Information Security Manager driving information security program and leading security engineering at Thndr. Collaborating cross-functionally to ensure compliance and manage cyber risks.
Responsibilities
Supervise security engineering practices and ensure their secure, efficient operations.
Lead the development, implementation, and continuous improvement of the organization’s information security program.
Lead adversary research, threat modeling, risk assessment and supervise defense control selection for products, infrastructure, and third-party services and products.
Oversee identity and access management (IAM) strategies, tooling, and implementation.
Define and monitor key performance indicators to measure technical security maturity, control effectiveness, and overall capabilities progress of the security program.
Ensure traceability and consistency across policies, risks, and controls.
Lead on the security awareness training program, tooling, and continuous KPI improvement.
Provide strategic guidance on the security implications of business initiatives, projects, and technology choices.
Implement and maintain automated supervision tooling (e.g., Sprinto or custom integrations) to support governance reporting.
Establish and maintain technical security guidelines, policies, standards, and procedures aligned with business needs, regulatory obligations (e.g., CMA, ADGM, FRA), and frameworks such as ISO 27001, NIST CSF, and PCI DSS.
Manage, maintain, and evolve the information security risk register and risk management framework (e.g., NIST RMF).
Lead, mentor, and develop members of the information security team.
Serve as a trusted advisor to senior management on information security posture.
Prepare clear, actionable reports and recommendations for executive stakeholders and governance committees.
Requirements
7+ years of experience in information security, with proven leadership in governance, risk, and compliance.
Bachelor’s degree in Information Security, Computer Science, Risk Management, or a related field.
CISSP, CISM, CISA, CRISC, or ISO 27001 Lead Implementer/Auditor preferred.
Strong understanding of frameworks such as ISO 27001, NIST CSF, PCI DSS, SOC 2, and relevant regional regulations (CMA, ADGM, FRA, GDPR).
Internal Auditor at Leaseweb responsible for planning audits and assessing IT security frameworks. Collaborating with global teams to enhance security controls and mitigate risks.
Senior Software Engineer building robust full - stack solutions for threat and email security at Hoxhunt. Contributing to comprehensive reporting and threat remediation as part of a collaborative team.
Senior SOC Engineer at Pearson's Security Operations Centre. Leading design, implementation, and optimization of security tooling and infrastructure to enhance detection capabilities.
Information Security Intern supporting infrastructure security initiatives within cloud environments at Inmar Intelligence. Collaboration on automation, system hardening, and secure cloud image development is required.
Security GRC Analyst at ClearBank improving security measures across supply chains. Engage in training programs and threat assessments while collaborating with internal teams.
Career opportunity in cybersecurity with a focus on innovative AI - driven solutions and potential relocation to various locations. We're keen to connect with talented individuals before roles are available.
Manager, Offensive Security leading Capital One's Purple Team to enhance cyber defense posture. Collaborating across teams to address vulnerabilities and improve information security protocols.
Bilingual Security Agent ensuring the safety of people and property for OPENLANE. Responsibilities include surveillance, access control, and customer service at the facility.
Enterprise Sales Executive focusing on AI Security solutions for F5. Collaborating with enterprise account teams and engaging senior stakeholders in driving sales.
Security Engineering Manager responsible for developing enterprise security platforms at Snap. Leading a team to ensure security and operational excellence across the company.