Cybersecurity Manager

Builders Mutual

• $110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or equivalent in an IT-related field; 5-7 years of experience in risk management and information security.
  • 4+ years of experience as an information security engineer; 1+ year of penetration testing experience.
  • Proven familiarity with current IT security technologies and information security frameworks.
  • Ability to communicate security concepts to both technical and non-technical audiences.
  • Professional certifications such as CompTIA Security+, CISSP, or similar required.
  • In-depth knowledge of Cybersecurity best practices and IT technologies, including Cloud Services and Microsoft Technologies.
  • Strong management, organizational, and communication skills.

Responsibilities

  • Establish a comprehensive Cybersecurity Program based on internal Risk Analysis.
  • Define security policies and training programs for IT systems and data communications.
  • Implement and manage cloud security controls to safeguard information assets.
  • Evaluate and adapt security standards and risk management programs.
  • Develop disaster recovery policies and coordinate service recovery procedures.
  • Identify and report on information security risks and practices.
  • Lead strategic security planning across various technology teams.

Benefits

  • 3 weeks of PTO plus your birthday off.
  • 37.5-hour workweek with early Friday finishes.
  • Professional development opportunities through Builders University.
  • Recognition programs offering swag and extra time off.
  • 8 hours of paid Volunteer Time Off (VTO).
  • Comprehensive benefits supporting overall wellbeing.
Full Job Description
Description

The OPPORTUNITY:

Leverage your experience and join our team as the Cybersecurity Manager. This position provides the vision and strategies necessary to ensure the confidentiality, integrity, and availability of Builders Mutual electronic information by communicating risk to senior administration, creating, and maintaining enforceable policies and supporting processes, and ensuring compliance with regulatory requirements. The CSM is responsible for creating/maintaining the Cybersecurity Program, leading the Cybersecurity team, establishing an overall security roadmap each year, implementing and monitoring information security standards and policies for BMIC, and aligning security strategy with business goals and objectives. To support these activities, the CSM coordinates activities with other departments, including the evaluation, procurement, and deployment of security-related products and develops and coordinates cyber security awareness and education programs. Additionally, the Cybersecurity Manager ensures a BMIC system-wide incident response plans are in place. Because the success of our company is rooted in teamwork, the way we care about the people we work with and serve, this hybrid role will work in our Raleigh office a minimum of two days with the flexibility to work from home the remaining three days.

Your WORK as the Cybersecurity Manager will make a difference as you:
  • Establish and maintain a strategically sound Cybersecurity Program based off internal Risk Analysis to ensure that information assets are adequately protected, including the oversight & coordination of all information security efforts, insuring consistency with regulatory and compliance requirements that govern cyber security for BMIC. This includes, but is not limited to PCI, NAIC, GLBA, SOX, HIPAA, NIST, ISO, ITIL, and Federal/State Directives.
  • Define security policies, practices, training programs and standards that govern security functions associated with information technology systems, networks, applications, data communications, and computing services within BMIC - including employee, vendor and customer use and access to information.
  • Implement, Monitor and Manage all cloud-related security controls.
  • Evaluate, choose, adapt, and drive the implementation of security standards and risk management programs to ensure the integrity, confidentiality, and availability of data.
  • Develop effective disaster recovery policies and standards; coordinate the development of implementation plans and procedures to ensure that business-critical services are recovered in the event of a declared disaster and provide direction and in-house consulting in these areas.
  • Responsible for identifying, evaluating, and reporting on information security risks, practices, and projects.
  • Serve as the process owner of all ongoing activities related to the availability, integrity and confidentiality of customers, vendors, employees, and business information, in compliance with industry directives.
  • Lead strategic security planning with End User Services, Application Development, Infrastructure Services teams, and departments within Builders Mutual.
  • Work directly with BMIC departments to facilitate IT risk analysis and risk management processes; identify acceptable levels of risk and establish roles and responsibilities about information classification and protection.
  • Create and manage information security and risk management training programs for employees, contractors, and approved system users.


Skills and Experience to Get the Job Done Right:
  • Bachelor's degree or equivalent experience in an IT-related discipline plus a minimum of 5 - 7 years' experience in a combination of risk management, information security and Information Technology positions demonstrating a progressive growth in responsibility (or equivalent combination of education and experience).4+ years' experience as an information security engineer. 1+ years' experience performing penetration testing of network, application, and IT resources.
  • Proven experience with current IT security technologies
  • Demonstrated experience with information security frameworks
  • Demonstrated understanding of technological trends and developments in the areas of information security, risk management, web architectures, and cloud computing
  • Demonstrated ability to frame security and risk-related concepts to both technical and nontechnical audiences
  • Professional information security certifications such as CompTIA Security+, SSCP, CISSP, CISM, CCNA Security, CCNP Security, CEH, GIAC, or CISA required.
  • In-depth knowledge of IT technologies including Cybersecurity best practices, Routing & Switching in LAN/WAN architectures, WLAN, Radius, Firewalls, SSO/SAML, SaaS/Cloud Services, Identity Access Management, SDLC, Microsoft Technologies (Active Directory, IIS, ISA, DNS, SQL), Linux.
  • Knowledge and direct experience incorporating ISO 27002, NIST Cybersecurity Framework, and other security control frameworks and standards.
  • Knowledge and direct experience with vulnerability management, SIEM and Log Management, file integrity, proxy servers, DLP, IPS/IDS, VPN, PKI, multiple-factor authentication, cryptography.
  • Strong analytic and problem-solving skills.
  • Strong management and organizational skills.
  • Excellent written, verbal communication and presentation skills.


Your Employee Experience at Builders Mutual:
At Builders Mutual, we're intentional about creating a workplace where people can do meaningful work, feel supported by leaders who care, and grow their careers with confidence. Great workplaces don't just happen - they're built with intention. You'll also be part of a team where people show up as themselves, support one another, and take pride in what we're building together.

We support you with:
  • Competitive compensation and a performance bonus program
  • 3 weeks of PTO to start, plus your birthday off
  • A 37.5-hour workweek, with Fridays ending at 2:30 PM
  • Professional development through Builders University
  • Everyday Wins recognition with swag and extra time off
  • 8 paid Volunteer Time Off (VTO) hours to give back
  • Comprehensive benefits that support your wellbeing today and your future tomorrow


Similar Jobs

More Jobs at Builders Mutual

More Information Technology Jobs

Find similar Cybersecurity Manager jobs: