Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Manager

$115k - $125k

Acumen Technology

Acumen Technology is a security-first Managed Service Provider (MSP) founded in 2016, serving financial institutions, healthcare organizations, and other businesses that take IT and cybersecurity seriously. With more than 25 years of leadership experience in financial services technology, Acumen’s deepest roots are in community banks, credit unions, and regulated financial institutions, while also supporting clients in professional services, healthcare, and construction. Acumen is SOC 2 Type II certified, FFIEC-aligned, and has been recognized on the Inc. 5000, CRN MSP 500/50 , and Nashville Business Journal’s Best Places to Work lists . Our vCISO practice provides hands‑on security leadership to organizations that need more than guidance—they need execution. Being part of the Acumen team means more than just great work. It includes weekly in‑office lunches, memorable company events, a comprehensive benefits package, and, most importantly, training in the fine art of holding entire conversations using nothing but GIFs. ROLE This is a hands‑on practitioner role. You will meet with clients, assess their security posture, and then do the work - drafting the policy, completing the risk assessment, building the remediation plan, and delivering it back to the client in a finished, usable form. The right candidate thrives on the full cycle: client meeting → assessment → heads‑down execution → polished deliverable back in the client’s hands. You will manage a portfolio of clients that is predominantly financial institutions - community banks, credit unions, and financial services firms make up approximately 80% of the practice. The remainder includes clients in professional services, healthcare, and construction. On any given week, you might: Spend a morning walking a community bank through their pre‑exam request list, then spend the afternoon drafting their written response findings. Design and facilitate a tabletop exercise for a bank's leadership team simulating a ransomware event, then write up the after‑action report and deliver it within the week. Review vendor SOC 2 reports that came in for a client, assess the findings, and produce a risk summary the bank’s risk committee can act on. Rewrite a client's outdated Acceptable Use Policy and Information Security Policy to align with current FFIEC guidance and have both ready for board approval. Lead a SOC 2 readiness check‑in with a professional services client, update their evidence tracker, and coordinate with their external auditor on outstanding items.

KEY RESPONSIBILITIES

Bank Exam & Audit Support Serve as the primary point of contact for clients preparing for FDIC, OCC, NCUA, and state banking regulator IT examinations, owning the preparation process from start to finish. Organize and package audit requested items, complete pre‑exam readiness checklists, and produce written summaries of control effectiveness that clients can hand directly to examiners. Review third‑party audit findings and examination results, then draft formal written responses, corrective action plans, and remediation timelines on the client’s behalf. Track open findings and recommendations to closure, producing status updates and evidence packages at each milestone. Maintain current knowledge of FFIEC IT Examination Handbook updates and translate regulatory changes into specific, actionable steps for each client. Document client check‑ins using Microsoft Planner or a similar task‑management tool, ensuring all action items, deliverables, and blockers are clearly captured, assigned, and tracked through resolution. SOC 2 Readiness Lead clients through SOC 2 Type I and Type II readiness assessments including scoping, gap analysis, control testing, and evidence collection. Produce formal gap analysis reports with prioritized remediation roadmaps in finished, client‑ready form. Build and maintain client control evidence libraries and audit packages, keeping documentation current between audit cycles. Coordinate with external auditors on the client's behalf and serve as the primary point of contact throughout the audit process. Tabletop Exercises Design, facilitate, and debrief tabletop exercises for community bank clients covering security incident response, business continuity, and disaster recovery scenarios. Develop realistic, client‑specific exercise scenarios based on current threat intelligence and regulatory expectations for financial institutions. Produce written after‑action reports documenting exercise findings, gaps identified, and recommended improvements, delivered to the client within an agreed turnaround. Update client incident response, business continuity, and disaster recovery plans based on exercise outcomes. Third‑Party & Vendor Risk Review third‑party vendor audit reports (SOC 2, penetration tests, security assessments) on behalf of clients and produce written summaries of findings and risk exposure. Draft formal vendor risk assessment responses and management memos that clients can file, present to examiners, or include in board reporting. Maintain client vendor inventories and assessment schedules, tracking due dates and ensuring assessments are completed on time. Security Policy Development Draft, update, and maintain client information security policies, standards, and procedures written in plain language, tailored to each client’s environment, and ready to adopt without further editing. Conduct periodic policy reviews against current FFIEC guidance, NIST CSF, and SOC 2 requirements and produce updated versions that reflect any gaps or regulatory changes. Manage client policy libraries to ensure all documents are versioned, reviewed on schedule, and accessible for audit purposes. Ongoing Client Engagement Meet regularly with client stakeholders to review program status, prioritize the work queue, and present completed deliverables. Manage a multi‑client portfolio with disciplined task tracking, clear timelines, and consistent follow‑through on every commitment made in a client meeting. Serve as an advisory resource during client security incidents, providing written guidance on containment, notification obligations, and regulatory reporting requirements. 3+ years of information security experience with a strong emphasis on hands‑on program execution — risk assessments, policy writing, audit preparation, and control documentation. Deep, working knowledge of the FFIEC IT Examination Handbook requirements, including the new tools available to replace the retired Cybersecurity Assessment Tool (CAT). Direct experience completing SOC 2 readiness assessments and producing formal gap analysis and remediation documentation. Demonstrated ability to author professional‑grade security deliverables - policies, risk assessments, remediation plans, board summaries - independently and to a high standard. Strong written communication skills; comfortable producing polished, client‑facing documents without editorial support. Proven ability to manage multiple client engagements simultaneously with discipline, reliability, and follow‑through. Active CISSP, CISM, CRISC, or equivalent certification. Direct experience preparing financial institutions for FDIC, OCC, or NCUA IT examinations and responding to regulatory findings. Familiarity with GRC platforms commonly used in financial services (e.g., Ncontracts, LogicManager, or similar). Working knowledge of HIPAA security rule requirements for healthcare clients and general compliance frameworks applicable to professional services environments. Experience with Microsoft 365 security controls as deployed in community bank and small‑to‑mid‑market business environments. Background in an MSP, consulting firm, or multi‑client security advisory practice.

