Hybrid Information Security Manager

Posted 1 hour ago

Apply now

About the role

  • Information Security Manager driving information security program and leading security engineering at Thndr. Collaborating cross-functionally to ensure compliance and manage cyber risks.

Responsibilities

  • Supervise security engineering practices and ensure their secure, efficient operations.
  • Lead the development, implementation, and continuous improvement of the organization’s information security program.
  • Lead adversary research, threat modeling, risk assessment and supervise defense control selection for products, infrastructure, and third-party services and products.
  • Oversee identity and access management (IAM) strategies, tooling, and implementation.
  • Define and monitor key performance indicators to measure technical security maturity, control effectiveness, and overall capabilities progress of the security program.
  • Ensure traceability and consistency across policies, risks, and controls.
  • Lead on the security awareness training program, tooling, and continuous KPI improvement.
  • Provide strategic guidance on the security implications of business initiatives, projects, and technology choices.
  • Implement and maintain automated supervision tooling (e.g., Sprinto or custom integrations) to support governance reporting.
  • Establish and maintain technical security guidelines, policies, standards, and procedures aligned with business needs, regulatory obligations (e.g., CMA, ADGM, FRA), and frameworks such as ISO 27001, NIST CSF, and PCI DSS.
  • Manage, maintain, and evolve the information security risk register and risk management framework (e.g., NIST RMF).
  • Lead, mentor, and develop members of the information security team.
  • Serve as a trusted advisor to senior management on information security posture.
  • Prepare clear, actionable reports and recommendations for executive stakeholders and governance committees.

Requirements

  • 7+ years of experience in information security, with proven leadership in governance, risk, and compliance.
  • Bachelor’s degree in Information Security, Computer Science, Risk Management, or a related field.
  • CISSP, CISM, CISA, CRISC, or ISO 27001 Lead Implementer/Auditor preferred.
  • Strong understanding of frameworks such as ISO 27001, NIST CSF, PCI DSS, SOC 2, and relevant regional regulations (CMA, ADGM, FRA, GDPR).

Benefits

  • Health insurance
  • Professional development opportunities

Job title

Information Security Manager

Job type

Experience level

SeniorLead

Salary

Not specified

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job