Information Security Manager
$140k - $170kCypress Creek Renewables
The Company Cypress Creek Energy is powering a sustainable future, one project at a time. We develop, finance, own and operate utility-scale and distributed solar and storage projects across the country. Fostering a diverse group of innovative thinkers from all backgrounds, Cypress people are drawn to work in a purpose-driven organization. We hope you will join us. Overview Cypress Creek Energy is hiring an Information Security Manager to lead the company's security operations and compliance program. This is a hands-on individual contributor role designed for a senior technical security professional ready to take ownership of a complete program - with the opportunity to grow into a leader of a team as the function scales.
The successful candidate brings a balance of deep technical execution and program-level compliance maturity. You will own the day-to-day security tooling stack, lead the company's NIST-based compliance program, shape policy in emerging areas including artificial intelligence, and maintain an accurate view of every system in the environment. You will report directly to the Chief Technology Officer and partner closely with IT, Counsels, and business stakeholders across the company.
Responsibilities Security Operations & Engineering
A note to Recruiting Agencies Cypress Creek Energy Human Resources team does not accept unsolicited resumes from third party recruiters, staffing firms, or related agencies. The Human Resources team coordinates all recruiting and hiring at our company. We do not accept resumes from third-party recruiters unless authorized by the Human Resources team and if a signed agreement is in place. Any unsolicited resumes will be considered property of CCE and we are not responsible for any related fees. All communication related to recruiting partnerships should ONLY be directed to the Human Resources team. Cypress Creek Energy is an equal opportunity employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or veteran status. We are committed to providing a workplace that is inclusive and values diversity, and we encourage candidates from all backgrounds to apply. Please be aware of recruiting scams-official communications will only come from @ccrenew.com, we will never request personal or financial information, and any suspicious activity should be reported to View email address on click.appcast.io.
The successful candidate brings a balance of deep technical execution and program-level compliance maturity. You will own the day-to-day security tooling stack, lead the company's NIST-based compliance program, shape policy in emerging areas including artificial intelligence, and maintain an accurate view of every system in the environment. You will report directly to the Chief Technology Officer and partner closely with IT, Counsels, and business stakeholders across the company.
Responsibilities Security Operations & Engineering
- Endpoint security: Administer and tune Microsoft Defender across the endpoint estate, including policy configuration, alert triage, response, and reporting.
- Network and access security: Manage the Zscaler platform (ZIA/ZPA), including policy development, traffic inspection, access controls, and integration with identity systems.
- SIEM operations: Own SIEM tuning, detection engineering, log source onboarding, alerting, and incident workflows. Build dashboards and metrics that surface meaningful signals.
- Vulnerability management: Run the vulnerability scanning program across AWS and Azure cloud environments and on-premises infrastructure. Prioritize, track, and verify remediation in partnership with IT and engineering teams.
- Patch management: Maintain endpoint patching cadence and reporting, ensuring coverage, exception tracking, and SLA adherence.
- Digital forensics & incident response: Lead investigations into security events, perform forensic analysis, document findings, and coordinate response with internal teams and external partners as needed.
- NIST-based program: Maintain and continuously improve the company's NIST Cybersecurity Framework-aligned security program, including controls mapping, evidence collection, and gap remediation.
- Policy management: Own the security policy library - ensure policies and standards are current, reviewed on a defined cadence, approved through the right channels, and communicated to the business.
- AI policy and guidance: Develop and maintain the company's AI usage policies, acceptable use guidance, and review process for new AI tools, in coordination with Counsels and IT.
- System inventory: Build and maintain an authoritative inventory of systems, applications, data flows, and ownership. Keep it accurate as the environment evolves.
- Audit and assessment support: Lead responses to internal and external audits, customer security reviews, and regulatory inquiries. Manage remediation of identified findings through closure.
- Risk management: Identify, document, and track information security risks; propose mitigations and report on residual risk to leadership.
- Stakeholder engagement: Partner with IT, Counsels, HR, and business leaders on security matters, providing clear guidance that balances risk with business needs.
