- Company Name
- Helping Hands Home Care
- Job Title
- Information Technology Security Manager
- Job Description
-
Job title: Information Technology Security Manager
Role Summary: Lead the organization’s cybersecurity strategy, ensuring robust protection of data, systems and people. Own policy development, risk management, incident response, training, and vendor oversight while maintaining compliance with GDPR, ISO 27001, NIST and other industry standards.
Expactations: Deliver measurable improvement in security posture and control maturity, achieve compliance with regulatory frameworks, reduce incident severity and frequency, and effectively communicate risk to executive stakeholders.
Key Responsibilities:
- Design, implement and maintain security policies, standards and controls.
- Lead risk assessment, mitigation, and continuous monitoring initiatives.
- Oversee incident response life cycle: detection, containment, investigation, and remediation.
- Analyze security events and vulnerabilities using SIEM, anti‑malware, DLP, and endpoint tools.
- Deliver cybersecurity training and awareness programs to the workforce.
- Partner with IT, Digital, and Operations to embed security into system design, development and deployment.
- Manage third‑party vendors and external partners, ensuring SLA/KPI compliance.
- Maintain organizational compliance with GDPR, ISO 27001, NIST, and other relevant standards.
- Support business continuity and disaster recovery planning to minimize downtime.
Required Skills:
- Proven leadership in IT security management.
- Strong analytical, problem‑solving and communication abilities.
- Ability to translate technical risk into business language and influence stakeholders.
- Experience managing teams and cross‑functional collaboration.
- Deep knowledge of firewalls, encryption, IDS/IPS, SIEM, anti‑malware, DLP, endpoint protection.
- Familiarity with risk assessment frameworks (NIST, ISO 27001).
Required Education & Certifications:
- Bachelor’s degree in IT, Computer Science, Cybersecurity, or related field (Master’s preferred).
- Professional certifications such as CISSP, CISM, CISA or CEH highly desirable.
Desirable:
- Experience in cloud environments (AWS, Azure, GCP).
- Knowledge of DevSecOps, automation tools, and penetration testing solutions.