Information Security Manager
$140k - $155kCypress Creek Renewables
Information Security Manager
The energy industry is entering one of the most significant periods of growth and transformation in its history. Meeting the nation's growing demand for reliable electricity will require new ideas, new infrastructure, and talented people committed to building for the future.
At Cypress Creek Energy, we're meeting that challenge by developing and operating the energy infrastructure needed to power communities, support economic opportunity, and strengthen resilience. We believe our responsibility extends beyond the grid and that how we build matters just as much as what we build.
That same commitment extends to our employees. We invest in professional growth, encourage collaboration across teams, and provide opportunities to take ownership, expand your expertise, and advance your career. Our culture is grounded in safety, accountability, respect, and a shared commitment to deliver results. Join us and help meet one of the most important energy challenges of our time while building a rewarding career.
Responsibilities
Security Operations & Engineering
- Endpoint security: Administer and tune Microsoft Defender across the endpoint estate, including policy configuration, alert triage, response, and reporting.
- Network and access security: Manage the Zscaler platform (ZIA/ZPA), including policy development, traffic inspection, access controls, and integration with identity systems.
- SIEM operations: Own SIEM tuning, detection engineering, log source onboarding, alerting, and incident workflows. Build dashboards and metrics that surface meaningful signals.
- Vulnerability management: Run the vulnerability scanning program across AWS and Azure cloud environments and on-premises infrastructure. Prioritize, track, and verify remediation in partnership with IT and engineering teams.
- Patch management: Maintain endpoint patching cadence and reporting, ensuring coverage, exception tracking, and SLA adherence.
- Digital forensics & incident response: Lead investigations into security events, perform forensic analysis, document findings, and coordinate response with internal teams and external partners as needed.
Compliance & Governance
- NIST-based program: Maintain and continuously improve the company's NIST Cybersecurity Framework-aligned security program, including controls mapping, evidence collection, and gap remediation.
- Policy management: Own the security policy library — ensure policies and standards are current, reviewed on a defined cadence, approved through the right channels, and communicated to the business.
- AI policy and guidance: Develop and maintain the company's AI usage policies, acceptable use guidance, and review process for new AI tools, in coordination with Counsels and IT.
- System inventory: Build and maintain an authoritative inventory of systems, applications, data flows, and ownership. Keep it accurate as the environment evolves.
- Audit and assessment support: Lead responses to internal and external audits, customer security reviews, and regulatory inquiries. Manage remediation of identified findings through closure.
- Risk management: Identify, document, and track information security risks; propose mitigations and report on residual risk to leadership.
Leadership & Cross-Functional Partnership
- Stakeholder engagement: Partner with IT, Counsels, HR, and business leaders on security matters, providing clear guidance that balances risk with business needs.
- Operational Technology (OT): Act as a partner and advisor to the OT team coordinating security and compliance initiatives across the company. Manage intersection of IT and OT endpoints, systems, and networks.
- Security awareness: Drive the security awareness program, including phishing simulations, training content, and ongoing communications.
- Vendor and third-party risk: Assess and manage security risk associated with vendors, contractors, and third-party service providers.
- Future team leadership: Lay the groundwork to scale the function. As the program matures, hire, mentor, and lead a team of security professionals.
Education & Experience Required
- Use of AI to enhance and scale security operations – establish AI first Security Ops
- Bachelor's degree in computer science, information systems, cybersecurity, or related field — or equivalent professional experience.
- 5+ years of progressive experience in information security, with demonstrated depth in security operations, engineering, or a combination of both.
- Hands-on administration and tuning experience with Microsoft Defender (Endpoint, Identity, Cloud).
- Production experience operating Zscaler (ZIA and/or ZPA), including policy management and troubleshooting.
- Strong SIEM experience — building detections, tuning alerts, investigating incidents, and onboarding log sources.
- Vulnerability management experience across cloud environments, specifically AWS and Azure.
- Working knowledge of digital forensics and incident response methodology.
- Demonstrated experience operating a security program aligned to the NIST Cybersecurity Framework or NIST 800-53.
- Track record of writing, maintaining, and operationalizing security policies and standards.
- Clear written and verbal communication, including the ability to explain technical risk to non-technical audiences.
- Ability to work from the Durham, NC or Washington, DC office three days per week.
- Embrace and live by the mission and values of Cypress Creek Energy
Preferred Qualifications
- Industry certifications such as CISSP, CISM, GIAC (GCIH, GCFA, GCIA), or equivalent.
- Experience operating in the energy, utility, or critical infrastructure sector.
- Familiarity with NERC CIP or other regulatory frameworks relevant to the power sector.
- Experience scripting or automating security workflows (Python, PowerShell, KQL).
- Prior experience as a senior technical lead preparing to step into a manager role.