- Operational Technology (OT): Act as a partner and advisor to the OT team coordinating security and compliance initiatives across the company. Manage intersection of IT and OT endpoints, systems, and networks.
- Security awareness: Drive the security awareness program, including phishing simulations, training content, and ongoing communications.
- Vendor and third-party risk: Assess and manage security risk associated with vendors, contractors, and third-party service providers.
- Future team leadership: Lay the groundwork to scale the function. As the program matures, hire, mentor, and lead a team of security professionals.
- Use of AI to enhance and scale security operations - establish AI first Security Ops
- Bachelor's degree in computer science, information systems, cybersecurity, or related field - or equivalent professional experience.
- 5+ years of progressive experience in information security, with demonstrated depth in security operations, engineering, or a combination of both.
- Hands-on administration and tuning experience with Microsoft Defender (Endpoint, Identity, Cloud).
- Production experience operating Zscaler (ZIA and/or ZPA), including policy management and troubleshooting.
- Strong SIEM experience - building detections, tuning alerts, investigating incidents, and onboarding log sources.
- Vulnerability management experience across cloud environments, specifically AWS and Azure.
- Working knowledge of digital forensics and incident response methodology.
- Demonstrated experience operating a security program aligned to the NIST Cybersecurity Framework or NIST 800-53.
- Track record of writing, maintaining, and operationalizing security policies and standards.
- Clear written and verbal communication, including the ability to explain technical risk to non-technical audiences.
- Ability to work from the Durham, NC or Washington, DC office three days per week.
- Embrace and live by the mission and values of Cypress Creek Energy
- Industry certifications such as CISSP, CISM, GIAC (GCIH, GCFA, GCIA), or equivalent.
- Experience operating in the energy, utility, or critical infrastructure sector.
- Familiarity with NERC CIP or other regulatory frameworks relevant to the power sector.
- Experience scripting or automating security workflows (Python, PowerShell, KQL).
- Prior experience as a senior technical lead preparing to step into a manager role.
- 15 days of Paid Time Off, accrual up to 20 days, 11 observed holidays.
- 401(k) Match
- Comprehensive package including medical, dental, vision and health insurance
- Wellness stipend, family planning stipend, and generous parental leave
- Tuition Reimbursement
- Phone Bill Reimbursement
- Company Swag
A note to Recruiting Agencies Cypress Creek Energy Human Resources team does not accept unsolicited resumes from third party recruiters, staffing firms, or related agencies. The Human Resources team coordinates all recruiting and hiring at our company. We do not accept resumes from third-party recruiters unless authorized by the Human Resources team and if a signed agreement is in place. Any unsolicited resumes will be considered property of CCE and we are not responsible for any related fees. All communication related to recruiting partnerships should ONLY be directed to the Human Resources team. Cypress Creek Energy is an equal opportunity employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or veteran status. We are committed to providing a workplace that is inclusive and values diversity, and we encourage candidates from all backgrounds to apply. Please be aware of recruiting scams-official communications will only come from @ccrenew.com, we will never request personal or financial information, and any suspicious activity should be reported to View email address on click.appcast.io.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Information Security Manager in Durham, NC vacancy
$140k - $170k
...Cyber Security Manager $140K-$170K Durham, NC Permanent Overview: We are seeking an Information Security Manager to lead security operations and compliance programs across the organization. This is a hands-on individual contributor role designed for a senior...SuggestedPermanent employmentFor contractorsWork at office$190k
...Software, Cybersecurity, and Technology Risk Management. Our Tech Advisory and Delivery Chapter... ...our BCG Culture and Values for more information. BCG Platinion's presence spans... ...functional stakeholder groups to existing security teams. You're Good At:...SuggestedWork at office$109.62k - $165k
