Назад
Company hidden
2 дня назад

Sr. InfoSec Program Manager (Cybersecurity)

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Sr. InfoSec Program Manager (Cybersecurity): Managing the execution of the security program roadmap and coordinating cross-functional dependencies with an accent on audit compliance, security metrics, and executive reporting. Focus on translating technical data into board-level narratives, maintaining audit-readiness for SOC 2 and ISO 27001, and optimizing security tool lifecycles.

Location: Remote (United States)

Company

hirify.global is a global leader in digital and biometric identity authentication, fraud prevention, and mobile deposit solutions.

What you will do

  • Own the security program roadmap at the execution level across all security functions and manage cross-functional dependencies.
  • Build and maintain the security metrics framework, including vulnerability SLA compliance and incident-response timelines.
  • Produce high-level dashboards and reports for the board, SEC disclosures, and audit committees.
  • Coordinate evidence collection for SOC 2, ISO 27001, and PCI-DSS audits and maintain year-round audit-readiness.
  • Manage the security policy lifecycle, awareness training programs, and phishing simulations.
  • Oversee security-tool contracts, renewals, and MSSP relationship logistics.

Requirements

  • 5–8 years of experience in security or IT program management.
  • Working familiarity with NIST CSF, SOC 2, ISO 27001, and PCI-DSS.
  • Experience with cross-functional program management in regulated or compliance-driven environments.
  • Strong written communication skills for executive and board-level reporting.
  • Proven experience coordinating audits, including evidence collection and finding tracking.
  • Must be based in the United States.

Nice to have

  • Experience in financial services, fintech, or SaaS for regulated industries.
  • Familiarity with GDPR, NIS2, or DORA.
  • Professional certifications such as PMP, CISM, or CISSP.
  • Experience with SEC cybersecurity disclosure or public-company reporting.
  • Experience in MSSP relationship management.

Culture & Benefits

  • Virtual-first culture with flexibility in work location and preference.
  • Comprehensive wellness options including universal, supplemental, and private healthcare.
  • Financial security through retirement/pension plans and MTK stock plan participation.
  • Generous paid time off, including annual leave, company holidays, and volunteer time.
  • Learning and development support via e-learning licenses, tuition reimbursement, and hackathons.
  • Home office setup allowance and additional perks like pet insurance and legal assistance.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →