 5 years of security-related experience.
  • 10+ years of experience working in an information technology related field.
  • Strong IT Operational background and related network, systems, or development experience
  • 3+ years of experience managing a team of technical security engineers.
  • Strong knowledge of security threats involving systems, identities, and cloud services.
  • Direct experience implementing and maintaining ISO 27001 and 27701.
  • Working knowledge of aforementioned security technology.
  • Understanding technical implications of risk and effectively communicate to non-technical users.
  • Ability to manage concurrent activities, effectively prioritize, and adapt to a dynamic environment.
  • Demonstratable ability to maintain strict confidentiality of the Firm's internal and personnel affairs.
  • Ability to work well with others, leverage varying skills and experience, and build team comradery.
  • Highly self-motivated, directed, and able to gauge one’s strengths and limitations.
  • Ability to work in a multi-office environment and willingness to travel to other offices as required.
  • The following certifications highly desired: CISSP, CISM, CEH, CIPP; matriculating candidates considered.
  • Experience working in a law Firm or professional services Firm environment preferred.
Why should you work at Buchanan?

Our Firm offers outstanding benefits that include:

  • Generous Paid Time Off
  • Paid Holidays, including a floating holiday
  • WorkWell wellness program
  • Free use of building gym
  • Caregiving assistance with Bright Horizons (child, elder, and pet care!)
  • Access to our Firm-wide emergency assistance fund
  • Free full access to LinkedIn Learning
  • 401K Program
  • Retirement Savings Program

We are an Equal Opportunity Employer.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws.For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager-Information Security
Manager-Information Security

Buchanan, Ingersoll & Rooney • Pittsburgh

On-site
USD 120,000 - 190,000
Hybrid work schedules
Paid time off
Holidays and wellness programs
+2
Director - IT Operations and Security
Director - IT Operations and Security

Buchanan Ingersoll-Rooney • Pittsburgh

Hybrid
USD 160,000 - 250,000
Hybrid Schedule
Medical Insurance
Dental Insurance
+4
Senior Information Security Manager
Senior Information Security Manager

Buchanan, Ingersoll & Rooney • Pittsburgh

On-site
USD 120,000 - 190,000
Hybrid work schedules
Paid time off
Holidays and wellness programs
+2
Security Architect
Security Architect

FBT Gibbons • Indianapolis (IN)

Hybrid
USD 100,000 - 130,000
Health care coverage
Life insurance
401(k) retirement plan with employer matching
Security Architect
Security Architect

FBT Gibbons LLP • Cincinnati (OH)

On-site
USD 100,000 - 130,000
Health care coverage
Paid parental leave
401(k) retirement plan with employer matching
Security Architect
Security Architect

FBT Gibbons • Columbus (OH)

Hybrid
USD 100,000 - 130,000
Health care coverage (medical, dental, vision)
401(k) retirement plan with employer matching
Paid parental leave
Security Architect
Security Architect

FBT Gibbons • Louisville (KY)

Hybrid
USD 100,000 - 130,000
Health care coverage
401(k) retirement plan with employer matching
Paid time off
Security Architect
Security Architect

FBT Gibbons • Cincinnati (OH)

On-site
USD 90,000 - 120,000
401(k) retirement plan with employer matching
Health care coverage
Paid parental leave
Security Architect
Security Architect

FBT Gibbons • Lexington (KY)

Hybrid
USD 90,000 - 120,000
Health care coverage
Life insurance
Paid parental leave
+1
Lead Engineer: Information Security
Lead Engineer: Information Security

Mayer Brown • Los Angeles (CA)

On-site
USD 135,000 - 180,000
Medical/dental/vision insurance
401(k) plan
Paid time off