...Information Security Officer HireNetworks has partnered with Durham County, NC to find them a tenured Information Security professional... ...Function as the principal cybersecurity strategist and risk manager, holding broad decision-making authority for information...SuggestedContract workWork at officeLocal areaRelocationVisa sponsorship- ...Job Description: Global Cybersecurity Project Manager IT Charlotte, North Carolina; Durham, North Carolina Hybrid... ...Cybersecurity or IT ~1+ years of experience managing cybersecurity, security and infrastructure projects ~1+ years of demonstrated...SuggestedFull time
- ...and drive adoption of key principles of secure software development and security tooling... ...model College Degree preferred Manage projects from end to end and provide scheduled... ...provide subject matter expertise in information security principles and secure software...SuggestedTemporary workWorldwide
- ...Cybersecurity Analyst. This is a broad-based consulting and risk management role, which requires experience and understanding of modern... ...processes and groups (and across DoD and VA) and for maturing cyber security capabilities for the single EHR, in a large, multi-stakeholder...Work at office
$105.79k - $141.05k
...network and connected ecosystem. We enable secure, high‑performance connectivity across... ...join us today. The Role The Senior Information Security Auditor is an experienced... ...and as an experienced member of a team to manage the execution of multiple security controls...Full timeTemporary workRemote work- ...Senior Director, Cyber Security Detection and Response Synopsys is the leader in engineering... ...a beat. You do not wait for perfect information. You assess, decide, and move. You have... ...leading cross-functional response, managing executive communications, and driving post...
- ...Benefits Information Equal Opportunity Employer Overview Are you looking for... ...-art facilities and the provision of management services and evidence-based rehabilitation... ...ensures that detainees are properly secured prior to leaving the hospital. Ensures...16 hoursContract workImmediate startWorldwideFlexible hoursShift workNight shift
- ...emergency response operations and works within established incident management frameworks to enhance outbreak readiness and execution. In... ...Servesasa central pointof contact for consolidating response information and supporting internal coordination during active outbreaks....Full timeContract workWork experience placementWork at officeLocal area
$89k - $143.75k
...Performing periodic risk assessment of security vulnerabilities in software for the product... ...processes outlined in the Quality Management System. Qualifications / Requirements... ...calendar year. For additional general information on Company benefits, please go to:...Full timeTemporary workWork at officeLocal areaRemote workNight shift- Sierra Space is hiring a Mechanical Engineer II in Durham, NC. The candidate will solve technical problems related to mechanical systems and collaborate with teams to meet project goals. A Bachelor's degree and 2+ years in Mechanical Engineering are required, along with...
$15.36k - $23.04k
...Lead Security Engineer (AI) – Product Security USA, Durham; USA, Miami; USA, Palo Alto; USA, Washington DC Nu is one of the largest... ...in the company. The AI Security team, part of Nubank's Information Technology & Security area, is responsible for ensuring that AI...Work at officeWork from homeRelocation packageFlexible hours$41.16k - $51.44k
...24-25-00012 Division: Campus Operations Department: Security Opening Date: 09/16/2024 Closing Date: Continuous FLSA... ...are logged and corrected; # Protect the confidentiality of information acquired through performance of duty; # Assist campus police...Full timeFlexible hoursShift workNight shiftWeekend workAfternoon shiftWeekday work- ...BSPS) is currently seeking a qualified Security Officer for CDC at Research Triangle Park... ...reports contain but are not limited to information concerning safety issues, general,... ...response capability and assist in emergency management situations, acts of terrorism, bomb...Permanent employmentTemporary workFor contractorsWork at officeShift work
- ...enhancing their capability to lead purposeful, active, healthy and secure lives. As a Security Officer and a Forest Team Member... ..., sex, disability, religion, national origin, age, genetic information, gender, gender identity or any other class of unique or...For contractorsShift workNight shiftAfternoon shift2 days per week
$19 per hour
...Sunstates Security Job Opportunity Become part of one of the largest and fastest-growing... ...the tools, knowledge, and hands-on management support necessary for long-term success... ...School diploma or equivalent Additional Information / Benefits The Sunstates...Weekly payPart timeCurrently hiringNight shiftWeekend workAfternoon shift$19 per hour