WHAT SUCCESS LOOKS LIKE

In your first 90 days: Own and deliver at least two client engagements end‑to‑end — from intake meeting to finished deliverable — with high client satisfaction. Demonstrate consistent follow‑through: every commitment made in a client meeting has a deliverable behind it. Establish your working rhythm and task management system for managing a multi‑client portfolio. Within 12 months: Carry a full client portfolio with strong retention and client satisfaction scores. Have guided at least one client through a table top exercise, 3rd party audit, a regulatory examination, or SOC 2 audit with documented, positive outcomes. Be the person clients call not just for advice, but because they know something finished will come back to them. Annual salary between $115,000 - $125,000 depending on fit and experience. 100% employer paid health insurance (medical and dental) and first $1,000 of qualified medical expenses covered. Company Matching 401k. Flexible hybrid schedule. Fun working environment and culture with regular activities both for employees and their families. Family vacation bonus at 5th year.

WHY ACUMEN TECHNOLOGY

Security‑first MSP founded in 2016, led by co‑founders with 20+ years of financial services technology experience, not a feature bolted onto an IT company. Established credibility in financial services and community banking across the Nashville region and beyond. SOC 2 Type II certified, FFIEC‑aligned, Inc. 5000 and CRN MSP 100/501 recognized. A real client portfolio ready for you — not a build‑it‑from‑scratch assignment. A Leadership Team that is accessible, decisive, and invested in the success of this role. Consistently recognized as a Best Place to Work by Nashville Business Journal. #J-18808-Ljbffr Acumen Technology

Vacancy posted 20 hours ago
Similar jobs that could be interesting for youBased on the Information Security Manager in Nashville, TN vacancy
  •  ...The Information Security Manager position is an exciting role for the right candidate with technical know-how and leadership qualities who is eager to drive security initiatives from start to finish. This position presents opportunities to advise on our client's global... 
    Suggested

    Sebenza LLC

    Nashville, TN
    1 day ago
  • $115k - $125k

     ...Acumen Technology is a security-first Managed Service Provider (MSP) founded in 2016, serving financial institutions, healthcare organizations...  ...on. Rewrite a client's outdated Acceptable Use Policy and Information Security Policy to align with current FFIEC guidance and... 
    Suggested
    Work at office
    Flexible hours
    Day shift

    Acumen Technology

    Nashville, TN
    2 days ago
  • $134.5k - $265.1k

     ...landscape. Through powerful solutions and managed services that simplify complexity, we...  ...with confidence, and proactively manage to secure success.Recruiting for this role ends on...  ...:Bachelor’s degree in Cybersecurity, Information Security, Engineering, Computer Science,... 
    Suggested
    Local area

