Information Security Manager
$75 per hourTripleNet Technologies
Key Responsibilities and Duties:
Preferred Skills and Qualifications:
Location: Downtown Seattle (Hybrid)
M-F: 8 AM to 5 PM
Hybrid: 3 days work onsite
Pay: $75 per hour
- Guide security policy and participate in broader Information Security governance efforts.
- Develop and maintain the Information Security Management System (ISMS) in collaboration with regional information security SMEs and technical consultants.
- Oversee and manage the ISMS and recommend appropriate mitigating controls.
- Oversees Information Security Risk Management activities, including risk identification, assessment, and communication to relevant interest holders.
- Provide valuable expertise and leadership directly to the governing Joint Board executive leadership, including sharing metrics to reflect the performance of the regional security program functions, executive risk score reports, and other guidance on a variety of information security topics.
- Facilitate a committee of Information Security SMEs across the Agencies to ensure both regional compliance and concurrence on information security-related matters, recommending solutions, and working from the regional perspective to achieve optimal solutions.
- Collaborate with the Systems Integrator, other vendors, and partner Agencies to ensure security best practices, standards, policies, and regulatory requirements are incorporated into core payment system design, implementation, and sustainment, as well as support other future phase projects.
- Conduct regular security reviews of both software and processes, advising on information security practices. Reviews and creates threat models and recommends security enhancements consistent with information security strategy and evolving threats.
- Support external IT security audits and assessments that focus on operation.
- Develop, update, implement, and conduct information security training programs to support the ISMS objectives.
- Manage approvals for Identity and Access Management (IAM) and Access Control Administration.
- Act as Incident Commander for Security Incident Response activities, whenever the Information Security Incident Response Plan is invoked by the regional program; play an interest holder and oversight role if the plan is invoked by other partners or vendors.
- Participate in information security incident investigation and response efforts; perform root-cause analysis when incidents occur and prepare incident reports.
- Evaluate change requests to determine potential impacts to Information Security, including IT systems, processes, policies, and provide appropriate input to the Change Management process.
- Coach future Regional Operations Team (ROOT) information security personnel as the ISMS becomes complete and mature.
- Keep up to date on latest information security trends, "best practices", threats, and countermeasures.
- Enterprise-level information security plans, policies, standards, guidelines, methods, and practices based on current industry standards, best practices, tools, and techniques.
- Information Security Management Systems, and applicable industry standards (ISO 27001/2).
- Pertinent federal, state, and local laws, codes, and regulations; particularly those that affect information security for payment systems.
- Environments subject to the Payment Card Industry Data Security Standard (PCI DSS), including compliance-related duties.
- Knowledge and understanding of developing and administering information-security standards, practices, audits, risk management, and policy compliance.
- Information Security Audit principles and practices.
- Knowledge of one or more governance frameworks such as COBIT 5, ISO, NIST, or COSO.
- Strong understanding of IT Service Delivery (ITIL) core processes and methodologies.
- Principles, methods, and techniques used in the facilitation of managing projects and leading teams.
- Relevant experience and detailed technical knowledge in security engineering, system and network security, authentication and security protocols, cryptography.
- In-depth knowledge of security software threats and vulnerability mitigation techniques.
- Working knowledge of cloud platforms such as Azure/ AWS and relevant security controls.
- Establishing and maintaining collaborative working relationships with other department staff, management, vendors, and other interest holders.
- Documenting and explaining risks, recommendations, and incident data to technical interest holders.
- Interpreting and administering information security policies, standards, and procedures sufficiently to administer, discuss, resolve, and explain them to staff and other constituencies.
- Leading or supporting an Information Security Management System.
- Generating metrics and preparing reports to facilitate decision-making on security-related activities.
- Utilizing personal computer software programs affecting assigned work and in compiling and preparing spreadsheets and reports.
- Responding to inquiries with effective oral and written communication.
- Researching, analyzing, and evaluating new security processes, products, and techniques.
- Excellent time management skills including the ability to prepare, prioritize, and complete work plans.
- Working effectively under pressure, meeting deadlines, and adjusting to changing priorities.
- Writing of technical documentation and standards, including skill in English usage, spelling, grammar, and punctuation
- At least one of the following (in valid status):
- Certified Information Systems Security Professional (CISSP).
- Certified Information Security Manager (CISM).
- Certified Information Security Auditor (CISA).
