Information Technology Security Manager- Hybrid

Northrop Grumman Federal Credit Union

$111K — $145K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, or related field (or equivalent experience)
  • 5-8+ years of experience in cybersecurity or information security roles
  • Experience within financial services or another highly regulated industry preferred
  • Strong knowledge of NIST CSF, NIST 800-53, CIS Controls, ISO 27001, and networking concepts
  • Experience with risk assessments, incident response, and regulatory compliance environments

Responsibilities

  • Lead and improve the organization's Information Security Program using frameworks like NIST and ISO
  • Develop cybersecurity strategies, policies, and procedures
  • Conduct cybersecurity risk assessments and audits
  • Lead incident response planning and post-incident reviews
  • Collaborate across teams to integrate security into operations
  • Evaluate vendor security risks and compliance
  • Manage cybersecurity budgets and resource planning

Benefits

  • Medical, dental, and vision insurance
  • Disability and life insurance
  • 401(k) profit-sharing plan with employer matching
  • Opportunity for local and non-local travel
  • Flexible work hours, including after-hours support as needed
Full Job Description
Information Technology Security Manager- Hybrid

What You'll Do

Cybersecurity Leadership & Strategy
  • Lead and continuously improve the organization's enterprise Information Security Program aligned with frameworks such as NIST, ISO 27001, and COBIT
  • Develop and implement cybersecurity strategies, policies, standards, and procedures
  • Provide leadership and guidance to junior team members and cross-functional stakeholders

Risk Management & Compliance
  • Conduct cybersecurity risk assessments, audits, and vulnerability reviews
  • Ensure compliance with financial industry regulations and standards including GLBA, FFIEC, PCI, and NCUA requirements
  • Partner with auditors, regulators, compliance teams, and senior leadership during examinations and assessments
  • Support Enterprise Risk Management (ERM) initiatives and reporting

Incident Response & Security Operations
  • Lead incident response planning, testing, investigations, remediation, and post-incident reviews
  • Monitor and analyze enterprise security tools including firewalls, SIEM platforms, endpoint protection, and logging systems
  • Oversee security event monitoring, threat detection, and escalation processes
  • Support business continuity planning (BCP) and disaster recovery preparedness

Collaboration & Operational Excellence
  • Work closely with IT, Legal, Compliance, Risk, and business teams to integrate security into operations and projects
  • Evaluate vendor and third-party security risks, contracts, and due diligence requirements
  • Contribute security expertise to RFPs, Statements of Work (SOWs), and vendor engagements
  • Manage cybersecurity budgets, forecasting, and resource planning

What You Bring

Required Qualifications
  • Bachelor's degree in Cybersecurity, Computer Science, or related field (or equivalent experience)
  • 5-8+ years of experience in cybersecurity or information security roles
  • Experience within financial services or another highly regulated industry preferred
  • Strong knowledge of:
    • NIST CSF
    • NIST 800-53
    • CIS Controls
    • ISO 27001
    • Networking concepts and the OSI model
  • Experience with:
    • Risk assessments and security audits
    • Incident response and threat analysis
    • Security tools such as SIEM, firewalls, and endpoint protection platforms
    • Regulatory and compliance environments including GLBA, FFIEC, PCI, and NCUA
  • Excellent communication and leadership skills with the ability to present to executive leadership and Boards

Preferred Certifications
  • CISSP
  • CISA
  • GIAC
  • Security+
  • CEH

What Makes You Successful

You are:
  • A strategic thinker with strong technical depth
  • Calm and decisive during incidents and high-pressure situations
  • Highly organized and able to manage multiple priorities
  • Collaborative, adaptable, and solutions-oriented
  • Passionate about continuous improvement and staying ahead of evolving cyber threats

Additional Information
  • Occasional local and non-local travel may be required
  • Flexibility for after-hours support, on-call rotation, and weekend work as needed
  • Ability to obtain a U.S. passport required

This is an opportunity to play a visible, high-impact role in protecting a mission-driven financial institution while helping shape the future of cybersecurity across the organization. You'll work with leadership, influence strategic decisions, and contribute directly to safeguarding the trust of our members and employees.

Apply today and help lead the next generation of cybersecurity excellence

NGFCU offers competitive compensation and a rich benefits package including medical, dental, vision, disability and life insurance, and a 401(k)-profit sharing plan with employer matching.

Compensation and Job Title is commensurate with experience and may fall under the following pay ranges:

Information Technology Manager- $111,035 to $145,000 Annually

Please note that the salary information is a general guideline only. Northrop Grumman Federal Credit Union considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education/training, key skills, internal peer equity, as well as market and business considerations when extending an offer. We offer a competitive total rewards package including a wide range of medical, dental, vision, financial, and other benefits.

Similar Jobs

More Jobs at Northrop Grumman Federal Credit Union

More Information Technology Jobs

Find similar Information Technology Security Manager- Hybrid jobs: