New
Information Security Manager
![]() | |
![]() | |
![]() United States, Minnesota, St. Paul | |
![]() | |
Genesis10 is currently seeking an Information Security Manager for a PERM role with our client in St Paul, MN.
Working Conditions: This position is based in the St. Paul office, with the option for remote work where appropriate. Occasional travel may be required. Participation in after-hours incident response or emergency situations may be necessary. Position Summary: The Information Security Manager is responsible for leading the IT Security Group and overseeing the protection of the company's information assets and technology infrastructure. This role sets the vision and strategy for information security and ensures its execution through well-defined programs and policies. The manager plays a critical role in safeguarding sensitive data, managing enterprise risk, maintaining compliance with applicable regulations and standards, and fostering a security-aware culture throughout the organization. Responsibilities Overview: In this role, the Information Security Manager will lead the development, implementation, and enforcement of security policies, procedures, and standards that support the organization's commitment to information security. This includes performing regular internal audits and assessments to verify compliance and improve security posture across the company. The Manager will be required to work within cross-functional teams such as the Infrastructure team to ensure the ongoing security and compliance of the organization's systems. The manager will maintain a cybersecurity risk management program, conduct annual risk and vendor assessments, and lead the development of mitigation strategies. They will be responsible for planning and delivering organization-wide security awareness training programs, as well as targeted training for IT personnel. This position will also lead the design and execution of the company's incident response plan. The manager will oversee the coordination of detection, investigation, containment, and recovery activities related to security incidents, including management of third-party incident response vendors. Security monitoring and real-time threat detection will be key components of this role. The manager will manage the deployment and operations of monitoring tools, perform event analysis, and maintain relationships with any external security service providers. In the area of vulnerability management, the manager will conduct internal audits and penetration testing, evaluate risks, develop remediation plans, and work with leadership to determine appropriate risk responses. Access control will be overseen through periodic reviews and enforcement of multi-factor authentication where required. The manager will participate in change management activities to evaluate risks associated with infrastructure or application updates. They will also support business continuity and disaster recovery planning by working with departments to develop, test, and maintain BCP and DRP plans that align with security best practices. This role will serve as the point of contact for external audits and security assessments initiated by clients or third parties. The manager will collaborate with the Security Governance team to stay current on regulatory requirements and help shape internal policy and procedure updates accordingly. They will also engage with external authorities as needed during investigations or compliance reviews. The Information Security Manager is expected to mentor and support the security team's professional development. This includes helping staff maintain certifications and access ongoing training opportunities to stay current with evolving technologies and threats. Qualifications: The successful candidate will have a bachelor's degree in Information Security, Computer Science, or a related field, along with at least eight years of experience in the information security field, including three or more years in a leadership role. A strong background in developing and implementing security programs, risk management strategies, and incident response processes is essential. Preferred candidates will hold certifications such as CISSP, CISM, CISA, CRISC, or GIAC. They should have a deep understanding of security frameworks and standards such as SOC 2 Type 2, NIST, and ISO 27001. Familiarity with risk assessment tools, monitoring technologies, and vulnerability management platforms is important. The ideal candidate will also bring strong communication, leadership, and cross-functional collaboration skills, along with a working knowledge of regulatory and data privacy requirements. Compensation: Salary Range: $125-150k We have access to additional contract, contract-to-hire, and direct hire positions with various rate ranges. If you have the qualifications described and are interested in this exciting opportunity, apply today! Ranked a Top Staffing Firm in the U.S. by Staffing Industry Analysts for six consecutive years, Genesis10 puts thousands of consultants and employees to work across the United States every year-in contract, contract-for-hire, and permanent placement roles. With more than 300 active clients, Genesis10 provides access to many of the Fortune 100 firms and a variety of mid-market organizations across the full spectrum of industry verticals. Benefits of Working with Genesis10:
For multiple years running, Genesis10 has been recognized as a Top Staffing Firm in the U.S., as a Best Company for Work-Life Balance, as a Best Company for Career Growth, for Diversity, and for Leadership, amongst others. To learn more and to view all our available career opportunities, please visit us at our website. Genesis10 is an Equal Opportunity Employer. Candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. |