- Other industry relevant certifications in the fields of information security, project management, auditing and/ or risk management, such as the Certification in Risk and Information Systems Control (CRISC)
Preferred Skills and Qualifications:
- Knowledge of Governance, Risk, and Compliance (GRC) tools.
- Principles of leadership, supervision, training, and performance evaluation.
- Extensive knowledge of risk-based methodologies, and one or more of the following frameworks: ISO 27001/2:2017, 27005:2011, and 31000; PCI-DSS; or NIST 800-53.
Location: Downtown Seattle (Hybrid)
M-F: 8 AM to 5 PM
Hybrid: 3 days work onsite
Pay: $75 per hour
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Information Security Manager in Seattle, WA vacancy
- Overview The Information Security Manager, working with in Corporate Information Security Team will be responsible for liaising with assigned business units on behalf of Corporate Information Security (CIS). These responsibilities will include understanding business-driven...SuggestedLocal area
$75 per hour
A technology services firm in Seattle is seeking a skilled Information Security Manager to oversee the Information Security Management System (ISMS) and ensure compliance with regional and federal standards. The role involves guiding security policy, developing training...SuggestedHourly pay$260k - $365k
A prestigious legal recruiting firm is looking for a Mid-Level Associate specializing in Data Privacy and Cybersecurity Transactions. You will provide strategic counsel in M&A and tech deals, with 3-5 years of relevant experience. This role offers a competitive base salary...Suggested$310k - $420k
A prominent law firm is seeking an associate for its Cyber/Data/Privacy practice in Seattle. The ideal candidate will have 4 to 7 years of experience in privacy compliance law, including knowledge of CCPA, CPRA, and GDPR. Responsibilities include advising clients on cybersecurity...Suggested$58.77 - $88.15 per hour
...Job Number: 105699 Department: Information Technology Opening Date: 06/04/2026... ...looking for an Enterprise Cybersecurity Manager to join our team! This role will drive policy... ...governance, and training, while embedding security into operations and digital initiatives....SuggestedBi-weekly payHourly payFull timeContract workTemporary workPart timeWork experience placementWork at officeRemote workFlexible hours- ...professional for a cybersecurity role at CVS Health in Washington. You will define operational activities related to Cyber Resiliency, manage compliance procedures, and oversee cyber resiliency testing. The ideal candidate should have extensive experience in cyber...Full time
- Job Title: Senior Information Systems Security Officer Location: Ft. Washington, MD Clearance: TS Required Travel: Minimal Description: Senior... ...systems and data. Responsibilities Design, deploy, and manage security solutions (Scanning, IDS/IPS, NIDS/NIPS, SIEM) in...
- Information System Security Officer (ISSO) Barbaricum is a rapidly growing government contractor providing leading-edge support to federal customers... ...as ACAS (Tenable Nessus) and SCAP (STIG benchmark) and manage a Plan of Actions and Milestones (POA&M) for remediation...For contractors
- ...Come join our team! Zantech is looking for a talented Senior Information System Security Officer to be responsible for the most complex systems and... ...(SSPs) Conduct security assessments and authorize systems Manage Plans of Action and Milestones (POA&Ms) Coordinate with...Contract work
$136.2k - $178.7k
...About this team lululemon Engineering is dedicated to building secure, reliable, and performant products for our guests and partners.... ...to production). You will work closely with a Technology Manager, using your experience and knowledge to guide a team of Engineers...Permanent employmentPart timeWork experience placement- ...Virtual Chief Information Security Officer (CISO) About the Company Flourishing provider of market research & business intelligence services... ...enterprise cybersecurity programs. Strong governance, risk management, and executive communication skills are essential, as is...Part time
$87.7k - $164k
...Today’s world is fuelled by vast amounts of information. Data is more valuable than ever before.... ..., and everyone in EY Information Security has a critical role to play. Join a global... ...perceived security threats Maintain, manage, improve and update security incident process...Summer holidayLocal areaFlexible hours$147.3k - $193.3k
...consistency across every market and channel. core Responsibilities: As a Senior Cybersecurity Engineer, you will lead complex security engineering initiatives, designing and implementing security controls, platforms, and solutions that protect critical systems at...Permanent employmentPart timeWork experience placement- ...Chief Information Security Officer (CISO), Growth About the Company Accomplished provider of top-tier security services Industry... ...include developing and maintaining a robust security program, managing security incidents, and ensuring compliance with relevant regulations...
- ...Chief Information Security Officer (CISO) About the Company Ambitious educational institute Industry Higher Education Type... ...Universities Colleges & Universities Specialties Information Management Librarianship Informatics Information Science...
