Information Security Manager (Washington) Job at Conference of State Bank Supervisors (CSBS), Washington DC

MEVHMG5zeEVVRnlqV3U1K012KzN1Wk9XNHc9PQ==
  • Conference of State Bank Supervisors (CSBS)
  • Washington DC

Job Description

Job Summary

The Information Security Manager is responsible for developing, implementing, and maintaining the organization's information security program aligned to FISMA and the NIST Cyber Security Framework to ensure the confidentiality, integrity, and availability of our information and information system assets. This includes the development of policies, procedures, processes, creation of Security Authorization packages, and oversight of monthly Continuous Monitoring reports, which include vulnerability scanning, interviews, and system testing.

The manager supports security engineering architecture reviews of CSBS information systems, ensuring they are designed and built around protection needs with proven security architectures. They work with stakeholders, including system owners, engineers, auditors, and the security department, to develop deliverables, recommend solutions, and maintain or establish Authority to Operate (ATO) statuses for systems and platforms.

Essential Functions

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. Reasonable accommodations may be made for individuals with disabilities. Other duties may be assigned to meet business needs.

This role involves hands-on tasks to monitor and manage the security posture of CSBS's IT services, including analysis and evaluation of system design, architecture, and engineering practices.

Security Program Management

  • Develop security programs and projects with the CISO to address risks and security requirements.
  • Assess threat landscapes, analyze risks, and report findings.
  • Collaborate on budget projections, compliance monitoring, policy updates, vendor contracts, incident management, and security metrics development.

Security Engineering Architecture Reviews

  • Ensure security considerations in architecture and hardware/software evaluations.
  • Recommend technical controls, oversee security projects, and lead deployment of new security technologies.

CSF and RMF ATO Support

  • Develop security documentation such as SSPs, SARs, risk assessments, and contingency plans.
  • Participate in governance, manage vendor compliance, oversee risk management, and improve processes.

Additional Responsibilities

  • Monitor industry trends, contribute to forums, and implement planning and policy changes.

Minimum Qualifications

  • Bachelor's degree in relevant field or equivalent experience.
  • Certifications such as CISSP, GIAC, or CCSP required.
  • 12+ years of relevant experience, including 10+ in InfoSec, with expertise in risk assessments, cloud/mobile environments, and NIST standards.

Knowledge, Skills, and Abilities

  • Developing security policies, understanding network security principles, and familiarity with industry standards.
  • Deep knowledge of security technologies, cloud security, scripting, incident response, and effective communication skills.

Requirements

  • Interaction with confidential supervisory information, disclosure of conflicts of interest, and eligibility for a U.S. Government clearance.

Values and Leadership

CSBS emphasizes work-life balance, collaboration, leadership at all levels, and a culture of honesty, respect, and innovation.

Working Conditions

  • Office environment, some travel required.

This description is subject to revision, and employment is at-will.

Compensation

Offers are based on experience and market, with comprehensive benefits, flexible work arrangements, and an inclusive culture. More details are available on CSBS Careers.

#J-18808-Ljbffr

Job Tags

Full time, Work at office, Flexible hours,

Similar Jobs

Tripadvisor

Fraud Manager - Trust & Safety Job at Tripadvisor

 ...With over a billion reviews and opinions published on Tripadvisor, and hundreds more coming in every minute, it's vital for our Trust & Safety team to detect and block fraudulent or otherwise biased content in order to maintain Tripadvisor's position as the most trusted... 

Tidal Financial Group

Junior Trader Job at Tidal Financial Group

 ...four days a week , with one to two days per week remote . About The Role Tidal is seeking a highly skilled ETF Fund Manager/Trader responsible for the implementation and management of various Exchange-Traded Fund (ETF) portfolios. An ideal candidate will have... 

Glow Cleanup LLC

Weekly/Nightly Janitorial Cleaning Associate Job at Glow Cleanup LLC

 ...Great! Position Details: We're hiring for nightly/weekly janitorial roles in high-end...  ...flexible scheduling. Schedule: Night Shift: 5:00 pm-11:00 pm (extended hours as needed...  ...to make a difference! Job Type: Part-time Location: Cincinnati, Blue Ash, Sharonville... 

Advanced Psychotherapeutics, PLLC

Clinical Psychologist Job at Advanced Psychotherapeutics, PLLC

 ...noninvasive brain stimulation interventions for treating a variety of mental illnesses to include TBI. We also provide extensive psychological evaluation services and provide more psychological evaluations than any practice in the Commonwealth. While not required, we... 

Exelon

Assistant General Counsel - ComEd Interconnection (Hybrid) Job at Exelon

 ...safety, innovation, integrity and community service. We are a Fortune 200 company, 19,000 colleagues strong serving more than 10 million customers at six energy companies -- Atlantic City Electric (ACE), Baltimore Gas and Electric (BGE), Commonwealth Edison (ComEd),...