    Deloitte

    Hermitage, TN
    5 days ago
  • $105.4k - $207.8k

     ...landscape. Through powerful solutions and managed services that simplify complexity, we...  ...with confidence, and proactively manage to secure success.Recruiting for this role ends on...  ...’s degree in Cybersecurity, Information Security, Engineering, Computer Science,... 
    Suggested
    Work experience placement
    Local area

    Deloitte

    Hermitage, TN
    1 day ago
  •  ...opportunities by delivering solutions and managed services that reduce complexity,...  ...You will design, implement, and optimize secure, outcome-focused solutions while collaborating...  ...in Computer Science, Cybersecurity, Information Systems, or another technical field, or... 
    Suggested
    Local area

    Deloitte

    Nashville, TN
    5 days ago
  • $134.5k - $265.1k

     ...with leading organizations to strengthen security, enable innovation, and reduce threat...  ...Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess...  ...Required: 10+ years of experience in information technology, information security, or... 
    Local area

    Deloitte

    Nashville, TN
    20 hours ago
  • $118.7k - $218.6k

     ...landscape. Through powerful solutions and managed services that simplify complexity, we...  ...with confidence, and proactively manage to secure success.Recruiting for this role ends on...  ...:Bachelor’s degree in Cybersecurity, Information Security, Engineering, Computer Science,... 
    Work experience placement
    Local area
    Visa sponsorship

    Deloitte

    Hermitage, TN
    1 day ago
  • Position OverviewThe Portfolio Information Security Officer (PISO) is a senior, director-level leader serving as the primary security advisor...  ..., encryption, logging, segmentation, resilience, secrets management, secure configuration, and vulnerability exposure; ensure alignment... 

    Asurion

    Nashville, TN
    4 days ago
  • $168.09k - $234.02k

     ...to safeguard and protect private and personally identifiable information you submit. The information that you submit will be...  ...section of the system.Job Description:At Regions, the Cyber Security Manager is responsible for leading a diverse team of engineers and analysts... 
    Full time
    Work at office
    Relocation
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    3 days per week

    Regions Financial

    Nashville, TN
    4 days ago
  • $134.5k - $265.1k

     ...Summary Deloitte’s Cyber Services help our clients to be secure, vigilant, and resilient in the face of an ever-increasing...  .... Our Cyber Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using... 
    Local area
    Visa sponsorship

    Deloitte

    Hermitage, TN
    2 days ago
  • $184.3k - $238.93k

     ...safeguard and protect private and personally identifiable information you submit. The information that you submit will be...  ...system.Job Description:At Regions, the Enterprise and Cyber Security Architecture Manager directs the program to develop, maintain, and leverage key... 
    Full time
    Work at office
    Relocation
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    3 days per week

    Regions Financial

    Nashville, TN
    5 days ago
  • $139k - $152k

     ...globally. The RoleThe Cybersecurity Project Manager will manage the Identity Access and...  ...Responsibilities Manage and coordinate efforts across security teams, service owners and stakeholders...  ...disability, medical condition, genetic information, family and medical care leave status,... 
    Permanent employment
    Full time
    Temporary work
    Work experience placement
    Work at office
    Local area

    Creative Artists Agency

    Nashville, TN
    2 days ago
  • $82.6k - $162.8k

     ...support organizations as they modernize security operations through advanced analytics, cyber...  ..., and scale solutions using cyber and information technology telemetry dataA successful...  ...lead projects or workstreamsAbility to manage and prioritize multiple tasks in a fast-... 
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    5 days ago
  • $105.4k - $207.8k

     ...an evolving threat landscape through scalable, resilient security operations solutions. In this hands-on role, you will support...  ..., and resilient Google SecOps architectures for security information and event management (SIEM) and security orchestration, automation, and... 
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    5 days ago
  • $97.61k - $188.38k

     ...landscape. Through powerful solutions and managed services that simplify complexity, we...  ...with confidence, and proactively manage to secure success.Recruiting for this role ends on...  ...Saviynt.Understand complex business and information technology management processes. Execute... 
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    1 day ago
  •  ...threat landscape. Through solutions and managed services that simplify complexity, we help...  ....Enhance application, cloud, and IoT security; manage vulnerabilities.Support cyber monitoring...  ...’s degree in Computer Science, Information Systems, Cybersecurity, Engineering, Information... 
    Visa sponsorship

