Job Details
Description
The Information Security Manager will manage assurance activities related to the availability, integrity and confidentiality of business information in compliance with HORNE’s Information Security Policies. They will work with business leadership to manage and mitigate organizational risk. They will oversee a firm-wide information security management program to ensure information assets are adequately protected.
This opportunity is open to remote or working from one of the HORNE offices.
Position Responsibilities:
- Provide leadership, guidance and training to information systems security personnel
- Review, maintain and implement firmwide information security policies and procedures
- Manage security audits and vulnerability/threat assessments related to HIPAA, SOC 2 and others as required
- Ensure fulfillment of legal and contractual information security and privacy mandates, including providing executive management with compliance reports and audit findings
- Maintain and test Business Continuity and Disaster Recovery plans and procedures
- Work with Infrastructure Team to maintain and update system security controls
- Update and execute Vendor Risk Management program
Requirements:
- Bachelor’s degree in Computer Science, Computer Engineering or equivalent experience
- At least 10 years of combined experience in risk management, information technology and/or information security
- Knowledge of NIST SP 800-53 Information Security Management Framework
Preferred Skills:
- Experience with contract and/or vendor management
- Experience with Agile methodology
- Experience with Cloud computing
- Experience with FISMA and FedRAMP
- Certification in one of the following: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM) or the CompTIA Security+