Manager of Information Security

$122,800 - $140,000/Yr

Flexential - Tampa, FL

posted 5 days ago

Full-time - Manager
Tampa, FL
Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services

About the position

The Manager of Information Security at Flexential leads a team responsible for the Security By Design program, focusing on designing and implementing secure information security architectures and applications. This role involves cross-functional collaboration to integrate security measures throughout the product lifecycle, conduct threat modeling, and enforce best practices in information security.

Responsibilities

  • Own and mature the Security by Design program to ensure secure design and implementation of Flexential products and systems.
  • Lead the identification of security risks and the creation of security architecture requirements and mitigation strategies.
  • Implement and mature security best practices into the Secure Software Development Lifecycle (SSDLC).
  • Establish operational foundations, defining metrics and KPIs for governance, quality, and efficiency.
  • Influence and improve existing processes through innovation and operational change.
  • Maintain awareness of trends in security regulations and technology, including frameworks like PCI-DSS and ISO 27001.
  • Develop and maintain security procedures and standards for executive management approval.
  • Create baseline security configuration standards for operating systems and identity management.
  • Anticipate new security threats and stay updated on evolving security controls.
  • Oversee validation and review of platform and security implementations from DevOps to production.
  • Ensure security architecture strategy aligns with the Flexential Information Security program.
  • Collaborate with other teams to enhance processes and build relationships.

Requirements

  • 5 years of experience in IT security and compliance, preferably in IT or service provider environments.
  • Full stack knowledge of IT Infrastructure including applications, databases, operating systems, and networking.
  • Strong familiarity with information security and compliance engineering practices.
  • Proficiency with security configurations and standards across the OSI model.
  • Advanced knowledge of public cloud security (GCP, Azure, AWS).
  • Experience with MDM, IAM, and understanding of encryption and cryptography.
  • Ability to assimilate new technologies and design frameworks quickly.
  • Experience presenting security concepts to customers and executives.
  • Ability to influence and mature business areas within information security.
  • Experience mentoring and coaching team members.

Nice-to-haves

  • Security certifications such as CISSP, CSSLP, OSCP, GDSA.
  • Experience with Kubernetes and micro-services architecture.
  • Knowledge of compliance standards like PCI-DSS, HITRUST, NIST, ISO, ITIL, and SOC1/2.
  • Experience with secure CI/CD pipeline design and automation.
  • Experience with Information Security program assessment and maturity modeling.

Benefits

  • Medical, Telehealth, Dental and Vision insurance
  • 401(k) plan
  • Health Savings Accounts (HSA) and Flexible Spending Accounts (FSA)
  • Life and AD&D insurance
  • Short Term and Long-Term disability
  • Flex Time Off (PTO)
  • Leave of Absence
  • Employee Assistance Program
  • Wellness Program
  • Rewards and Recognition Program
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service