Looking for a manager that has a mindset like an engineer and has managed a full security budget on their own.
MUST:
Minimum of 10 years of overall experience in Information Security
At least 3 years of experience managing a team without an individual contributor role
Proven experience managing a security budget and conducting performance reviews
Strong hands-on background as a Security Engineer
Experience with vulnerability scanning and management tools (e.g., Tenable or Rapid7)
Demonstrated experience implementing and deploying Single Sign-On (SSO) solutions
Familiarity with tools such as Aqua Security (AquaSec), Security Guard, or Microsoft Defender for Cloud
General understanding of ISO standards; will lead ISO 27001 and ISO 27000 certification and compliance efforts
Broad exposure to cloud, infrastructure, network, and multi-platform environments
Experience with: Wireless security, Network monitoring, Network design, Windows desktop/server security, Database security, Routing protocols, and Incident management
PLUS:
CISSP OR CISM
Degree
Legal
DAY TO DAY:
Our client, a national law firm, is seeking a Manager of Information Security to join their team as a full time employee in Pittsburgh. This role works a hybrid schedule and will manage a team of 3 security engineers + 1 Analyst. This role will also have the capacity to hire a new engineer once this Manager comes aboard. This person will play a pivotal role within leadership, development, and oversight of a comprehensive information security management system (ISMS) and privacy information management system (PIMS) across the firm. The Manager of Information security will manage a skilled team dedicated to security engineering, operations, incident response, and the development of security policies and procedures. This person will have their hands on many different technologies and aspects of security, so we are seeking a well-rounded leader to have their hand in just about everything and not be afraid to jump in and take initiative.