Manager, Information Security

Jewelers Mutual Insurance Group

Raleigh, Northern (NC, KY)

Hybrid

USD 140,000 - 180,000

Full time

9 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Gift matching
Volunteer time
Great Place to Work certification
Collaborative culture
Competitive pay & benefits
401(k) matching

Job summary

Jewelers Mutual Insurance Group is seeking a Manager, Information Security to lead a team of security engineers and analysts, owning security operations, vulnerability management, and incident response readiness. You will partner with IT, DevOps, cloud engineering, and GRC to mature security controls and align work to business risk priorities.

This hands‑on leader balances people management with technical execution, vendor oversight, metrics reporting, and continuous improvement of the

Qualifications

  • Bachelor’s degree in computer science, information security, information technology, or equivalent experience.
  • 7+ years of progressive, hands‑on technical information security experience.
  • 2+ years of leading a security team, including supervision of staff.
  • Hands‑on background as security engineer/analyst; able to engage technically.
  • Strong cloud security experience across Azure and/or AWS.
  • Experience with enterprise security tooling (SIEM, EDR, PAM, CASB/DLP, etc.).
  • Experience with MSSPs or managed security services; SLA management and accountability.
  • Ability to establish and report security metrics for technical and executive audiences.
  • Strong DevSecOps knowledge: secure SDLC, code security controls, CI/CD security.
  • Excellent verbal and written communication; ability to translate security to non‑technical stakeholders.
  • Ability to manage priorities and make risk‑based decisions.

Responsibilities

  • Lead and develop a team of information security engineers and analysts; coach, set expectations, and review performance.
  • Own security operations and vulnerability management, including tooling, managed services, and incident triage.
  • Provide technical leadership for security architecture within security operations and collaborate with the CISO.
  • Embed security controls across IT infrastructure, cloud, DevOps, and delivery pipelines.
  • Oversee vulnerability management cadence, SLAs, remediation coordination, and reporting.
  • Manage MSSP/SOC relationships and escalation workflows in line with JM practices.
  • Define and report security KPIs and KRIs linked to business risk to leadership.
  • Support budgeting, vendor evaluations, renewals, and contract negotiations for security tools.
  • Develop and maintain security operations runbooks and playbooks for consistency.
  • Support CISO in advancing the information security program maturity per NIST CSF and regulatory requirements.
  • Collaborate with GRC on audit readiness and control evidence for SOC 2, NYDFS Part 500, etc.
  • Participate in off‑hours escalation rotations for critical incidents.

Skills

Security leadership
Cloud security
DevSecOps
Incident response
Risk management
Communication
Vendor management
SIEM tools
GRC collaboration

Education

Bachelor’s degree in CS/InfoSec

Tools

SIEM
EDR
PAM
CASB/DLP
Threat intelligence tools
Identity governance

Job description

The Manager, Information Security leads Jewelers Mutual's security engineering and operations function, overseeing information security engineers and analysts, security tooling, vulnerability management, and incident response readiness. This hands‑on leader partners with the CISO, CIO, IT infrastructure, DevOps, cloud engineering, application teams, and GRC to strengthen security controls, mature operational processes, and align security work to business risk priorities. The role balances team leadership with technical execution, vendor oversight, metrics reporting, and continuous improvement of the information security program.

Why Jewelers Mutual

Since 1913 we’ve been committed to supporting the Jewelry industry and putting customers at the center of everything we do. With over a century of trusted expertise, we’re financially strong, forward‑thinking, and driven by curiosity. Guided by our core values of Agility, Accountability, and Relevancy, we lead through innovation.

As a technology focused organization, we embrace cutting‑edge tools and data‑driven insights to continuously improve our products, services, and customer experience. Our mission is to be the industry’s most trusted advisor by investing in our people, adopting new technologies, and striving for excellence.

We’re dedicated to fostering growth through collaboration, powered by bold thinking, teamwork, and the passion of our people.

What You’ll Do
  • Lead, coach, and develop a team of information security engineers and analysts; set expectations, conduct regular one‑on‑ones, support career growth, and manage performance.
  • Own security operations and vulnerability management, including security tooling, managed services relationships, daily incident triage, response coordination, and continuous improvement.
  • Serve as a technical lead for security architecture within the security operations and engineering domain; provide input to enterprise security architecture in partnership with the CISO.
  • Partner with IT infrastructure, cloud engineering, DevOps, application teams, and business stakeholders to embed security controls and requirements into systems and delivery pipelines.
  • Oversee vulnerability management operations, including scanning cadence, remediation service‑level expectations, remediation coordination, reporting, and escalation.
  • Manage MSSP/SOC relationships, includingescalationworkflows, service‑level accountability, operating procedures, and alignment with JM's incident response practices.
  • Define, track, and report securityoperationsKPIs and KRIs that connect technical findings to business risk; present updates to information security leadership and other leaders as needed.
  • Support budgeting, vendor evaluations, renewals, and contract negotiations for security operations tools and services in partnership with procurement and legal.
  • Develop andmaintainsecurity operationsprocedures, runbooks, and playbooks to support consistent, measurable, and repeatable operations.
  • Support the CISO in advancing the information security program maturity roadmap aligned to NIST CSF and applicable regulatory requirements.
  • Collaborate with GRC on audit readiness, control evidence collection, and gap remediation for SOC 2, NYDFS Part 500, and other applicable frameworks.
  • Participate in off‑hoursescalation rotation for critical security incidents as needed.

Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Leadership Responsibilities

DirectlysuperviseInformation Security Engineers and Analysts. Responsible for hiring, onboarding, performance management, coaching, and professional development of direct reports. Provides functional direction to managed service providers within the security operations scope.

Minimum Qualifications
  • Bachelor’s degree in computer science, Information Security, Information Technology, or a related field, or equivalent work experience.
  • 7+years of progressive, hands‑on technical experience in information security roles.
  • 2+years of experience managing or leading a security team, including direct supervision of technical staff.
  • Demonstrated experience managing or directly supervising a security engineering or security operations team, including performance management and employee development.
  • Deep hands‑on background as a security engineer or analyst; able to engage technically with team members, review workproducts, and troubleshoot at the platform level.
  • Strong cloud security experience across Azure and/or AWS environments, including native security tooling, identity governance, and workload protection.
  • Working knowledge of enterprise security tooling such as SIEM, EDR, PAM, CASB/DLP, vulnerability management, email security, and threat intelligence tools.
  • Experience working with MSSPs or other managed security services, including SLA management, escalation, and operational accountability.
  • Proficiencyestablishingand reporting operational security metrics for technical and executive audiences.
  • Strong understanding ofDevSecOpspractices, including secure SDLC, source‑code security controls, and CI/CD pipeline security.
  • Excellent verbal and written communication skills, with the ability to translate complex security topics for non‑technical business stakeholders.
  • Ability to manage competing priorities, exercise sound risk judgment, and maketimelydecisions with incomplete information.
Preferred Qualifications
  • Experience in the insurance or financial services sector; familiarity with insurance regulatory environments such as NYDFS and NAIC.
  • Working knowledge of NIST CSF 2.0, SOC 2 Type II, NYDFS Part 500, and/or NAIC Model #668.
  • Experience with GRC andcomplianceautomation platforms, such as Vanta.
  • Hands‑on experience with the Microsoft security ecosystem, including Defender XDR, Sentinel, Entra IDProtection, Purview, and Intune.
  • Familiarity with AI security considerations, including governance of AI tools, prompt injection risks, and LLM‑integrated application security.
  • Professionalcertificationsuch as CISSP, CISM, CCSP, or equivalent;additionaltechnical certifications such as CEH, GSEC, or GCIH are a plus.
What We Offer You
  • Community & Giving: Benefit from 50% charitable gift matching and paid volunteer time to support nonprofit causes.
  • Great Place to Work® Certified: Join a team recognized for an environment of innovation and growth.
  • Collaborative Culture: Work alongside talented, passionate peers who value ownership and continuous learning.
  • Competitive Compensation & Benefits: Includes performance bonuses, generous paid time off, and a top‑tier retirement program with 401(k) matching and additional company contributions.
Accessibility and Accommodations

We are committed to providing an inclusive and accessible recruitment process. If you require accommodation at any stage of the application or interview process, please let us know by contacting jmrecruiting@jminsure.com.

Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws.For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Information Security
Manager, Information Security

Jewelers Mutual Group • Raleigh (NC)

Hybrid
USD 140,000 - 210,000
Charitable matching program
Volunteer time off
Competitive retirement program
Director of Engineering
Director of Engineering

Jewelers Mutual Insurance Group • Raleigh (NC), Northern (KY)

Hybrid
USD 180,000 - 260,000
Gift matching
Volunteer time off
401(k) matching
+2
Director of Engineering
Director of Engineering

Jewelers Mutual Group • Raleigh (NC)

On-site
USD 180,000 - 240,000
Gift matching
Volunteer time
Great Place to Work
Engineering Manager
Engineering Manager

Jewelers Mutual Insurance Group • Raleigh (NC), Northern (KY)

Hybrid
USD 140,000 - 190,000
50% charitable gift matching
Great Place to Work Certified
Top-tier retirement program with 401(k
+1
Engineering Manager
Engineering Manager

Jewelers Mutual Group • Raleigh (NC)

On-site
USD 150,000 - 190,000
Charitable gift matching
Volunteer time
Great Place to Work Certified
+2
Software Engineer II
Software Engineer II

Jewelers Mutual Group • Neenah (WI)

On-site
USD 80,000 - 100,000
Performance bonuses
Generous paid time off
401(k) matching
+1
Insurance Advisor
Insurance Advisor

Jewelers Mutual Insurance Group • Dallas (TX), Northern (KY)

Hybrid
USD 70,000 - 100,000
Performance bonuses
Generous paid time off
401(k) matching
+1
Senior Information Security & Operations Leader
Senior Information Security & Operations Leader

Jewelers Mutual Insurance Group • Raleigh (NC), Northern (KY)

Hybrid
USD 140,000 - 180,000
Gift matching
Volunteer time
Great Place to Work certification
+3
Insurance Advisor
Insurance Advisor

Jewelers Mutual Group • Dallas (TX)

On-site
USD 85,000 - 120,000
Performance bonuses
Generous paid time off
401(k) retirement matching
+1
Client Service Representative
Client Service Representative

Jewelers Mutual Insurance Group • Neenah (WI)

On-site
USD 45,000 - 65,000
Charitable gift matching
Volunteer time off
401(k) matching and company-contribs