Location:
The preferred location for this role is for our offices in Durham, NC and Washington, DC. Our team operates on a hybrid schedule, with in-office schedule of three days per week.
Compensation:
The salary range for the position is $140,000 - $155,000 plus bonus and benefits. Compensation may vary outside of this range depending on a number of factors, including a candidate's qualifications, skills, competencies and experience, and location.
Benefits:
- 15 days of Paid Time Off, accrual up to 20 days, 11 observed holidays.
- 401(k) Match
- Comprehensive package including medical, dental, vision and health insurance
- Wellness stipend, family planning stipend, and generous parental leave
- Tuition Reimbursement
- Phone Bill Reimbursement
- Company Swag
Cypress Creek Energy is an equal opportunity employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or veteran status. We are committed to providing a workplace that is inclusive and values diversity, and we encourage candidates from all backgrounds to apply.
- ...Information Security Manager SG2 Recruiting is seeking an information security manager to support IC client in the Washington DC Metro area. The information security manager (ISM) will apply their proactive approach to safeguarding organizational data and systems....SuggestedWork at office
- ...JOB SUMMARY The Senior Manager of Application Security will serve as the operational and programmatic leader for the AppSec organization, partnering... ...and Experience Required: * Bachelor's degree in Information Technology, Cybersecurity, Computer Science or related field...SuggestedShift work
- ...delivers high-impact, technical solutions to complex national security issues. With over 50 years of business expertise and... ..., and Future Force Assessments.SPA has a need for an Information Systems Security Manager to lead cybersecurity and Risk Management Framework activities...SuggestedFlexible hours
$146k - $234k
ResponsibilitiesPeraton is seeking an Information Systems Security Manager to support out customer onsite in Washington D.C. who will be responsible for the following but not limited to:Manage and oversee the security posture of all information systems. Implement and enforce...SuggestedContract workFor contractorsRemote workShift work$112k - $179k
ResponsibilitiesPeraton is seeking an Information System Security Manager in support of Peraton Labs’ information assurance and information technology operations. This is a full-time on-site position working out of the Silver Spring, Maryland office.Responsibilities include...SuggestedFull timeContract workWork experience placementWork at officeShift work$83k - $166k
...Logistics Support /Full Time On-Site /On-siteInformation Systems Security Manager (ISSM) - SME Work Location: Washington, DC Employment Type:... ...and Logistics Support CGS is seeking a skilled Information Systems Security Manager (ISSM) - SME to support mission-critical...Full time- ...delivers high-impact, technical solutions to complex national security issues. With over 50 years of business expertise and... ...Force Assessments.SPA has an immediate need for an Information Systems Security Manager.#FC #DiceResponsibilitiesThe Systems Security Manager position...Full timeInterim roleImmediate startFlexible hours
$134.5k - $265.1k
...landscape. Through powerful solutions and managed services that simplify complexity, we... ...with confidence, and proactively manage to secure success.Recruiting for this role ends on... ...:Bachelor’s degree in Cybersecurity, Information Security, Engineering, Computer Science,...Local area$105k
...Information System Security Manager Do you love solving problems while enabling impactful research to operate securely? Are you passionate about making meaningful contributions to national security cyber missions? Do you like collaborating with a team with varied...$105k
...enabling impactful research to operate securely? Are you passionate about making meaningful... ...and oversight of our classified information systems in support of real world, mission... ...prevails. As an Information System Security Manager... Your primary responsibility...Temporary workWork experience placementRelocation packageFlexible hours$150.45k - $233.45k
...professional growth. Find your future with us. The Boeing Company is looking for a highly experienced and detail-oriented Information Security Governance Senior Manager to join the team in Arlington, VA; Berkeley, MO; Dallas, TX; Herndon, VA; El Segundo, CA; Huntsville, AL; Mesa,...Permanent employmentRelocationVisa sponsorshipWork visaRelocation packageFlexible hoursShift workDay shift- ...Title: Information Systems Security Manager Location: Hybrid, Washington, DC Terms: Full-time Clearance: Qualified candidates must be US citizens with the ability to obtain a Public Trust Travel: 0-20% Position Description: Harmonia is seeking an Information Systems Security...Full time
$105k
...enabling impactful research to operate securely? Are you passionate about making meaningful... ...and oversight of our classified information systems in support of real world, mission... ...prevails. As an Information System Security Manager... Your primary responsibility will be to...Temporary workWork experience placementRelocation packageFlexible hours$145k - $180k