...Security Officers - Weekends - $19/hr (#93) Durham, NC, United States of America $... ...with the tools, knowledge, and hands-on management support necessary for long-term success... ...School diploma or equivalent Additional Information / Benefits The Sunstates...Weekly payPart timeCurrently hiringImmediate startShift workNight shiftWeekend workAfternoon shift$20 per hour
...Job Description: GardaWorld Security Services is Now Hiring a Response Security Officer! Ready to suit up as a Special Response/Flex Security Guard Must have an active PPSB license Must have a valid Driver's License. Must be over the age of 21 years old. Must have at...Hourly payCasual workLocal areaImmediate startAll shiftsFlexible hoursShift workNight shiftDay shiftAfternoon shift- ...Concierge Security Officer GardaWorld Security Services is now hiring a Concierge Security Officer! Ready to suit up as a Security... ...duties like welcoming, verifying identity, and guiding visitors Manage access control Perform regular patrols to identify potential...Hourly payFull timeCasual workWork at officeLocal areaImmediate startAll shiftsMonday to Friday
$23.16 per hour
...Security Officer Patrol With Active Secret Clearance Overview Allied Universal, North America's leading security and facility services... ...sexual orientation, gender identity, national origin, genetic information, disability, protected veteran status or relationship/...Part timeLocal areaShift work$15 - $18 per hour
...Security Officer We help make your world a safer place. Securitas is a global company that offers the most advanced and sustainable... ...our Security Officers will provide customer service and information to a client ' s employees and customers. We are driven by a...Weekly payFull timeLocal areaWorldwideFlexible hours- ...looking for a rewarding career in the security industry? Join St. Moritz Security Services... ...guidelines and as directed by SMSSI Management. May be responsible for conducting walking... ...NC #1804-GP #IND2 Additional Information / Benefits Benefits: Medical...Full timeTemporary workWork experience placementShift workWeekend workDay shift
- ...General Information Req # WD00098907 Career area: Information Technology Country... ...Lenovo's AI Governance and Product Security organization within the Chief AI Office... ...Lead the requirements, vetting, and management of third-party and first-party AI security...Full timeWork at officeLocal area
- ...Quality compliance operations. By executing high-volume, detail-oriented tasks across product regulatory processes and the PCS Quality Management System (QMS), you will help maintain data integrity, support inspection readiness, and reduce operational backlog. Your...Temporary workImmediate start
- ...confirmation. Ensures audit readiness & shares ideas & solutions with other departments & sites. Relationships Reports to Manager, Quality Control Support. Essential Functions Responsible for preparing & updating stability protocols & reports Trend...Local area
- ...Armed Protective Security Officer Join our dynamic team at Hana Technologies and Systems Inc.! Are you a skilled and experienced Protective Security Officer (PSO) seeking a fulfilling career opportunity? Look no further! HTS is actively seeking dedicated individuals...Permanent employmentContract workShift work
- ...staff during the implementation of the statewide Child Welfare Information system (CWIS). This is NOT a Desktop Support or Help Desk... ...and/or unexpected outcomes within the CWIS and/or escalate to management as they arise. This position uses policy subject matter expertise...Daily paidContract workFor contractors
- ...Posting Details Position Information Position/Classification Title IT Security Professional I Working Title IT Security Professional I Position... ...the university's cybersecurity, governance, risk management, and compliance initiatives. The office works...Permanent employmentFull timeInternshipWork at officeFlexible hours
- ...Unarmed Security Officer Command Center Durham, North Carolina Marksman Security is built on serving our clients and building... ...integration with elevators, fire panels, intrusion systems, and visitor management. CCTV / Video Management Systems Proficient with...Shift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Manager. Be the first to apply!
Related searches
- sr information security engineer Durham, NC
- information security lead Durham, NC
- data center security officer Durham, NC
- information technology security engineer Durham, NC
- information security Durham, NC
- information system security engineer
- information security compliance analyst
- senior director information security
- info security analyst
- sr information security engineer



