Manager, CybersecurityPosition OverviewThis is an amazing opportunity to work within one of the fastest growing Managed Services Providers. We are a company with a heart and soul dedicated to the ongoing success and growth of our employees and continued business success of the customers we support. We foster a fun and connected environment with employee benefits extending beyond general compensation and into company-sponsored events and an invested culture of learning.
The Manager, Cybersecurity is responsible for leading cybersecurity operations, security technology initiatives, governance, risk management, and compliance programs across the organization. This role oversees the implementation and optimization of security controls, supports regulatory compliance efforts, manages cybersecurity projects and vendors, and drives continuous improvement of the organization's cybersecurity posture. The Manager, Cybersecurity partners closely with infrastructure, application development, project management, and business stakeholders to identify and mitigate risks, strengthen security capabilities, and support strategic business objectives. Success in this role requires strong technical cybersecurity expertise, leadership capabilities, and the ability to communicate effectively with both technical and executive stakeholders.
Duties and Responsibilities- Lead cybersecurity initiatives, programs, and strategic security projects across the organization.
- Develop and maintain cybersecurity roadmaps, security standards, operational procedures, and security governance processes.
- Partner with technology and business leaders to strengthen the organization's cybersecurity posture and reduce risk.
- Participate in cybersecurity incident response planning, post-incident reviews, and remediation activities.
- Lead the implementation, administration, and optimization of cybersecurity technologies including Managed Detection and Response (MDR), SIEM/XDR platforms, endpoint protection solutions, email security technologies, multifactor authentication platforms, vulnerability management tools, and network security controls.
- Coordinate security architecture reviews and support the implementation of secure technology solutions.
- Collaborate with infrastructure and application teams to implement secure configurations, network segmentation, firewall management, and security best practices.
- Conduct cybersecurity risk assessments and oversee remediation planning and tracking activities.
- Lead governance, risk, and compliance initiatives and support adherence to regulatory and industry requirements.
- Support compliance activities related to GLBA, FERPA, PCI-DSS, NIST Cybersecurity Framework (CSF), CIS Controls, and other applicable standards.
- Manage audit requests, evidence collection, compliance documentation, and regulatory reporting requirements.
- Develop, maintain, and communicate cybersecurity policies, standards, procedures, and governance documentation.
- Lead cybersecurity vendor evaluations, RFP processes, contract reviews, and vendor management activities.
- Coordinate relationships with managed security providers and third-party cybersecurity vendors.
- Manage cybersecurity projects, including planning, scheduling, budgeting, risk management, and execution.
- Ensure successful implementation, transition, and operational support of cybersecurity technologies and services.
- Lead cybersecurity awareness, phishing simulation, and security training programs.
- Develop metrics, dashboards, and reporting to measure cybersecurity program effectiveness and organizational risk.
- Provide regular reporting to leadership regarding security risks, vulnerabilities, incidents, compliance status, and remediation efforts.
- Present cybersecurity findings, recommendations, and strategic initiatives to leadership teams and governance committees.
- Promote a culture of cybersecurity awareness and accountability throughout the organization.
- Stay current on emerging threats, cybersecurity trends, technologies, and regulatory requirements.
Education- Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field required.
- Equivalent combination of education and relevant experience may be considered.
Job-related Experience- Customarily has at least 7 years of progressive experience in cybersecurity, information security, security operations, security engineering, governance, risk, and compliance, or related disciplines.
- Customarily has at least 3 years of experience leading cybersecurity programs, projects, initiatives, or teams.
- Experience implementing and supporting cybersecurity technologies including MDR, SIEM, XDR, endpoint security, vulnerability management, identity security, and network security solutions.
- Experience supporting cybersecurity governance, risk management, compliance, and audit activities.
- Experience working with cybersecurity frameworks and regulatory requirements including NIST CSF, CIS Controls, GLBA, FERPA, PCI-DSS, and related standards.
- Experience managing cybersecurity vendors, service providers, and technology projects.
- Experience developing executive-level reporting, security metrics, and risk communications.
Job-related Skills and Attributes- Synoptek core DNA behaviors
- Clarity: Possesses excellent communication skills, makes a concentrated effort to speak the customers language. Ability to field questions with concise, well-constructed responses
- OwnIT: Shows integrity, innovation, and accountability in completing daily assignments
- Results: Solutions focused and driven to resolve conflict quickly and precisely. Proactively looks for opportunities to contribute to the company's business goals
- Growth: Willing to learn and ask questions. Constantly looking for new ways to improve yourself. Ability to adapt and grow in a fast-paced environment
- Team: Embraces both customers and colleagues as team members. Ability to be flexible, respectful, engaged and collaborative
- Strong knowledge of cybersecurity operations, security technologies, and security program management.
- Knowledge of MDR, SIEM, XDR, endpoint security, vulnerability management, email security, identity security, and network security technologies.
- Understanding of governance, risk management, compliance, and audit processes.
- Familiarity with NIST CSF, CIS Controls, GLBA, FERPA, PCI-DSS, and related regulatory frameworks.
- Strong project management, vendor management, and stakeholder management skills.
- Strong analytical, troubleshooting, and problem-solving abilities.
- Excellent verbal, written, presentation, and executive communication skills.
Working ConditionsWork is primarily performed in an office, remote, or hybrid environment depending on business requirements. May require collaboration with global teams across multiple time zones. Ability to work extended hours or participate in after-hours support activities as needed to support project deliverables and operational requirements.
FLSAExempt