Technical Security Manager

Cambium Learning Group

United States

Remote

USD 120,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cambium Learning Group seeks a Security Manager to drive the Information Security program, aligning with external stakeholders and security frameworks. The role coordinates with teams across security monitoring, cloud infrastructure, software development, and enterprise support to ensure compliance and program maturity.

Responsibilities include leading audits, managing risk assessments, maintaining records, and advancing privacy controls, with emphasis on governance, training, and

Qualifications

  • Bachelor’s degree in information security, cybersecurity, CS, engineering, or related field.
  • Minimum 5 years hands-on information security experience.
  • Extensive knowledge of security/privacy frameworks, standards, and best practices.
  • Knowledge of GDPR, COPPA, and FERPA.
  • Experience with GRC tools and incident response.
  • Security certifications such as CISSP, GIAC, ISACA, AWS Security; PMP a plus.

Responsibilities

  • Maintain program conformance to security standards and drive continuous improvement.
  • Facilitate annual independent audits: plan, coordinate, review, remediate findings.
  • Plan and manage security improvement projects from requirements to deployment.
  • Manage document control, inventories, and compliance artifacts.
  • Lead security awareness programs and related training.
  • Create, monitor, and report on training campaigns.
  • Support biz development by responding to security/privacy inquiries in proposals.
  • Perform security risk assessments of software, services, and new tech.
  • Own and administer a GRC tool to track controls and conformance.
  • Conduct enterprise risk assessments and report findings to senior management.
  • Assist continual improvement by identifying gaps and recommending programs.
  • Manage privacy risks and maintain privacy policies and cookies/APIs compliance.

Skills

Governance
Risk assessment
Audit coordination
Compliance
Security frameworks
Incident response
GRC
AI governance
Cloud security
Privacy laws
Executive communication
Project management

Education

Bachelor’s Degree in Information Security
Bachelor’s Degree in Cybersecurity
Bachelor’s Degree in Computer Science
Bachelor’s Degree in Engineering
Bachelor’s Degree in Information Systems
Security certifications (CISSP, GIAC, ISACA, AWS Security)
PMP certification

Tools

GRC tools

Job description

Job Overview

The Security Manager will primarily support our Information Security program by ensuring and maintaining compliance with external stakeholders and security frameworks. The role involves coordinating with teams in security monitoring, cloud infrastructure, enterprise support, software development, educational testing, and project/customer management.

Responsibilities
  • Maintain, mature, and take ownership of our program ensuring conformance to security standards (including ISO 27001, ISO 27018, ISO 42001, privacy laws, ISO 9001, GovRAMP, FedRAMP, NIST 800, SOC, and CIS Top Controls).
  • Facilitate annual independent audits by third‑party security and privacy experts: create audit plans, coordinate with stakeholders, review reports, and remediate findings.
  • Plan and manage multiple security improvement projects from requirements through deployment and implementation.
  • Manage document and record control processes, maintaining accurate inventories and records of compliance artifacts.
  • Lead Security Awareness and related training programs, improving processes, platforms, and systems supporting campaigns and content.
  • Create, monitor, and report on training campaigns.
  • Support business development by responding to requests for security and privacy information in proposals for new business.
  • Perform security risk assessments of software acquisitions, technical services, business systems, and new technologies.
  • Own and administer a GRC tool to track security controls and conformance status, ensuring artifacts are recorded and updated.
  • Conduct enterprise risk assessments and report findings to senior management on an ongoing basis and as needed.
  • Assist in continual improvement by examining the current security posture, identifying gaps, and recommending programs.
  • Manage privacy risks, such as exposures from cookies and APIs, and maintain privacy policies with compliance.
Requirements
  • Bachelor’s Degree in Information Security, Cybersecurity, computer science, engineering, Information Systems, or a related technical field.
  • Minimum 5 years hands‑on experience in information security.
  • Extensive and deep knowledge of security and privacy frameworks, standards, and industry best practices.
  • Knowledge of privacy laws and principles such as GDPR, COPPA, and FERPA.
  • Extensive and deep knowledge of tools and techniques used to protect against cybersecurity attacks and respond to incidents.
  • Information Security certifications such as CISSP, GIAC, ISACA, AWS Security; PMP certification a plus.
  • Experience with GRC tools.
  • Exceptional verbal and written communication skills, capable of detailed technical discussions and executive‑level communications.
  • Demonstrated working experience with:
    • Security and privacy standards such as ISO, GovRAMP, FedRAMP, and other best‑practice frameworks.
    • Writing, developing, and maintaining official security and privacy‑relevant records and documentation.
    • Conducting risk assessments, gap analysis, improvement plans, and tracking corrective actions or POAMs to closure.
    • Developing and executing project management plans for technical projects.
    • Coordinating with senior business leaders, subject matter experts, technical leaders, and third‑party consultants.
  • Experience in AI Governance highly desirable, including frameworks such as NIST and ISO 42001.
Equal Opportunity Employer

We are dedicated to fostering a culture that celebrates unique backgrounds, ideas, and experiences. All qualified applicants will receive consideration for employment without discrimination on the basis of race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, protected veteran status, or disability.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technical Security Manager
Technical Security Manager

Cambium Assessment • United States

On-site
USD 140,000 - 190,000
Information Security Manager
Information Security Manager

Arco Solutions • Kansas

On-site
USD 120,000 - 150,000
Flexible schedule
Health insurance
Manager of Information Security and Compliance
Manager of Information Security and Compliance

iboss • United States

On-site
USD 100,000 - 130,000
Health, Vision, Dental
401(k) with company match
Unlimited Paid Time Off
+1
Information Security Program Lead
Information Security Program Lead

MSA - The Safety Company • Cranberry Township

On-site
USD 120,000 - 180,000
Information Security Manager
Information Security Manager

Confidential • Pittsburgh

Hybrid
USD 140,000 - 190,000
Information Security Program Lead
Information Security Program Lead

MSA, The Safety Company • Cranberry Township

On-site
USD 120,000 - 180,000
Senior Manager of Risk and Compliance
Senior Manager of Risk and Compliance

PTR Global • United States

On-site
USD 100,000 - 130,000
Manager of Information Technology
Manager of Information Technology

Confidential • Pittsburgh

Hybrid
USD 150,000 - 190,000
ISMS Compliance Manager
ISMS Compliance Manager

Hexagon Mining, Inc. • Tucson (AZ)

On-site
USD 80,000 - 100,000
Information Security and Compliance Manager
Information Security and Compliance Manager

Transhield, Inc. • Elkhart (IN)

On-site
USD 120,000 - 180,000