...Information System Security Manager (ISSM) – KBR is seeking an Information System Security Manager (ISSM) to join our team in either Virginia, Maryland, or Washington, DC. This position is primarily remote; however, the ISSM must reside in the area of the position and...Local areaImmediate startRemote work- ...Location: Washington DC Overtime Exempt: Yes Reports To: ARMADA HQ Security Clearance Required: TS/SCI w/ CI Poly CONTINGENT UPON AWARDING OF GOVERNMENT CONTRACT******** The Information Systems Security Manager oversees the cybersecurity posture of information systems,...Full timeContract workFor contractorsLocal areaRelocation
$175k - $200k
## Information Systems Security ManagerApplylocations: University of Maryland College Parktime type: Full timeposted on: Posted 2 Days Agojob requisition... ...who will also serve as an Information Systems Security Manager (ISSM) to support advanced research programs at the...Work experience placementInterim roleWork at office- ...Peraton is seeking an Information System Security Manager to support Peraton Labs in Silver Spring, MD. This on-site, full-time role focuses on information assurance, RMF implementation, and security operations for classified environments. You will manage ATO processes...Full time
$104.73k - $160k
...ExemptAnticipated Salary Range: $104,733.00 - $160,000.00 Security Clearance: TS/SCI Level of Experience: Mid Meet HII’s... ...Technologies.SummaryHII Mission Technologies is seeking an Information System Security Manager (ISSM) for our Barclay Dr., Alexandria, VA office. HII...Full timeWork experience placementWork at officeLocal areaWorldwide- Company DescriptionProSidian is a Management And Operations Consulting Services firm that... ...Officer (OCHCO) / Office of the Chief Information Officer (OCIO) Generally Located In Alexandria... ...- Identifying, pursuing, and securing growth opportunities through strategic...Full timeContract workTemporary workFor contractorsH1bWork at officeFlexible hours
$235k - $310k
...international privacy regulations such as GDPR, CCPA, and HIPAA.Excellent communication and analytical skills, with an ability to manage multiple priorities effectively.What’s on OfferCompetitive salary ranging from $235,000 to $310,000 USD annually.Comprehensive benefits...$215k - $295k
...cybersecurity issues.The breadth of work available is phenomenal, from cybersecurity compliance and incident response, data privacy, national security and consumer protection issues, to internal and government investigations.You will assist in responding to data breaches and...$143.91k
...NavySalary: Starting at $143,913 Per year (GS 14)Dates: Open 08/04/2026 to 08/17/2026Schedule: Full-timeWork type: PermanentRelocation: FalsePosition ID: DE-13027019-26-LWDocument ID: 879052200Grade: GS 14Job category: Information Technology Management (2210)Hiring path: public$146k - $234k
...currently seeking a Cyber Incident Response Analyst Manager to support a government Cyber Security Operation Center (CSOC) onsite in Washington D.C. The... ...from various systems, review open and closed source information on related threats & vulnerabilities, diagnose...Contract workWork experience placementShift work$131.3k - $237.35k
...Sector! We're on the lookout for a dynamic and experienced Information Systems Security Officer (ISSO) with 12+ years of expertise to help drive... ...& Authorization (SA&A) as part of NIST SP 800-37 Risk Management Framework (RMF) system and application accreditation.Possess...Full timeFor contractorsInterim roleLocal areaRemote work- General information Job Posting Title Information System Security Officer (ISSO) Date Friday, July 24, 2026 City Arlington State VA Country... ...Departmental directives and applicable Risk Management Implementation Plans (RMIPs).- Apply and...Minimum wageFull timeContract workTemporary workWork experience placement
$92.21k - $125.15k
...siteISSOEmployment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF... ...life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in...Full timeLocal area$110k - $170k
...a leading defense technology company, is seeking a Senior Information System Security Officer (ISSO) to be part of our Security team and based out... ...3.7Coordinate with the Information System Security Manager (ISSM) and Facility Security Officer (FSO) to ensure the highest...Full timeWork at officeImmediate start- Job Position: Chief Information Security Officer (CISO)Department: Information TechnologyReports to: Chief Information Officer (CIO)FLSA: Exempt... ...trust, and a foundational element of enterprise risk management.ESSENTIAL RESPONSIBILITIES: Provides strategic guidance and...Full time
$114.6k - $192.5k
...Enforcement Agency CIO's organization is looking to provide Information Security as a Service and needs ISSO to support cybersecurity stakeholders... ...status are reported to the system owner and IS Security Manager (ISSM)Ensure the removal and retirement of ISs being...Contract workWork experience placementH1b$110.18k - $183.63k
...thinking organization, apply now.We are currently seeking a Information Systems Security Officer (ISSO) to join our team in Arlington, Virginia (US... ...ISSO ensures compliance with cybersecurity standards and manages system risk.Ensure assigned systems comply with NIST,...Full timeTemporary workWork at officeRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Manager. Be the first to apply!
- entry level information security analyst Washington DC
- information technology security engineer Washington DC
- information security analyst Washington DC
- sr information security engineer Washington DC
- senior director information security Washington DC
- director information security Washington DC
- information system security engineer Washington DC
- information security compliance analyst Washington DC
- data center security officer Washington DC
- information security lead Washington DC