- ...consulting firm in Washington is looking for a skilled professional to conduct customer outreach, manage IT services, and provide strategic recommendations on cyber security tools. Candidates should have at least 2 years of experience with FireEye tools, familiarity with...
$200k - $280k
...an ever-changing world. For additional information, visit us at Job Description:... ...be responsible for driving sales of our security group. The ideal individual will have... ...IAM, GRC, SOC, SIEM, compliance, risk management, selling to Technology & Communications...Flexible hours$144.9k - $265.8k
...Entra, Okta, Ping, Saviynt Design cloud security and IAM architectures for Azure, AWS,... ..., authorization, identity management) Design and re-engineer processes for... ...California, please click here for additional information. EY focuses on high-ethical standards...Work experience placementSummer holidayFlexible hours$153.6k - $192k
...seeking a Senior GRC Engineer in Seattle to drive critical Governance, Risk, and Compliance processes. This role involves automating security controls and building integrations to maintain compliance as Brex expands. Candidates should have over 5 years of experience in...$87.7k - $164k
Ernst & Young Oman is seeking a Cyber Triage and Forensics Incident Analyst in Seattle. This role involves investigating security incidents, performing digital forensic analyses, and supporting remediation efforts. The ideal candidate will have over 5 years of experience...Flexible hours$165k - $215k
...highly technical, developer-oriented Senior Security Engineer to focus on securing our... ...and emerging AI security initiatives Manage security testing and vulnerability remediation... ...to your candidacy, including personal information, for a period that is reasonably...Temporary workWork at officeLocal area$144.9k - $265.8k
...Entra, Okta, Ping, Saviynt Design cloud security and IAM architectures for Azure, AWS,... ...authentication, authorization, identity management) Design and re‑engineer processes for... ...identity/expression, pregnancy, genetic information, national origin, protected veteran...Work experience placementSummer holidayFlexible hours$104k - $156k
...Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security,... ...~ Partner with IT on device management, deployment, and lifecycle security... ...~ Bachelor's in Computer Science, Information Security, or equivalent experience....Remote work$187k - $220k
...team with ethics at the center of everything we do. Expectations are high, and so are the rewards. The Product and Application Security team builds and operates systems that help engineers identify and resolve security risks earlier in the software development lifecycle...Work at officeFlexible hoursShift work3 days per week- ...Analyst Core Focus Areas ~40% - Security Operations and Monitoring ~30% -... ...protection of Controlled Unclassified Information (CUI). Maintain accurate documentation... ...2,000 - $88,000 10% Performance Bonus: Management Incentive Plan Equal Opportunity Employer...
$234.4k - $385k
...About the Team Security is at the foundation of OpenAI's mission to ensure that artificial... ...strategies. Vulnerability Management : Track, analyze, and manage vulnerabilities... ...you: Extensive experience in information security, cybersecurity, or a related...Work at officeRemote workRelocation package$90k - $100k
...Investments, our purpose is to improve financial security for people. We are seeking a... ...Analyst to advance our Human Cyber Risk Management program while supporting enterprise-wide... ...programs, including quarterly, threat-informed campaigns Execute phishing simulations...Visa sponsorship$147.3k - $193.3k
...our people. About this team The Security Operations Center (SOC) is responsible for... ...risk, and generate insights that inform both strategic and operational decision-... ...efforts and establishing vulnerability management approaches integrating threat intelligence...Permanent employmentPart timeWork visa$237.6k - $297k
...We are seeking a highly technical Security Engineer to join our Product Security team.... ...ensure secure and efficient infrastructure management. Guide engineering teams to build... ...Know Your Rights poster for additional information. We comply with the United States...Full time$165k - $242k
...What You'll Do: The Enterprise Security team at CoreWeave is responsible for securing... ...initiatives across identity, access management, device and endpoint security, and SaaS... ...origin, veteran status, or genetic information. As part of this commitment and consistent...Permanent employmentTemporary workFor contractorsCasual workWork at officeRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Manager. Be the first to apply!
Related searches
- information security compliance analyst Seattle, WA
- entry level information security analyst Seattle, WA
- information security analyst Seattle, WA
- director information security Seattle, WA
- information security Seattle, WA
- sr information security engineer Seattle, WA
- senior director information security Seattle, WA
- senior information security analyst Seattle, WA
- data center security officer Seattle, WA
- information security lead Seattle, WA


