Information Security Senior Project Manager/Analyst
Engagement Overview
The Senior Project Manager/Analyst is a member of the InfoSec Program Management team within a financial services organization. This SOW drives cybersecurity initiatives aligned to the NIST Cybersecurity Framework, partnering with security, technology, and business stakeholders to deliver risk-aligned capabilities that strengthen the firm’s ability to identify, protect, detect, respond to, recover from, and govern cyber threats.
The SOW partners with key stakeholders to define project scope, document requirements, develop roadmaps and guide projects from concept through implementation, resolving issues along the way to land each initiative firmly into business as usual operations.
The ideal candidate combines information security fluency, analytical judgment and disciplined project management skills, using Jira and Confluence to create structure, visibility, alignment, and accountability.
Reports to
InfoSec Program Manager, with close cross-functional partnership with the Technology Infrastructure team.
Work Location
On site in San Francisco preferred. Remote acceptable.
Work Hours
8:30am - 5pm Pacific Time
Anticipated Duration
40 hours / week
Must Have Skills
- Strong organizational, analytical, documentation and communication skills.
- Advanced expertise in leveraging Jira and Confluence. Excellent written and verbal communication skills.
Qualifications
- Bachelor’s degree, 5+ years working in cybersecurity.
- Certifications such as PMP, CISSP, Security+, Scrum Master are a plus.
Bonus Skills & Experience
- Experience using AI tools to improve project management, analysis, documentation, reporting, or security workflows.
- Experience in financial services or another regulated industry.
Key Responsibilities — Project Management
- Project Delivery - Plan, track and deliver projects as assigned that may be related to the following domains within the InfoSec team:
- Cloud and AI security
- Threat and vulnerability management
- Identity and access management
- Data protection and data loss prevention
- Governance, risk and compliance
- Analysis and Documentation
- Resolve ambiguity, clearly defining what is in scope and what is out of scope
- Document and gain stakeholder consensus on requirements and success criteria
- Identify pre-requisites, risks and interdependencies
- Planning
- Translate requirements into roadmaps and delivery plans
- Identify and secure necessary resources
- Set key milestones, delivery timelines and decision points
- Detect issues early and navigate to resolution.
- Escalate when needed to protect delivery commitments
- Process and Tools
- Use Jira and Confluence at an expert level to maintain quarterly and sprint planning
- Maintain project structure, dashboards, and stakeholder visibility.
- Communicate and coordinate within InfoSec and cross functionally with delivery partners and stakeholders.
- Produce work artifacts such as meeting notes, executive summaries, decision materials and status reports.
- Team Player
- Model a collegial and accountable working style that earns trust and keeps teams aligned.
- Understands cybersecurity concepts, principals and embraces the culture of securing our business without deterring progress.
- Detail-oriented and organized, keeping track across concurrent and competing priorities.
- Exercises good judgment and an instinct for identifying issues before they deter progress.
- Effectively synthesizes and articulates concepts and information verbally or in writing, while tailoring the message according to the audience.
- Takes initiative and follows through on assignments, with an eye for continuous improvement on how work gets done.
- Curious and committed to continuous learning, especially as security, cloud, and AI capabilities evolve.
- Elicits diverse perspectives, establishes common ground, and guides teams toward durable solutions.
- Collegial, collaborative, and respectful, with a service-oriented approach to supporting the firm and its people.