Associate Director of Enterprise Information Security at Emory University overseeing security disciplines and managing teams. Leading projects and compliance in information security practices.
Responsibilities
Technical design, implementation, maintenance, and strategic thought-leadership responsibilities for multiple information security disciplines such as security policy, awareness and education, risk management, incident response, vulnerability management, intrusion detection and prevention, regulatory compliance, and security operations.
Drafts and reviews information security policies, processes, and procedures.
Prepares information security awareness and education materials and other documentation.
Determines and documents information security requirements and controls necessary for the protection of information resources.
Implements and administers plans, processes, and procedures necessary to ensure compliance.
Supervises other information security professionals and acts as a senior consultant to internal and external stakeholders or auditors as well as senior management.
Provides guidance and assistance regarding information security matters such as the interpretation of information security policies and requirements or their applicability to particular situations.
Oversees information security incident response activities, risk assessment and risk management activities, and vulnerability assessment and vulnerability management activities spanning multiple business units.
Manages detailed network, operating system, database, and application vulnerability assessments and security configuration audits.
Manages information security projects and initiatives.
Oversees operational tasks supporting information security functions such as intrusion detection and prevention, security event log analysis, management reporting, virus prevention and remediation, encryption, network segmentation, remote access and authentication.
Supports, maintains, monitors, troubleshoots and enhances security infrastructure tools, methodologies, software, and hardware.
Independently develops automated tools and methodologies in support of Information Security functions.
Analyzes data from Information Security functions and provides reports and recommended response actions to Information Security management.
Represents Information Security to other organizations on information security related matters, as assigned.
Publishes regular status reports and submits to management.
Performs related responsibilities as required.
Requirements
A bachelor's degree and seven years of related IT experience including demonstrated technical expertise in multiple information security domains, project management skills and lead or supervisory experience, OR an equivalent combination of education, training and experience.
Excellent project management and team participation skills.
Good written and verbal communication skills.
Strongly preferred qualifications include: knowledge of information security technologies, methodologies, and practices in security policy, standards, and best practices; security awareness; security incident response; risk assessment and management; vulnerability assessment and management; intrusion detection and prevention; system administration (Windows, OS X, Linux, Solaris, etc.); auditing and security administration of network, operating system, database and application security; access control; encryption; firewalls and proxies; networking; security event log analysis; virus prevention and remediation; and programming/scripting.
Security certifications are a plus (e.g. SANS/GIAC, CISSP, CISA, CISM).
Benefits
Not Applicable
Job title
Associate Director of Enterprise Information Security
Information Security Administrator assessing military clients' cyber risks and compliance with security policies. Collaborating on mitigation plans and guiding clients to secure their mission - critical systems.
Enterprise Security Architect coordinating system solutions and implementations for secure cloud technologies at Freeport - McMoRan. Assessing technology needs and leading improvements in cloud security.
Cyber Security Metrics & Automation Analyst enhancing AES's Cyber Security effectiveness through metrics and automation solutions. Collaborating with teams to develop dashboards and streamline operations across domains.
SOC Team Lead managing Security Operations Center analysts. Leading cyber threat intelligence and incident response initiatives for Florida state government.
IT - Security Administrator managing IT security components and incident response processes for healthcare IT. Collaborating on security projects and maintaining compliance with ISO 27001.
Senior Cybersecurity Engineer at GDIT responsible for developing and implementing IT security solutions. Architecting security programs and leading Cybersecurity initiatives in defense and intelligence sectors.
Security Worker responsible for maintaining security of people and property for Aramark. Conducting inspections, responding to emergencies, and providing assistance to guests and staff.
IT Security Engineering intern assisting with security software and enterprise security processes. Collaborating with senior team members to maintain security standards and procedures.
Berater:in in der Informationssicherheit für Management - Beratung bei UIMC Dr. Voßbein GmbH. Aufbau von ISMS, Audits und Schulungen für Kunden in Deutschland.
Security Intern providing support and administrative duties for the Global Security Services team at RTX. Collaborating on security projects and drafting documentation at a leading aerospace and defense company.