IT Security Manager providing operational leadership for ICBC’s IT security program. Enhancing cyber security practices and managing security initiatives in a dynamic, hybrid cloud environment.
Responsibilities
Provide overall operational leadership of ICBC’s information technology security program.
Lead our security operations and security platforms team members.
Develop and provide execution leadership of our IT security roadmap, vulnerability management and incident handling.
Ensure security standards, controls, strategies and best practices are incorporated and executed across our IT organization.
Enhance cyber security practices through collaboration and influence.
Oversee the reporting and analysis of information technology security operational effectiveness.
Drive the evolution of the IT Security program, developing the roadmap, plans, technologies, and processes.
Lead IT security initiatives and projects while staying on budget, schedule and within scope.
Provide vendor and contract management of our IT security vendors and service providers.
Oversee the provision of consultation and subject matter expertise to other IT and business stakeholders.
Manage the day-to-day operations of the team including the units business plan and budget.
Raise and promote new ideas, continuous improvements, and process optimization leveraging automation.
Requirements
Proven expertise and experience in IT Security principles and standards, process, systems and tools, and trends and best practices.
Define and implement security controls across multiple layers of the technology architecture stack to ensure robust protection and compliance.
Analyze and translate requirements from industry standards (e.g., ISO, NIST, OWASP, CIS, CCCS), organizational policies, regulatory frameworks, and threat/risk assessments into actionable strategies for enterprise security.
Support in designing hybrid security architecture, managing vulnerabilities and patching processes, enabling identity strategy, strengthening cloud security, and ensuring compliance with privacy requirements.
Experience in managing Cyber Security operations, monitoring, and capabilities both on-prem and in the cloud.
Experience with vendor and contract management.
Experience developing roadmaps, plans, technical standards for IT security services and initiatives.
Demonstrated success leading technical teams with experience creating a collaborative and positive work environment, coaching and influencing team members, and building and maintaining strong and effective stakeholder relationships.
Excellent interpersonal communication, negotiation and facilitation skills.
Several years of experience in information security.
Professional designation or certification in the information security field such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or equivalent.
Benefits
Three options of health and dental coverage.
100% employer paid life insurance, long term disability and travel insurance.
Sick leave plan – 100% of pay for a period of a maximum of 8 weeks plus 85% of your pay for a subsequent period of up to 9 weeks.
Werkstudent supporting information security management and business continuity projects for Syneco's energy operations. Engaging in the development and upkeep of management systems and reporting tools.
Security Consultant providing IT - Security Consulting by leveraging knowledge and skills to assist clients. Involved in diverse projects from analysis to execution and results presentation.
Lead functional safety for product development in PEM electrolyzers at Quest One. Collaborate with teams and support certification processes in the field of green hydrogen technology.
Consultant specializing in Cyber & Product Security for clients in a hybrid role. Focused on implementing security strategies and conducting assessments with a collaborative approach.
(Senior) Consultant in Automotive - & Product Security at Wavestone, focusing on cyber security solutions for clients in innovative projects. Collaborative work in a vibrant team environment across multiple German cities.
Information Security Manager focusing on risk management for Xecuro GmbH. Implementing and optimizing risk management processes within a technological environment in Bonn.
Teamlead position for Security Governance & Assurance at Xecuro GmbH in Bonn. Leading team and implementing information security management systems (ISMS).
Information Security Expert working on safe digital solutions, ensuring compliance and conducting risk assessments. Join Xecuro GmbH in shaping Germany's digital future with innovative security measures.
Lead ISSO ensuring security compliance for multi - tenant cloud and hybrid environments at Agile Defense. Responsible for vulnerability analyses and risk management decision - making expertise.