Information Security Officer

New York 3 days agoFull-time External
329.5k - 396.8k / yr
Job Overview We are seeking a dynamic and highly skilled Information Security Officer to lead our organization’s cybersecurity initiatives and safeguard our IT infrastructure. In this pivotal role, you will develop, implement, and oversee comprehensive security strategies aligned with industry standards. This role offers an exciting opportunity to influence our security landscape proactively while working in a fast-paced, innovative environment committed to excellence. Responsibilities: Manage network security measures including firewalls, IDS (Intrusion Detection Systems), VPNs (Virtual Private Networks), and SIEM (Security Information and Event Management) tools to monitor threats and respond swiftly to incidents. Oversee the configuration and administration of IT infrastructure components such as LANs (Local Area Networks), WANs (Wide Area Networks), SANs (Storage Area Networks), cloud architecture (AWS, Azure, Google Cloud Platform), and cloud infrastructure. Lead incident response efforts by conducting vulnerability research, forensic analysis, disaster recovery planning, and incident recovery procedures to minimize operational impact. Implement identity & access management solutions utilizing LDAP, Active Directory, RBAC (Role-Based Access Control), and authentication protocols like FIPS-compliant encryption standards. Collaborate with cross-functional teams using Agile methodologies to develop secure SDLC (Software Development Life Cycle) processes for applications built on Java, Python, PowerShell, Bash scripting, and other scripting languages. Ensure compliance with regulatory standards such as PCI DSS for payment systems and FISMA for federal data security requirements. Conduct regular system security assessments across operating systems including Windows, Linux, macOS, UNIX, and containerized environments like PaaS (Platform as a Service) or IaaS (Infrastructure as a Service). Maintain up-to-date knowledge of attack frameworks, vulnerability research techniques, and emerging cybersecurity threats related to IoT (Internet of Things) devices and cloud computing environments. Experience Proven experience in cybersecurity roles with a strong understanding of computer networking concepts including TCP/IP protocols such as TCP, UDP; DHCP; DNS; IPsec; and network monitoring tools. Hands-on expertise in deploying and managing security solutions like SIEM platforms such as Splunk or equivalent tools; firewall management; load balancing; system administration across diverse operating systems; and system security protocols. Familiarity with cybersecurity frameworks including COBIT, DIACAP, NIST Cybersecurity Frameworks, ITIL practices for incident management and disaster recovery planning. Demonstrated ability to conduct vulnerability assessments using attack frameworks; perform computer forensics investigations; manage incident response processes; and implement robust disaster recovery strategies. Experience working within cloud environments such as AWS or Azure with knowledge of cloud architecture principles including APIs integration for secure operations. Strong background in computer science or related fields with proficiency in scripting languages like PowerShell, Bash shell scripting, Python or Java for automation tasks. Knowledge of compliance standards including PCI DSS for payment card data security; FIPS encryption standards; FedRAMP authorization processes; and relevant international standards like ISO . Join us to be at the forefront of cybersecurity innovation! Your expertise will help shape a secure digital future while working alongside passionate professionals dedicated to excellence in information security management. Job Type: Full-time Pay: $47,684.26 - $57,426.21 per year Work Location: In person