    Deloitte

    Nashville, TN
    17 hours ago
  • $105.4k - $207.8k

     ...Consultant - Cyber Defense and Resilience, you will help deliver security engineering solutions that modernize client security...  ...to design and implement solutions across security information and event management, security orchestration automation and response, telemetry... 
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    4 days ago
  •  ...Information Security Analyst / ISSO ITCON Services is seeking an experienced and highly skilled Information Security Analyst / ISSO to...  ...knowledge of federal cybersecurity standards, vulnerability management, cloud security, and the Risk Management Framework (RMF). This... 
    Permanent employment

    ITCON Services

    Nashville, TN
    3 days ago
  • $155.6k - $306.8k

    Position Summary As an Engineering Manager in Deloitte Cyber’s Digital Trust & Privacy practice, you will help clients solve...  ...QualificationsRequired:Bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field; alternatively,... 
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    5 days ago
  • $134.5k - $265.1k

     ...landscape. Through powerful solutions and managed services that simplify complexity, we...  ...with confidence, and proactively manage to secure success.Recruiting for this role ends on...  ...in Computer Science, Cyber Security, Information Security, Engineering, Information Technology... 
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    2 days ago
  •  ...Chief Information Security Officer (CISO) About the Company Trusted provider & publisher of consumer insights about car models & auto...  ...analysis insights data and analytics customer experience management advisory services and advisory services Business... 

    Confidential

    Nashville, TN
    4 days ago
  • $134.5k - $265.1k

     ...ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate...  ...resilience, grow with confidence, and proactively manage to secure success.Recruiting for this role ends on 12/31/2026.Work you'll... 
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    17 hours ago
  • $163.4k - $322.1k

    Position Summary Deloitte is seeking a Senior Manager to lead how clients secure their Google Cloud Platform (GCP) cloud and artificial intelligence...  ...’s degree in Business Administration, Cybersecurity, Information Systems, Computer Science, or EngineeringExperience... 
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    17 hours ago
  • $163.4k - $322.1k

    Position Summary Deloitte is seeking an AWS Cloud Security Senior Manager to lead the design and delivery of cloud security services...  ...Bachelor's degree8+ years of experience in cybersecurity, information security, or cloud security5+ years of experience designing... 
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    2 days ago
  • $134.5k - $265.1k

    Position Summary Join Deloitte’s Cyber team as an AWS Cloud Security Manager and help organizations address the complex challenges and...  ...:Bachelor's degree6+ years of experience in cybersecurity, information security, or cloud security3+ years of experience designing,... 
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    2 days ago
  • $163.4k - $322.1k

    Position Summary Cyber Security Architecture Senior Manager - Strategy, Growth and Transformation Deloitte is seeking a Senior Manager to help...  ...'s degree in Business Administration, Cybersecurity, Information Systems, Computer Science, or EngineeringExperience with... 
    Local area
    Visa sponsorship

    Deloitte

    Nashville, TN
    2 days ago
  • $108.31k - $160k

     ...Suitability/Public Trust Fully remote Information Technology Overview GovCIO is...  ...application infrastructures to detect abnormal or security-relevant behaviors Conduct cyber...  ...conducted via video with the hiring manager and/or team Camera must be on A valid... 
    Full time
    Currently hiring
    Remote work
    Flexible hours

    GovCIO

    Nashville, TN
    1 day ago
  • $144.9k - $265.8k

     ...- Cybersecurity - Identity and Access Management - Manager At EY, we are all in to shape...  ...programs. ~ Translating business,  security and regulatory needs into practical...  ...sound recommendations with incomplete information and build trusted relationships with clients... 
    Summer holiday
    Flexible hours

    EY

    Nashville, TN
    4 days ago
  • $20 per hour

     ...Title: Temporary - Cyber Security Analyst Position Summary Under the directive of the Information Security Officer, the cyber security analyst will implement security strategies and best practices in accordance with regulatory standards. Essential Job Functions / Job... 
    Hourly pay
    Temporary work
    Flexible hours

    Motlow

    Nashville, TN
    1 day ago
  • Oracle in Nashville, TN is seeking a Senior Security Program Manager to align cybersecurity priorities with business goals, manage complex cross‑functional programs, and drive initiatives across products, services, operations, and risk management. You will lead security... 

    Oracle

    Nashville, TN
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Manager. Be the first to apply!